accessoracle

AccessOracle - 10 access control tools: IAM, PAM, recertification, segregation of duties.

我該用這個嗎

品質與安全性

B
說明品質
89%
結構描述完整度
51%
命名品質
82%
汙染風險
100%
權限相符程度
100%
協定合規性
100%

發現項目(2)

  • LOWTool 'access_gap_analysis' description lacks action verb在 access_gap_analysis 中
  • LOWTool 'health_check' description lacks action verb在 health_check 中

根據工具定義與協定合規性的自動化分析。

上下文成本

~709Token(工具定義)
~585 B典型回應大小
中等的注意力影響(128k 上下文的 0.55%)

這是每次將伺服器的工具載入模型上下文時所消耗的約略 token 數量。數量越高,可用於其他工作的注意力就越少。

安裝

一鍵安裝

將以下內容加入你的 `claude_desktop_config.json` 檔案:

{
  "mcpServers": {
    "accessoracle": {
      "url": "https://tooloracle.io/access/mcp/"
    }
  }
}

遠端端點

https://tooloracle.io/access/mcp/streamable-http

它能做什麼

工具清單

工具(10)

🟢 唯讀🟡 寫入🔴 刪除⚪ 未知
⚪register_account(account_id, username, account_type, system, owner, ...)

Register a privileged/service/shared account for IAM tracking.

輸入結構描述

{
  "type": "object",
  "properties": {
    "account_id": {
      "type": "string"
    },
    "username": {
      "type": "string"
    },
    "account_type": {
      "type": "string",
      "enum": [
        "privileged",
        "service",
        "shared",
        "standard",
        "break_glass"
      ]
    },
    "system": {
      "type": "string"
    },
    "owner": {
      "type": "string"
    },
    "department": {
      "type": "string"
    },
    "mfa_method": {
      "type": "string",
      "enum": [
        "totp",
        "fido2",
        "smartcard",
        "push",
        "sms",
        "none"
      ]
    },
    "mfa_enabled": {
      "type": "boolean"
    },
    "is_shared": {
      "type": "boolean"
    },
    "criticality": {
      "type": "string",
      "enum": [
        "critical",
        "important",
        "standard"
      ]
    },
    "remote_access": {
      "type": "boolean"
    },
    "cif_access": {
      "type": "boolean"
    },
    "notes": {
      "type": "string"
    }
  },
  "required": [
    "username",
    "account_type"
  ],
  "additionalProperties": false
}
🟢list_accounts(account_type, system, no_mfa)

List accounts with filters.

輸入結構描述

{
  "type": "object",
  "properties": {
    "account_type": {
      "type": "string"
    },
    "system": {
      "type": "string"
    },
    "no_mfa": {
      "type": "boolean"
    }
  },
  "additionalProperties": false
}
🟢mfa_compliance

Check MFA coverage against DORA Art. 9(4)(d) requirements.

輸入結構描述

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
🟡access_review(add, account_id, reviewer, decision, review_date, ...)

Track access recertification reviews. Set add=true to log a review.

輸入結構描述

{
  "type": "object",
  "properties": {
    "add": {
      "type": "boolean"
    },
    "account_id": {
      "type": "string"
    },
    "reviewer": {
      "type": "string"
    },
    "decision": {
      "type": "string",
      "enum": [
        "confirmed",
        "revoked",
        "modified"
      ]
    },
    "review_date": {
      "type": "string"
    },
    "overdue_days": {
      "type": "integer"
    },
    "notes": {
      "type": "string"
    }
  },
  "additionalProperties": false
}
⚪sod_matrix

Detect Segregation of Duties conflicts across accounts.

輸入結構描述

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
⚪privileged_audit

Privileged account audit — MFA, shared, review status.

輸入結構描述

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
🟡jml_process(log_event, event_type, username, date, actions_taken, ...)

Joiner/Mover/Leaver process tracking. Set log_event=true to log.

輸入結構描述

{
  "type": "object",
  "properties": {
    "log_event": {
      "type": "boolean"
    },
    "event_type": {
      "type": "string",
      "enum": [
        "joiner",
        "mover",
        "leaver"
      ]
    },
    "username": {
      "type": "string"
    },
    "date": {
      "type": "string"
    },
    "actions_taken": {
      "type": "string"
    },
    "verified_by": {
      "type": "string"
    }
  },
  "additionalProperties": false
}
🟡break_glass_log(log, account_id, reason, used_by, approved_by, ...)

Emergency access logging. Set log=true to record usage.

輸入結構描述

{
  "type": "object",
  "properties": {
    "log": {
      "type": "boolean"
    },
    "account_id": {
      "type": "string"
    },
    "reason": {
      "type": "string"
    },
    "used_by": {
      "type": "string"
    },
    "approved_by": {
      "type": "string"
    },
    "duration_minutes": {
      "type": "integer"
    }
  },
  "additionalProperties": false
}
⚪access_gap_analysis

Gap analysis against RTS Art. 21 requirements.

輸入結構描述

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
🟢health_check

Server status.

輸入結構描述

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}

社群

為此伺服器評分

證據

近期觀測

已驗證未記錄版本10 個工具
已驗證未記錄版本10 個工具
已驗證未記錄版本10 個工具