Skip to main content
Glama
hellforgex

Mammouth Control Center

by hellforgex
README.md
<p align="center">
  <img src="assets/banner.png" alt="Mammouth Defroster 9000 Banner" width="100%">
</p>

<p align="center">
  <a href="https://github.com/hellforgex/Mammouth-Defroster-9000/releases"><img src="https://img.shields.io/github/v/release/hellforgex/Mammouth-Defroster-9000?include_prereleases&label=Latest%20Release&color=blueviolet" alt="Release"></a>
  <img src="https://img.shields.io/badge/Platform-Windows%2011%20%7C%2010-0078D6?logo=windows&logoColor=white" alt="Platform">
  <img src="https://img.shields.io/badge/Vibecoded%20By-noskillz%20⚑-8A2BE2" alt="Vibecoded">
  <img src="https://img.shields.io/badge/Security-DPAPI%20%2B%20Sandbox%20%2B%20SSRF%20Shield-10B981" alt="Security">
  <img src="https://img.shields.io/badge/MCP%20Protocol-FastMCP%203.4%2B-purple" alt="MCP">
  <img src="https://img.shields.io/badge/License-MIT%20%2B%20Legal%20Disclaimer-F59E0B" alt="License">
</p>

<h3 align="center">
  🦣 <b>Thawing 10,000 years of frozen Windows automation power for <a href="https://mammouth.ai">Mammouth.ai</a>.</b> πŸ”₯
</h3>

<p align="center">
  <b>Mammouth Defroster 9000 (MD-9000)</b> is a sovereign FastMCP desktop cockpit and DevOps powerhouse engineered by <b>noskillz</b>. It bridges remote AI assistants directly to your local Windows environment, background daemons, and remote SSH server fleets with zero friction.
</p>

---

> [!CAUTION]
> ### ⚠️ ⚑ NOSKILLZ VIBECODED DISCLAIMER & HARDCORE WARNING ⚑ ⚠️
>
> **WELCOME TO THE RAW AGENTIC POWERHOUSE.**
>
> This software is **100% pure vibe-coded** by **noskillz** for maximum execution speed, sovereign Windows 11 DevOps supremacy, and zero-compromise automation.
>
> 🦣 **With great agentic power comes absolute responsibility:**
> - You are handing an autonomous AI assistant real keys to your operating system: PowerShell execution, sandboxed file modifications, hardware diagnostics, and remote SSH servers.
> - **NEVER** expose this server publicly to the open internet without **Tailscale**, a private VPN, or Token Authentication enabled, unless you enjoy chaotic uninvited guests playing Doom in your PowerShell console.
> - By running this tool, you acknowledge that you are a sovereign captain of your machine. If you instruct an AI to *"clean up everything"* and it happily deletes your favorite meme stash, that is between you, the AI, and the cosmos.
> - Test your prompts, sandbox your workspaces, and embrace the agentic vibe responsibly. πŸš€

---

## βš–οΈ Legal Disclaimer & Limitation of Liability

> [!IMPORTANT]
> **Please read carefully before deploying or operating this software:**
>
> 1. **Gratuitous Provision ("As-Is" / Statutory Basis)**:  
>    This software is provided as an open-source project entirely free of charge on an **"as-is"** and **"as-available"** basis without warranties of any kind, either express or implied. Under governing statutory law for gratuitous software provision (including Section 521 of the German Civil Code / BGB), the legal liability of the author and developer (**noskillz / hellforgex**) is strictly limited to **intentional misconduct** (*Vorsatz*) and **gross negligence** (*grobe FahrlΓ€ssigkeit*). Any liability for ordinary, slight, or simple negligence is expressly excluded to the fullest extent permitted by applicable law.
>
> 2. **Sole Risk and Operator Responsibility**:  
>    The execution and utilization of all functions within this softwareβ€”specifically modules executing local **PowerShell commands**, **file system modifications (writing, modifying, deleting)**, **system diagnostics**, and **remote SSH/VPS server operations (PuTTY / Plink / PSCP)**β€”is undertaken strictly at the user's sole risk. The operator assumes full and exclusive liability for all actions, scripts, and operations initiated by themselves or triggered by connected AI models and autonomous agents.
>
> 3. **Exclusion of Consequential Damages & Data Loss**:  
>    The author/developer shall not be held liable for any direct, indirect, incidental, special, consequential, or punitive damages, including but not limited to loss of data, corrupted databases, hardware damage, operating system crashes, downtime, security breaches, unauthorized third-party access, or financial losses resulting from the installation, execution, or network exposure of this software.
>
> 4. **Network and Tunnel Security**:  
>    The operator is solely responsible for properly configuring and securing all network interfaces, reverse proxies, and tunnel endpoints (e.g. via Tailscale VPN, private network isolation, firewalls, or token authentication). Exposing this server to the public internet without adequate authentication is performed entirely at the user's own peril.

