policyvault-mcp

MCPCommunity
v1.6.2io.github.zapsoblige-hashApache-2.0Aktualisiert vor 21 TnpmGitHub

Non-custodial Kaspa policy enforcement for AI agents; signers retain custody.

Läuft in
ClaudeCursorCopilotGemini

Abgeleitet aus den Transporten, die dieser Eintrag deklariert (stdio). Ein Client, der hier nicht steht, ist damit nicht ausgeschlossen — Forge kann ihn nur nicht bestätigen.

Automatisch aus öffentlichen Quellen indexiert. Vom Entwickler auf Forge noch nicht verifiziert.Diesen Eintrag beanspruchen →
vor 21 TLetzte Aktualisierung
Braucht 1 Zugangsdatum, bevor es läuft
  • POLICYVAULT_MCP_TOKENAPI-Schlüsselerforderlich

    Machine-identity bearer credential (pvmk_...), minted by the vault operator in the PolicyVault app with exactly the scopes the agent should hold. Never logged; deleted from the process environment…

Vom Autor in der offiziellen MCP-Registry angegeben. Forge does not store, broker, or ever see these values — the config below is scaffolded with placeholders you fill in locally.

Paket
Autorio.github.zapsoblige-hash
LizenzApache-2.0
Version1.6.2
Quellenpm+mcp-registry
Trust-Status
B
60/100Gut
✓Im Forge-Index gelistet+10/10
—Publisher-Identität verifiziert+0/20
→ Publisher: führe `forge publish` im Repo des Pakets aus, um die Inhaberschaft zu beanspruchen
—Ed25519-Publish-Signatur+0/5
→ Wird automatisch ergänzt, wenn der Publisher `forge publish` ausführt
—Domain-Verifizierung+0/5
→ Publisher: hinterlege /.well-known/forge.json auf der Paket-Homepage mit { "publisher": "<github-login>" }
—npm Trusted Publishing (Sigstore)+0/5
→ Veröffentliche aus GitHub Actions mit --provenance, damit die Attestation dieses Paket an dieses Repo bindet
—npm-Maintainer-Übereinstimmung+0/5
→ Wird erreicht, sobald deine Identität oben verifiziert ist und dieser Login npm-Maintainer dieses Pakets ist
✓CVE-Scan · sauber+30/30
✓Statische Analyse · sauber+20/20
Füge das in Claude Code, Cursor oder einen beliebigen KI-Assistenten ein, um alle Lücken zu schließen
StatusVon der Community indexiert
PublisherNicht verifiziert
SignaturNicht signiert
Domain—
Herkunft—
Abhängigkeiten✓ 0 aufgelöst · keine verwundbar
Tool-Oberfläche20 Tools · keines privilegiert
Sicherheits-Scan✓ Sauberv1.6.2 · vor 3 TWie gut funktioniert dieser Scan?
EvaluierungenKeine
Indexiert1. Sept. 2026

Die Verifizierung bestätigt die Identität des Publishers (die Inhaberschaft am Repo), nicht die Sicherheit des Codes. Der Sicherheits-Scan deckt bekannte CVEs und verdächtige Installationsskripte ab.

Tools

20 Tools · keines privilegiert
Statisch aus dem veröffentlichten Paket extrahiertv1.6.2 · 3d ago

Aus dem Quellcode gelesen, den npm tatsächlich ausliefert, zum Zeitpunkt des Scans. Das Paket wurde nie ausgeführt. Tools, die zur Laufzeit dynamisch registriert werden oder in gebündeltem beziehungsweise minifiziertem Code stecken, können übersehen werden — das hier ist also eine Untergrenze der Tool-Oberfläche, keine vollständige Erhebung.

policyvault-mcpThin MCP adapter over the PolicyVault REST/Agent API (machine-identity authenticated; no privileged path)

Thin MCP adapter over the PolicyVault REST/Agent API (machine-identity authenticated; no privileged path)

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_capabilitiesRead the server's public capability/version discovery document (API version, network, supported covenant versions, v0.4 actions, scope enum, schema versions, limits, feature flags). Read-only; requires no scope.

Read the server's public capability/version discovery document (API version, network, supported covenant versions, v0.4 actions, scope enum, schema versions, limits, feature flags). Read-only; requires no scope.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_list_vaultsList the vaults this machine identity's creating wallet participates in (tenancy is enforced server-side; foreign vaults are invisible). Requires scope read:vaults. Read-only.

List the vaults this machine identity's creating wallet participates in (tenancy is enforced server-side; foreign vaults are invisible). Requires scope read:vaults. Read-only.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_vaultRead one vault's manifest detail (policy template, agent registry, live covenant state, operational status) by 64-hex vaultId. Requires scope read:vaults. Read-only.

Read one vault's manifest detail (policy template, agent registry, live covenant state, operational status) by 64-hex vaultId. Requires scope read:vaults. Read-only.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_vault_auditRead the durable audit/activity events recorded for one vault (builds, approvals, submissions, governance and risk outcomes, reconciliation). Requires scope read:vaults. Read-only.

Read the durable audit/activity events recorded for one vault (builds, approvals, submissions, governance and risk outcomes, reconciliation). Requires scope read:vaults. Read-only.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_audit_feedRead the global activity feed, server-scoped to vaults this identity's creating wallet participates in. Requires scope read:audit. Read-only.

Read the global activity feed, server-scoped to vaults this identity's creating wallet participates in. Requires scope read:audit. Read-only.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_network_statusRead the configured Kaspa node's status (network id, sync state, UTXO index, virtual DAA score). Requires scope read:network. Read-only.

