Security, cost, and health governance proxy for MCP infrastructure. Enforces YAML-configurable security policies (blocklists, rate limits, token budgets), tracks real token costs via tiktoken, monitors server health with live JSON-RPC probes. Features OAuth 2.1/OIDC with RBAC, web dashboard, payload normalization, semantic shell AST analysis, mTLS, and a formal STRIDE threat model.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
process.env. You'll be asked to provide them before it can run.AUTH_GITHUB_IDAUTH_GITHUB_SECRETAUTH_GOOGLE_IDAUTH_GOOGLE_SECRETAUTH_SECRETAUTH_URLBENCH_CALLS_PER_REPLICABENCH_ITERATIONSBENCH_P95_EPSILON_MSBENCH_P95_THRESHOLD_MSBENCH_PROXY_CONCURRENCY_TIERSBENCH_PROXY_REPLICASBENCH_REPLICA_IDBENCH_STRICTBENCH_TOTAL_CALLSBENCH_WARMUPBENCH_WORKER_RESULT_FILECONCURRENT_P95_SLO_MSCONCURRENT_P99_SLO_MSCONCURRENT_PROXY_P95_SLO_MSCONCURRENT_PROXY_P99_SLO_MSCONCURRENT_PROXY_TIMEOUT_MSCONCURRENT_TOOL_CALLSCORPUS_MIN_ATTACK_SAMPLESCORPUS_MIN_F1DATABASE_URLGUARDIAN_DISABLE_SEMANTICGUARDIAN_PRO_CHECKOUT_URLGUARDIAN_SKIP_RESPONSE_SCANHARNESS_FILTER_IDSHARNESS_PYTHONLEMONSQUEEZY_STORE_IDLEMONSQUEEZY_WEBHOOK_SECRETLICENSE_JWT_SECRETLOG_LEVELNEXT_PUBLIC_APP_URLNEXT_PUBLIC_PRO_CHECKOUT_URL[](https://m8ven.ai/mcp/rudraneel93-mcp-guardian-1inzcw)