An MCP server that enforces plain-English rules on AI agent tool calls, deterministically blocking forbidden actions before execution via a Claude Code hook and a check_action tool.
Enables AI agents to execute tools securely with Docker isolation, tier-based permissions, and feature flags, providing a centralized tool registry and MCP server.