Wireshark Network Analysis
SharkMCP provides network packet capture and analysis capabilities by integrating with Wireshark's tshark command-line tool, enabling AI assistants to perform real-time network monitoring and forensic analysis. Built with TypeScript using the Model Context Protocol SDK, it offers tools for starting background packet capture sessions with configurable filters and timeouts, analyzing existing PCAP files with custom display filters, and managing reusable configuration profiles for common analysis scenarios like TLS handshake inspection. The implementation includes cross-platform tshark detection, SSL keylog file support for encrypted traffic decryption, and intelligent output formatting with JSON, fields, and text modes, making it valuable for network troubleshooting, security analysis, and protocol debugging where AI-assisted packet inspection and pattern recognition can accelerate network diagnostics.
Composite of vulnerability cleanliness, spec conformance, provenance, stability, and usage signals — scanned and weighted by Cognium. Human and agent signals are tracked separately. Last scanned 2026-09-01.
Scan details: Circle-IR · 2026-09-01 · Appeal
View full trust & usage report →Metadata
- Version
- 1.0.0
- Skill type
- atomic
- Execution layer
- mcp-remote
- Category
- monitoring
- Source
- PulseMCP
- Repository
- github.com/tuliperis/sharkmcp
- Author type
- human
- Last scanned
- 2026-09-01
- Updated
- 2026-09-01
Use via MCP
Resolve Wireshark Network Analysis from your agent
Streamable HTTP transport at https://api.skillsregistry.net/mcp. No auth for read tools. Discovery: .well-known/mcp.json.
One command in your shell — Claude Code wires it up and verifies the connection. Run /mcp in any session to confirm.
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp --scope user for --scope project to commit it to .mcp.json.