@atlasent/mcp-server

MCPattested
v2.16.0io.github.AtlasentApache-2.0Updated 7d agonpmGitHub

AtlaSent stops risky changes to production unless someone approved them, and gives you proof for your auditor. MCP server for AI agents; works offline in local mode.

Works in
ClaudeCursorCopilotGemini

Inferred from the transports this listing declares (stdio). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.

Attested build
A verified provenance attestation binds this artifact to the listed repository. Nobody has claimed the listing yet — this proves where the code was built, not who stands behind it.
528Downloads/wk
7d agoLast update
Reads these credentials
  • ATLASENT_API_KEYAPI keyoptional

    Atlasent API key: sign up free at console.atlasent.io and choose Connect an AI agent. Leave blank for the local demo mode.

Declared by the author in the official MCP registry. Forge does not store, broker, or ever see these values — the config below is scaffolded with placeholders you fill in locally.

Package
Authorio.github.Atlasent
LicenseApache-2.0
Version2.16.0
Sourcenpm+mcp-registry
Trust Status
A
85/100Trusted
✓Listed in Forge index+10/10
✓Identity verified · attested build+20/20
—Ed25519 publish signature+0/5
→ Included automatically when the publisher runs `forge publish`
—Domain verification+0/5
→ Publisher: host /.well-known/forge.json on the package homepage with { "publisher": "<github-login>" }
✓npm Trusted Publishing (Sigstore)+5/5
—npm maintainer match+0/5
→ Publisher: add the verified GitHub login to the npm package's maintainers (npm owner add <login>)
✓CVE scan · clean+30/30
✓Static analysis · clean+20/20
Paste into Claude Code, Cursor, or any AI assistant to fix all gaps
StatusIdentity verified
PublisherUnverified
SignatureUnsigned
Domain—
Provenance✓ Sigstore-verified · ab25f0a
Dependencies✓ 60 resolved+ · none vulnerable
Tool surface40 tools · 4 privileged
Security scan✓ Cleanv2.16.0 · 6d agoHow well does this scan work?
EvalsNone
IndexedSep 24, 2026

Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.

Tools

40 tools · 4 privileged
Statically extracted from the published packagev2.16.0 · 6d ago

Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.

atlasent_list_scim_usersList provisioned users via SCIM 2.0 (RFC 7643) for an organization.

List provisioned users via SCIM 2.0 (RFC 7643) for an organization.

No input schema was published for this tool.

atlasent_get_scim_userRetrieve a single provisioned SCIM user by ID.

Retrieve a single provisioned SCIM user by ID.

No input schema was published for this tool.

atlasent_create_scim_userProvision a new user via SCIM 2.0. Adds the user to the AtlaSent

Provision a new user via SCIM 2.0. Adds the user to the AtlaSent

No input schema was published for this tool.

atlasent_patch_scim_userprivilegedUpdate a provisioned user using RFC 7644 SCIM PatchOp operations.

Update a provisioned user using RFC 7644 SCIM PatchOp operations.

No input schema was published for this tool.

atlasent_delete_scim_userprivilegedDeprovision a SCIM user. Removes them from the AtlaSent directory.

Deprovision a SCIM user. Removes them from the AtlaSent directory.

No input schema was published for this tool.

atlasent_list_scim_groupsList provisioned groups via SCIM 2.0 for an organization.

List provisioned groups via SCIM 2.0 for an organization.

No input schema was published for this tool.

atlasent_get_siem_configRetrieve the SIEM export configuration for an organization.

Retrieve the SIEM export configuration for an organization.

No input schema was published for this tool.

atlasent_upsert_siem_configCreate or update the SIEM export configuration for an organization.

Create or update the SIEM export configuration for an organization.

No input schema was published for this tool.

atlasent_test_siem_deliverySend a test event to the configured SIEM destination and report the result.

Send a test event to the configured SIEM destination and report the result.

No input schema was published for this tool.

atlasent_list_evidence_exportsList compliance evidence bundles for an organization.

List compliance evidence bundles for an organization.

No input schema was published for this tool.

atlasent_get_evidence_exportRetrieve a specific compliance evidence bundle by ID.

Retrieve a specific compliance evidence bundle by ID.

No input schema was published for this tool.

atlasent_create_evidence_exportGenerate a compliance evidence bundle for audit regimes (SOC 2 Type II,

Generate a compliance evidence bundle for audit regimes (SOC 2 Type II,

No input schema was published for this tool.

evaluateCall this BEFORE performing any sensitive action. Returns a Decision:

Call this BEFORE performing any sensitive action. Returns a Decision:

No input schema was published for this tool.

verify_permitCall this AFTER `evaluate` returns allow and BEFORE the protected native side effect.

Call this AFTER `evaluate` returns allow and BEFORE the protected native side effect.

No input schema was published for this tool.

deploy_serviceExample protected tool. Every call is authorized AND its Permit is verified by AtlaSent

Example protected tool. Every call is authorized AND its Permit is verified by AtlaSent

No input schema was published for this tool.

atlasent_evaluateEvaluate an action against your published AtlaSent policies.

Evaluate an action against your published AtlaSent policies.

No input schema was published for this tool.

atlasent_list_policiesList all constraint bundles / policies for this organization.

List all constraint bundles / policies for this organization.

