Governed SSO/IAM operations for Keycloak and Authentik — login-failure, stale-permission, client-config, and MFA RCA, with unbypassable audit logging (MCP + CLI), budget/runaway guards, dry-run, and undo/rollback.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
process.env. You'll be asked to provide them before it can run.CLAUDE_SESSION_IDCLAUDE_CODECODEX_SESSIONOLLAMA_HOSTDEERFLOW_SESSIONIDENTITY_AUDIT_RATIONALE— IDENTITY_AUDIT_APPROVED_BY / are optionalIDENTITY_AUDIT_APPROVED_BY— IDENTITY_AIOPS_HOME, to attribute writes on theIDENTITY_AIOPS_HOME— , IDENTITY_AUDIT_APPROVED_BY to attribute writes on theIDENTITY_AIOPS_CONFIG— undo). points the MCP server at an alternateIDENTITY_READ_ONLY[](https://m8ven.ai/mcp/aiops-tools-identity-aiops-qt7eof)