Agent♥︎Age
Catalog

Assay MCP Server

Official

by Rul1an · Rust

Policy-enforcing MCP proxy with portable evidence output.

io.github.Rul1an/assay-mcp-server (MCP)

This MCP server is a policy-enforcing proxy that produces portable evidence output for privileged MCP tool actions. Its “Assay” approach records decisions and observations from tool execution, including what remains unproven, enabling offline, deterministic review and replay rather than relying on an agent’s self-reporting.

🛠️ Key Features

  • Policy-enforcing MCP proxy
  • Portable evidence output (“Assay” evidence profile)
  • Deterministic, fail-closed enforcement
  • Reference producer model for enforcement output
  • Optional stronger Linux observation via eBPF/LSM
  • Evidence includes observed results and unproven elements

🚀 Use Cases

  • Verifying privileged MCP tool actions in review workflows
  • Offline verification and reproducibility of tool execution claims
  • CI-native policy enforcement without a backend
  • Agent security and provenance tracking for tool actions

⚡ Developer Benefits

  • Recomputable evidence profiles for privileged actions
  • Offline reviewer replay of claims
  • Clear separation between enforcing proxy output and contract

⚠️ Limitations

  • Kernel-level (eBPF/LSM) observation is optional and Linux-specific
  • Evidence is specific to privileged MCP tool actions

Topics

rustai-agentsmcppolicy-as-codemcp-serverpolicy-enforcementagent-securityevidence-bundlesgithub-actionsprovenanceebpfmcp-securityattestationoffline-verification

Related servers

More in Security