No input schema was published for this tool.

atlasent_get_policyRetrieve a single constraint bundle / policy by ID.

Retrieve a single constraint bundle / policy by ID.

No input schema was published for this tool.

atlasent_list_audit_eventsRetrieve recent evaluation events from the audit log.

Retrieve recent evaluation events from the audit log.

No input schema was published for this tool.

atlasent_explain_authorityExplain why a principal currently has (or lacks) authority for a scope.

Explain why a principal currently has (or lacks) authority for a scope.

No input schema was published for this tool.

atlasent_integrity_auditAudit the organization's authority graph for internal inconsistency and

Audit the organization's authority graph for internal inconsistency and

No input schema was published for this tool.

atlasent_create_policyCreate a new constraint bundle for an action.

Create a new constraint bundle for an action.

No input schema was published for this tool.

atlasent_update_policyUpdate a constraint bundle — change rules, title, or publish/archive it.

Update a constraint bundle — change rules, title, or publish/archive it.

No input schema was published for this tool.

atlasent_delete_policyprivilegedPermanently delete a constraint bundle. Prefer archiving over deleting.

Permanently delete a constraint bundle. Prefer archiving over deleting.

No input schema was published for this tool.

atlasent_revoke_permitRevoke a permit before it expires. The permit immediately becomes

Revoke a permit before it expires. The permit immediately becomes

No input schema was published for this tool.

atlasent_list_permitsList issued permit tokens for audit and monitoring.

List issued permit tokens for audit and monitoring.

No input schema was published for this tool.

atlasent_get_permitFetch one permit's record: status, actor, action, environment, issue/expiry/consume

Fetch one permit's record: status, actor, action, environment, issue/expiry/consume

No input schema was published for this tool.

atlasent_check_permitCheck whether a permit is still usable without consuming it. Returns

Check whether a permit is still usable without consuming it. Returns

No input schema was published for this tool.

atlasent_get_decisionFetch one authorization decision (execution evaluation) by id: the decision,

Fetch one authorization decision (execution evaluation) by id: the decision,

No input schema was published for this tool.

atlasent_permitManually issue a permit token for an action. Use for pre-authorized

Manually issue a permit token for an action. Use for pre-authorized

No input schema was published for this tool.

atlasent_verify_permitVerify a permit token with full binding inputs against the V1 endpoint.

Verify a permit token with full binding inputs against the V1 endpoint.

No input schema was published for this tool.

atlasent_await_approvalWait for a person to approve or reject a held action in the AtlaSent console.

Wait for a person to approve or reject a held action in the AtlaSent console.

No input schema was published for this tool.

atlasent_record_execution_evaluationRecord the outcome of an execution that was permitted by a prior evaluate

Record the outcome of an execution that was permitted by a prior evaluate

No input schema was published for this tool.

atlasent_create_webhookRegister a webhook URL to receive evaluation events.

Register a webhook URL to receive evaluation events.

No input schema was published for this tool.

atlasent_delete_webhookprivilegedRemove a registered webhook.

Remove a registered webhook.

No input schema was published for this tool.

atlasent_lookup_actionLook up canonical action specifications from the Authorization Intelligence Library.

Look up canonical action specifications from the Authorization Intelligence Library.

No input schema was published for this tool.

atlasent_atlas_lookupLook up a canonical AtlaSent concept from the Knowledge Atlas — the compiled graph of the system's own

Look up a canonical AtlaSent concept from the Knowledge Atlas — the compiled graph of the system's own

No input schema was published for this tool.

atlasent_evaluate_manyEvaluate up to 100 actions in a single request against your published

Evaluate up to 100 actions in a single request against your published

No input schema was published for this tool.

atlasent_evaluate_streamEvaluate up to 100 actions via the streaming endpoint. The tool buffers

Evaluate up to 100 actions via the streaming endpoint. The tool buffers

No input schema was published for this tool.

atlasent_queryRun a read-only GraphQL query against the AtlaSent V2 GraphQL endpoint.

Run a read-only GraphQL query against the AtlaSent V2 GraphQL endpoint.

No input schema was published for this tool.

40 of 40 tools published a description.

Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.

About

AtlaSent stops risky changes to production unless someone approved them, and gives you proof for your auditor. MCP server for AI agents; works offline in local mode.

Keywords
mcpmodel-context-protocolatlasentauthorizationpolicyagentaiclaudecursorwindsurfguardrailsai-agent-securityexecution-boundarypermitsmcp-server
Alternatives
Comparing tool surfaces…

Dependency tree

What one Forge scan resolved from npm metadata on 2026-09-28 — observed resolution, not a publisher declaration.

60 packages resolved · 2 direct · none carrying advisories Resolution stops at depth 4 and 60 packages.

The crawl stopped at the depth-4 limit. Anything below that level was never resolved.

The crawl stopped at the 60-package limit. The rest of the tree was never resolved.

36 more resolved packages are not drawn here (display cap: 24). Every dependency carrying an advisory is drawn regardless of the cap. Full inventory (CycloneDX SBOM)

Declared but not resolved

53 declared dependencies never landed in the tree. They are missing from Forge's resolution, not from the package.

+41 more not listed. The counts by reason above cover all of them.

Not followed: peerDependencies. This tree covers runtime dependencies only, so anything those pull in was never resolved.

Topics

Related in security