Skip to main content

MCP server exposing Agent Zero's code execution capabilities

Project description

Code Execution MCP Server

A Model Context Protocol (MCP) server that exposes Agent Zero's battle-tested code execution capabilities.

This MCP server allows any AI agent (Claude, GPT-4, etc.) to execute terminal commands and Python code on the host system using Agent Zero's proven implementation.

Features

  • Execute Terminal Commands: Run shell commands with full session persistence
  • Execute Python Code: Run Python code via IPython with session management
  • Multiple Sessions: Maintain separate execution contexts
  • Smart Output Handling: Automatic prompt detection, timeout management, and dialog detection
  • Cross-Platform: Works on Linux, macOS, and Windows (experimental)

Installation

# Clone or download this package
cd code-execution-mcp

# Install dependencies
pip install -e .

# For Windows support
pip install -e ".[windows]"

Configuration

The MCP server can be configured via environment variables:

# Shell executable (default: /bin/bash on Unix, cmd.exe on Windows)
export CODE_EXEC_EXECUTABLE=/bin/bash

# Init commands (semicolon-separated, run when creating new sessions)
export CODE_EXEC_INIT_COMMANDS="source /path/to/venv/bin/activate;export PATH=\$PATH:/custom/bin"

# Timeout configuration (in seconds)
export CODE_EXEC_FIRST_OUTPUT_TIMEOUT=30      # Wait for first output
export CODE_EXEC_BETWEEN_OUTPUT_TIMEOUT=15    # Wait between output chunks
export CODE_EXEC_DIALOG_TIMEOUT=5             # Detect dialog prompts
export CODE_EXEC_MAX_EXEC_TIMEOUT=180         # Maximum execution time

MCP Client Configuration

Add to your Claude Desktop config (~/Library/Application Support/Claude/claude_desktop_config.json on macOS):

{
  "mcpServers": {
    "code-execution": {
      "command": "python",
      "args": ["/Users/lazy/Projects/A0-code-tool-MCP/code-execution-mcp/main.py"],
      "env": {
        "CODE_EXEC_EXECUTABLE": "/bin/bash",
        "CODE_EXEC_INIT_COMMANDS": "source /Users/lazy/Projects/A0-code-tool-MCP/code-execution-mcp/.venv/bin/activate"
      }
    }
  }
}

Available Tools

execute_terminal

Execute a terminal command in the specified session.

Parameters:

  • command (string, required): The shell command to execute
  • session (integer, optional): Session number (default: 0)

Example:

await execute_terminal(command="ls -la", session=0)

execute_python

Execute Python code via IPython in the specified session.

Parameters:

  • code (string, required): The Python code to execute
  • session (integer, optional): Session number (default: 0)

Example:

await execute_python(code="import sys; print(sys.version)", session=0)

get_output

Get accumulated output from a terminal session.

Parameters:

  • session (integer, optional): Session number (default: 0)

Example:

await get_output(session=0)

reset_terminal

Reset a terminal session, closing and reopening it.

Parameters:

  • session (integer, optional): Session number (default: 0)
  • reason (string, optional): Reason for the reset

Example:

await reset_terminal(session=0, reason="Environment corrupted")

Session Management

Sessions allow maintaining separate execution contexts:

  • Session 0: Default session for general commands
  • Session 1+: Additional sessions for isolated environments

Each session maintains:

  • Shell state (environment variables, working directory)
  • Command history
  • Output buffer

Virtual Environment Considerations

Important: When the MCP server is launched from a virtual environment, shell sessions may NOT automatically inherit the venv activation.

Solution: Use init commands to explicitly activate your virtual environment:

{
  "env": {
    "CODE_EXEC_INIT_COMMANDS": "source /path/to/venv/bin/activate"
  }
}

Platform Support

  • Linux: Fully tested and supported
  • macOS: Fully tested and supported
  • Windows: Experimental support via pywinpty
    • Install with: pip install -e ".[windows]"
    • Use cmd.exe or powershell.exe as executable
    • Some features may behave differently

Architecture

This MCP server is a minimal wrapper around Agent Zero's code execution tool:

  • Preserves Agent Zero's battle-tested logic
  • No rewrites or reimplementations
  • Uses Agent Zero's helper modules unchanged:
    • tty_session.py - TTY session management
    • shell_local.py - Local shell interface
    • print_style.py - Output styling and logging
    • strings.py - String manipulation utilities

Security

WARNING: This MCP server allows full code execution on the host system. Security is the responsibility of the MCP client.

Only use with trusted AI agents and in controlled environments.

License

MIT License

This project wraps and reuses code from Agent Zero (Copyright (c) 2025 Agent Zero, s.r.o), which is licensed under the MIT License.

See the LICENSE file for full license text and attribution details.

Credits

Built on Agent Zero's proven code execution implementation.

This MCP server preserves and reuses Agent Zero's battle-tested code:

  • Core execution logic from code_execution_tool.py
  • Helper modules: tty_session.py, shell_local.py, print_style.py, strings.py
  • All system message prompts

All credit for the robust code execution implementation goes to the Agent Zero team.

Uses FastMCP for MCP protocol handling.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

code_execution_mcp-0.1.0.tar.gz (12.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

code_execution_mcp-0.1.0-py3-none-any.whl (14.5 kB view details)

Uploaded Python 3

File details

Details for the file code_execution_mcp-0.1.0.tar.gz.

File metadata

  • Download URL: code_execution_mcp-0.1.0.tar.gz
  • Upload date:
  • Size: 12.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.12

File hashes

Hashes for code_execution_mcp-0.1.0.tar.gz
Algorithm Hash digest
SHA256 f98067d5bc47a73906ff5c74ac51c97dd45aa6b3c231b48b8b8b3ee33922fce1
MD5 a84ae06438ee9f9371934625986fea5e
BLAKE2b-256 0cb0c52ec5babf657a4705d66bc1044ec5705cfb1309b0d9af06358c9a7777f9

See more details on using hashes here.

File details

Details for the file code_execution_mcp-0.1.0-py3-none-any.whl.

File metadata

File hashes

Hashes for code_execution_mcp-0.1.0-py3-none-any.whl
Algorithm Hash digest
SHA256 431cc7d29676155bdc5a0bce5891e2a23164524572b768d980d67bb3b9212ba1
MD5 7a6e23bdcbd65bcada85687cfb937156
BLAKE2b-256 cd4ee17633a5e52a2d55be54fe858c7ebe2422f74360ebf4b725e5ee9edf82ef

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page