Secure MCP Gateway — Security skill for Claude Code
Build secure mcp infrastructure to audit and control every data access by AI agents with minimal effort.
How to install Secure MCP Gateway
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open datacline/secure-mcp-gateway and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
What Secure MCP Gateway does
Build secure mcp infrastructure to audit and control every data access by AI agents with minimal effort.
Alternatives in Security
- Mcp-scan (Invariant Labs) — MCP security scanner with proxy mode for real-time scanning without infrastructure changes 1.9k ★
- Trail Of Bits Claude-code-config — Opinionated production defaults from a top security firm: sandboxing, permissions, hooks, skills, MCP server c 1.6k ★
- ThinkWatch — Self-hosted AI API and MCP gateway for organizations: SSO and RBAC, per-user identity for MCP tool calls, PII 817 ★
README
Secure MCP Gateway - Enterprise-Grade Security & Management for Model Context Protocol Servers
[](LICENSE) [](https://www.docker.com/) [](https://modelcontextprotocol.io) [](https://openjdk.org/) [](https://golang.org/) [](https://www.typescriptlang.org/)
**Production-ready security gateway for Model Context Protocol (MCP) servers** with authentication, policy-based access control, tool filtering, and comprehensive audit logging for AI agents, Claude Desktop, VS Code, and custom LLM applications.
🌟 What is Secure MCP Gateway?
Secure MCP Gateway is an **enterprise-grade security and management layer** for [Model Context Protocol](https://modelcontextprotocol.io) servers, enabling organizations to safely expose MCP tools to AI agents, LLMs, and users while maintaining complete control over access, permissions, and compliance.
Why Use This Gateway?
**Without the Gateway:**
AI Agent → MCP Server → Unrestricted Tool Access ❌
- No authentication
- No authorization
- No audit trail
- No policy enforcement
- No tool filtering
- No centralized management
**With Secure MCP Gateway:**
AI Agent → Gateway (Auth + Policy + Audit) → Controlled MCP Access ✅
- ✅ JWT/OAuth2 Authentication - Keycloak integration
- ✅ Policy-Based Access Control - Fine-grained permissions per tool
- ✅ MCP Groups - Organize servers by team/role
- ✅ Tool Filtering - Restrict which tools users can access
- ✅ Audit Logging - Complete compliance trail
- ✅ STDIO to HTTP Conversion - Use any MCP server
- ✅ Web UI - Easy management interface
- ✅ Multi-Tenancy - Isolate access by user/tea
Related Skills
MCP Govern
Run MCP governance audit — check 30 rules across security, access control, compliance, data governance, and op
Secure LLM Gateway
Security-focused gateway in front of an LLM API — auth, prompt-injection defense, output filtering, audit logg
Preloop
The open-source AI agent control plane: MCP firewall, model gateway with budgets, human approvals, runtime obs
AI Spend
Audit Claude Code token efficiency: MCP overhead, session patterns, skill cost, cache hit rate. Add --full for
Web3 Audit
Smart contract security audit — runs through 10 bug class checklist (accounting desync, access control, incomp
LLM Filesystem Tools
Python filesystem tools for AI models and LLMs. Secure directory access, file reading, grep search for Ollama,
Related Agents
API Infrastructure Generator
API & infrastructure patterns generator. Creates ADR (Action-Domain-Responder), API Versioning, Health Check,
Authz Auditor
Phase 6 authorization and access-control audit agent that enumerates every route/handler/consumer across the c
Spgr Agent Auth
The authority on authentication, authorization, sessions, and identity. Use when an identity, session, permiss