Skip to main content
Glama
khandrew1

mcp-use-evc-example

by khandrew1

mcp-use + EVC authorization example

This standalone example puts a Bolyra External Verifier Contract v1 host boundary behind the existing mcp-use TypeScript middleware seam. A gateway proxies vault_echo, spawns a single-shot external verifier, validates its closed verdict envelope, and calls next() only after an allow.

Run

npm install
npm test
npm run dev

Open the printed URL to use the built-in mcp-use Inspector. Call vault_echo with:

{
  "message": "hello",
  "bundle": "demo-valid-bundle",
  "agentName": "research-bot",
  "model": "demo-model"
}

Change bundle to any other value to see the external verifier deny the call before the upstream server runs.

The host adapter demonstrates the important EVC mechanics: one request on stdin, one bounded verdict on stdout, timeout and process failure handling, strict verdict shapes, reserve-before-dispatch nonce handling, and fail-closed behavior. The verifier is intentionally a tiny external-class demo, not Bolyra's ZK verifier.

EVC is an independent third-party contract and is not part of MCP or mcp-use.

Related MCP Connectors

Related MCP Servers

  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables MCP hosts to verify agent spending mandates and receipts, providing stateless tools for authorization, chain verification, credential verification, and DID resolution.
    Apache 2.0
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enforces identity-based access control and audit logging for MCP servers, letting you grant fine-grained tool permissions to users and systems while failing secure by default.
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables MCP clients to govern downstream tool servers by enforcing default-deny authority and attestation on every tool call, with live monitoring, approval, and mid-session revocation.
    3
    Apache 2.0
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables MCP servers to enforce their own Proof of Delegation by refusing tool calls when authorization is revoked, suspended, or expired, with optional self-check and verification tools.
    81 npm
    MIT