Read the configured Kaspa node's status (network id, sync state, UTXO index, virtual DAA score). Requires scope read:network. Read-only.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_simulate_requestKeine Beschreibung veröffentlicht

Dieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.

policyvault_create_requestKeine Beschreibung veröffentlicht

Dieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.

policyvault_request_statusRead one durable wallet request (state machine BUILT/AWAITING_APPROVALS/FINALIZED/SUBMITTED/CONFIRMED/REJECTED/FAILED, canonical review, manifest hash, txid once chain-proven) by requestId. Requires scope read:requests. Read-only.

Read one durable wallet request (state machine BUILT/AWAITING_APPROVALS/FINALIZED/SUBMITTED/CONFIRMED/REJECTED/FAILED, canonical review, manifest hash, txid once chain-proven) by requestId. Requires scope read:requests. Read-only.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_list_requestsList durable v0.4 wallet requests visible to this identity (optionally narrowed to one vault, optionally only open/actionable states). Requires scope read:requests. Read-only.

List durable v0.4 wallet requests visible to this identity (optionally narrowed to one vault, optionally only open/actionable states). Requires scope read:requests. Read-only.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_reject_requestMark one open wallet request REJECTED (housekeeping for a stale or superseded build — e.g. after a policy change made it unsubmittable). Affects only the durable workflow record; nothing on-chain. Requires scope request:reject.

Mark one open wallet request REJECTED (housekeeping for a stale or superseded build — e.g. after a policy change made it unsubmittable). Affects only the durable workflow record; nothing on-chain. Requires scope request:reject.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_governance_proposalsList governance proposals (authority-expansion ceremonies with owner-signature approvals) visible to this identity, optionally narrowed to one vault. Requires scope read:governance. Read-only — proposal creation/approval/cancellation are human ceremonies outside this tool set.

List governance proposals (authority-expansion ceremonies with owner-signature approvals) visible to this identity, optionally narrowed to one vault. Requires scope read:governance. Read-only — proposal creation/approval/cancellation are human ceremonies outside this tool set.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_governance_proposalRead one governance proposal (classification, quorum, collected approvals, consumption state) by proposalId. Requires scope read:governance. Read-only.

Read one governance proposal (classification, quorum, collected approvals, consumption state) by proposalId. Requires scope read:governance. Read-only.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_risk_evaluationRead one durable risk-evaluation record (decision ALLOW/REVIEW/DENY, codes, adapter evidence, release state) by evaluationId. Requires scope read:risk. Read-only — releasing a REVIEW hold is a human reviewer action outside this tool set.

Read one durable risk-evaluation record (decision ALLOW/REVIEW/DENY, codes, adapter evidence, release state) by evaluationId. Requires scope read:risk. Read-only — releasing a REVIEW hold is a human reviewer action outside this tool set.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_org_rootsList v0.7 ON-CHAIN ORGANIZATIONAL ROOTS visible to this identity (consensus-enforced M-of-N owner authority — distinct from a HOSTED organization, which grants NO on-chain authority). Every summary carries authorityModel. Requires scope read:org-roots. Read-only.

List v0.7 ON-CHAIN ORGANIZATIONAL ROOTS visible to this identity (consensus-enforced M-of-N owner authority — distinct from a HOSTED organization, which grants NO on-chain authority). Every summary carries authorityModel. Requires scope read:org-roots. Read-only.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_org_rootRead one v0.7 organizational root's full record (owner slots, thresholds M/K/R, freeze flag, generation/nonce, pending request, live outpoint) plus authorityModel and a human explanation, by rootCovenantId. A root not yet chain-proven answers 404. Requires scope read:org-roots. Read-only.

Read one v0.7 organizational root's full record (owner slots, thresholds M/K/R, freeze flag, generation/nonce, pending request, live outpoint) plus authorityModel and a human explanation, by rootCovenantId. A root not yet chain-proven answers 404. Requires scope read:org-roots. Read-only.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_org_root_requestsList every durable request against one organizational root (root genesis, rooted-vault genesis, or a root-authorized owner action), or read one by requestId — per-slot signature status, requiredApprovals/signaturesPresent, the outcome ladder, and warnings. Requires scope read:org-roots. Read-only.

List every durable request against one organizational root (root genesis, rooted-vault genesis, or a root-authorized owner action), or read one by requestId — per-slot signature status, requiredApprovals/signaturesPresent, the outcome ladder, and warnings. Requires scope read:org-roots. Read-only.

Für dieses Tool wurde kein Eingabeschema veröffentlicht.

policyvault_create_org_root_requestKeine Beschreibung veröffentlicht

Dieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.

policyvault_create_v7_requestKeine Beschreibung veröffentlicht

Dieses Tool hat keine Beschreibung veröffentlicht. Forge erfindet keine.

16 von 20 Tools haben eine Beschreibung veröffentlicht.

Tool-Namen und -Beschreibungen stammen vom Publisher und werden wortgetreu als inerter Text angezeigt. Es sind die Zeichenketten, die ein MCP-Client an ein Modell übergibt, deshalb prüft Forge sie auf Prompt-Injection-Muster — jeder Befund erscheint oben beim Sicherheits-Scan. „Privilegiert“ ist ein Schlagwort-Treffer im Tool-Namen, keine Prüfung dessen, was das Tool tut: ein harmlos klingender Name kann trotzdem alles tun.

Über

Non-custodial Kaspa policy enforcement for AI agents; signers retain custody.

Schlagwörter
mcp
Alternativen
Tool-Oberflächen werden verglichen…

Abhängigkeitsbaum

Was ein Forge-Scan am 2026-10-02 aus den npm-Metadaten aufgelöst hat — beobachtete Auflösung, keine Angabe des Herausgebers.

0 Pakete aufgelöst · 0 direkt · keines mit Sicherheitshinweisen Die Auflösung endet bei Tiefe 4 und 60 Paketen.

Dieses Paket deklariert keine Laufzeitabhängigkeiten.