hermes-mcp — security grade CAUTION, quality 68/100

Security audit verdict: CAUTION · quality 68/100

Flagged: sudo usage. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by mlennie · MCP Server · ★ 64

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is hermes-mcp safe to install? View the security audit →

About hermes-mcp

hermes-mcp An MCP server that lets Claude Desktop, Claude.ai (web + mobile), OpenAI Codex desktop, Cursor, and any other MCP client (via OAuth 2.1 or static bearer token) delegate tasks to a local Hermes Agent running on your own hardware. (See Client compatibility for the current matrix.) Use Claude (or another supported MCP client) as your daily chat. When you ask for something Hermes is built for — scheduling cron jobs, browser automation, email, document creation, persistent skills, WhatsApp/Slack messaging — your client calls Hermes through this bridge. ┌──────────────────────────────────────────────────────┐ │ MCP client │ │ (Claude Desktop / Claude.ai / Codex CLI / Cursor /…) │ └────────────────────────┬─────────────────────────────┘ │ HTTPS + OAuth 2.1 ▼ ┌──────────────────────┐ │ cloudflared tunnel │ (public HTTPS edge) └──────────┬───────────┘ │ ▼ localhost:8765 ┌──────────────────────┐ │ hermes-mcp │ (FastMCP, Streamable HTTP) │ - OAuth 2.1 + PKCE │ │ - HTTP - gateway │ └──────────┬───────────┘ │ HTTP /v1/chat/completions

Quick Facts

Stars64
Forks18
LanguagePython
CategoryMCP Server
LicenseApache-2.0
Quality Score67.6421908497872/100
Open Issues5
Last Updated2026-09-29
Created2026-05-09
Platformsbrowser, claude-code, mcp, python
Est. Tokens~15k

Compatible Skills

These tools work well together with hermes-mcp for enhanced workflows:

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular Python Agent Tools

Frequently Asked Questions

What is hermes-mcp?

hermes-mcp is MCP server that lets any llm (i.e. Claude Desktop) delegate tasks to a local Hermes Agent — cron jobs, web search, email, documents, and more.. It is categorized as a MCP Server with 64 GitHub stars.

What programming language is hermes-mcp written in?

hermes-mcp is primarily written in Python.

How do I install or use hermes-mcp?

You can find installation instructions and usage details in the hermes-mcp GitHub repository at github.com/mlennie/hermes-mcp. The project has 64 stars and 18 forks, indicating an active community.

What license does hermes-mcp use?

hermes-mcp is released under the Apache-2.0 license, making it free to use and modify according to the license terms.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools