C
io.github.tomjwxf/scopeblind-mcp
Security gateway that wraps any MCP server with per-tool policies, approval gates, and optional Ed25519-signed decision receipts. Shadow mode logs every tool call without blocking; enforce mode applies block, rate-limit, and minimum-tier rules. Receipts are independently verifiable offline with no accounts needed.
Security Score
65/100Details
- URL https://github.com/tomjwxf/scopeblind-gateway
- Framework mcp
- Sources mcp_registry, glama
- First Seen Mar 16, 2026
- Response Time 665ms
Security Checks (14 criteria)
HTTPS Enabled
Authentication Required
No Admin Exposure
CORS Configured
No Credential Leak
No Server Info Leak
No Open Redirect
No Directory Listing
No Error Info Leak
Endpoint Reachable
Content-Security-Policy
Strict-Transport-Security
X-Frame-Options
X-Content-Type-Options
Source Links
- Repository github.com/tomjwxf/scopeblind-gateway