MCP低风险未认领

mcp-airlock

Governance proxy for MCP servers: allowlist, forced dry run, human confirmation, blast radius, audit

Shalimov04shalimov04/mcp-airlock★ 18更新于 2026年9月16日

server.json

{
  "$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
  "name": "io.github.Shalimov04/mcp-airlock",
  "description": "Governance proxy for MCP servers: allowlist, forced dry run, human confirmation, blast radius, audit",
  "title": "mcp-airlock",
  "repository": {
    "url": "https://github.com/Shalimov04/mcp-airlock",
    "source": "github"
  },
  "version": "0.2.0",
  "packages": [
    {
      "registryType": "pypi",
      "registryBaseUrl": "https://pypi.org",
      "identifier": "mcp-airlock",
      "version": "0.2.0",
      "runtimeHint": "uvx",
      "transport": {
        "type": "streamable-http",
        "url": "http://127.0.0.1:9000/mcp",
        "headers": [
          {
            "description": "Bearer JWT identifying the caller; the proxy refuses calls without a principal",
            "isRequired": true,
            "isSecret": true,
            "name": "Authorization"
          }
        ]
      },
      "packageArguments": [
        {
          "description": "Policy YAML: which tools are allowed and at which tier per environment",
          "isRequired": true,
          "format": "filepath",
          "type": "named",
          "name": "--policy",
          "valueHint": "policy.yaml"
        },
        {
          "description": "The MCP server being proxied",
          "isRequired": true,
          "type": "named",
          "name": "--upstream",
          "valueHint": "http://127.0.0.1:8080/mcp"
        },
        {
          "description": "Environment name, selects the tier column in the policy",
          "default": "prod",
          "type": "named",
          "name": "--env"
        }
      ],
      "environmentVariables": [
        {
          "description": "HS256 secret for verifying bearer tokens (or set AIRLOCK_JWKS_URL for OIDC)",
          "isSecret": true,
          "name": "AIRLOCK_JWT_SECRET"
        },
        {
          "description": "Key for signing confirmation tokens; set it when running more than one replica",
          "isSecret": true,
          "name": "AIRLOCK_SECRET"
        }
      ]
    }
  ]
}

权限

声明检测
运行代码—python
安装—pypi:mcp-airlock@0.2.0
安装时运行脚本—无
网络无无
需要的凭据AIRLOCK_JWT_SECRETAIRLOCK_SECRETAuthorizationAIRLOCK_JWT_SECRETAIRLOCK_SECRETAuthorization
工作区外的路径—无
智能体工具—无

检查

低风险 · 没有发现需要提醒的地方。

未经人工审核 · 已做规则检查;模型审核尚未开启。

版本

  1. #10.2.0最新2026年10月7日