protogrid

Search / in.termal/termalin-web

termalin-web

R1 · needs a key

Run commands and read/write files on your servers over Termalin's keyless tunnels (hosted MCP).

v1.0.0 · active · website · descriptor JSON · versions

An agent can connect on its own if it already holds TERMALIN_WEB_TOKEN.Remote endpoint behind a static API key or header. The registry never sees the value; the agent fills the placeholder.
Quality75good
Trust79of 100
Uptime, 30 days95%
Latency p50520 ms

Connect

8 clients · secrets stay placeholders
{
  "mcpServers": {
    "termalin-web": {
      "type": "http",
      "url": "https://termal.in/api/v1/mcp",
      "headers": {
        "Authorization": "Bearer ${TERMALIN_WEB_TOKEN}"
      }
    }
  }
}
claude mcp add --transport http termalin-web https://termal.in/api/v1/mcp --header "Authorization: Bearer ${TERMALIN_WEB_TOKEN}"
[mcp_servers.termalin-web]
url = "https://termal.in/api/v1/mcp"
bearer_token_env_var = "TERMALIN_WEB_TOKEN"
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "termalin-web": {
      "type": "remote",
      "url": "https://termal.in/api/v1/mcp",
      "enabled": true,
      "headers": {
        "Authorization": "Bearer {env:TERMALIN_WEB_TOKEN}"
      }
    }
  }
}
{
  "mcpServers": {
    "termalin-web": {
      "type": "http",
      "url": "https://termal.in/api/v1/mcp",
      "headers": {
        "Authorization": "Bearer ${TERMALIN_WEB_TOKEN}"
      }
    }
  },
  "deeplink": "cursor://anysphere.cursor-deeplink/mcp/install?name=termalin-web&config=eyJ0eXBlIjoiaHR0cCIsInVybCI6Imh0dHBzOi8vdGVybWFsLmluL2FwaS92MS9tY3AiLCJoZWFkZXJzIjp7IkF1dGhvcml6YXRpb24iOiJCZWFyZXIgJHtURVJNQUxJTl9XRUJfVE9LRU59In19"
}
{
  "servers": {
    "termalin-web": {
      "type": "http",
      "url": "https://termal.in/api/v1/mcp",
      "headers": {
        "Authorization": "Bearer ${TERMALIN_WEB_TOKEN}"
      }
    }
  }
}
{
  "mcpServers": {
    "termalin-web": {
      "httpUrl": "https://termal.in/api/v1/mcp",
      "headers": {
        "Authorization": "Bearer ${TERMALIN_WEB_TOKEN}"
      }
    }
  }
}
extensions:
  "termalin-web":
    enabled: true
    name: "termalin-web"
    type: streamable_http
    uri: "https://termal.in/api/v1/mcp"
    headers:
      "Authorization": "Bearer ${TERMALIN_WEB_TOKEN}"
    timeout: 300

Placeholders to fill from your own secret store: ${TERMALIN_WEB_TOKEN}. The registry never accepts secret values.

Quality 75 / 100good

protocol75 · weight 25
  • warn
    protocol.modernnewest supported version is 2025-06-18; 2026-07-28 not supported, older versions are deprecated until 2027-07-28
  • n/a
    protocol.statelessonly applies to 2026-07-28 servers
  • pass
    protocol.transportstreamable HTTP
  • n/a
    protocol.list_ttlonly applies to 2026-07-28 servers
authorizationn/a · weight 15
  • n/a
    auth.prm, auth.as_metadata, auth.cimdno remote uses OAuth
  • n/a
    auth.secret_in_urlno templated URL
tool hygiene100 · weight 30
  • pass
    tools.descriptionsevery tool has a description
  • pass
    tools.description_lengthdescriptions are concise
  • pass
    tools.schemasevery tool has an object input schema
  • pass
    tools.annotations14 of 14 tools declare readOnlyHint or destructiveHint
  • pass
    tools.directory_hintsevery tool declares readOnlyHint, destructiveHint, idempotentHint and openWorldHint
  • pass
    tools.token_costabout 2,756 tokens to load every tool
  • pass
    tools.api_dumptools are not a one-to-one API dump
stability25 · weight 15
  • warn
    stability.changes16 tool changes in 30 days
  • fail
    stability.rug_pull2 tools kept their name but changed most of their description in 30 days; review before trusting them
dependenciesn/a · weight 15
  • n/a
    deps.known_vulns, deps.mcp_sdk_version, deps.resolvableno npm or PyPI package

14 tools, about 2,756 tokens to load them all · tool set 49d1e5f45ad0 · tools last changed 2026-10-08 · checked 2026-10-09 23:53 UTC

Tool changes

  • hosts_listchangeddescription, annotations
    before

    List the servers reachable through Termalin (your tunnel agents). Returns id, name, whether the server is online, the user commands run as, when it was last seen and its country. Use the id (or the exact name) as 'host' in the other tools.

    after · 75% of words in common

    List the servers reachable through Termalin (your tunnel agents). Returns id, name, whether the server is online, the user commands run as, when it was last seen, its country, and ownerNote — what the owner wrote about that server for you (what it is, what to leave alone); follow it. Use the id (or the exact name) as 'host' in the other tools.

