This is a coherent VMware NSX management skill, but it can directly change live network infrastructure through MCP tools without the CLI confirmation safeguards.
Install only with a least-privilege NSX service account and review the target environment before enabling writes. Prefer CLI dry-run and confirmation for changes, and only allow MCP write tools when the user has explicitly approved the exact operation and target. Review mcp-config install output before applying it to local agent configs, keep ~/.vmware-nsx/.env locked down, and use a secret manager for production credentials where possible.