Best Vaultwarden MCP Servers
Vaultwarden is an unofficial Bitwarden server implementation written in Rust, formerly known as bitwarden_rs. It provides a lightweight alternative to the official Bitwarden server with compatible API for Bitwarden clients.
Why this server?
Provides tools for interacting with a Vaultwarden vault, including listing items, retrieving metadata, revealing secrets via Bitwarden Sends, getting TOTP codes, and saving generated secrets or login items.
AlicenseAqualityBmaintenanceMCP server for secure AI agent access to Bitwarden/Vaultwarden vaults with BYOK, exposing tools to list items, reveal secrets via encrypted Sends, get TOTP codes, and save credentials.784MITWhy this server?
Enables programmatic management of Vaultwarden vaults, allowing agents to create, search, read, update, and move vault items, manage attachments, and handle organization or collection operations.
AlicenseAqualityAmaintenanceMCP server for Vaultwarden/Bitwarden vault management. Enables AI agents to securely create, search, read, and update vault items via the official Bitwarden CLI, with safe-by-default redaction and support for both stdio and SSE transports.5334112MITWhy this server?
Provides service-aware security checks for Vaultwarden configurations, including detection of exposed ports and missing Cloudflare Access.
Alicense-qualityBmaintenanceRead-only MCP server that scans Docker Compose, Cloudflare Tunnel, and .env files for security risks in self-hosted homelabs.221MITWhy this server?
Allows reading credentials from a Bitwarden/Vaultwarden vault via `bw serve`, enabling secure secret retrieval for other integrations.
Why this server?
Provides access to Vaultwarden servers with multi-account support, enabling management of vault data.
Alicense-qualityAmaintenanceMCP server for accessing Vaultwarden servers with multi-account support.MITWhy this server?
Allows AI agents to securely search, retrieve, and inject secrets from self-hosted Vaultwarden instances without exposing secret values to the LLM.
Alicense-qualityCmaintenanceSecret management MCP server for AI coding agents that prevents secrets from entering the LLM context window by returning metadata only and using side-channel injection. Integrates with Bitwarden and offers hooks for auto-capture and leak prevention.1MITWhy this server?
Provides tools for securely accessing and managing passwords, API keys, and other credentials stored in a Vaultwarden vault, enabling AI agents to retrieve items via fuzzy search, exact lookup, or custom fields.
Alicense-qualityAmaintenanceEnables AI agents to securely retrieve passwords, API keys, and other items from a Vaultwarden/Bitwarden vault using MCP tools with fuzzy search and caching.1MITWhy this server?
Provides tools for managing secrets in a self-hosted Vaultwarden instance, including retrieving, creating, updating, and deleting secrets (logins, notes, cards, identities), with automatic session management and vault synchronization.
Alicense-qualityDmaintenanceEnables AI agents and automation scripts to securely interact with self-hosted Vaultwarden instances through the Bitwarden CLI, automatically managing vault sessions and providing tools to read, create, update, and delete secrets programmatically.181MITWhy this server?
Provides tools for listing credentials (excluding passwords) and performing logins by filling forms with credentials from a Vaultwarden instance, without exposing the actual secrets.
Flicense-qualityCmaintenanceMCP server that gives Claude scoped, indirect access to Vaultwarden credentials by listing non-secret metadata and performing logins without exposing plaintext passwords. It brokers actions rather than values, keeping secrets out of the LLM context.