Skip to main content
Glama

Meraki MCP Server

Build Status License Node.js

A Model Context Protocol (MCP) server that provides AI assistants with structured access to the Cisco Meraki Dashboard โ€” organizations, networks, devices, clients, wireless, switching, and appliance operations.

Note: This project is maintained by Wyre Technology.

Quick Start

Claude Code (CLI):

claude mcp add meraki-mcp \
  -e MERAKI_API_KEY=your-api-key \
  -e MERAKI_ORG_ID=your-org-id \
  -- npx -y github:wyre-technology/meraki-mcp

See Installation for Docker and from-source methods.

Related MCP server: Meraki MCP Server

Features

  • ๐Ÿ”Œ MCP Protocol Compliance: Full support for MCP tools over stdio and HTTP transports

  • ๐ŸŒ Network Coverage: Tools spanning organizations, networks, devices, clients, wireless, switching, and appliance (MX) operations

  • ๐Ÿ” Flattened Navigation: meraki_navigate and meraki_status are stateless discovery aids โ€” every tool is callable at any time

  • ๐Ÿ›Ÿ Safety by Default: Read-only mode is ON by default; writes are gated and destructive actions require explicit confirmation

  • ๐Ÿ–ผ๏ธ Interactive Device Card (MCP Apps): meraki_devices_get renders as a read-only interactive card in MCP Apps hosts (SEP-1865) โ€” neutral by default, brandable via window.__BRAND__ injection or MCP_BRAND_* env vars

  • ๐Ÿงฐ Long-Tail Escape Hatch: meraki_raw_request reaches any Meraki v1 endpoint not covered by a curated tool

  • ๐Ÿณ Docker Ready: Containerized deployment with HTTP transport and health checks

  • ๐Ÿ“Š Structured Logging: Configurable log levels

Installation

Option 1: Docker

docker run -d \
  -e MERAKI_API_KEY=your-key \
  -e MERAKI_ORG_ID=your-org-id \
  -p 8080:8080 \
  ghcr.io/wyre-technology/meraki-mcp:latest

Option 2: From Source

git clone https://github.com/wyre-technology/meraki-mcp.git
cd meraki-mcp
npm ci
npm run build

Configuration

Variable

Description

Default

MERAKI_API_KEY

Meraki Dashboard API key

โ€”

MERAKI_ORG_ID

Default organization ID (optional)

โ€”

MERAKI_BASE_URL

Override the Meraki API base URL (optional)

โ€”

READ_ONLY_MODE

Safety switch โ€” blocks all writes when true

true

MCP_TRANSPORT

Transport mode (stdio or http)

stdio

MCP_HTTP_PORT

HTTP server port

8080

AUTH_MODE

Auth mode (env or gateway)

env

LOG_LEVEL

Log level (debug, info, warn, error)

info

The legacy READ_ONLY variable is also honored; READ_ONLY_MODE takes precedence.

Safety Model

This server defaults to read-only. Write operations (updates, reboots, deletions) are blocked unless you explicitly set READ_ONLY_MODE=false.

  • Read tools (*_list, *_get) are always available.

  • High-impact writes (e.g. meraki_networks_update, meraki_devices_reboot, meraki_wireless_ssids_update) are gated by read-only mode.

  • Destructive tools (meraki_networks_delete, meraki_devices_remove) additionally require a confirm_destructive_action: true argument. The confirmation flag is never forwarded to the Meraki API.

  • The meraki_raw_request escape hatch classifies the call by HTTP method: GET is a read; POST/PUT/DELETE are writes; DELETE is destructive.

Domains

All tools are returned upfront. Use meraki_navigate to explore a domain's tools, or meraki_status to check connectivity and the configured organization.

Domain

Tools

organizations

meraki_organizations_list, meraki_organizations_get, meraki_organizations_inventory_list

networks

meraki_networks_list, meraki_networks_get, meraki_networks_update โš , meraki_networks_delete โš โš 

devices

meraki_devices_list, meraki_devices_get, meraki_devices_reboot โš , meraki_devices_remove โš โš 

clients

meraki_clients_list, meraki_clients_get, meraki_clients_get_policy, meraki_clients_update_policy โš 

wireless

meraki_wireless_ssids_list, meraki_wireless_ssids_update โš , meraki_wireless_rf_profiles_list

switch

meraki_switch_ports_list, meraki_switch_ports_update โš , meraki_switch_port_statuses_list

appliance

meraki_appliance_firewall_l3_get, meraki_appliance_firewall_l3_update โš , meraki_appliance_vpn_status_get

(long tail)

meraki_raw_request

โš  = high-impact write ยท โš โš  = destructive / irreversible

Docker Deployment

Copy .env.example to .env and fill in your credentials:

cp .env.example .env
# Edit .env with your Meraki API key (and org ID)
docker run --env-file .env -p 8080:8080 ghcr.io/wyre-technology/meraki-mcp:latest

Development

npm ci
npm run build       # Build the project
npm run start       # Run over stdio
npm run start:http  # Run the HTTP transport
npm run test        # Run tests

Testing

npm test

The test suite covers the safety contract: read-only enforcement, destructive confirmation, and that confirm_destructive_action is never forwarded to the SDK.

License

Apache 2.0 โ€” Copyright WYRE Technology

F
license - not found
-
quality - not tested
A
maintenance

Maintenance

โ€“Maintainers
โ€“Response time
4dRelease cycle
5Releases (12mo)
Commit activity

Resources

Unclaimed servers have limited discoverability.

Looking for Admin?

If you are the server author, to access and configure the admin panel.

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/wyre-technology/meraki-mcp'

If you have feedback or need assistance with the MCP directory API, please join our Discord server