---

## 🌟 Key Features

<table align="center" width="100%">
  <tr>
    <td width="50%" valign="top">
      <h3>πŸ–₯️ Desktop Cockpit GUI</h3>
      <ul>
        <li><b>Modern Windows 11 Dark Mode</b> built with CustomTkinter.</li>
        <li><b>1-Click Server Lifecycle</b> with live process status badge.</li>
        <li><b>Real-Time Console Log Stream</b> monitoring every MCP handshake and tool call.</li>
        <li><b>Taskbar & System Tray Icons</b> featuring the official Defroster 9000 artwork.</li>
      </ul>
    </td>
    <td width="50%" valign="top">
      <h3>🌐 Multi-Tunnel Network Hub</h3>
      <ul>
        <li><b>Tailscale Funnel</b> zero-config auto-discovery (<code>https://&lt;node&gt;.ts.net/sse</code>).</li>
        <li><b>Cloudflare Quick Tunnels</b> (<code>trycloudflare.com</code>).</li>
        <li><b>ngrok HTTP Tunnels</b> with dynamic API polling.</li>
        <li><b>Direct LAN IP & Custom Proxies</b> (Nginx, Traefik, Caddy).</li>
      </ul>
    </td>
  </tr>
  <tr>
    <td width="50%" valign="top">
      <h3>πŸ”’ Hardened Security Stack</h3>
      <ul>
        <li><b>Windows DPAPI Encryption</b> for saved SSH credentials in <code>hosts.json</code>.</li>
        <li><b>Workspace Sandboxing</b> preventing writes outside <code>./workspace</code>.</li>
        <li><b>SSRF Defense Filter</b> blocking private IP ranges & cloud metadata.</li>
        <li><b>PowerShell Input Sanitization</b> preventing command injection.</li>
      </ul>
    </td>
    <td width="50%" valign="top">
      <h3>⚑ Modular Skill Architecture</h3>
      <ul>
        <li><b>7 Granular Toolsets (32 Total Tools)</b>.</li>
        <li>Toggle individual modules on/off instantly via GUI switches.</li>
        <li>Dynamic FastMCP instruction generator informing connected models of active capabilities.</li>
      </ul>
    </td>
  </tr>
</table>

---

## πŸ› οΈ 32 Defrosted MCP Tools

| Skill / Module | Icon | Security Profile | Core Capabilities | Tools |
| :--- | :---: | :---: | :--- | :--- |
| **Persistent Memory** | 🧠 | 🟒 Safe | SQLite cross-session knowledge storage with keyword search & categories | `memory_save`<br>`memory_recall`<br>`memory_list`<br>`memory_get`<br>`memory_delete` |
| **Tasks & Kanban** | πŸ“‹ | 🟒 Safe | Persistent task tracking (`todo`, `in_progress`, `done`, `blocked`) | `task_create`<br>`task_update`<br>`task_list`<br>`task_delete` |
| **File & Code Ops** | πŸ“ | πŸ”’ Sandboxed | Line slicing, ripgrep text search, chunk replacement, directory trees | `file_read`<br>`file_write`<br>`file_replace_chunk`<br>`file_search_text`<br>`directory_tree`<br>`directory_list` |
| **PowerShell & Daemons** | πŸ’» | ⚠️ High Privilege | Synchronous PowerShell execution & background daemon process manager | `command_run`<br>`process_start_background`<br>`process_get_output`<br>`process_list_background`<br>`process_kill_background` |
| **PuTTY & SSH Remote** | πŸ”‘ | πŸ”’ DPAPI Encrypted | Remote command execution via plink, SCP file transfers, PuTTY GUI window launch | `ssh_exec_command`<br>`ssh_open_putty_window`<br>`ssh_transfer_file`<br>`ssh_list_saved_hosts`<br>`ssh_save_host`<br>`ssh_list_putty_registry_sessions` |
| **System Diagnostics** | πŸ“Š | 🟒 Safe | CPU, RAM, Disk partitions, GPU specs, top processes, Windows Event Logs | `system_get_specs`<br>`system_get_processes`<br>`system_get_gpu_info`<br>`system_get_event_logs` |
| **Web Scraper & Tools** | 🌐 | πŸ›‘οΈ SSRF Shield | Webpage text extractor with markdown conversion & HTTP endpoint latency check | `web_fetch_url`<br>`web_check_status` |

