mcp-airlock MCP server
Governance proxy for MCP servers: allowlist, forced dry run, human confirmation, blast radius, audit
B83/100grade B
Adoption
Growing
25 stars278 downloads/wk
Reviews
Write oneNobody has reviewed mcp-airlock yet.
If you have run it, two minutes of your experience saves the next person an afternoon.
mcp-airlock tools
No tool declarations could be read from the package source. They show once the server is installed.
Public scan report
scanner v0.1.8 · 2026-09-19 · same rubric, same numbers if you re-run it
no findings
- Code scan12 source files scanned25/25
- –Live reliabilityno gateway calls yet and no remote to proben/a
- –Tool poisoningtools not inspected (local package is not executed); not countedn/a
- Auth qualitystatic API keys via environment variables6/15
- Maintenancelast push 3 days ago15/15
- Maintainer identityregistry namespace matches repository owner; GitHub account older than a year8/10
Overall 83/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON
Install directly
claude mcp add mcp-airlock -- uvx mcp-airlock
mcp-airlock: common questions
- Is mcp-airlock MCP server safe?
- Mostly: it is graded B (83/100). Read the mcp-airlock safety report
- How do I install mcp-airlock?
- It runs on your machine. Copy the Claude Code, Claude Desktop or Cursor config from the install section.
- Does mcp-airlock need an API key?
- Yes. The registry entry asks for
AIRLOCK_JWT_SECRET,AIRLOCK_SECRET. - Is mcp-airlock maintained?
- The last commit was 4 days ago (2026-09-16). The latest release is v0.2.0.