Wireshark Network Analysis

Integrates with Wireshark's tshark tool to capture and analyze network packets with configurable filters, SSL decryption support,

tuliperis 35
Claude CodeClaude DesktopGeneric
View source ↗

SharkMCP provides network packet capture and analysis capabilities by integrating with Wireshark's tshark command-line tool, enabling AI assistants to perform real-time network monitoring and forensic analysis. Built with TypeScript using the Model Context Protocol SDK, it offers tools for starting background packet capture sessions with configurable filters and timeouts, analyzing existing PCAP files with custom display filters, and managing reusable configuration profiles for common analysis scenarios like TLS handshake inspection. The implementation includes cross-platform tshark detection, SSL keylog file support for encrypted traffic decryption, and intelligent output formatting with JSON, fields, and text modes, making it valuable for network troubleshooting, security analysis, and protocol debugging where AI-assisted packet inspection and pattern recognition can accelerate network diagnostics.

Source

Repository: https://github.com/tuliperis/sharkmcp

Maintain Wireshark Network Analysis?

Let people know it's listed here — add the badge (live metrics, light/dark aware) or a plain link to your README or docs.

[Wireshark Network Analysis on getagentictools](https://getagentictools.com/mcp/tuliperis-sharkmcp?ref=badge)