Enables auditors to scan cloud IAM policies for privilege-escalation paths, wildcards, and risky grants directly within Cursor or Claude Code, using a deterministic rule engine that runs entirely on local infrastructure.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
process.env. You'll be asked to provide them before it can run.LOG_LEVELDATA_DIRFINDINGS_DB_PATHOLLAMA_BASE_URLVLLM_API_URLDEFAULT_OLLAMA_MODELDEFAULT_VLLM_MODELLLM_TIMEOUT_SECONDSLLM_MAX_RETRIESLLM_RETRY_BACKOFF_SECONDSLLM_NARRATIVE_ENABLED— No GPU / macOS? Set =false — you still get every deterministic finding.SERVER_PORTSERVER_HOSTAUTH_ENABLED— "env": { "": "false", "LLM_NARRATIVE_ENABLED": "false" }IAM_SENTINEL_API_KEYSLICENSE_KEYSSO_ENABLEDJWT_ALGJWT_SECRETJWT_PUBLIC_KEYJWT_PUBLIC_KEY_FILEJWT_ISSUERJWT_AUDIENCEJWT_ACTOR_CLAIMJWT_ROLE_CLAIMJWT_ROLE_MAPTLS_CERT_FILETLS_KEY_FILECORS_ALLOW_ORIGINSOFFLINE_MODEGITHUB_STEP_SUMMARYCUSTOM_RULES_FILELICENSE_PUBLIC_KEYSENTINEL_URLIAM_SENTINEL_API_KEY[](https://m8ven.ai/mcp/pratikchandrathakur-iam-sentinel-zo1lt7)