Credential isolation proxy injecting secrets at network boundary with domain restrictions, agent auth, and audit logging.
Copy the AI prompt to install this server into Claude Code, Cursor, or another agent โ or use 1-click editor setup below.
We haven't yet run this listing's install command through our automated sandbox check. This isn't a red flag โ we're steadily working through the catalog.
๐ก Paste the JSON block into your client's configuration file under mcpServers, then restart the application.
Inspect callable tools, capabilities, and parameters exposed to AI agents by Aegis.
Stop putting API keys where AI agents can read them.
Aegis is a local-first credential isolation proxy for AI agents. It sits between your agent and the APIs it calls โ injecting secrets at the network boundary so the agent never sees, stores, or transmits real credentials.
AI agents (Claude, GPT, Cursor, custom bots) increasingly call real APIs โ Slack, GitHub, Stripe, databases. The current pattern is dangerous:
evil.comAegis solves all four. Your agent makes HTTP calls through a local proxy. Aegis handles authentication, enforces domain restrictions, and logs everything.
Aegis is a first-class MCP server. Any MCP-compatible AI agent can use it natively โ no HTTP calls needed.
Before (plaintext key in config):
After (Aegis โ no key visible):
Generate the config for your AI host:
The MCP server exposes three tools:
| Tool | Description |
|---|---|
aegis_proxy_request | Make an authenticated API call (provide service + path, Aegis injects credentials) |
aegis_list_services | List available services (names only, never secrets) |
aegis_health | Check Aegis status |
The MCP server replicates the full Gate security pipeline: domain guard, agent auth, body inspection, rate limiting, audit logging.
| Feature | Description |
|---|---|
| Encrypted Vault | AES-256-GCM encrypted credential storage with PBKDF2 key derivation |
| HTTP Proxy (Gate) | Transparent credential injection โ agent hits localhost:3100/{service}/path |
| Domain Guard | Every outbound request checked against credential allowlists. No bypass |
| Audit Ledger | Every request (allowed and blocked) logged with full context |
| Agent Identity | Per-agent tokens, credential scoping, and rate limits |
| Policy Engine | Declarative YAML policies โ method, path, rate-limit, time-of-day restrictions |
| Body Inspector | Outbound request bodies scanned for credential-like patterns |
| MCP Server | Native Model Context Protocol for Claude, Cursor, VS Code, Windsurf, Cline |
| Web Dashboard | Real-time monitoring UI with WebSocket live feed |
| Prometheus Metrics | /_aegis/metrics endpoint for Grafana dashboards |
| Webhook Alerts | HMAC-signed notifications for blocked requests, expiring credentials |
| RBAC | Admin, operator, viewer roles with 16 granular permissions |
| Multi-Vault | Separate vaults for dev/staging/prod with isolated encryption keys |
| Shamir's Secret Sharing | M-of-N key splitting for team master key management |
| Cross-Platform Key Storage | OS keychain by default (macOS, Windows, Linux) with file fallback |
| TLS Support | Optional HTTPS on Gate with cert/key configuration |
| Configuration File | aegis.config.yaml with env var overrides and CLI flag overrides |
Step-by-step guides with config files and policies included:
.env files | Vault/Doppler | Infisical | Aegis | |
|---|---|---|---|---|
| Agent sees raw key | Yes | Yes (after fetch) | Yes (after fetch) | No โ never |
| Domain restrictions | No | No | No | Yes |
| MCP-native | No | No | Adding | Yes |
| Local-first | Yes | No | No | Yes |
| Setup | 10 sec | 30+ min | 15+ min | ~2 min |
See full comparison for detailed breakdowns against each approach.
| Document | Description |
|---|---|
| Usage Guide | Full reference: CLI commands, configuration, RBAC, policies, webhooks, troubleshooting |
| Security Architecture | Trust boundaries, crypto pipeline, data flow diagrams |
| Threat Model | STRIDE analysis โ 28 threats, mitigations, residual risks |
| Comparison | Detailed comparison with .env, Vault, Doppler, Infisical |
| FAQ | Common questions and objections |
| Roadmap | Feature roadmap |
| Contributing | Code style, PR process, architecture overview |
Requires Node.js โฅ 20 โ check with node -v
See CONTRIBUTING.md for code style, PR process, and architecture overview.
Factual signals from GitHub, npm, and our automated checks โ not a rating.
No reviews yet โ be the first to share how this listing worked for you.
Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.
[](https://allmcps.com/mcp/getaegis-aegis)<a href="https://allmcps.com/mcp/getaegis-aegis"><img src="https://allmcps.com/api/badge/getaegis-aegis?style=directory" alt="Aegis on AllMCPs" /></a>