VMware Harden MCP Server

AI-native VMware compliance and baseline enforcement. Sibling to the vmware- skill family. It runs locally over stdio via the published package.

People connecting automation tools to Claude, Cursor, VS Code, or another MCP client. The project is written in Python.

VERIFIED ACTIVE

LAST COMMIT 2026-08-24 · ★ 2 · #62 OF 194 MAINTAINED AUTOMATION · VERIFIED 2026-08-25

MIT · Python servers · how we verify → /methodology

01 · Install VMware Harden

before you install - you'll need

Set VMWARE_HARDEN_LAB_TARGET before connecting. ANTHROPIC_API_KEY is optional or environment-specific per the README.

Claude Code

claude mcp add zw008-vmware-harden -- uvx vmware-harden

Claude Desktop / Cursor / VS Code - add to config

{
  "mcpServers": {
    "zw008-vmware-harden": {
      "command": "uvx",
      "args": [
        "vmware-harden"
      ]
    }
  }
}

Same JSON for Cursor. For VS Code, rename the top-level key from `mcpServers` to `servers`.

Using another client? Same JSON, different key

Claude Desktop · mcpServers

Cursor · mcpServers

VS Code · servers

Windsurf · mcpServers

Zed · context_servers

Cline · mcpServers

Roo Code · mcpServers

Continue · mcpServers

LibreChat · mcpServers

Gemini CLI · mcpServers

Codex CLI · mcp_servers

Full setup guides: every client.

02 · Evidence

Security posture

What to check before giving this server access to your agent - from the registry, GitHub, and our own probes. We don't score safety; we show what's verifiable.

runs as local process (stdio) - runs on your machine with your user's permissions

license MIT - declared in the repository

pypi package vmware-harden - check the name against the project README before installing (PyPI has no namespace ownership)

registry namespace io.github.zw008 is GitHub-verified and matches the repo owner

03 · What VMware Harden can do

Prose above is summarized from the project's README and registry record - no invented capabilities.

Latest releases

v1.9.0 · 2026-08-12

> ⚠️ 升级后你的合规率会下降。这是修正,不是回归 - - 此前的高合规率是假的。 · 发生了什么 · 99 条内置规则中,76 条引用了任何采集器都不产出的 nodes.attrs 键。这类规则的 SQL 匹配 0 行,而引擎把「0 行」当作「全部合规」 - - 于是它们为从未真正检查过的配置签发合规结论。74 条静默通过(假阴性),2 条恒报违规。 · 唯一健康的是 STIG 基线(12/12),因为只有它有 parity…

v1.8.9 · 2026-08-06

vSphere 9 STIG-aligned baseline (EXPERIMENTAL/collector-pending) + STIG advanced-settings host collector + list_stig_controls/describe_stig_content_sync (6→8). ACC has no public API - harden keeps its own engine.…

v1.8.8 · 2026-08-01

Repo moved to the vmware-skills GitHub org (old zw008 links redirect). MCP Registry server renamed to io.github.vmware-skills/; old io.github.zw008/ deprecated. In-repo links updated. See RELEASE_NOTES.md.

04 · Who maintains VMware Harden

VMware Harden is maintained by zw008. We track 13 MCP servers from zw008 - 13 actively maintained, 106 combined GitHub stars, oldest repo from Feb 2026. Full record: all servers from zw008.

  1. VMware AIops AI-powered VMware vCenter/ESXi VM lifecycle and deployment with 31 MCP tools. ★ 69
  2. VMware Monitor Read-only VMware vCenter/ESXi monitoring with 27 MCP tools. Code-level safety. ★ 12
  3. VMware VKS vSphere with Tanzu (VKS): Namespace and TanzuKubernetesCluster lifecycle. Requires vSphere 8.x+. ★ 5
  4. VMware NSX VMware NSX networking management with 31 MCP tools: segments, gateways, NAT, routing, IPAM. ★ 5
  5. VMware NSX Security VMware NSX security: DFW policies, security groups, tags, Traceflow, IDPS - 21 MCP tools. ★ 4
  6. VMware Storage VMware vSphere storage management with 11 MCP tools: datastores, iSCSI, vSAN. ★ 2

05 · Facts

category
automation - ranked #62 of 194 actively-maintained automation servers as of 2026-08-25.
release cadence
10+ releases in the last 90 days (latest 2026-08-12)
registry
io.github.zw008/vmware-harden (active, first published 2026-05-04 · 31 versions)
packages
pypi:vmware-harden

06 · VMware Harden FAQ

What is VMware Harden?

AI-native VMware compliance and baseline enforcement. Sibling to the vmware- skill family. It runs locally over stdio via the published package.

Is VMware Harden still maintained?

Yes - as of 2026-08-25, its last commit was 2026-08-24 and it shipped 10+ releases in the last 90 days. We re-verify nightly.

How do I install VMware Harden?

Run `uvx vmware-harden`. The README documents 2 environment variables (ANTHROPIC_API_KEY, VMWARE_HARDEN_LAB_TARGET) to set first. Set VMWARE_HARDEN_LAB_TARGET before connecting. ANTHROPIC_API_KEY is optional or environment-specific per the README. You can also paste the ready-made client config above.

Does VMware Harden run locally?

Yes - it's a stdio server: it runs on your machine (via uvx) with your user's permissions. Your data stays local unless the server itself calls external APIs.

07 · Alternatives to VMware Harden