- Conduid
- Marketplace
- #policy-as-code
MCP servers tagged policy-as-code
37 live MCP servers tagged "policy-as-code", ranked by trust score. Tags come from package metadata and repository topics, so this list covers servers across every category that work with policy-as-code.
Octelium
A next-gen FOSS self-hosted unified zero trust secure access platform that can operate as a remote access VPN, a ZTNA platform, API/AI/MCP gateway, a PaaS, an ngrok-alternative an…
Cerebro
Cerebro turns security, identity, cloud, SaaS, workflow, policy, and compliance data into evidence-backed context for people, coding agents, and automation.
Cambium
Governance standard and reference toolset for LLM-maintained knowledge corpora
Agent Safe Pipeline
Reference architecture for AI agents that propose actions but cannot authorize them — immutable intent capture, an independent Decionis policy verdict (ALLOW/ESCALATE/BLOCK), veri…
Ops0 CLI
Stop your AI agent from shipping insecure IaC. ops0 CLI sits between Claude Code, Codex or Gemini and your cloud, scanning every .tf the agent writes and blocking destroy commands…
Preloop
The open-source AI agent control plane: MCP firewall, model gateway with budgets, human approvals, runtime observability, and audit trails
Norviq
Runtime security platform for LLM agent tool calls on Kubernetes
Astragraph
Policy-enforced observability and fail-closed guardrails for MCP/A2A multi-agent systems.
AI Runtime Platform
AI Infrastructure OS execution plane: OpenAI-compatible gateway, MCP tool governance, intent proxy, vLLM/KServe/KEDA, OIDC, Redis and telemetry.
Satellite Mission Compiler
Ground-side mission plan compiler for ORCHIDE-class cloud-native satellite platforms. Validates plans, applies OPA policy guardrails, and renders Argo/Kueue workflow artifacts.
Coding Ethos
Policy-as-code enforcement for AI agents: MCP server, CEL policies, git hooks, SARIF, and static analysis guardrails.
Warrant
Verifiable constraint enforcement for AI agents - signed warrants, Merkle constraint commitments, tamper-evident audit logs, and collusion-aware multi-agent auditing. Rust core +…
Assay Agent Gate Demo
Runnable demo: a CI gate that denies an agent's undeclared privileged tool action before it runs, with evidence in the Security tab. Built on assay.
Aegisdesk Cloudops Control Plane
Self-hosted CloudOps AI control plane with Cognito, OPA/Rego, Bedrock, CloudWatch, Cost Explorer, Jira/ServiceNow adapters, DynamoDB audit, MCP, and Terraform.
Seshat App
Local MCP proxy that governs what AI agents do on your machine. Policy enforcement, audit receipts, hash-chained provenance.
Liminate MCP
Help your AI agent author the Agreements that govern it.
AgentAction
Trust infrastructure for autonomous AI agents: decision assurance, action authorization, runtime controls, and verifiable lifecycle evidence.
SkillGate
Pre-merge and pre-install trust checks for AI-agent skills and MCP configurations. Scan capabilities, detect risky changes, and block unapproved agent behavior in CI.
Occp Core
OCCP — OpenCloud Control Plane: Governance-first AI agent orchestration with Verified Autonomy Pipeline. Policy-gated, audit-logged, kill-switch protected. 14 MCP tools, 8 special…
Norms MCP Engine
Fail-closed evidentiary eligibility engine for AI-agent norms, with a self-linting claim map.
Agoragentic Ecf Core
Open-source self-hosted context-governance runtime for coding agents: local MCP plus CLI, cited context maps, retrieval and eval artifacts, policy boundaries, and optional Triptyc…
Are Agent Integrations
Govern MCP and agent framework tool calls with ARE Foundation passport, scope, and policy checks.
Darvoza
MCP governance gateway — deny-by-default per-role tool policy and a 100%-coverage audit trail in front of any MCP server. Azure DevOps ships as the default profile and the demonst…
Capagate
Capability-aware firewall and policy compiler for MCP tool calls.
Maqam
Give AI agents hands without handing them the keys: exact one-use approvals and verifiable receipts for registered actions.
AI Infra Control Plane
AI Infrastructure OS control plane for governed private AI: policy, identity, audit, intent, MCP, FinOps, SLOs, Redis, Prometheus and OIDC on Kubernetes.
Roelint
Turn Rules of Engagement into a policy firewall for red-team commands and AI agents
Verahelm Decision Envelope
Offline verifier and GitHub Action for signed, revision-bound change gates; the private decision engine is not published.
Biz Guard
Deterministic business-change safety gate for coding agents — evidence-backed BLOCK/ALLOW decisions
Authorization Bom
ABOM: a portable Authorization Bill of Materials schema and reference toolkit for human, workload, service, and AI-agent access
Agentcapdiff
AI agent security policy-as-code for detecting capability, permission, and least-privilege changes across MCP, OpenAI, Claude, LangChain, LangGraph, and CrewAI tools.
PermitWeave
Local-first, explainable runtime policy gateway for AI tool calls
CanaryNorth
Secretless MCP policy proxy with scoped capabilities and tamper-evident receipts
Agent Passport
Portable identity, policy enforcement, human approval, and observability for AI agents.
Obsigno
Runtime governance and tamper-evident audit evidence for AI agent MCP tool calls
Gateway Reference
Reference implementation of the MCP authorization spec (2025-11-25) for enterprise deployments: an OAuth 2.1 gateway that brokers Microsoft Entra ID, enforces three-layer OPA poli…
Barzel Central Gateway MCP Server
Enterprise Model Context Protocol governance gateway and MCP control plane for AI agent tool routing, identity-aware policy, risk scoring, approvals, routebooks, workflow simulati…