spindl-workshop
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@spindl-workshopwhich enabled rules allow inbound RDP from the internet?"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
spindl-workshop: MCP Response Spooling (CyberCon2026)
Hands-on companion repository for the CyberCon2026 workshop on MCP spooling architecture, built on spindl.
You will run the same simulated firewall MCP server twice, ask it the same security questions, and watch what happens to your client's context window.
Exercise 1 (naive mode): the server returns raw dumps. A 1,200 rule rulebase lands in your model's context in full.
Exercise 2 (spindl mode): the same server, same data, same tools, with spindl's response spooler enabled. Large results are stored server-side and you explore them with query, aggregate, and distinct tools.
All data is fabricated. The device, vendor, addresses, rules, and logs are fictional and generated deterministically, so everyone in the room sees identical data.
Prerequisites
uv installed (
uv --versionto confirm). uv will fetch a suitable Python (3.10+) automatically if needed.An MCP client that supports local stdio servers. Tested with Claude Desktop and VS Code (Copilot agent mode). See
clients/for configuration snippets, including notes for ChatGPT/Codex users.You should be comfortable editing your client's MCP configuration file.
Related MCP server: MCP-Firewall
Smoke test (do this before the workshop)
uvx --from git+https://github.com/Cognisn/spindl-workshop spindl-workshop --helpIf you see the usage text with --mode {naive,spindl}, you are ready.
Exercise 1: the naive server
Configure your client with mode naive (snippets in clients/), then work
through exercises/EXERCISE-1.md. You will ask questions such as:
Which enabled rules allow inbound RDP from the internet?
Which source IP generated the most denies in the last 24 hours?
Watch your client's context/token indicators while you do it.
Exercise 2: the spindl server
Change one word in your client config, naive to spindl, restart the
client, and work through exercises/EXERCISE-2.md. Same questions. Note the
spool summaries, then let the model drive fw_spooler_query,
fw_spooler_aggregate, and fw_spooler_distinct.
What is in the box
Path | Purpose |
| Committed, deterministic fabricated data set |
| The MCP server and its three firewall tools |
| The two hands-on exercise sheets |
| Per-client MCP configuration snippets |
| Presenter-only data generator (seeded) |
The tools exposed
With prefix fw, the server exposes:
fw_get_device_info: tiny response, use as a connectivity checkfw_get_rulebase: the full security policy (large)fw_get_traffic_logs: 24 hours of traffic logs (very large)fw_list_toolsandfw_describe_tool: spindl's built-in skills guidesfw_spooler_list/fw_spooler_query/fw_spooler_aggregate/fw_spooler_distinct: present in spindl mode only
Licence
MIT. Fabricated data, no real systems were harmed.
This server cannot be deployed
Maintenance
Related MCP Connectors
Public MCP digital twin with synthetic systems and an agent firewall. No customer data.
MCP server for Firecrawl — web search, scraping, and biomedical/arXiv paper search.
Hosted MCP endpoint with realistic fake data for prototyping agents. 12 tools, no setup.
An MCP server that provides an API to LLMs to manage their JumpCloud resources.
Related MCP Servers
AlicenseAqualityAmaintenanceLocal-first MCP server that lets AI agents design Cisco-style networks and generate L1/L2/L3 topology diagrams, device tables, and AI-ready context files.1012400Apache 2.0- AlicenseNot gradedqualityBmaintenanceA policy and audit layer for Model Context Protocol (MCP). MCP Firewall sits transparently between any MCP client (Claude Desktop, Cursor, VS Code, etc.) and an upstream MCP server, allowing you to inspect, allow, block, or audit requests before they reach the server.14 npmMIT
- AlicenseNot gradedqualityAmaintenanceThis MCP server provides a stateful, resettable, verifiable API runtime that gates every tool call, enabling agents to run long workflows against provider-shaped environments without live provider write access. It records decisions, side effects, and outcome evidence for replayable, verifiable benchmark runs.Apache 2.0
- AlicenseNot gradedqualityAmaintenanceA local, keyless MCP server simulating Forge's industrial telemetry kernel, enabling agents to normalize vendor-specific machine data, forecast breaches, and test integrations against realistic equipment data without credentials or persistence.MIT