Cross-platform FastMCP server for authenticated remote Linux/macOS host administration
Copy the AI prompt to install this server into Claude Code, Cursor, or another agent — or use 1-click editor setup below.
One-click editor setup isn’t available for this listing yet — we don’t have a confirmed install command, and we’d rather show nothing than point your editor at the wrong package or host. Follow the project’s own setup instructions, linked above.
A cross-platform Model Context Protocol server for administering a Linux or macOS host through MCP clients such as ChatGPT and Claude.
It uses FastMCP Streamable HTTP transport, Auth0 OAuth, bounded file tools, output limits and command timeouts.
[!CAUTION] This project exposes arbitrary shell execution. Authentication decides who may use it; it does not make commands harmless. Read SECURITY.md before deploying it.
MCP_WORKSPACE_DIR| Tool | Parameters | Purpose |
|---|---|---|
run_command | command: str, timeout: int | Runs an arbitrary shell command with the workspace as its working directory |
read_file | path: str | Reads a text file inside the workspace |
write_file | path: str, content: str | Writes UTF-8 text inside the workspace |
list_dir | path: str = "." | Lists a directory inside the workspace |
system_metrics | none | Reports disk, memory and top-process information |
The workspace boundary applies to the file tools. It does not sandbox run_command; commands retain all permissions of the service's OS user.
Next: run uhm-setup to generate your .env — see Configure below.
Without polluting a project environment:
This installs into a throwaway environment, runs the setup wizard, and writes .env in the current directory. From then on, run the server itself the same way: uvx universal-host-manager-mcp.
Next: run uhm-setup to generate your .env — see Configure below.
The easiest way is the interactive setup wizard, installed alongside the server:
Run it from the directory where you want to keep the configuration. The server must later be started from that same directory so it can find .env.
For a first test, choose 1 — Local-only test. Press Enter to accept the port 8765; the port prompt expects a number, not y or n. This mode:
workspace directory by default;127.0.0.1, so other computers cannot connect;The wizard also offers Cloudflare Tunnel, an ngrok static domain, and an existing HTTPS URL for remote use. Remote modes require Auth0 and will not write a misleading, unusable configuration if Auth0 is skipped. It validates domains and URLs, then writes .env with 600 permissions—backing up an existing file to .env.bak first.
If a virtual environment is active, install and run both commands through that environment:
To verify that the command belongs to the active environment on macOS/Linux:
The first two paths should normally point inside .venv/bin. If they point to /opt/homebrew/bin while a virtual environment is active, reinstall with python -m pip install universal-host-manager-mcp.
Prefer to do it by hand? Create a .env file (copy .env.example if you installed from source) with an explicitly restricted workspace:
Never commit .env.
This project uses FastMCP's Auth0Provider fixed-client OAuth integration.
Open auth0.com, create an account, and open the Auth0 Dashboard.
Go to Applications → APIs → Create API.
Use your public MCP URL as its Identifier (audience), for example https://mcp.example.com/. Keep RS256 as the signing algorithm.
Go to Applications → Applications → Create Application, enter a name, select Regular Web Application, and create it.
Set Application Ownership to First-party. Open Application > API Access, select the API you created, and enable User-delegated Access.
On Auth0's Integrate into your application page, click Copy above the .env block. The wizard can import AUTH0_DOMAIN, AUTH0_CLIENT_ID, and AUTH0_CLIENT_SECRET from your clipboard or from a pasted block. If Auth0 displays MASKED, reveal and copy the real Client Secret from the application's Settings tab; masked secrets are rejected.
Copy the API's Identifier into AUTH0_AUDIENCE when the wizard asks for it. It is intentionally separate because Auth0's application .env block does not contain the API audience.
In the Auth0 application's Settings, use the MCP server's public origin (without /mcp) as follows:
| Auth0 field | Value |
|---|---|
| Application Ownership | First-party |
| Application Type | Regular Web Application |
| Application Login URI | Leave blank |
| Allowed Callback URLs | https://mcp.example.com/auth/callback |
| Allowed Logout URLs | https://mcp.example.com |
| Allowed Web Origins | https://mcp.example.com |
| Allowed Origins (CORS) | https://mcp.example.com |
| Allow Cross-Origin Authentication | Off / disabled |
| Cross-Origin Verification Fallback URL | Leave blank |
| API Identifier / Audience | https://mcp.example.com/ |
| Signing Algorithm | RS256 |
| Application > API Access | User-delegated Access enabled for the created API |
| MCP endpoint (entered in the AI client, not Auth0) | https://mcp.example.com/mcp |
Save the Auth0 application settings, then run the wizard. Never share the Client Secret or commit .env to Git.
The callback above is FastMCP's fixed upstream callback. Do not put Claude, ChatGPT, or Grok callback URLs into Auth0: those products are downstream MCP clients and FastMCP validates their redirect URIs separately during MCP client registration. Connect each product to https://mcp.example.com/mcp.
Auth0's Python quickstart also shows AUTH0_SECRET, APP_BASE_URL, PORT, and sample Flask code. They belong to Auth0's standalone sample web application and are not used by this MCP server; the wizard safely ignores them when importing the copied block.
Client notes:
https://chatgpt.com/connector_platform_oauth_redirect; add the public /mcp endpoint in ChatGPT developer mode./mcp endpoint and start OAuth when you connect.FastMCP also supports an Auth0 MCP-native/DCR path through Auth0MCPProvider. This repository currently uses the manually managed, fixed-client Auth0Provider path.
(Running from a source checkout with the .venv activated works the same way — the console script is installed by pip install -e ..)
With the default port, the Streamable HTTP endpoint is:
For an intentional local-only test without Auth0:
Do not use insecure mode on a publicly reachable endpoint.
After starting the server (and the tunnel for remote mode), verify it:
The server and tunnel must remain running; closing either makes a tunneled endpoint unavailable.
Install cloudflared, authenticate it and create a named tunnel:
Create ~/.cloudflared/config.yml:
Validate and run it:
No reviews yet — be the first to share how this listing worked for you.
Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.
[](https://allmcps.com/mcp/universal-host-manager-mcp)<a href="https://allmcps.com/mcp/universal-host-manager-mcp"><img src="https://allmcps.com/api/badge/universal-host-manager-mcp?style=directory" alt="Universal Host Manager MCP on AllMCPs" /></a>