---

## πŸš€ Quickstart

### Method 1: Launching via Python / `uv` (Recommended)

1. **Clone the repository**:
   ```bash
   git clone https://github.com/hellforgex/Mammouth-Defroster-9000.git
   cd Mammouth-Defroster-9000
   ```

2. **Launch the Defroster**:
   - Double-click **`start_gui.bat`**  
   *(or execute `uv run gui.py` / `python gui.py` in your terminal)*

---

### Method 2: Building Standalone Windows `.exe`

1. Double-click **`build_exe.bat`**.
2. The standalone compiled application with full icon integration will be generated in:  
   `dist\MammouthDefroster9000\MammouthDefroster9000.exe`

---

## πŸ”— Connecting with Mammouth.ai

<p align="center">
  <img src="assets/icon.png" alt="Mammouth Defroster Icon" width="100">
</p>

1. In **Mammouth Defroster 9000**, select your **Exposure Mode** (e.g. *Tailscale Funnel*) with default **`/mcp`** route and click **`β–Ά Start Server`**.
2. Click **`πŸ“‹ Copy`** next to the calculated **Public Endpoint URL** (e.g. `https://<node>.ts.net/mcp?token=<token>`).
3. Open **[Mammouth.ai](https://mammouth.ai)**:
   - Navigate to **Settings** β†’ **Custom MCP Servers**.
   - Click **Add MCP Server**:
     - **Name**: `Mammouth Defroster 9000`
     - **Type**: `HTTP` / `Streamable HTTP` *(Recommended)*
     - **URL**: Paste your copied endpoint (`https://.../mcp?token=...`).
   - Click **Save / Connect**.
4. Start a new chat! Mammouth will immediately authenticate, discover, and utilize your 32 defrosted tools.

> [!TIP]
> **Why `/mcp` (Streamable HTTP) instead of `/sse`?**  
> We strongly recommend using the default **`/mcp`** route. Standard SSE streams can drop URL query parameters (`?token=<token>`) on subsequent JSON-RPC message calls. `/mcp` handles authentication cleanly and reliably on every single request until the Mammouth.ai team adds a dedicated Bearer Token field in their custom MCP UI! πŸ˜‰

---

## πŸ“‚ Project Architecture

```
mammouth-defroster-9000/
β”œβ”€β”€ assets/
β”‚   β”œβ”€β”€ banner.png           # Widescreen 8K cybernetic hero banner
β”‚   β”œβ”€β”€ icon.png             # High-res application icon
β”‚   └── icon.ico             # Windows multi-resolution taskbar/window icon
β”œβ”€β”€ modules/
β”‚   β”œβ”€β”€ __init__.py
β”‚   β”œβ”€β”€ memory.py            # SQLite Long-term memory
β”‚   β”œβ”€β”€ tasks_kanban.py      # SQLite Kanban & task tracker
β”‚   β”œβ”€β”€ file_ops.py          # Sandboxed code & file operations
β”‚   β”œβ”€β”€ shell_processes.py   # PowerShell execution & background daemons
β”‚   β”œβ”€β”€ putty_ssh.py         # DPAPI-encrypted PuTTY / Plink / PSCP remote tools
β”‚   β”œβ”€β”€ system_monitor.py    # Hardware & Windows diagnostics
β”‚   └── web_tools.py         # SSRF-protected web scraper & status checks
β”œβ”€β”€ config.py                # Security & Configuration manager
β”œβ”€β”€ config.example.json      # Hardened template configuration
β”œβ”€β”€ hosts.example.json       # Template SSH hosts configuration
β”œβ”€β”€ server.py                # FastMCP server with Auth & CORS middleware
β”œβ”€β”€ gui.py                   # CustomTkinter Windows 11 Desktop Cockpit
β”œβ”€β”€ start_gui.bat            # Quick launcher script
β”œβ”€β”€ build_exe.bat            # PyInstaller one-click builder
β”œβ”€β”€ requirements.txt         # Pip dependency manifest
β”œβ”€β”€ pyproject.toml           # Project metadata
β”œβ”€β”€ LICENSE                  # MIT License & Legal Disclaimer
β”œβ”€β”€ .gitignore               # Git security & cache filter
└── README.md                # Documentation & noskillz Manifesto
```

---

## πŸ“„ License
MIT License. Copyright (c) 2026 **noskillz** ([hellforgex](https://github.com/hellforgex)).  
Governed by the **Legal Disclaimer & Limitation of Liability** above.