A2a Governance Bridge MCP Server by MEOK AI Labs
Remote endpoints: streamable-http: https://api.meok.ai/v1/a2a/governance-bridge
This MCP server has functional authentication and rate-limiting mechanisms, but suffers from significant security and code quality issues that warrant caution. The authentication middleware exists but is weakly enforced, file-based credential storage creates persistence risks, and the server's in-memory data structures could leak sensitive information. The code lacks input validation, error handling is inconsistent, and there are concerning patterns around monetization and upsell messaging. While the server's stated purpose (governance checking) is reasonable and permissions are appropriate for a developer tool, the implementation quality falls short of production standards. Supply chain analysis found 3 known vulnerabilities in dependencies (0 critical, 3 high severity). Package verification found 1 issue.
7 files analyzed Β· 15 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Available as Local & Remote
This plugin can run on your machine or connect to a hosted endpoint. during install.
From the project's GitHub README.
mcp-name: io.github.CSOAI-ORG/a2a-governance-bridge-mcp
π§± Part of the MEOK A2A Substrate
This MCP is 1 of 12 agent-to-agent primitives. Run the whole pipeline (identity β trust β policy β firewall β rate-limit β handoff β audit β governance) as one signed endpoint for Β£499/mo including 100K calls β or Β£0.0002 per call pay-as-you-go.
π meok.ai/a2a β see the Substrate
A2A Governance Bridge MCP β compliance checking for agent-to-agent communications
A2A Governance Bridge MCP β compliance checking for agent-to-agent communications. Policy enforcement, audit trails. MIT.
# Install via pip
pip install a2a_governance_bridge_mcp
# Or install via Smithery
npx -y @smithery/cli@latest install a2a-governance-bridge-mcp --client claude
This MCP server is built with EU AI Act compliance built-in:
Need help getting compliant? Book a free 15-min diagnostic β
Need custom development, SLA guarantees, or white-label deployment?
View Pricing β | Contact Sales β
This server is part of the MEOK AI Labs ecosystem β 300+ MCP servers for sovereign AI governance.
| Domain | Purpose |
|---|---|
| councilof.ai | EU AI Act compliance marketplace |
| safetyof.ai | AI safety & monitoring |
| meok.ai | Sovereign AI platform |
| cobolbridge.ai | Legacy modernization |
MIT Β© CSOAI-ORG
| Tier | Price | What you get | Stripe |
|---|---|---|---|
| Smoke test | Β£1 | Signed sample MCP-Hardening report + Article 50 PDF | https://buy.stripe.com/5kQ6oJ0xS3ce8sl7ew8k91j |
| Quick Kit | Β£9 | EU AI Act Article 50 implementation guide (C2PA + EU-Icon) | https://buy.stripe.com/5kQ6oJ0xS3ce8sl7ew8k91j |
| Founder Call | Β£29 | 30-min 1-on-1 with the founder | https://buy.stripe.com/5kQ6oJ0xS3ce8sl7ew8k91j |
Refundable. UK Stripe β VAT-clean. Builds on the 81-MCP MEOK fleet. Verify any signed report at https://meok.ai/verify.
Add to your claude_desktop_config.json (Claude Desktop) or your MCP client config:
{
"mcpServers": {
"a2a-governance-bridge-mcp": {
"command": "uvx",
"args": ["a2a-governance-bridge-mcp"]
}
}
}
Or: pip install a2a-governance-bridge-mcp then run the a2a-governance-bridge-mcp command (stdio transport).
Once configured, ask your assistant, for example:
verify_agent_compliance to β¦"authorize_a2a_transaction to β¦"get_trust_registry to β¦"Be the first to review this server!
by Modelcontextprotocol Β· Developer Tools
Web content fetching and conversion for efficient LLM usage
by Modelcontextprotocol Β· Developer Tools
Read, search, and manipulate Git repositories programmatically
by Toleno Β· Developer Tools
Toleno Network MCP Server β Manage your Toleno mining account with Claude AI using natural language.