Skip to main content
Glama
aaameobius-crypto

mcp-permission-guard

MCP Permission Guard — Pre-Action Authorization for AI Agents

Intent-based permission system with risk scoring, rule engine, and audit trail. Zero dependencies, pure Python stdlib.

The Problem

Agents execute destructive actions without guardrails. Binary allow/deny prompts don't work (93% auto-approved). The "lethal trifecta" — private data + untrusted content + external communication — creates risks no single tool can detect.

Related MCP server: AgentWard

The Solution

MCP Permission Guard classifies tool calls into 14 intent categories, scores risk 0-100, evaluates rules, and produces deterministic allow/deny/ask decisions with full audit trail.

Tools (11)

Tool

What it does

classify_intent

Map tool call → intent category (14 types)

risk_assess

Score 0-100 with lethal trifecta detection

register_rule

Add allow/deny/ask rule by intent

evaluate

Full evaluation: classify + risk + rules → decision

audit_log

Query decision history

list_rules

Show all registered rules

remove_rule

Delete a rule

set_policy

Global policy: allow_all / deny_all / ask_all / rules_based

get_policy

Read current policy

get_stats

Decision statistics

reset

Clear all state

Intent Categories

filesystem_read (10) · filesystem_write (40) · filesystem_delete (80) · network_outbound (50) · network_inbound (30) · code_execution (60) · shell_command (70) · database_write (65) · database_read (20) · credentials_access (90) · config_change (55) · user_management (85) · service_restart (60) · package_install (75)

Tests

python -m pytest tests/ -v  # 38 tests, all passing

Inspiration

License

MIT — AMEOBIUS

Related MCP Connectors

Related MCP Servers

  • F
    license
    A
    quality
    F
    maintenance
    Provides policy-based access control, incident tracking, and compliance monitoring to govern AI agent behavior. It enables organizations to enforce security rules and maintain audit trails by validating agent actions against trust levels and pattern-based policies.
    6
    1
    -
  • A
    license
    Not graded
    quality
    D
    maintenance
    A governance and control layer for MCP tools that manages tool requests as intents through policy-based approval, queuing, or blocking. It enables secure human oversight and audit trails for consequential agent actions across platforms like Claude Desktop and Cursor.
    1
    MIT No Attribution
  • A
    license
    A
    quality
    A
    maintenance
    Policy-based governance for AI agent tool calls. YAML policies, approval gates, risk assessment, and audit logging across LangChain, OpenAI, Anthropic, and MCP.
    5
    58 PyPI
    15
    MIT