{"repo":"khuynh22/mcp-wireshark","free":true,"listed":false,"github":"https://github.com/khuynh22/mcp-wireshark","clone":"git clone https://github.com/khuynh22/mcp-wireshark.git","description":"An MCP server that integrates Wireshark/tshark with AI tools and IDEs. Capture live traffic, parse .pcap files, apply display filters, follow streams, and export JSON - all via Claude Desktop, VS Code, or CLI. Cross‑platform, typed, tested, and pip‑installable.","language":"Python","stars":55,"topics":["claude-ai","mcp","model-context-protocol","network-analysis","packet-capture","python","wireshark","mcp-server","pcap","tshark"],"license":"MIT","category":"mcp-servers","readme_excerpt":"mcp-wireshark Community-maintained MCP server for Wireshark / tshark . Not affiliated with Wireshark or Anthropic. Give your AI assistant direct access to packet captures. Ask Claude to summarize a .pcap , follow a TCP stream, filter for a specific protocol, or capture live traffic — all without leaving the chat. --- Quick start with Claude Code That's it. Open Claude Code and try: \"Summarize ./capture.pcap and tell me which IPs talked the most.\" --scope user makes the server available across every Claude Code project. Drop the flag to install it for the current project only. See claude mcp docs for more. Verify the install You should see mcp-wireshark listed. Inside Claude Code, ask: \"Run check installation.\" If tshark is on your PATH , it returns the version. If not, see troubleshooting. --- Tools The server exposes 14 tools, split cleanly between read tools (safe, no side effects) and write tools (capture traffic or write files). Both groups are annotated with the standard MCP readOnlyHint so any compliant client can surface the distinction. Read tools Safe to call freely — they only inspect state. Tool What it does -------------------- --------------------------------------------------------------------------------------------- check installation Verify tshark is installed and show version list interfaces List network interfaces available to capture from read pcap Read packets from a .pcap / .pcapng file (preview + total count) display filter Apply a Wireshark display fil","default_branch":null,"files":null,"tree":[],"storefront":"/r/khuynh22","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/khuynh22/mcp-wireshark/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}