Agentβ™₯︎Age
Catalog

io.github.Rul1an/assay

Officialdeprecated

by Rul1an Β· Rust

The firewall for MCP tool calls. Block, audit, replay with evidence bundles.

io.github.Rul1an/assay β€” Model Context Protocol (MCP) Security Server

The io.github.Rul1an/assay MCP server acts as a firewall for MCP tool calls, providing block, audit, and replay capabilities with evidence bundles. Its purpose is to produce an open, recomputable evidence profile for privileged MCP tool actions, enabling offline review and replay.

πŸ› οΈ Key Features

  • Blocks MCP tool calls
  • Audits tool-call decisions
  • Replays actions using evidence bundles
  • Deterministic, fail-closed enforcement
  • Produces evidence via an enforcing proxy as the reference producer
  • Optional Linux kernel-level observation (eBPF/LSM)

πŸš€ Use Cases

  • Policy enforcement for MCP tool calls (policy-as-code)
  • Agent security workflows with evidence bundles
  • CI-native verification without a backend
  • Offline verification and provenance review

⚑ Developer Benefits

  • Recomputable evidence profiles for privileged actions
  • Offline replay to avoid trusting the agent’s self-report
  • Stronger observation on Linux via eBPF/LSM (optional)

⚠️ Limitations

  • Stronger kernel-level observation is available only as an optional Linux vantage
  • Tool count and specific tool interfaces are not provided in the available source data

Topics

rustai-agentsmcppolicy-as-codemcp-serverpolicy-enforcementagent-securityevidence-bundlesgithub-actionsprovenanceebpfmcp-securityattestationoffline-verification

Related servers

More in Security