MCP server for anvillm
This repository has been archived on 2026-06-13. You can view files and clone it, but cannot push or open issues or pull requests.
Go to file
Levi Neely 73b7b2cb67 exec: default sandbox to "default" instead of "anvilmcp"
Consistent with ollie's own dispatchBuiltinExec.

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
2026-04-03 21:12:03 +02:00
claude Initial commit: standalone anvilmcp server 2026-03-20 15:44:53 +01:00
docs Initial commit: standalone anvilmcp server 2026-03-20 15:44:53 +01:00
kiro-cli Initial commit: standalone anvilmcp server 2026-03-20 15:44:53 +01:00
ollama Initial commit: standalone anvilmcp server 2026-03-20 15:44:53 +01:00
LICENSE.md Initial commit: standalone anvilmcp server 2026-03-20 15:44:53 +01:00
README.md README: link anvillm for sandbox config files 2026-04-01 01:11:32 +02:00
execute.go Delegate execute_code to ollie/exec shared package 2026-03-31 22:30:49 +02:00
execute_test.go Initial commit: standalone anvilmcp server 2026-03-20 15:20:14 +01:00
go.mod Delegate execute_code to ollie/exec shared package 2026-03-31 22:30:49 +02:00
go.sum Initial commit: standalone anvilmcp server 2026-03-20 15:20:14 +01:00
main.go exec: default sandbox to "default" instead of "anvilmcp" 2026-04-03 21:12:03 +02:00
metrics.go Initial commit: standalone anvilmcp server 2026-03-20 15:20:14 +01:00
mkfile Remove mcptools install (moved to anvillm) 2026-03-20 16:36:52 +01:00

README.md

anvillm-mcp

MCP server providing sandboxed code execution for LLM agents.

Overview

anvillm-mcp bridges MCP clients (Claude Desktop, Kiro, etc.) to shell execution with security isolation. It wraps script execution in a sandbox (landlock/landrun/bwrap) to limit filesystem and network access.

The execute_code tool implementation lives in ollie's exec package. anvillm-mcp imports it directly, so the two share the same sandboxed execution engine. ollie uses the same package as a built-in tool and does not need anvillm-mcp for execute_code — this server exists for MCP clients that lack a built-in equivalent.

Note: The tools themselves are hosted by anvillm via 9P at anvillm/tools/*. anvillm-mcp is optional — without it, you can still run tools directly:

bash <(9p read anvillm/tools/check_inbox.sh)

Installation

mk install

Backend Setup

Install MCP configuration for your backend:

./claude/install-mcp.sh      # Claude Desktop
./kiro-cli/install-mcp.sh    # Kiro CLI
./ollama/install-mcp.sh      # Ollama

Configuration

Sandbox configuration uses layered YAML files from ~/.config/anvillm/, provided by anvillm:

  • global.yaml — base configuration
  • sandbox/<name>.yaml — sandbox-specific overrides

See docs/ for detailed security and usage documentation.

Dependencies

  • ollie (required) — provides the exec package
  • anvillm (required) — serves tools via 9P, manages sessions/beads
  • landrun or bwrap (optional) — sandbox isolation