Minecraft Rcon Mcp — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Minecraft Rcon Mcp (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
An MCP server that exposes a Minecraft Java Edition server over RCON as a tool, plus an optional in-game AI chat listener: players type ai <question> in chat and Claude answers in-game, using RCON to read live world state.
It is configured entirely through environment variables, so it is independent of any particular server, world, or Minecraft version.
the response. Use it from any MCP client (Claude Code, VS Code / Copilot, etc.) to inspect or modify the live world.
prefixed with a configurable trigger (ai by default) are answered by Claude via the Anthropic API, with an agentic RCON tool-use loop and a rolling context window. Responses are posted back with /tellraw.
log path.
enable-rcon=true in server.properties)pip install git+https://github.com/scotteratigan/minecraft-rcon-mcpOr, for local development / use from a sibling repo:
pip install -e path/to/minecraft-rcon-mcpminecraft-rcon-mcp # console entry point
python -m minecraft_rcon_mcp # equivalentThe server speaks MCP over stdio, so it is normally launched by an MCP client rather than by hand. Example client config (.vscode/mcp.json):
{
"servers": {
"minecraft-rcon": {
"type": "stdio",
"command": "/path/to/.venv/Scripts/python.exe",
"args": ["-m", "minecraft_rcon_mcp"],
"env": {
"RCON_HOST": "localhost",
"RCON_PORT": "25575",
"RCON_PASSWORD": "your-rcon-password",
"LOG_PATH": "/path/to/server/logs/latest.log"
}
}
}
}Provide ANTHROPIC_API_KEY in the launching environment (not in committed files) if you want the in-game AI chat.
| Variable | Default | Purpose |
|---|---|---|
RCON_HOST | localhost | RCON host |
RCON_PORT | 25575 | RCON port |
RCON_PASSWORD | changeme | RCON password (match server.properties) |
LOG_PATH | ./logs/latest.log | Path to the server log to tail. Set this explicitly — the default is relative to the working directory. |
AI_CHAT_ENABLED | 1 | Set 0/false to run a pure RCON tool server (no log tailing, no Anthropic usage). |
AI_PREFIX | ai | Chat trigger prefix (case-insensitive). |
AI_MODEL | claude-sonnet-4-5 | Anthropic model for in-game chat. |
AI_MAX_CONTEXT | 10 | Exchanges retained in the rolling history. |
AI_MAX_TOKENS | 1024 | Max tokens per chat response. |
AI_SYSTEM_PROMPT | (generic built-in) | Replace the entire system prompt. |
AI_SYSTEM_PROMPT_EXTRA | (none) | Append server-specific context (Minecraft version, house rules) to the default prompt. |
ANTHROPIC_API_KEY | — | Required for in-game AI chat. |
This project uses uv for environment and dependency management, Ruff for linting and formatting, and ty for static type checking. The pinned Python version lives in .python-version; uv installs it for you.
uv sync # create .venv and install all deps (incl. dev tools)
uv run pytest # run the test suite
uv run ruff format # auto-format
uv run ruff check # lint (add --fix to auto-fix)
uv run ty check # type-checkMIT — see LICENSE.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.