Local MCP server for CrowdSec operations, enabling inspection of decisions/alerts, summaries, and generation of audited single-IP action proposals without executing changes.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
process.env. You'll be asked to provide them before it can run.OPENAI_API_KEYAGENTIC_REVIEW_MODELGITHUB_TOKENGITHUB_REPOSITORYGITHUB_EVENT_PATHGITHUB_STEP_SUMMARYPR_TITLEPR_BODYCROWDSEC_LAPI_URL— CrowdSec LAPI base URL. Required for supported read operation.CROWDSEC_LAPI_KEY— CrowdSec LAPI key for decision reads.CSCLI_PATH— Command name/path used only when formatting prepared potential_cscli_command text. The MCP does not run cscli.DEFAULT_WINDOW— Default lookback window, defaults to 24h.WRITE_AUDIT_LOG_PATH— JSON Lines audit trail for prepared write intents, defaults to crowdsec-write-audit.jsonl.LOG_LEVEL— Python log level, defaults to INFO.[](https://m8ven.ai/mcp/frli4797-crowdsec-mcp-1o4wdj)