security MCP Server
The Estate's primary MCP server — GitHub, GitLab, and 115+ capability cartridges. Formally verified BoJ-server-ABI in Idris2 0.8.0 (%default total) with safety lemmas for credential isolation.
Discovered via github-topic:mcp-server and last synced 2mo ago.
1. Install the package
npx @hyperpolymath/boj-server
2. Add to claude_desktop_config.json
{
"mcpServers": {
"-hyperpolymath-boj-server": {
"command": "npx",
"args": [
"@hyperpolymath/boj-server"
]
}
}
}Config file location: ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) / %APPDATA%\Claude\claude_desktop_config.json (Windows)
Cloudflare v4 — Workers, D1, KV, R2, DNS, zone settings, SSL/TLS
ClickHouse — columnar queries, bulk inserts, real-time analytics
Telegram Bot API — messages, chats, inline queries, updates
Academic workflow — Zotero integration, citations, paper review
Native desktop windows — panel loading, JS bridge
*AffineScript → typed-wasm* at Level 7/10 ownership soundness
Game server admin + configuration drift
Description
Linode/Akamai — instances, volumes, domains, NodeBalancers, StackScripts
Supabase — Postgres, Auth, Storage, Edge Functions
*Hypatia* — neurosymbolic CI security/quality/compliance scanner
Anthropic Messages API — Claude models, token counting, multi-turn
Enterprise code intelligence — graph-based analysis for AI-assisted dev
Hackage — Haskell packages
Proof verification — Lean, Coq, Agda, Isabelle, Idris2, Z3, more
Type-theory learning system — classification + learner evaluation
Hetzner Cloud — servers, volumes, firewalls, networks, snapshots, floating IPs
ArangoDB — AQL queries, multi-model documents, graph traversals
CircleCI — pipelines, workflows, jobs, artifacts
Unified notify — Email, SMS, WhatsApp, Slack, Telegram, Discord
PyPI — Python packages, search, metadata, versions, downloads
Conflow — configuration management
DNS lookup cartridge
GitLab REST API — projects, issues, MRs
Render REST v1 — services, deploys, env groups, custom domains, jobs
*VeriSimDB* — verified simulation database with formal drift detection
Grafana — dashboards, panel queries, alert rules, annotations
Sheets — metadata, cell ranges, named ranges, sheet listing
Task classifier — recommends opus/sonnet/haiku per task
Public dataset access for LLM apps
opam — OCaml packages
Ephapax — proof-compiler query tools for formal verification
PostgreSQL — full transaction support, connection pooling, query lifecycle
Docker Hub — image search, repos, tag listing, manifests
Jira — projects, issues, sprints, workflows
Persistent local memory for Claude, Cursor, Codex (13 tools, no cloud)
Multi-language session manager — Eclexia, AffineScript, BetLang, Ephapax
panic-attacker static analysis — dangerous patterns, banned constructs, drift
oo7 agent meta-language — parse/run/trace/build/test/lint
Generic Debug Adapter Protocol gateway
Vault CLI credential broker — execute, list, verify, rotate
gitbot-fleet gate compliance tracker
AWS gateway — session-based auth, per-region slots, throttle management
Redis — KV, sorted sets, pub/sub, streams, Lua scripting
Stapeln stack manager — Chainguard-base composable container layers
Slack — messages, channels, threads, search, users
Airtable — bases, table schemas, record CRUD
Cross-domain LSP router across all 12 poly-*-lsp servers
Rokur — Svalinn secrets GUI authorisation layer
IDApTIK game server administration
Multi-forge git operations (GitHub, GitLab, Gitea, Bitbucket)
Sentry — issues, events, projects, releases, deployments
Obsidian vault — note search, content, backlinks, tags, graph
OODA-loop agent session enforcer
真实性验证技能。分析用户提供的信息、消息、图片或内容,判断其真实性和可信度,识别虚假信息、AI生成内容或伪造内容。
Container escape is a critical attack technique where an adversary breaks out of container isolation to access the host system or other containers. Detection involves monitoring for escape indicators
Pod Security Standards (PSS) define three levels of security policies -- Privileged, Baseline, and Restricted -- enforced by the Pod Security Admission (PSA) controller built into Kubernetes 1.25+. PS
Implements eBPF-based security monitoring using Cilium Tetragon for real-time process execution tracking, network connection observability, file access auditing, and runtime enforcement. Covers TracingPolicy CRD authoring with kprobe/tracepoint hooks, in-kernel filtering via matchArgs/matchBinaries selectors, JSON event export, and integration with SIEM pipelines. Use when building kernel-level runtime security observability for Linux hosts or Kubernetes clusters.
AI Agent Governance Toolkit — Policy enforcement, zero-trust identity, execution sandboxing, and reliability engineering for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10.
Open-source sandboxed agent harness for teams. Giving every employee a secured personal agent.
AI agent security scanner. Detect vulnerabilities in agent configurations, MCP servers, and tool permissions. Available as CLI, GitHub Action, ECC plugin, and GitHub App integration. 🛡️
A secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)
Learn how to use the absolute-audit Claude skill. Complete guide with installation instructions and examples.
Learn how to use the token-scam-analysis Claude skill. Complete guide with installation instructions and examples.
Learn how to use the absolute-upgrade Claude skill. Complete guide with installation instructions and examples.