Back to Browse

Guardrails MCP Server

Developer ToolsLow Risk8.0MCP RegistryLocal
Free

Server data from the Official MCP Registry

AI Agent Guardrails MCP server - security layer

About

AI Agent Guardrails MCP server - security layer

Security Report

8.0
Low Risk8.0Low Risk

Valid MCP server (1 strong, 1 medium validity signals). 2 known CVEs in dependencies (0 critical, 2 high severity) Package registry verified. Imported from the Official MCP Registry.

2 files analyzed · 3 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "io-github-expertvagabond-guardrails": {
      "args": [
        "-y",
        "guardrails-mcp-server"
      ],
      "command": "npx"
    }
  }
}

Documentation

View on GitHub

From the project's GitHub README.

guardrails-mcp-server

[!License: MIT](https://opensource.org/licenses/MIT) [!MCP](https://modelcontextprotocol.io) [!Node.js](https://nodejs.org)

MCP server for AI agent security guardrails. Provides input validation, prompt injection detection, PII redaction, output filtering, policy enforcement, rate limiting, and comprehensive audit logging.

Tools

ToolDescription
validate_inputValidate and sanitize incoming requests through all guardrail checks
filter_outputFilter and redact sensitive data (PII, secrets, credentials) from responses
check_policyEvaluate a request against security policies (RBAC, resource access, quotas)
get_audit_logsQuery the audit log with filtering by type, user, time range
get_statsGet engine statistics including active users, block rate, request counts
update_configUpdate guardrail configuration at runtime

Security Features

  • Prompt Injection Detection -- 12 regex patterns for jailbreak, DAN mode, system prompt override
  • PII Detection and Redaction -- SSN, credit card, email, phone, IP, API keys, AWS keys, JWT, passwords, private keys, connection strings
  • Malicious Code Blocking -- eval, exec, subprocess, child_process, shell injection
  • Policy Engine -- Block sensitive paths, dangerous tools, unauthenticated destructive ops, URL allowlist, maintenance windows
  • Rate Limiting -- Per-user sliding window (configurable requests/minute)
  • Audit Logging -- Timestamped events with metrics, log rotation, external handler support

Install

npm install

Configuration

{
  "mcpServers": {
    "guardrails": {
      "type": "stdio",
      "command": "node",
      "args": ["/path/to/guardrails-mcp-server/index.js"]
    }
  }
}

Project Structure

src/engine/GuardrailsEngine.js    # Core orchestration
src/validators/InputValidator.js   # Prompt injection and PII detection
src/filters/OutputFilter.js        # Redaction and harmful content blocking
src/policies/PolicyEngine.js       # RBAC, quotas, maintenance windows
src/audit/AuditLogger.js           # Event logging and metrics

License

MIT

Reviews

No reviews yet

Be the first to review this server!