Add Intercept — open-source MCP policy enforcement proxy#3514
Closed
s-a-m-a-i wants to merge 1 commit intomodelcontextprotocol:mainfrom
Closed
Add Intercept — open-source MCP policy enforcement proxy#3514s-a-m-a-i wants to merge 1 commit intomodelcontextprotocol:mainfrom
s-a-m-a-i wants to merge 1 commit intomodelcontextprotocol:mainfrom
Conversation
Author
|
Resubmitting from org account |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
What is Intercept?
Intercept is an open-source enforcement proxy that wraps any MCP server and evaluates every
tools/callrequest against YAML-defined policies before forwarding to the upstream server.What it does
delete_repositorytools/listso the agent never sees themHow it works
Intercept sits between the MCP client and server at the transport layer. The agent doesn't know it's there — it sees the same tools and schemas. Policy enforcement is deterministic (YAML rules, not prompt-based) and adds sub-millisecond latency.
Install
Also available as a Go binary:
go install github.com/policylayer/intercept@latestLicense: Apache 2.0
npm: @policylayer/intercept
Website: policylayer.com