Skip to main content
Glama
capsulerun

Capsule Bash Server

Official
by capsulerun

Capsule Bash MCP

MCP Server

An MCP server that gives your AI agent the ability to run bash commands in a secure, persistent, sandboxed environment.

How It Works

Each session runs inside a WebAssembly sandbox. The sandbox provides:

  • Persistent state: cwd, env vars, and filesystem changes persist across commands within a session

  • Filesystem diff: every run response includes a diff of what changed on disk

  • Isolated memory: each session gets its own address space, no cross-session leakage

  • No host access: the sandbox cannot reach your host filesystem or network

Learn more about Capsule Bash.

Related MCP server: Code Executor MCP Server

Tools

Tool

Description

run

Run a bash command in a sandboxed session. Returns stdout, stderr, exit code, filesystem diff, and current state (cwd + env).

reset

Reset the filesystem and state (cwd, env vars) for a session back to their initial values.

sessions

List all active sessions.

Sessions

Commands within the same session_id share cwd, environment variables, and filesystem state across calls.

Example

Ask your AI agent:

"Write a Python script that averages a list of numbers."

The agent calls run sequentially:

{ "command": "mkdir -p /data && cd /data", "session_id": "custom_session" }
{ "command": "echo 'nums = [x for x in [1, 2, 3, []] if isinstance(x, int)]\nprint(sum(nums) / len(nums))' > avg.py", "session_id": "custom_session" }
{ "command": "python3 avg.py", "session_id": "custom_session" }

Each call returns stdout, stderr, exitCode, a filesystem diff, and the updated state to enrich context and keep trace in conversation history.

Setup

Add to your MCP client configuration (e.g. Claude Desktop, Cursor):

{
  "mcpServers": {
    "bash": {
      "command": "npx",
      "args": ["-y", "@capsule-run/bash-mcp"]
    }
  }
}

Limitations

  • Not all bash commands and options are implemented. Feel free to open an issue if a command is missing or behaves unexpectedly.

Install Server
A
license - permissive license
A
quality
D
maintenance

Maintenance

Maintainers
Response time
4dRelease cycle
6Releases (12mo)
Commit activity

Resources

Unclaimed servers have limited discoverability.

Looking for Admin?

If you are the server author, to access and configure the admin panel.

Related MCP Servers

View all related MCP servers

Related MCP Connectors

  • Operate your Linux servers from your LLM. Every action runs through an auditable allowlist.

  • Execute code in 8 languages (Python, JS, TS, Go, Java, C++, C, Bash) in gVisor sandboxes.

  • Let AI operate servers without SSH. Choose actions, approve risky changes, and audit every step.

View all MCP Connectors

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/capsulerun/bash'

If you have feedback or need assistance with the MCP directory API, please join our Discord server