policy-gate

Deterministic allow/require_approval/deny verdicts for agent actions, before they happen.

我該用這個嗎

品質與安全性

B
說明品質
88%
結構描述完整度
46%
命名品質
85%
汙染風險
100%
權限相符程度
100%
協定合規性
100%

發現項目(1)

  • LOWTool 'policy_rules' description lacks action verb在 policy_rules 中

根據工具定義與協定合規性的自動化分析。

上下文成本

~548Token(工具定義)
~1.1 KB典型回應大小
極小的注意力影響(128k 上下文的 0.43%)

這是每次將伺服器的工具載入模型上下文時所消耗的約略 token 數量。數量越高,可用於其他工作的注意力就越少。

安裝

一鍵安裝

將以下內容加入你的 `claude_desktop_config.json` 檔案:

{
  "mcpServers": {
    "policy-gate": {
      "url": "https://policy-gate.3labsio.workers.dev/mcp"
    }
  }
}

遠端端點

https://policy-gate.3labsio.workers.dev/mcpstreamable-http

它能做什麼

工具清單

工具(4)

🟢 唯讀🟡 寫入🔴 刪除⚪ 未知
⚪policy_example

Free. Worked allow/require_approval/deny verdicts from the live policy engine, so you can judge the service before paying for it.

輸入結構描述

{
  "type": "object",
  "properties": {}
}
⚪policy_rules

Free. The full built-in policy: every tier, rule, condition and rationale. Nothing about how a verdict is reached is hidden.

輸入結構描述

{
  "type": "object",
  "properties": {}
}
🟢policy_check(request, policy_id, policy, ledger)

Evaluate a proposed agent action against a policy and return allow / require_approval / deny with the matched rule and rationale. Paid per call via x402 ($0.005 USDC on Base); returns signing instructions when unpaid.

輸入結構描述

{
  "type": "object",
  "properties": {
    "request": {
      "type": "object",
      "required": [
        "action"
      ],
      "properties": {
        "action": {
          "type": "string",
          "description": "Dotted action id, e.g. payments.send"
        },
        "actor": {
          "type": "string"
        },
        "params": {
          "type": "object"
        }
      }
    },
    "policy_id": {
      "type": "string",
      "description": "Built-in policy id; see policy_rules. \"default-action-tiers-capped\" adds a cumulative spend bound."
    },
    "policy": {
      "type": "object",
      "description": "Your own policy document, evaluated instead of ours"
    },
    "ledger": {
      "type": "object",
      "description": "Optional cumulative exposure for the window. A per-action gate cannot see repetition: 49 payments of $40 each pass a $50 rule individually. Omit it and any policy declaring a cumulative bound returns deny with ledger_required — a cap you can skip by omitting state is decorative. Explicit zeros are an answer; an absent object is not.",
      "properties": {
        "committed_usd": {
          "type": "number",
          "description": "Spend already known to have happened in the window"
        },
        "intended_usd": {
          "type": "number",
          "description": "Dispatched and not yet confirmed. Counts toward the bound, so a burst in flight is not invisible to it."
        },
        "unknown_usd": {
          "type": "number",
          "description": "Dispatched and never resolved. Any value above zero denies with unresolved_intent, regardless of headroom: the system has lost track of this quantity. It closes by observing the target, never by a clock."
        }
      }
    }
  },
  "required": [
    "request"
  ]
}
🟡first_42_sponsor

Pay Fieldproof $42. Returns every live rail: Stripe card_uri, EIP-681 usdc_uri, BIP-21 btc_uri, x402 POST /v1/sponsor, Zelle, and GET /v1/invoice. One settlement meets the first-$42 bar.

輸入結構描述

{
  "type": "object",
  "properties": {}
}

社群

為此伺服器評分

證據

近期觀測

已驗證未記錄版本4 個工具
已驗證未記錄版本4 個工具
已驗證未記錄版本4 個工具