{"name":"io.github.alexar76/warden","slug":"alexar76-warden","title":"WARDEN — MCP Security Firewall","description":"MCP security firewall: vet tool definitions before they reach the model.","url":"https://mcp.market/server/alexar76-warden","rating":null,"grade":"A","score":92,"certified":false,"status":"active","category":"ai","tags":["ai","security"],"presence":{"score":24,"stars":0,"forks":0,"downloads_week":51,"last_push_at":"2026-09-05T17:33:11.000Z","license":"MIT"},"uptime":null,"claimed":false,"transport":"npm","callable_via_gateway":false,"default_price_micros":0,"repository":"https://github.com/alexar76/warden","website":null,"version":"0.5.0","remotes":[],"packages":[{"registryType":"npm","registryBaseUrl":"https://registry.npmjs.org","identifier":"@aimarket/warden","version":"0.5.0","transport":{"type":"stdio"}}],"tools":[{"name":"canonicalize_json","description":"Return the RFC 8785 JSON Canonicalization Scheme serialization WARDEN uses for threat-feed signatures and tool-def pins, so another implementation can byte-check against it. Integers only inside ±(2^53−1); lone surrogates and non-integers are refused with a reason code, not escaped.","write_action":false,"price_micros":0,"input_schema":null},{"name":"check_egress_url","description":"Ask EgressGuard whether a URL's hostname is on an operator allowlist. A tool reaching a host you never listed is the classic phone-home tell. Empty allowlist blocks everything (fail-closed), not everything-allowed.","write_action":false,"price_micros":0,"input_schema":null},{"name":"classify_sensitive_tools","description":"Split advertised tool names into sensitive vs safe using the operator's case-insensitive * globs (the same policy.sensitiveToolPatterns a host would use). Sensitive tools stay advertised; they require per-call approval — this tool does not run them.","write_action":false,"price_micros":0,"input_schema":null},{"name":"list_scan_rules","description":"Return the in-force static-scan ruleset: version, digest, and every rule's code, severity, tier (block vs advise), surfaces (name / description / inputSchema), optional regex source, and named guards. A recorded verdict is only reproducible together with this identity.","write_action":false,"price_micros":0,"input_schema":null},{"name":"static_scan_tools","description":"Run only the static-scan gate (ruleset v4, 25 signatures with context guards) over advertised tool names, descriptions, and input schemas. Returns findings, a 0..1 gate score, and the published ruleset digest.","write_action":true,"price_micros":0,"input_schema":null},{"name":"vet_mcp_server","description":"Run WARDEN's ordered gate chain (static-scan → threat-feed → origin → pinning) over a server identity plus its advertised tools/list payload and return a recordable verdict (allow/block, 0..1 product score, findings, allowedTools/blockedTools, ruleset digest).","write_action":true,"price_micros":0,"input_schema":null}],"scan":{"score":92,"grade":"A","scanned_at":"2026-09-20T11:40:57.920Z","report":{"scannerVersion":"0.1.9","scannedAt":"2026-09-20T11:40:57.826Z","components":{"code":{"score":25,"max":25,"notes":["29 source files scanned"]},"reliability":{"score":-1,"max":20,"notes":["no gateway calls yet and no remote to probe"]},"poisoning":{"score":-1,"max":15,"notes":["tools not inspected (local package is not executed); not counted"]},"auth":{"score":12,"max":15,"notes":["local package, no credentials required"]},"maintenance":{"score":15,"max":15,"notes":["last push 15 days ago"]},"identity":{"score":8,"max":10,"notes":["registry namespace matches repository owner","GitHub account older than a year"]}},"findings":[],"inputs":{"packages":[{"registryType":"npm","identifier":"@aimarket/warden","version":"0.5.0","found":true,"license":"MIT","hasInstallScripts":false,"dependencyCount":0,"publishedAt":"2026-09-04T15:09:58.531Z","repositoryUrl":"git+https://github.com/alexar76/warden.git","weeklyDownloads":51}],"repo":{"found":true,"owner":"alexar76","repo":"warden","archived":false,"pushedAt":"2026-09-05T17:33:11Z","stars":0,"forks":0,"openIssues":0,"ownerType":"User","ownerAvatarUrl":"https://avatars.githubusercontent.com/u/86793359?v=4","ownerCreatedAt":"2021-07-01T15:45:01Z","license":"MIT"},"icon":{"url":"https://avatars.githubusercontent.com/u/86793359?v=4&s=128","source":"github"},"presence":{"stars":0,"forks":0,"downloadsWeek":51,"license":"MIT","lastPushAt":"2026-09-05T17:33:11.000Z","score":24}}}},"grade_history":[],"reviews":[]}