Skip to content
appsgit

Wireshark MCP

Wireshark MCP is an MCP server that adds tools to AI assistants such as Claude Desktop, Claude Code and Cursor. Professional network analysis with tshark. It has 286 GitHub stars, is released under the MIT license and runs locally with uvx wireshark-mcp.

github.com/bx33661/Wireshark-MCP (opens in a new tab)

Install Wireshark MCP

Generated from the server's MCP registry entry. Replace your-value with your own values.

Claude Desktop

claude_desktop_config.json
{
  "mcpServers": {
    "wireshark-mcp": {
      "command": "uvx",
      "args": [
        "wireshark-mcp"
      ]
    }
  }
}

Settings > Developer > Edit Config. macOS: ~/Library/Application Support/Claude/, Windows: %APPDATA%\Claude\. Restart Claude Desktop afterwards.

Claude Code

claude mcp add --transport stdio wireshark-mcp -- uvx wireshark-mcp

Cursor

.cursor/mcp.json
{
  "mcpServers": {
    "wireshark-mcp": {
      "type": "stdio",
      "command": "uvx",
      "args": [
        "wireshark-mcp"
      ]
    }
  }
}

Project file; use ~/.cursor/mcp.json to enable it in every project.

VS Code

.vscode/mcp.json
{
  "servers": {
    "wireshark-mcp": {
      "type": "stdio",
      "command": "uvx",
      "args": [
        "wireshark-mcp"
      ]
    }
  }
}

Config formats checked against the official docs on Oct 7, 2026: modelcontextprotocol.io (opens in a new tab), code.claude.com (opens in a new tab), cursor.com (opens in a new tab), code.visualstudio.com (opens in a new tab).

Tools (2)

Parsed from the Tools section of the README; check the repository for the current list.

  • analysis

    40

  • core

    32

About Wireshark MCP

Give your AI assistant a packet analyzer. Drop a .pcap file, ask questions in plain English — get answers backed by real tshark data.*

  • mcp
  • tshark
  • wireshark
  • ai-agents
  • network-security
  • packet-analysis
  • pcap

FAQ

Wireshark MCP FAQ

Still curious? Email info@appsgit.com.

What is Wireshark MCP?

Wireshark MCP is an MCP server that adds tools to AI assistants such as Claude Desktop, Claude Code and Cursor. Professional network analysis with tshark. It has 286 GitHub stars, is released under the MIT license and runs locally with uvx wireshark-mcp. The source code is at github.com/bx33661/Wireshark-MCP.

How do I install the Wireshark MCP MCP server?

Add the command uvx wireshark-mcp to your MCP client: put it in claude_desktop_config.json for Claude Desktop, run claude mcp add for Claude Code, or add it to .cursor/mcp.json (Cursor) or .vscode/mcp.json (VS Code). The snippets on this page are ready to paste.

Is Wireshark MCP free?

The server is open source under the MIT license, so running it is free. It does not declare any required API key.

Is Wireshark MCP actively maintained?

The most recent commit was on Sep 5, 2026. The latest release is v3.0.0, published Sep 5, 2026. appsgit only lists MCP servers with a commit in the last six months and re-checks every server daily.