# Proxmox VE (io.github.akmalovaa/proxmox-mcp@2.1.1)

> Source: <https://mcpindex.ai/server/io-github-akmalovaa-proxmox-mcp>
> Published: 2026-09-01 01:07:59+00:00

[← Index](/leaderboard)

# Proxmox VE

Manage Proxmox VE nodes, VMs, containers, storage and snapshots. Read-only by default.

The current version, v2.1.1, was published to the official MCP registry on 2026-09-01. It is distributed as proxmox-ve-mcp on PyPI and as the Docker image ghcr.io/akmalovaa/proxmox-mcp:2.1.1, filed under Docker & Containers by this index, and declares 8 environment variables. Removals and unreachable sources are measured across every server this index tracks, contract drift across the servers that answer in consecutive snapshots; [the index's current counts](/stats) put this record in context.

## Using Proxmox VE in Claude, Cursor, Gemini CLI, Cline, or Zed?

MCP tool contracts can change remotely with no version bump. The mcpindex gate pins each contract and **HOLDs the call** when it drifts-before your agent acts. Zero credentials. This is not the package install for this server itself (use **Install this server** for that).

Rewrites your MCP host config so each server launches behind the gate. Inspect first: curl -fsSL https://mcpindex.ai/install.sh | less

```
uv tool install mcpindex-gate && mcpindex-config-wire
```

[method](/methodology)

Verdict not yet evaluated for this tool. The semantic screen takes adversarial cases first; coverage rolls out as the corpus expands (15/150 labels to graduation). The deterministic conformance probe is built but has not yet run on the public corpus, so a recorded verdict here is REVIEW or UNVERIFIED, never a clearing ALLOW. Until a verdict is recorded, an agent should treat this tool as not-yet-cleared and fall back to its own checks. Method: [the eval, four-state verdict, honest limits](/methodology).

Own this server? [Screen its description →](/screen)

## That verdict was true at screening time (snapshot 2026-09-01).

Contracts can change after screening, with no version bump. The gate pins Proxmox VE’s tool contracts on first sight and holds any silent change before your agent acts - the check that keeps being true on Tuesday.

[See your first HOLD in 2 minutes →](/guides/install-the-gate-first-hold)

Related: [how to trust an MCP server](/guides/how-to-trust-an-mcp-server) · [screen before install](/guides/screen-mcp-server-before-install) · [silent contract drift](/guides/mcp-silent-contract-drift)

`PROXMOX_HOST`

Proxmox host IP or hostname.

`PROXMOX_USER`

API user, including the realm.

`PROXMOX_TOKEN_NAME`

API token name. Use this plus PROXMOX_TOKEN_VALUE, or PROXMOX_PASSWORD.

`PROXMOX_TOKEN_VALUE`

API token secret.

`PROXMOX_PASSWORD`

Password, used only when no API token is set.

`PROXMOX_PORT`

Proxmox API port.

`PROXMOX_VERIFY_SSL`

Verify the TLS certificate. Proxmox self-signs by default.

`PROXMOX_RISK_LEVEL`

Which tools exist: read-only, plus lifecycle, or everything.

`PROXMOX_HOST`

Proxmox host IP or hostname.

`PROXMOX_USER`

API user, including the realm.

`PROXMOX_TOKEN_NAME`

API token name. Use this plus PROXMOX_TOKEN_VALUE, or PROXMOX_PASSWORD.

`PROXMOX_TOKEN_VALUE`

API token secret.

`PROXMOX_PASSWORD`

Password, used only when no API token is set.

`PROXMOX_RISK_LEVEL`

Which tools exist: read-only, plus lifecycle, or everything.

[methodology](/methodology)

[Terminal49io.github.Terminal49/terminal49](/server/io-github-terminal49-terminal49)

Find and monitor ocean shipments and containers, and create new tracking requests.

[Cortex RMCPai.dinglebear/cortex-rmcp](/server/ai-dinglebear-cortex-rmcp)

Rust MCP server for homelab logs, syslog, Docker logs, FTS search, and AI transcript correlation.

[io.github.alisaitteke/docker-mcpio.github.alisaitteke/docker-mcp](/server/io-github-alisaitteke-docker-mcp)

MCP server for managing Docker containers, images, networks, volumes, and registries
