PluginBench
MCP Server
Active
MIT

io.github.dockndevai/mcp-macos MCP Server

io.github.dockndevai/mcp-macos

What is the io.github.dockndevai/mcp-macos MCP server?

Observe & operate a Mac — files, processes, apps, shell, AppleScript, GUI — safe by default.

How to install io.github.dockndevai/mcp-macos

Copy-paste configuration for popular MCP clients.

transport: stdio
Config generated by PluginBench — verify against the source before use.
Environment / auth
  • MACOS_MODE

    Access mode: read-only | read-write | admin. Starts read-only; writes need read-write.

  • MACOS_ALLOW_EXEC

    Set true to allow run_command / run_applescript / kill_process (admin mode).

  • MACOS_ALLOW_DELETE

    Set true to allow delete_path (moves to Trash; admin mode).

  • MACOS_ALLOW_INPUT

    Set true to allow GUI input (type/key/click; admin mode). Needs Accessibility permission.

  • MACOS_PATH_ALLOWLIST

    Comma-separated path roots the agent may touch (empty = anywhere; protected paths still apply).

~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "mcp-macos": {
      "command": "npx",
      "args": [
        "-y",
        "@dockndevai/mcp-macos"
      ],
      "env": {
        "MACOS_MODE": "<YOUR_MACOS_MODE>",
        "MACOS_ALLOW_EXEC": "<YOUR_MACOS_ALLOW_EXEC>",
        "MACOS_ALLOW_DELETE": "<YOUR_MACOS_ALLOW_DELETE>",
        "MACOS_ALLOW_INPUT": "<YOUR_MACOS_ALLOW_INPUT>",
        "MACOS_PATH_ALLOWLIST": "<YOUR_MACOS_PATH_ALLOWLIST>"
      }
    }
  }
}

Related MCP servers

Oracle Cloud discovery + Terraform generation for AI agents — read-only, secret-safe.

1
TypeScript
MIT
View repository →

Safe-by-default MCP for OpenShift / Kubernetes: projects, pods, logs, deployments, routes.

0
TypeScript
MIT
View repository →

Outlook mail and OneDrive files via Microsoft Graph — read, search, send and organize.

0
TypeScript
MIT
View repository →

Manage Percona PostgreSQL + PgBouncer on Kubernetes — safe-by-default access modes and guards.

1
TypeScript
MIT
View repository →

Read Microsoft Teams teams, channels, chats and messages, and post/reply/send, safe by default.

0
TypeScript
MIT
View repository →

Ask your own documents with citations, plus durable memory for agents. Safe by default.

2
TypeScript
Apache-2.0
View repository →