MCP-Server

XGuard — Agent Execution Gateway

io.github.moelayyan90/xguard-control-plane
MCP- & Agenten-Infrastruktur Sicherheit Öffentlich und erreichbar MCP 2026-07-28

Was dieses MCP kann

Provides policy-controlled agent execution with scoped capabilities, credential injection, budgets, and verifiable receipts.

xguard_discover
Find the paid API catalog and buying instructions, plus explicit provider operations and input schemas.
Nur Lesen Idempotent
Eingabeschema
{'type': 'object', 'properties': {}, 'additionalProperties': False}
xguard_execute
Execute an explicit scoped provider operation, or a supported public-source outcome. intent:demo is free. Never infer a mutation from ambiguous text.
Destruktiv Externer Zugriff
Eingabeschema
{'type': 'object', 'properties': {'input': {'type': 'object'}, 'intent': {'type': ['string', 'object']}, 'operation': {'type': 'string'}, 'capability': {'type': 'string'}, 'idempotency_key': {'type': 'string'}}, 'additionalProperties': True}
xguard_get_result
Recover a paid public outcome with its payment identifier and original signed quote without execution or another payment.
Nur Lesen Idempotent
Eingabeschema
{'type': 'object', 'required': ['payment_identifier', 'quote'], 'properties': {'quote': {'type': 'string'}, 'payment_identifier': {'type': 'string'}}, 'additionalProperties': False}
xguard_preflight
Inspect validation, scope and remaining capability budget without reserving, billing or executing. Execution rechecks everything.
Nur Lesen Idempotent
Eingabeschema
{'type': 'object', 'properties': {'input': {'type': 'object'}, 'intent': {'type': ['string', 'object']}, 'operation': {'type': 'string'}, 'capability': {'type': 'string'}, 'idempotency_key': {'type': 'string'}}, 'additionalProperties': True}
xguard_quote
Inspect XGuard credit pricing for a capability, or obtain a signed x402 quote for a public outcome. Does not execute.
Nur Lesen Idempotent
Eingabeschema
{'type': 'object', 'properties': {'input': {'type': 'object'}, 'intent': {'type': ['string', 'object']}, 'operation': {'type': 'string'}, 'capability': {'type': 'string'}, 'idempotency_key': {'type': 'string'}}, 'additionalProperties': True}
xguard_secretless_call
Call an allowed provider operation with a capability. Enforces scope, call/credit budget and billing before server-side credential injection. Writes require idempotency_key.
Destruktiv Externer Zugriff
Eingabeschema
{'type': 'object', 'anyOf': [{'required': ['operation', 'input']}, {'required': ['target']}], 'required': ['capability'], 'properties': {'input': {'type': 'object'}, 'method': {'enum': ['GET', 'HEAD', 'POST', 'PUT', 'PATCH', 'DELETE'], 'type': 'string'}, 'target': {'type': 'string', 'format': 'uri'}, 'body_json': {}, 'operation': {'enum': ['github.repository.read', 'github.issue.create', 'github.issue.comment', 'github.pull_request.create', 'cloudflare.zone.read', 'cloudflare.worker.metadata', 'slack.channel.read', 'slack.message.send', 'notion.page.read', 'notion.database.read', 'notion.page.create', 'notion.page.update', 'openai.response.create', 'anthropic.message.create', 'gemini.content.generate', 'stripe.customer.read'], 'type': 'string'}, 'capability': {'type': 'string', 'description': 'Scoped XGuard capability, never an upstream key.'}, 'idempotency_key': {'type': 'string', 'maxLength': 128, 'minLength': 8}}, 'additionalProperties': False}
xguard_status
Read observed execution/MCP metrics and configuration; empty observations do not imply uptime.
Nur Lesen Idempotent
Eingabeschema
{'type': 'object', 'properties': {}, 'additionalProperties': False}
xguard_verify_receipt
Verify a ProofRail proof and optionally its bound x402 receipt and result digest. Signature validity does not prove source truth.
Nur Lesen Idempotent
Eingabeschema
{'type': 'object', 'required': ['proof'], 'properties': {'proof': {'type': 'string', 'maxLength': 16000}, 'receipt': {'type': 'object'}, 'result_sha256': {'type': 'string', 'pattern': '^[a-f0-9]{64}$'}}, 'additionalProperties': False}
Geändert
xguard_discover
23. September 2026 02:47
Geändert
xguard_get_result
21. September 2026 02:53
Hinzugefügt
xguard_status
21. September 2026 02:53
Geändert
xguard_discover
21. September 2026 02:53
Hinzugefügt
xguard_verify_receipt
21. September 2026 02:53
Hinzugefügt
xguard_quote
21. September 2026 02:53
Hinzugefügt
xguard_preflight
21. September 2026 02:53
Hinzugefügt
xguard_secretless_call
21. September 2026 02:53
Geändert
xguard_execute
21. September 2026 02:53
Hinzugefügt
xguard_get_result
17. September 2026 12:45
Hinzugefügt
xguard_execute
17. September 2026 12:45
Hinzugefügt
xguard_discover
17. September 2026 12:45