Skip to main content
AllMCPs
BrowseBestCategoriesStackCompareToolsGuidesBlog
Log in Submit MCP

Stay in the loop

Get new MCP servers and top picks in your inbox.

AllMCPs

The open directory for discovering and installing Model Context Protocol servers.

AllMCPs on GitHub (opens in a new tab)
Launched onTiny Startupstinystartups.com
Explore
  • Browse servers
  • Best MCP servers
  • Categories
  • MCP clients
  • Agent prompts
  • Stack Builder
  • Compare servers
  • Random discovery New
  • Submit a server
  • Pricing & Boost Boost
Learn
  • Guides hub
  • What is MCP?
  • Install guide
  • Build an MCP server
  • Deploy an MCP server
  • Security guide
  • Troubleshooting
  • MCP for SEO & AEO
  • Protocol versioning
  • Blog & updates
Tools
  • All developer tools
  • Config generator
  • Config validator
  • Config auditor
  • MCP playground
  • Token calculator
  • OpenAPI β†’ MCP
  • Badge generator
For agents
  • REST API docs
  • Trust & traffic Live
  • Remote MCP server SSE β†— (opens in a new tab)
  • llms.txt β†— (opens in a new tab)
  • Catalog JSON β†— (opens in a new tab)
Company
  • About
  • Advertise Sponsor
  • Contact
  • GitHub β†— (opens in a new tab)
  • Terms
  • Privacy
AllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZoneAllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZone
Β© 2026 Jackalope Digital LLC. All rights reserved.
  1. Home
  2. πŸ”’ Security
  3. VMware Harden
VMware Harden logo
Health: ActiveRecent health check succeeded.Last checked 9/11/2026, 6:03:12 PM

VMware Harden

User RatingsBe the first to rate and review this MCP server!
View Repository3 GitHub StarsTotal stargazers on GitHub for the source repository (3 stars).Visit Website
vmwarecompliancesecuritydrift-detection

Read-only VMware vSphere compliance scanning, drift detection, baselines, coverage reporting, and remediation advice.

Quick Install

Automated & IDE Setup

Copy the AI prompt to install this server into Claude Code, Cursor, or another agent β€” or use 1-click editor setup below.

One-click editor setup isn’t available for this listing yet β€” we don’t have a confirmed install command, and we’d rather show nothing than point your editor at the wrong package or host. Follow the project’s own setup instructions, linked above.

Manual Client & Custom JSON ConfigExpand JSON β–Ύ
No confirmed setup config for this listing yet. We only publish a config block when the install details come from the project itself β€” its README, its docs, or a verified owner. We haven’t found those for zw008/VMware-Harden, and we’d rather show nothing than a guess you’d paste into your client. Follow the project’s own setup instructions for the current steps.
Install Directory Badge Claim listing AlternativesπŸ”’ More in Security

Overview

The zw008/VMware-Harden MCP server scans VMware vSphere and NSX observations against compliance baselines without modifying managed infrastructure. It supports CIS, vSphere SCG, STIG-aligned, 等保 2.0, PCI-DSS, EU NIS2, and BSI IT-Grundschutz rule sets, with drift detection and a local Twin database for collected observations. Its MCP tools return violations together with coverage data, helping distinguish compliant checks from checks that could not be evaluated. Reach for it when an agent needs read-only VMware posture assessment, baseline reporting, or remediation suggestions that can later be approved through vmware-pilot.

Use cases

β€’Scan vSphere hosts against CIS or industry compliance baselines
β€’Detect configuration drift across VMware inventory
β€’Review unevaluated checks caused by missing data or collectors
β€’Generate remediation suggestions for critical findings

Key features

β€’Read-only vSphere and NSX assessment
β€’Nine built-in baseline identifiers
β€’Coverage-aware violation reporting
β€’Local Twin database for observations
β€’Drift detection
β€’LLM-assisted remediation advice

Capabilities & Tool Schemas

Inspect callable tools, capabilities, and parameters exposed to AI agents by VMware Harden.

Extracted Tool Capabilities
Read-only vSphere and NSX assessment
Nine built-in baseline identifiers
Coverage-aware violation reporting
Local Twin database for observations
Drift detection
LLM-assisted remediation advice

How VMware Harden works

What zw008/VMware-Harden MCP server does

The zw008/VMware-Harden MCP server provides read-only compliance assessment for VMware vSphere and NSX environments. It collects configuration and inventory observations, evaluates them against built-in baselines, stores observations in a local Twin database, and reports violations and drift. The project is community-maintained, open source under the MIT license, and is not affiliated with VMware or Broadcom.

Nine baseline identifiers are available, representing 99 rules across the rule-bearing definitions and two v9 aliases. Coverage includes CIS ESXi 8.0 and 9.0, vSphere Security Configuration Guide versions 8 and 9, vSphere 9 STIG-aligned checks, China DJCP 2.0 Level 3, PCI-DSS 4.0, EU NIS2, and BSI IT-Grundschutz. The STIG-aligned v9 baseline is experimental and should not be treated as authoritative on ESXi 9.x.

How it works

The zw008/VMware-Harden MCP server runs collectors to gather data from VMware systems, then evaluates only rules for which the required attributes are available. A missing collector attribute leaves a rule unevaluated. Missing data for a particular host, such as from an unreachable node or insufficient account privileges, is reported separately as an undetermined node check.

MCP responses include a coverage block alongside violations. Therefore, a result with zero violations does not by itself prove compliance. The scan_target operation writes to the local Twin database at ~/.vmware-harden/twin.duckdb; it does not write to vSphere or NSX. All eight MCP tools are marked read-only. Remediation is suggested rather than applied, and write operations are deferred to vmware-pilot's approval and audit workflow.