  • data_schemaadded

    Describe one table of a database on one of your servers: its columns with type, whether they can be empty, default value and primary key. Call it before writing a query against a table you have not seen. Works for postgres, mysql, mariadb and sqlite.

  • data_tableschangedannotations
  • data_querychangedannotations
  • sftp_writechangedannotations
  • sftp_readchangedannotations
  • sftp_listchangedannotations
  • job_listadded

    List the recent background jobs on a server (newest first): id, state, start time and the command.

  • job_stopadded

    Stop a background job started with job_start (asks it to terminate, then forces it after two seconds). Does nothing if the job already finished.

  • job_statusadded

    Check a background job started with job_start: whether it is still running or finished (with its exit code), when it started, and the last lines of its output.

Showing the latest 10. Full history: list_changes · trend: quality JSON.

Checks run on what our credential-free, read-only probes observe; tools are never called and no code audit is performed. How it is computed.

Trust 79 / 100

no-repository
provenance55
liveness98
freshness85
hygiene80

+dns-namespace +website +reachable +uptime-95% ~updated-66d-ago -no-repository

Derived from observable signals (official registry feed and our own credential-free probes); no code audit performed. How it is computed.

Endpoints

remoteauthreachableuptime 30dp50protocollast ok
https://termal.in/api/v1/mcp streamable-httpapi_key ${TERMALIN_WEB_TOKEN}yes95%520 ms2025-06-182026-10-09

Tools (14)

data_querydestructiveRun a database query on one of your servers — passwordless. It executes the engine's own client on the host over Termalin's keyless tunnel, using the database's local trust (Postgres peer auth via `sudo -u postgres`, MySQL/MariaDB unix-socket via `sudo mysql`, redis-cli, mongosh, sqlite3) — so no database password is needed or stored anywhere. Read-only by default: only SELECT/SHOW-style statements run unless allowWrites is set (full-access keys only). SQL engines return CSV/TSV with a header. For MongoDB pass a shell expression, e.g. db.products.find({}).limit(20).toArray().
data_schemaread-onlyDescribe one table of a database on one of your servers: its columns with type, whether they can be empty, default value and primary key. Call it before writing a query against a table you have not seen. Works for postgres, mysql, mariadb and sqlite.
data_tablesread-onlyList the tables / collections / keys of a database on one of your servers — passwordless, over the same local-client path as data_query.
generate_passwordread-onlyGenerate a strong random password — handy when creating a user or setting a password on a server. Returns the password only; nothing is stored.
hosts_listread-onlyList the servers reachable through Termalin (your tunnel agents). Returns id, name, whether the server is online, the user commands run as, when it was last seen, its country, and ownerNote — what the owner wrote about that server for you (what it is, what to leave alone); follow it. Use the id (or the exact name) as 'host' in the other tools.
job_listread-onlyList the recent background jobs on a server (newest first): id, state, start time and the command.
job_startdestructiveStart a long-running shell command on a server in the background and return a job id right away. Use it for anything that can take more than about a minute — package installs, builds, backups, migrations, large downloads. The job keeps running after this call returns and survives the connection closing; its output goes to a log you read with job_status. The command runs from the login user's home directory.
job_statusread-onlyCheck a background job started with job_start: whether it is still running or finished (with its exit code), when it started, and the last lines of its output.
job_stopdestructiveStop a background job started with job_start (asks it to terminate, then forces it after two seconds). Does nothing if the job already finished.
sftp_listread-onlyList a directory on one of your servers over SFTP. Returns each entry's name, whether it's a directory, size and modified time. Runs keyless over Termalin's tunnel, like ssh_exec.
sftp_readread-onlyRead a text file from one of your servers over SFTP and return its contents. Files over 512 KB or non-text (binary) files are refused — use ssh_exec (e.g. sed/tail) for those.
sftp_writedestructiveCreate or overwrite a text file on one of your servers over SFTP. 'content' is written as UTF-8. Capped at 512 KB; for binary uploads use a terminal/scp instead.
ssh_execdestructiveRun a single shell command on one of your servers and return its combined output and exit code. Runs keyless over Termalin's tunnel — no SSH key, and the server needs no open inbound port. Each call is a fresh shell (cd does not persist — chain with &&). Keep a call under about 90 seconds: for anything longer (installs, builds, backups) use job_start and check on it with job_status.
ssh_exec_manydestructiveRun the same shell command on several of your servers at once and return each server's output and exit code. Use it to compare or check a fleet (disk space, versions, a service's state) in one call instead of one call per server. Up to 10 servers; the same 90-second limit as ssh_exec applies.

Schemas: list_tools.

Official server.json
{
  "name": "in.termal/termalin-web",
  "$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
  "remotes": [
    {
      "url": "https://termal.in/api/v1/mcp",
      "type": "streamable-http",
      "headers": [
        {
          "name": "Authorization",
          "isSecret": true,
          "isRequired": true,
          "description": "Bearer <API key> — create one at termal.in/account (API keys & MCP section)"
        }
      ]
    }
  ],
  "version": "1.0.0",
  "websiteUrl": "https://termal.in/mcp/",
  "description": "Run commands and read/write files on your servers over Termalin's keyless tunnels (hosted MCP)."
}