Other · Local MCP server

Proxmox VE

Manage Proxmox VE nodes, VMs, containers, storage and snapshots. Read-only by default.

Visit Proxmox VE's website

What the MCP Registry states

The entry as published to the official MCP Registry (read 2026-10-04), latest version.

Registry name
io.github.akmalovaa/proxmox-mcp
Version
2.3.0
Status
Active
Category
other
Transport
stdio (local process)
Package
PyPI, OCI image (Docker)
Published
2026-09-01
Updated
2026-09-01
Publisher
akmalovaa (GitHub)
Website
github.com/akmalovaa/proxmox-mcp
Repository
github.com/akmalovaa/proxmox-mcp
Source
Registry API entry

Packages

RegistryPackageVersionTransportEnvironment variables
PyPIproxmox-ve-mcp2.3.0stdioPROXMOX_HOST (required), PROXMOX_PORT, PROXMOX_VERIFY_SSL, PROXMOX_TIMEOUT, PROXMOX_USER, PROXMOX_TOKEN_NAME, PROXMOX_TOKEN_VALUE (secret), PROXMOX_PASSWORD (secret), PROXMOX_RISK_LEVEL, PROXMOX_TOOLS_ALLOW, PROXMOX_REDACT_SECRETS, PROXMOX_MCP_TRANSPORT, PROXMOX_MCP_HOST, PROXMOX_MCP_PORT, PROXMOX_MCP_PATH, PROXMOX_MCP_JSON_RESPONSE, PROXMOX_MCP_ALLOWED_HOSTS, PROXMOX_MCP_ALLOWED_ORIGINS, SENTRY_DSN (secret)
OCI image (Docker)ghcr.io/akmalovaa/proxmox-mcp:2.3.0—stdioPROXMOX_HOST (required), PROXMOX_PORT, PROXMOX_VERIFY_SSL, PROXMOX_TIMEOUT, PROXMOX_USER, PROXMOX_TOKEN_NAME, PROXMOX_TOKEN_VALUE (secret), PROXMOX_PASSWORD (secret), PROXMOX_RISK_LEVEL, PROXMOX_TOOLS_ALLOW, PROXMOX_REDACT_SECRETS, PROXMOX_MCP_TRANSPORT, PROXMOX_MCP_HOST, PROXMOX_MCP_PORT, PROXMOX_MCP_PATH, PROXMOX_MCP_JSON_RESPONSE, PROXMOX_MCP_ALLOWED_HOSTS, PROXMOX_MCP_ALLOWED_ORIGINS, SENTRY_DSN (secret)

How to connect Proxmox VE

Proxmox VE runs locally from a Python package published to PyPI: proxmox-ve-mcp version 2.3.0. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Python; clients usually start it with uvx (from uv) or after pip install — the usual command is uvx proxmox-ve-mcp. It reads these environment variables: PROXMOX_HOST (required), PROXMOX_PORT, PROXMOX_VERIFY_SSL, PROXMOX_TIMEOUT, PROXMOX_USER, PROXMOX_TOKEN_NAME, PROXMOX_TOKEN_VALUE (secret), PROXMOX_PASSWORD (secret), PROXMOX_RISK_LEVEL, PROXMOX_TOOLS_ALLOW, PROXMOX_REDACT_SECRETS, PROXMOX_MCP_TRANSPORT, PROXMOX_MCP_HOST, PROXMOX_MCP_PORT, PROXMOX_MCP_PATH, PROXMOX_MCP_JSON_RESPONSE, PROXMOX_MCP_ALLOWED_HOSTS, PROXMOX_MCP_ALLOWED_ORIGINS and SENTRY_DSN (secret); set them in the client's configuration for this server.

