cmdshellmcp: an allowlisted shell MCP server with Docker sandbox for AI agents
ag789 · reddit · 2026-10-04
A new open-source project, cmdshellmcp, gives AI agents limited local shell access safely: it exposes a small allowlisted set of Unix commands, safe file operations, patch application and URL fetching instead of unrestricted shell. Built in Python with fastmcp, listening on 127.0.0.1:8003 (streamable HTTP, optional --sse), it ships full Docker Debian sandbox setup — Dockerfile, setup scripts, DOCKER.md guide and a systemd service unit. Inspired by an earlier r/LocalLLaMA discussion on unsafe shell MCP servers.
More from coding & agent
- Dev doubts 24/7 agents: 'I can't imagine a use case for 80% of people' — felpix_ · 2026-10-04
- MCP is a cost problem for browser-based tools like Figma, but free for local apps — rms80 · 2026-10-04
- Rebuilding a $1.5M Medical AI Agent Pipeline with LangGraph: Six Agents Explained — MaryamMiradi · 2026-10-04
- DESIGN.md keeps Claude Code and Codex from shipping generic AI UI — dr_cintas · 2026-10-04
- Force Yourself to Spend One Full Day Working Only Through AI — TJLarkin23 · 2026-10-04
- Agent Skills Directory hits 1.5M installs, emerging as the new GitHub stars — iamsahaj_xyz · 2026-10-04