- Conduid
- Marketplace
- #least-privilege
MCP servers tagged least-privilege
17 live MCP servers tagged "least-privilege", ranked by trust score. Tags come from package metadata and repository topics, so this list covers servers across every category that work with least-privilege.
samvas-codes/dawshund_mcp
An MCP server to enumerate AWS IAM data, analyze effective permissions, and visualize access relationships across users, roles, and resources. Built for cloud security engineers w…
Strongroom
Own your agent secrets — your agent holds a scoped, single-use lease, never the raw API key. strongroom injects the real secret only at egress, so a leaked prompt or poisoned tool…
Opshaven
A least-privilege MCP server for safe, structured VPS inspection and controlled operations over SSH.
Grantguard
Prove a Postgres role cannot perform the writes it is not allowed to perform. Catalog-based least-privilege audit + CI gate + MCP server.
Planner Guard
A decision-layer guardrail for MCP agents. Gates tool calls by intent and logs the planner's reasoning. Complements MCP firewalls, doesn't replace them.
Ghl MCP Scoped
Least-privilege policy wrapper for any GoHighLevel MCP server. Declare which tools an AI agent may call and under what argument conditions; everything else is refused and logged.…
Privilege Profiler
Task-scoped least-privilege security proxy and Wazuh detection bridge for MCP-based AI agents
Policy Forge
Least-privilege MCP tool policy generator, validator, risk scorer, diff reporter, and CI gate.
Local MCP Toolbox
Secure, read-only MCP tooling for local environment inspection with policy controls, redaction, and auditing.
Google MCP Multi Account
Multi-account Google Workspace (Gmail, Drive) for LLM agents — 100% local, default-deny policy, human-in-the-loop access. A macOS MCP server.
Blueclaw
A POSIX-isolated agent host: a Go daemon that runs an AI agent harness on behalf of the person who asked, executes every tool call as that person's own unprivileged Linux user, ho…
Capability Ledger
Infer least-privilege MCP tool policies from agent traces
Twin Governed MCP
Least-privilege MCP boundary and governed Runner receipts for the Twin REST API
Agentcapdiff
AI agent security policy-as-code for detecting capability, permission, and least-privilege changes across MCP, OpenAI, Claude, LangChain, LangGraph, and CrewAI tools.
Steward
Open-source identity & access governance for AI agent fleets — effective-access analysis, segregation-of-duties, least-privilege enforcement, and a tamper-evident audit ledger.
Permission Linter
CLI and GitHub Action-ready linter for MCP permissions, secrets, destructive tools, and least-privilege policy.
Barzel Central Gateway MCP Server
Enterprise Model Context Protocol governance gateway and MCP control plane for AI agent tool routing, identity-aware policy, risk scoring, approvals, routebooks, workflow simulati…