Proxmox VE runs locally from a container image in an OCI registry such as Docker Hub or GitHub Container Registry: ghcr.io/akmalovaa/proxmox-mcp:2.3.0. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Docker or another OCI container runtime; started with docker run — the usual command is docker run -i --rm -e PROXMOX_HOST -e PROXMOX_PORT -e PROXMOX_VERIFY_SSL -e PROXMOX_TIMEOUT -e PROXMOX_USER -e PROXMOX_TOKEN_NAME -e PROXMOX_TOKEN_VALUE -e PROXMOX_PASSWORD -e PROXMOX_RISK_LEVEL -e PROXMOX_TOOLS_ALLOW -e PROXMOX_REDACT_SECRETS -e PROXMOX_MCP_TRANSPORT -e PROXMOX_MCP_HOST -e PROXMOX_MCP_PORT -e PROXMOX_MCP_PATH -e PROXMOX_MCP_JSON_RESPONSE -e PROXMOX_MCP_ALLOWED_HOSTS -e PROXMOX_MCP_ALLOWED_ORIGINS -e SENTRY_DSN ghcr.io/akmalovaa/proxmox-mcp:2.3.0. It reads these environment variables: PROXMOX_HOST (required), PROXMOX_PORT, PROXMOX_VERIFY_SSL, PROXMOX_TIMEOUT, PROXMOX_USER, PROXMOX_TOKEN_NAME, PROXMOX_TOKEN_VALUE (secret), PROXMOX_PASSWORD (secret), PROXMOX_RISK_LEVEL, PROXMOX_TOOLS_ALLOW, PROXMOX_REDACT_SECRETS, PROXMOX_MCP_TRANSPORT, PROXMOX_MCP_HOST, PROXMOX_MCP_PORT, PROXMOX_MCP_PATH, PROXMOX_MCP_JSON_RESPONSE, PROXMOX_MCP_ALLOWED_HOSTS, PROXMOX_MCP_ALLOWED_ORIGINS and SENTRY_DSN (secret); set them in the client's configuration for this server.

In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):

{
  "mcpServers": {
    "proxmox-mcp": {
      "command": "uvx",
      "args": [
        "proxmox-ve-mcp"
      ],
      "env": {
        "PROXMOX_HOST": "<value>",
        "PROXMOX_PORT": "<value>",
        "PROXMOX_VERIFY_SSL": "<value>",
        "PROXMOX_TIMEOUT": "<value>",
        "PROXMOX_USER": "<value>",
        "PROXMOX_TOKEN_NAME": "<value>",
        "PROXMOX_TOKEN_VALUE": "<secret>",
        "PROXMOX_PASSWORD": "<secret>",
        "PROXMOX_RISK_LEVEL": "<value>",
        "PROXMOX_TOOLS_ALLOW": "<value>",
        "PROXMOX_REDACT_SECRETS": "<value>",
        "PROXMOX_MCP_TRANSPORT": "<value>",
        "PROXMOX_MCP_HOST": "<value>",
        "PROXMOX_MCP_PORT": "<value>",
        "PROXMOX_MCP_PATH": "<value>",
        "PROXMOX_MCP_JSON_RESPONSE": "<value>",
        "PROXMOX_MCP_ALLOWED_HOSTS": "<value>",
        "PROXMOX_MCP_ALLOWED_ORIGINS": "<value>",
        "SENTRY_DSN": "<secret>"
      }
    }
  }
}

Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect

More other servers

All 6,730 →
ServerRunsEndpoint or package
ProvenSkills LabsAgent skills from the ProvenSkills Labs store, delivered with updates over one connector.Remote · HTTPmcp.provenskills.ai
Provider Trust — Verify a Source or ProviderVerify a source or provider before an AI agent trusts it. Evidence only; unknown stays unknown.Remote · HTTPsqueezeos-api.onrender.com
Proximens Oracle1000+ Generative Engine Optimization (GEO) principles exposed via MCP for AI agents.Remote · HTTPproximens.nl
Proximo — the Proxmox MCP you can hand the keysThe Proxmox MCP you can hand the keys: VE/PBS/PMG/PDM. Plan, prove, undo, diagnose. MCP/A2A/API.Local · stdioPyPI: proximo-proxmox
Proxy AIopsGoverned Traefik + Caddy + HAProxy ops: routes, upstreams, certs, 5xx RCA. 28 tools.Local · stdioPyPI: proxy-aiops
Proxy4agents MCPResidential proxy MCP for AI agents — geo-targeting, sticky sessions, anti-bot bypass.Local · stdionpm: bestproxy4agents-mcp
ProxykeyIssue, rotate and revoke scoped API-key passes for 25+ providers — the agent never sees a real key.Remote · HTTPmcp.proxykey.org
Proxylang website translationTranslate a website into other languages from one script tag. Free trial, no signup.Remote · HTTPproxylang.dev