Agent♥︎Age
Catalog

mcp-airlock

Official

by Shalimov04 · Python

Governance proxy for MCP servers: allowlist, forced dry run, human confirmation, blast radius, audit

MCP Airlock Server (io.github.Shalimov04/mcp-airlock)

This MCP server provides a governance proxy for MCP servers. It controls access and execution using an allowlist, supports a forced dry run mode, and can require human confirmation before proceeding. It also defines a blast radius and records audit information for governance-related actions.

🛠️ Key Features

  • Governance proxy for MCP servers
  • Allowlist-based control
  • Forced dry run capability
  • Human confirmation requirement
  • Blast radius controls
  • Audit of governance actions

🚀 Use Cases

  • Restricting which MCP servers or requests are permitted via allowlists
  • Testing changes safely using forced dry runs
  • Adding approval steps for sensitive operations with human confirmation
  • Limiting impact through blast radius boundaries
  • Maintaining traceability with audit records

⚡ Developer Benefits

  • Clear governance controls (allowlist, dry run, confirmation)
  • Controlled rollout and reduced risk via blast radius
  • Auditability for governance decisions

⚠️ Limitations

  • Only described capabilities are governance controls; no additional tools or behaviors are specified.

Topics

ai-agentsai-safetyaudit-logguardrailshuman-in-the-loopllm-toolsmcpmcp-servermodel-context-protocolpolicy-as-codeproxysecurityagentic-aillm-securitymcp-gatewaymcp-proxymcp-securitypython

Related servers

More in Security