Setup and configuration

Install the package with its collectors extra when scanning live targets:

bash
uv tool install "vmware-harden[collectors]"

For reporting against an existing Twin database, the base package can be installed without the collectors extra. Baselines can be listed with vmware-harden baseline list, scans can select a target and baseline, and results can be viewed with vmware-harden report or vmware-harden drift. A local dashboard can be started with vmware-harden web --port 8080.

Remediation advice can run without an external model key using a mock fallback. Setting ANTHROPIC_API_KEY enables the optional Anthropic-backed advice path described by the project. Source installation supports normal wheel installation with pip install ., and offline installation can use locally built wheels.

Tools and capabilities

  • Scan vSphere targets against selected compliance baselines.
  • Report violations and evaluation coverage in human-readable or JSON output.
  • Detect configuration drift using the local Twin database.
  • Generate remediation suggestions for critical findings.
  • Expose eight audited, read-only MCP tools.
  • Serve a local web dashboard.

Limitations and notes

The project does not apply remediation to managed VMware infrastructure. Results depend on collector coverage, host reachability, and the privileges of the scanning account. The v9 STIG baseline was verified on ESXi 8.0.3 but remains unverified for ESXi 9.x and vCenter-managed multi-host inventories. Treat those results as non-authoritative until validated in the target environment.

Read the full README β†’View source on GitHub β†’

Related MCP Servers

View all in Security View all alternatives
  • Shellward logoShellward

    AI Agent Security Middleware & MCP Server with 8-layer defense including prompt injection detection, DLP data flow tracking, command blocking, and PII detection. 7 MCP tools, zero dependencies.

    πŸ”’ Security2 views
    Compare vs Shellward β†’
  • Agentward logoAgentward

    Permission control plane for AI agents. MCP proxy that enforces least-privilege YAML policies on every tool call, classifies sensitive data (PII/PHI), detects dangerous skill chains, and generates compliance audit trails. Supports stdio and HTTP proxy modes.

    πŸ”’ Security2 views
    Compare vs Agentward β†’
  • Apktool MCP Server logoApktool MCP Server

    APKTool MCP Server is a MCP server for the Apk Tool to provide automation in reverse engineering of Android APKs.

    πŸ”’ Security3 views
    Compare vs Apktool MCP Server β†’
  • Jadx AI MCP logoJadx AI MCP

    JADX-AI-MCP is a plugin and MCP Server for the JADX decompiler that integrates directly with Model Context Protocol (MCP) to provide live reverse engineering support with LLMs like Claude.

    πŸ”’ Security3 views
    Compare vs Jadx AI MCP β†’

Adoption & maintenance

Factual signals from GitHub, npm, and our automated checks β€” not a rating.

GitHub stars
3
Stargazers on the source repository.
Last commit
1mo ago
Most recent push to the default branch.
Directory activity
4 views
Config copies, upvotes, and views on AllMCPs.

Reviews

No reviews yet β€” be the first to share how this listing worked for you.

Frequently Asked Questions about VMware Harden

Install the package and its collectors with `uv tool install "vmware-harden[collectors]"`. The collectors extra is needed for scanning live targets.

AllMCPs Directory Badge

Full Badge Customizer

Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.

Badge Style:
Live Dynamic SVG PreviewVMware Harden AllMCPs Directory Badge
Markdown (GitHub README)
[![AllMCPs](https://allmcps.com/api/badge/zw008-vmware-harden?style=directory)](https://allmcps.com/mcp/zw008-vmware-harden)
HTML Embed
<a href="https://allmcps.com/mcp/zw008-vmware-harden"><img src="https://allmcps.com/api/badge/zw008-vmware-harden?style=directory" alt="VMware Harden on AllMCPs" /></a>

Technical Specs & Signals

CategoryπŸ”’Security
PricingFree
More technical detailsExpand β–Ύ
AuthNo auth required
LicenseMIT
Last updatedSep 5, 2026
Views4
Unique ViewsTotal visits recorded for this listing page on AllMCPs.
Installs0
Installs & Copy ActionsTotal times users copied install commands or configuration snippets for this server.
GitHub stars3
GitHub Star CountTotal stargazers on GitHub representing community popularity (3 stars).
Last commit1mo ago
Last Repository CommitThe most recent commit or push recorded for this server's GitHub repository.Last commit on Aug 6, 2026
45Quality signal: Fair Β· 45/100How this signal is calculated β–Ύ
Server availabilityNot measured

Not scored for repo-hosted servers β€” we can't reach the running server, only its GitHub page. Hosted MCP endpoints are health-checked live.

Verified ownership10/20
Documentation & tools20/30
Adoption & activity3/15
Community engagement1/10

A guidance signal from public completeness & health data β€” not a user rating. New listings start lower and rise as they add docs, get verified, and grow adoption. Signals we can't observe for a listing are skipped, not counted against it.

β˜… Spotlight Slot

Feature Your MCP Server

Get maximum visibility for your server across our directory, search results, and detail pages.

Spotlight Your Server

Own this project?

This directory is pre-filled from public sources. Claim via GitHub README, site badge, or DNS TXT to unlock edit access and the Official badge β€” proof is checked automatically, then reviewed by our team.

Free dofollow backlink: add your website and place the AllMCPs badge on it β€” no claim needed. We detect it automatically and keep it verified as long as the badge stays live.

Claim & get free dofollow

Share & Embed

Add our SVG badge (dark/light directory styles) or embeddable widget to your site.

Explore more

More in πŸ”’ Security β†’Best MCP servers for Security β†’Alternatives to VMware Harden β†’Install in Claude DesktopInstall in CursorInstall in VS Code