Atlas / MCP servers / heht571 / Ops

OpsCAUTION

mcp/heht571/ops

服务器、网络设备巡检和运维MCP工具

Verdict
CAUTION
Grade
B
Trust score
84 /100
Exposed tools
12 12r · 0w · 0d
Transport
stdio
License
MIT
Stars
59
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

[](README_zh.md)

ops-mcp-server: an AI-driven IT operations platform that fuses LLMs and MCP architecture to enable intelligent monitoring, anomaly detection, and natural human-infrastructure interaction with enterprise-grade security and scalability.

📖 Table of Contents

  • Project Overview
  • Key Features
  • Demo Videos
  • Installation
  • Deployment
  • Local MCP Server Configuration
  • Interactive Client Usage
  • License
  • Notes

🚀 Project Overview

ops-mcp-server is an IT operations management solution for the AI era. It achieves intelligent IT operations through the seamless integration of the Model Context Protocol (MCP) and Large Language Models (LLMs). By leveraging the power of LLMs and MCP's distributed architecture, it transforms traditional IT operations into an AI-driven experience, enabling automated server monitoring, intelligent anomaly detection, and context-aware troubleshooting. The system acts as a bridge between human operators and complex IT infrastructure, providing natural language interaction for tasks ranging from routine maintenance to complex problem diagnosis, while maintaining enterprise-grade security and scalability.

🌟 Key Features

🖥️ Server Monitoring

  • Real-time CPU, memory, disk inspections.
  • System load and process monitoring.
  • Service and network interface checks.
  • Log analysis and configuration backup.
  • Security vulnerability scans (SSH login, firewall status).
  • Detailed OS information retrieval.

📦 Container Management (Docker)

  • Container, image, and volume management.
  • Container resource usage monitoring.
  • Log retrieval and health checks.

🌐 Network Device Management

  • Multi-vendor support (Cisco, Huawei, H3C).
  • Switch port, VLAN, and
Read from source at commit 99e493f3da48OBSERVED · 2026-10-08
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.

claude-code
claude mcp add ops_mcp_server -- uvx ops_mcp_server
claude-desktop
{
  "mcpServers": {
    "ops_mcp_server": {
      "command": "uvx",
      "args": [
        "ops_mcp_server"
      ]
    }
  }
}
03

Exposed tools (12)

12 read · 0 write · 0 destructive.

ToolRiskDescription
_list_available_toolsreadreturn list_available_tools(mcp)
analyze_device_logsread分析网络设备的登录和系统日志,识别异常访问和行为模式
analyze_security_policyread分析网络设备的安全策略配置,识别潜在风险和优化机会
backup_network_configread备份网络设备配置
check_acl_configread检查安全ACL配置
check_device_performanceread检查网络设备性能,包括CPU、内存、温度、接口流量等
check_device_sessionsread分析网络设备的当前会话连接信息,识别在线用户和连接特征
check_optical_modulesread检查网络设备光模块状态和信息
check_router_routesread检查路由器路由表
check_switch_portsread检查交换机端口状态
identify_network_deviceread识别网络设备类型和基本信息
inspect_vlansread检查交换机VLAN配置
04

Trust audit

CAUTIONgrade B · trust 84/100 Install with care. The audit found things worth knowing before you trust its output.

LayerWhat it checksResult
L0Provenance & inventoryWARN
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
declared (6 observation(s))
Network
none-observed
Shell
none-observed
Dependencies
not all pinned
Secrets in source
none-found

Findings (13)

MEDIUMInventory / provenance · inv.binary · CWE-1104
.DS_Store
.DS_Store
Why it matters. a compiled or binary member cannot be reviewed from source
Fix. ship source, or explain the binary in the README
MEDIUMInventory / provenance · inv.binary · CWE-1104
__pycache__/main.cpython-310.pyc
main.cpython-310.pyc
Why it matters. a compiled or binary member cannot be reviewed from source
Fix. ship source, or explain the binary in the README
MEDIUMInventory / provenance · inv.binary · CWE-1104
__pycache__/network_tools.cpython-310.pyc
network_tools.cpython-310.pyc
Why it matters. a compiled or binary member cannot be reviewed from source
Fix. ship source, or explain the binary in the README
MEDIUMInventory / provenance · inv.binary · CWE-1104
__pycache__/run.cpython-310.pyc
run.cpython-310.pyc
Why it matters. a compiled or binary member cannot be reviewed from source
Fix. ship source, or explain the binary in the README
MEDIUMInventory / provenance · inv.binary · CWE-1104
__pycache__/server_monitor.cpython-310.pyc
server_monitor.cpython-310.pyc
Why it matters. a compiled or binary member cannot be reviewed from source
Fix. ship source, or explain the binary in the README
LOWInventory / provenance · inv.hidden_file · CWE-1104
.DS_Store
.DS_Store
Why it matters. hidden member outside the usual dotfiles
Fix. review its purpose
LOWFilesystem / path · fs.traversal · CWE-22, CWE-59
client.py:353
console.print("示例: [bold]uv run client.py ../../server/elasticsearch-mcp-server-example/server.py[/]")
LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
requirements.txt
mcp, paramiko, psutil, pydantic, typing-extensions, ipaddress, netaddr, pytz
Why it matters. 8 requirement(s) not pinned with ==
Fix. pin exact versions
LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
server_monitor_sse/requirements.txt
mcp, paramiko, psutil, pydantic, httpx, anyio, click, starlette
Why it matters. 9 requirement(s) not pinned with ==
Fix. pin exact versions
INFOInventory / provenance · inv.oversize · CWE-1104
assets/client.gif
assets/client.gif
Why it matters. 1870676 bytes not read
INFOInventory / provenance · inv.oversize · CWE-1104
assets/demo.gif
assets/demo.gif
Why it matters. 3001180 bytes not read
INFOSupply chain · prompt.pipe_to_shell · CWE-829, CWE-1357
README.md:87
curl -LsSf https://astral.sh/uv/install.sh | sh
INFOSupply chain · prompt.pipe_to_shell · CWE-829, CWE-1357
README_zh.md:84
curl -LsSf https://astral.sh/uv/install.sh | sh

Gates applied: no_behavioural_pass.

Audited 2026-10-08 · audit v0.4.1 · source sha 99e493f3da48full audit observations/trust-audit/mcp-server/heht571__ops.json · Report an issue / request a re-scan
05

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-0899e493f3da48CAUTIONB84first audit
06

Questions

What is the Ops MCP server?

服务器、网络设备巡检和运维MCP工具

What tools does Ops expose?

12 in total: 12 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is Ops safe to connect to an agent?

With care. The audit graded it B (84/100) and found 13 things worth knowing before you trust this server, listed below with the exact line each was found on.

What credentials does Ops need?

No credential environment variables were found in its source, so it appears to need none.

How does Ops run?

It speaks stdio, so it runs as a local process your client starts. It is published on PyPI as ops_mcp_server.

How current is this page?

The grade is for one exact copy of the source (99e493f3da48), read on 2026-10-08. The repository is watched and re-audited when it changes.

Advertisement