Proxmox MCP Suite
About
Run Proxmox VE and Backup Server from Claude — 69 token-efficient, safety-gated tools with dry-run previews and a tamper-evident audit trail.
Details
- Author
- ahmetem
- Categories
- Cloud Service, Other, AI, Infrastructure
Jump to
Setup
Install Proxmox MCP Suite in your MCP client (Claude Desktop, Cursor, Windsurf, and others).
Repository: https://github.com/ahmetem/proxmox-mcp-suite
Follow the installation instructions in the repository README, then restart your MCP client.
Run your Proxmox VE cluster and Backup Server from Claude — deeply, safely, and without drowning the context window.
Quick start·Why this suite·What's inside·Safety·Config
Prereq:Claude Codeanduv(uvx). The servers run viauvx— nothing topip installby hand.
/plugin marketplace add ahmetem/proxmox-mcp-suite /plugin install proxmox-ve@proxmox-mcp-suite /plugin install proxmox-backup@proxmox-mcp-suite
Export your Proxmox credentials (seeConfiguration), restart Claude Code, and ask:
"How is the server? Any storage filling up?"— oneproxmox_health_overviewcall.
"Snapshot VM 102 as pre-upgrade, then reboot it."
"Is my last backup of CT 200 healthy?"
Most Proxmox MCP servers wrap the API and hand Claude raw JSON. This one is built for the thing that actually constrains an agent —context— and fornot breaking your infrastructure.
Modular by design — install only Proxmox VE, only PBS, or both.
- Guests— list/status, create VM & LXC from scratch, clone, power, resize
- Snapshots— create / rollback / delete (data-loss gated)
- Backups— vzdump create / list / restore (refuses silent overwrite)
- Storage & disks— pools, usage breakdown, physical disks + SMART
- LVM / ZFS— VG/thin, full ZFS: pools, datasets, snapshots, scrub, send, properties, disk-prepare & provisioning
- Exec— guest-VM SSH, host SSH (free + a read-only allow-listed variant safe for agents), LXCpct exec, service control, log tail
- Forensics & self-heal— task list/logs, backup-job inspection, stale@vzdumpsnapshot cleanup that unblocks failing backups
- Datastores & snapshots— status, usage, list, protect/forget
- Maintenance— garbage collection, verify jobs, prune (with dry-run)
- Tasks— status and logs by UPID
- Read-only by default— write-side tools stay inert untilPBS_ALLOW_WRITE=true
Read-only tools run freely. Everything that changes state requiresconfirm=true; anything that destroys persistent dataadditionallyrequiresi_understand_data_loss=true— so Claude only fires these after you clearly ask.
- dry_runpreviewson the highest-consequence mutations (create VM/CT, clone, restore) return the exact API call theywouldmake (secrets masked), without touching anything.
- Tamper-evident audit— every host/guest shell exec is appended to a hash-chained log (SHA-256, or HMAC-SHA256 withPROXMOX_AUDIT_HMAC_KEY).proxmox_audit_verifyrecomputes the chain and flags any altered, deleted, or reordered line.
- Token auth, never root passwords— API tokens are revocable and scope the blast radius.
Credentials are passed to the servers via environment variables — export them in the shell that launches Claude Code (no secret is stored in the plugin).
Proxmox VE— required:PROXMOX_HOST,PROXMOX_USER,PROXMOX_TOKEN_NAME,PROXMOX_TOKEN_VALUE. Optional:PROXMOX_PORT,PROXMOX_VERIFY_SSL, and the SSH-backed tools'PROXMOX_SSH_*. → full list in theserver repo.
Proxmox Backup Server— required:PBS_HOST,PBS_TOKEN_ID,PBS_TOKEN_SECRET,PBS_NODE. Optional:PBS_VERIFY_TLS,PBS_DEFAULT_DATASTORE, andPBS_ALLOW_WRITE(gates GC/prune/forget). →PBS server repo.
Each plugin launches its server withuvx, which fetches, installs and isolates it automatically from PyPI (pve-mcp,pbs-mcp) — no clone, no virtualenv, no manualpip install.uvxcaches the environment after the first launch, so later starts are instant. To pin a specific release, set a plugin'sargsto e.g.["pve-mcp==1.2.0"].
- Keep the Proxmox / PBS APIs on a trusted LAN or behind a VPN.
- Privilege-separate the API tokens; grant the narrowest role that works.
- Don't remove theconfirm/i_understand_data_lossguards.
Competitive intelligence platform with 24 tools — monitor competitor pricing, content, positioning, tech stacks, and how ChatGPT, Claude, and Gemini rank your brand.
MCP Server for full Easypanel control via Claude Code, Cursor and Claude Desktop.
A Model Context Protocol (MCP) server for managing app publishing on Huawei AppGallery Connect. Integrates directly with Claude Desktop or any MCP-compatible client.
Interact with Infactory APIs using Claude and other large language models.
Connect your Shopify store to Claude, Cursor, or Windsurf and get 100+ pre-calculated ecommerce metrics like net profit, blended CAC, per-channel ROAS, and customer LTV segments.
Create and publish websites from ChatGPT, Claude, Codex, Cline, and other AI agents with no account required and optional free custom domains.
A serverless Monzo → Claude connector on Cloudflare Workers
There are already a few Monzo MCP servers (partymola, BfdCampos, an npm one), and they're good — but they're all local stdio servers you run on your own machine. This is the first remote/serverless one I've found: it lives on a Cloudflare Worker, so you authenticate once and it follows you to every Claude surface, with nothing to keep running.
AI code reviews for GitHub, GitLab, Azure DevOps & Bitbucket PR/MR URLs from Cursor, Claude, or Copilot.
The DataFast MCP server lets MCP-compatible clients such as Codex, Claude Code, and Cursor query your analytics and manage your account through natural language.
Sign in to leave a review
Use Google, GitHub, or an email account so ratings stay tied to real people.
No reviews posted yet.





