0
/ 100
6 days ago
glama

MCP Sentinel

A security-hardened MCP server that enables AI assistants to securely manage and control a Linux server with multi-layer authentication, role-based access, and audit logging.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
🚨
Secret credentials may flow to a network call
1 flow detected: AUTHELIA_ISSUER. We can’t prove the destination matches the brand the credential belongs to.
🚨
Reads files from sensitive locations
Touches: /etc/passwd, /etc/passwd
⚠️
Known vulnerabilities in dependencies: 2 high
Affects packages this MCP installs at runtime. Upgrade or remove the affected dependency.
🔐
You'll be asked for 3 credentials: ADMIN_API_KEY, AUDIT_HMAC_KEY, MCP_STATE_BACKUP_KEY
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// known CVEs in dependencies2 high1 low

Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.

high@modelcontextprotocol/sdk@1.25.4GHSA-345p-7cg4-v4c7

@modelcontextprotocol/sdk has cross-client data leak via shared server/transport instance reuse

highjs-yaml@5.2.1GHSA-pm4m-ph32-ghv5

js-yaml: Exponential parsing time in flow collections leads to denial of service

lowzod@3.22.0GHSA-m95q-7qp3-xv42

Zod denial of service vulnerability

Depend on this server? Get alerted when its CVEs change.Watch this server free →
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configACME_CHALLENGE_PORT
configACME_DOMAIN
configACME_EMAIL
🔐 secretADMIN_API_KEYgenerated with keygen.js>
configALLOWED_IPS203.0.113.10,192.168.1.0/24 # optional
configALLOWED_ORIGINS
configAUDIT_CHECKPOINT_FILE
configAUDIT_CONSOLE
🔐 secretAUDIT_HMAC_KEY
configAUDIT_LOG_DIR
configAUDIT_VERIFICATION_STATUS_FILE
configAUTHELIA_BACKUP_DIR
configAUTHELIA_CONFIG_FILE
configAUTHELIA_ISSUER
configAUTHELIA_JWKS_URL
configAUTHELIA_MAPPINGS_FILE
configAUTHELIA_RESTART_SETTLE_MS
configAUTHELIA_USERS_FILE
configAUTH_RATE_LIMIT_MAX_REQUESTS
configAUTH_RATE_LIMIT_WINDOW_MS
configBROKER_ALLOWED_SHELLS
configBROKER_CONFIG_BACKUP_ROOT
configBROKER_CONFIG_REGISTRY
configBROKER_FIREWALL_PORTS
configBROKER_FIREWALL_ROLLBACK_SCRIPT
configBROKER_FIREWALL_SNAPSHOT_ROOT
configBROKER_GIT_ALLOWED_REPOS
configBROKER_MANAGED_GROUPS
configBROKER_MANAGED_SERVICES
configBROKER_MANAGED_USERS
configBROKER_MANAGEMENT_PORTS
configBROKER_MAX_OUTPUT_BYTES
configBROKER_MAX_PROJECT_FILE_BYTES
configBROKER_PROTECTED_SERVICES
configCONTROL_PLANE_KEY_ID
configCONTROL_PLANE_STATE_FILE
configCREDENTIALS_DIRECTORY
configDB_CA_ROOT
configDB_CONFIG_FILE
configGIT_ALLOWED_REPOS/srv/my-app,/srv/another-app
configHOST
configIDLE_TIMEOUT_MS
configJWT_EXPIRY
configJWT_REVOCATION_FILE
configKEYSTORE_FILE
configMAX_OUTPUT_SIZE
configMAX_SESSIONS_PER_USER
configMAX_SSE_CONNECTIONS
configMCP_BROKER_SOCKET
configMCP_CAPABILITIES_FILE
configMCP_LEGACY_EXPORT_DIR
configMCP_LEGACY_EXPORT_OFFLINE
configMCP_LEGACY_JSON_FILEFor JSON control-plane state, also set =/absolute/path/to/control-plane.json; the exporter writes a protected sidecar verification marker that the dry-run and apply migration both authenticate.
configMCP_POLICY_FILE./policy.json
configMCP_PREFLIGHT_ROOT
configMCP_RESTORE_OFFLINE
configMCP_ROTATE_OFFLINE
configMCP_SSH_CREDENTIAL_DIR
configMCP_SSH_RUNTIME_DIR
configMCP_STATE_BACKUP_DIR
🔐 secretMCP_STATE_BACKUP_KEY
configMCP_STATE_BACKUP_KEY_ID
configMCP_STATE_BACKUP_RETENTION_DAYS
configMCP_STATE_DB/var/lib/mcp-sentinel/state.sqlite3
configOAUTH_ACCESS_TOKEN_TYPES
configOAUTH_EXTERNAL_URL
configOAUTH_RESOURCE_URL
configPORT
configPROJECT_ALLOWED_ROOTS/srv/my-app,/srv/another-app
configPROJECT_TEST_ROOTS
configPUBLIC_URL
configRATE_LIMIT_MAX_REQUESTS
configRATE_LIMIT_WINDOW_MS
configSANDBOX_ALLOW_DOCKER
configSANDBOX_ALLOW_NETWORK
configSANDBOX_APPARMOR_PROFILE
configSANDBOX_NETWORK
configSANDBOX_RUNTIME
configSANDBOX_SECCOMP_PROFILE
configSSH_ORIGINAL_COMMAND
configTLS_CERT_PATH
configTLS_KEY_PATH
configTOOL_MAX_OUTPUT
configTOOL_MAX_WALL_TIME
configTRUSTED_PROXIES
configTRUST_PROXY
configUSE_HTTPS
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 4 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/marketingdotlimited-mcp-sentinel-mazo8m)](https://m8ven.ai/mcp/marketingdotlimited-mcp-sentinel-mazo8m)
commit: 6418160232d817f422dd6c2661ad34418a7f1fa2
code hash: bc071abba5866b406de05588ea6f57fe9913d8327c0b26463d46e5c1efcd9af2
verified: 7/25/2026, 8:44:23 AM
view raw JSON →