openhoard
OfficialClick on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@openhoardShare the forecast with Acme, read-only, until Oct 31."
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
"Open the Acme Q3 deck." ยท "What CSVs was I working on yesterday?" ยท "Share the forecast with Acme, read-only, until Oct 31." ยท "Who can see payroll, and why?"
OpenHoard replaces the folder tree with an AI-managed, governed file layer. Every file is indexed, tagged, summarized and access-controlled, so people and their AI agents find things by meaning, not by path. Every action is checked by policy and written to a tamper-evident audit log.
Status: pre-alpha, designed in the open. The vision below is where we're headed; see the roadmap for what exists today.
The headlines
๐ Your files, finally findable | Ask in plain English. Permission-aware search across SharePoint, cloud buckets and Git, with zero AI tokens spent per search. |
๐ Every file has a guardian | Access follows tags, not folders. Former employees lose access automatically. External links expire by default. |
๐ง The filesystem that remembers | "What was I working on yesterday?" "What changed in the Acme contract?" OpenHoard keeps the history, so you don't have to. |
๐ท๏ธ No more | AI names, tags, deduplicates and spots the real final version, and warns you before you send an old one. |
๐ค Bring any AI. Keep control. | Works with Claude, ChatGPT, Copilot or local models over MCP. You decide, per tag, what AI is allowed to read. |
๐ก๏ธ Built for auditors, not just users | Hash-chained audit log, 30-day undo on everything, HIPAA / SOC 2 / legal-hold packs on the roadmap. |
๐ฆ No migration required | Index SharePoint and OneDrive in place today. Move shared work into S3 or Azure Blob when you're ready. |
๐ SFTP is over | Send customers a link. They drag in 1 GB+ files from any browser, with no account and no client, and the files land tagged in the right project. |
๐งฉ Open core, open edges | Apache-2.0. Connectors, enrichers, policy packs and skills are plugins anyone can build. |
Related MCP server: Glean Remote MCP Server
Why your company needs this (the slide for your boss)
The folder tree was designed for filing cabinets. It's failing modern teams:
54% of US office workers say they waste time searching for files in disorganized systems (Elastic / Wakefield Research via TechRepublic).
77% of organizations had at least one Microsoft 365 governance incident in the past year (ShareGate survey via WindowsForum).
38% had former employees or guests keep access they should have lost, and 26% had sensitive content reach the wrong people (same survey).
AI assistants now read everything a user can access, so oversharing that used to be hidden is now one prompt away.
OpenHoard's pitch in one line: keep your storage, lose the chaos. Findable files, provable access control, and AI you can actually trust with company data.
Deploys like any managed app: SSO (Entra ID, Google, Okta), SCIM, silent sign-in, MDM packages (planned).
Least privilege by design: SharePoint access via
Sites.Selected; AI clients on an allowlist; plugins sandboxed with declared capabilities.One policy layer across SharePoint, buckets and Git, readable as "who can see this and why".
Security-first AI: prompt injection is in the threat model from day one. Text in a file can never authorize an action.
No lock-in: open source, self-hostable, one-click export of files, tags and audit history.
Presenting OpenHoard to your IT team? Use the IT overview deck (PDF): architecture, data flow, storage, tags, security and status in 15 slides with speaker notes.
How it works
โโโโโโโโโโโโโโโโโ Trusted core (small, audited) โโโโโโโโโโโโโโโโโ
โ identity ยท permissions/policy ยท index/search ยท summaries ยท โ
โ audit ยท plugin sandbox โ
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโฒโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
โ versioned contracts + capability manifests
connectors ยท enrichers ยท policy/vocabulary packs ยท skills ยท client integrationsThe core makes every trust decision. Plugins extend what OpenHoard can reach and understand; they can never decide who gets access. Deep dives: architecture ยท threat model ยท roadmap.
Repository layout
Path | What lives there |
| The trusted core: |
| Storage and source connectors (S3, Azure Blob, SharePoint, Git hosts, โฆ) |
| Extractors and taggers for specific file types |
| Policy and tag-vocabulary packs (legal, healthcare, manufacturing, โฆ) |
| Agent skills built on the core MCP tools |
| Web app, desktop client, Office/Teams integrations |
| Versioned JSON Schemas for plugin manifests and other contracts |
| The gateway (HTTP, soon MCP) and the |
| Logo and brand assets |
Try it
Run the server locally. Node 24 and pnpm are all you need; no Docker, no database to install:
pnpm install && pnpm dev # http://127.0.0.1:7420/healthzThe CLI validates plugin manifests against the published schema, the first contract every plugin must meet.
npx openhoard manifest validate connectors/example/openhoard.plugin.json
pipx run openhoard manifest validate connectors/example/openhoard.plugin.jsonJoin the hoard
We're building this in the open and want the community to own the edges. Start with CONTRIBUTING.md. Connectors, enrichers, packs and skills are the best places to begin. Found a security issue? See SECURITY.md.
License
Apache-2.0 ยท "OpenHoard" and the dragon-eye logo are trademarks of the OpenHoard project.
This server cannot be deployed
Maintenance
Related MCP Connectors
Your company's brain for AI agents. Cited, permission-aware knowledge across every system.
Shared, permission-aware company context for AI agents, with provenance, approvals and audit.
Securely search and manage workspace context files for AI agents and teams.
Shared company knowledge, workflows, and connected apps for the AIs your team already uses.
Related MCP Servers
- AlicenseNot gradedqualityDmaintenanceEnables AI assistants to search through structured databases and unstructured content (documents, videos, files) using natural language queries with semantic understanding.MIT

Glean Remote MCP Serverofficial
AlicenseNot gradedqualityCmaintenanceEnables AI assistants and developer tools to securely access and interact with an organization's enterprise knowledge, documents, and people through natural language while respecting existing access permissions.166MIT
Data X-Ray MCP Serverofficial
AlicenseNot gradedqualityDmaintenanceEnables Claude to search, retrieve, and analyze indexed files with sensitivity classifications and automatic redaction of sensitive information.MIT- AlicenseNot gradedqualityCmaintenanceProvides AI assistants with unified access to organizational knowledge across Guru, Notion, and local docs, enabling intelligent document creation, retrieval, and management.10 npmMIT