MCP Privilege Profiler
by Ylyass
Server Configuration
Describes the environment variables required to run the server.
| Name | Required | Description | Default |
|---|---|---|---|
| CWD | No | Working directory for the downstream server (default: current directory). | |
| POLICY | Yes | Path to the reviewed policy JSON file. | |
| TASK_ID | Yes | Identifier for the task being enforced. | |
| AGENT_ID | Yes | Identifier for the agent. | |
| AUDIT_LOG | Yes | Path to the JSONL audit log file. | |
| PATH_ROOT | No | Optional path root mapping (e.g., 'PROJECT_ROOT=lab/fixtures'). Required only if the policy refers to a symbolic alias. | |
| STATE_DATABASE | Yes | Path to the SQLite state database file. | |
| APPROVAL_CONTROL | Yes | Path to the approval control file containing a live secret. | |
| DOWNSTREAM_COMMAND | Yes | Command to run the downstream MCP server, e.g., 'python -m lab.server'. |
Capabilities
Server capabilities have not been inspected yet.
Tools
Functions exposed to the LLM to take actions
| Name | Description |
|---|---|
No tools | |
Prompts
Interactive templates invoked by user choice
| Name | Description |
|---|---|
No prompts | |
Resources
Contextual data attached and managed by the client
| Name | Description |
|---|---|
No resources | |
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/Ylyass/mcp-privilege-profiler'
If you have feedback or need assistance with the MCP directory API, please join our Discord server