This repository provides a set of utilities to build an MCP server (Model Context Protocol) that you can integrate with your conversational AI client.
Zeek mcp mcp server lets Claude, Cursor and other MCP clients work with Zeek MCP directly. This repository provides a set of utilities to build an MCP server (Model Context Protocol) that you can integrate with your conversational AI client.
This repository provides a set of utilities to build an MCP server (Model Context Protocol) that you can integrate with your conversational AI client.
Once connected, the assistant can call these 2 tools directly:
Description — ** Runs Zeek on the given PCAP file after deleting existing .log files in the working directoryReturns — ** A string listing generated .log filenames or "1" on errorThe server is distributed via PyPI as pandas, so most clients can run it without a manual build step. Add it to your MCP client's configuration and restart the client to pick it up — the copy-paste configs for Claude Desktop, Claude Code and Cursor are on this page.
PATH (for the execzeek tool) * pip (for installing Python dependencies) ---File and storage servers are what separate an assistant that talks about your documents from one that actually works with them. Zeek MCP sits in that group, and the shape of its toolset — Description, Returns — tells you what it is really for. Worth comparing against the other file systems servers in this directory before you commit to one, since several overlap in scope but differ sharply in setup cost and permissions.
| Tool | What it does |
|---|---|
| Description | ** Runs Zeek on the given PCAP file after deleting existing .log files in the working directory. |
| Returns | ** A string listing generated .log filenames or "1" on error. |
{
"mcpServers": {
"zeek": {
"command": "uvx",
"args": ["pandas"]
}
}
}Add to claude_desktop_config.json, then restart Claude Desktop.
PATH (for the execzeek tool) * pip (for installing Python dependencies) ---Scoped local file access — read, write, search and reorganise files in directories you explicitly allow.
Search and read your Drive — Docs, Sheets and files become context your assistant can actually use.
Query, modify and analyse local SQLite databases in conversation — the fastest way to chat with a data file.
Build a programmable telecommunications stack for connecting telephony services with the Internet via a cloud-based utility.
Chat with your second brain — search, read and write vault notes through the Local REST API.
Connects AI models to an Obsidian knowledge base for direct access and manipulation of notes and folders.