1. Conduid
  2. Marketplace
  3. #least-privilege
Tag

MCP servers tagged least-privilege

17 live MCP servers tagged "least-privilege", ranked by trust score. Tags come from package metadata and repository topics, so this list covers servers across every category that work with least-privilege.

17
live servers
35
avg trust
1
most stars
1

samvas-codes/dawshund_mcp

samvas-codes

An MCP server to enumerate AWS IAM data, analyze effective permissions, and visualize access relationships across users, roles, and resources. Built for cloud security engineers w…

updated 10 months ago
48
2

Strongroom

askalf

Own your agent secrets — your agent holds a scoped, single-use lease, never the raw API key. strongroom injects the real secret only at egress, so a leaked prompt or poisoned tool…

★ 1
34
3

Opshaven

A least-privilege MCP server for safe, structured VPS inspection and controlled operations over SSH.

34
4

Grantguard

Prove a Postgres role cannot perform the writes it is not allowed to perform. Catalog-based least-privilege audit + CI gate + MCP server.

34
5

Planner Guard

A decision-layer guardrail for MCP agents. Gates tool calls by intent and logs the planner's reasoning. Complements MCP firewalls, doesn't replace them.

34
6

Ghl MCP Scoped

Least-privilege policy wrapper for any GoHighLevel MCP server. Declare which tools an AI agent may call and under what argument conditions; everything else is refused and logged.…

34
7

Privilege Profiler

Task-scoped least-privilege security proxy and Wazuh detection bridge for MCP-based AI agents

34
8

Policy Forge

Least-privilege MCP tool policy generator, validator, risk scorer, diff reporter, and CI gate.

34
9

Local MCP Toolbox

Secure, read-only MCP tooling for local environment inspection with policy controls, redaction, and auditing.

34
10

Google MCP Multi Account

Multi-account Google Workspace (Gmail, Drive) for LLM agents — 100% local, default-deny policy, human-in-the-loop access. A macOS MCP server.

34
11

Blueclaw

A POSIX-isolated agent host: a Go daemon that runs an AI agent harness on behalf of the person who asked, executes every tool call as that person's own unprivileged Linux user, ho…

34
12

Capability Ledger

Infer least-privilege MCP tool policies from agent traces

34
13

Twin Governed MCP

Least-privilege MCP boundary and governed Runner receipts for the Twin REST API

34
14

Agentcapdiff

AI agent security policy-as-code for detecting capability, permission, and least-privilege changes across MCP, OpenAI, Claude, LangChain, LangGraph, and CrewAI tools.

34
15

Steward

Open-source identity & access governance for AI agent fleets — effective-access analysis, segregation-of-duties, least-privilege enforcement, and a tamper-evident audit ledger.

34
16

Permission Linter

CLI and GitHub Action-ready linter for MCP permissions, secrets, destructive tools, and least-privilege policy.

34
17

Barzel Central Gateway MCP Server

Enterprise Model Context Protocol governance gateway and MCP control plane for AI agent tool routing, identity-aware policy, risk scoring, approvals, routebooks, workflow simulati…

34
← Previous Page 1 of 1 Next →