productivity MCP Server
Local-first MCP policy proxy. Tool-block, SQL-mutation gate, PII redact, audit, rate-limit, OpenTelemetry, vault secrets, first-use quarantine, schema pre-inject. No hosted gateway. One YAML Lens wraps any MCP, 20 included (Postgres, MySQL, MongoDB, GitHub, Stripe, Snowflake, etc.). 84% fewer tokens, ~3x faster, holds PII leaks. AGPL or commercial.
Discovered via github-topic:mcp-server and last synced 1d ago.
1. Install the package
npx januscope
2. Add to claude_desktop_config.json
{
"mcpServers": {
"januscope": {
"command": "npx",
"args": [
"januscope"
]
}
}
}Config file location: ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) / %APPDATA%\Claude\claude_desktop_config.json (Windows)
1
Env-side requirements
call outcome
`session` field
2
**−73%**
response
fields sqlGuard: tools: [<tool-name>] # which tool(s) carry a SQL argument sqlArg: <name> # default "sql" readOnly: <bool> # default true; rejects mutations in the SQL argument mode: allowlist
`user` field
Median per cycle
Problem
3
string
response, `ok` or `tool_error`
all records
Raw Postgres MCP
response, `error`
221
When
call outcome
`team` field
15.7 s
all records
uniq -c
15,994
`OP_SERVICE_ACCOUNT_TOKEN` in env. Peer dep: `npm install @1password/sdk`.
call outcome
all records
What it does
ISO-8601 string
call outcome
all records
stdout> # "~" is expanded. Parent directories # are auto-created. File opens with 0o600 # perms (user-only; matters for logRawArgs). logRawArgs: <bool> # default false; when false, args are SHA-256 hashed ``` Environment variables in string values are expanded with `${VAR}` or `$VAR`. Missing variables become empty strings and emit a one-line `[januscope] warn: env var 'FOO' is unset, substituted empty string` on stderr (once per name). We don't refuse to start, the user may be intentionally testing with undefined vars, but the warning is loud enough that a forgotten `$DATABASE_URL` at 2am shows up in the logs instead of silently breaking the lens. ### Credential-vault references (optional) Alongside plain `${VAR}` substitution, three URI-shaped references are resolved at startup from external secret stores:
correlated response
sensitive # optional lens data-sensitivity label. # When set, `instructions` adds a short banner to # every tool description and `audit` tags every record # with `classification: "<value>"`. Purely informational; # enforcement still lives in `block` / `sqlGuard` / `redact`. firstRun: approve # optional; when set, the runtime fingerprints the lens # via TWO independent layers, both stored in # ~/.januscope/approved.json: # (1) Static lens fingerprint: block rules + sqlGuard # tools + rateLimit rules + redact rule shapes + # target command. Refuses startup on drift. # (2) Live tools/list fingerprint: every upstream tool's # name + description + inputSchema + annotations. # Re-checked on EVERY tools/list response (not just # the first), so a compromised upstream cannot pass # the initial check and then mutate the surface mid- # session via notifications/tools/list_changed. # Rewrites tools/list into a JSON-RPC error on drift. # Run `januscope approve --config <path>` to re-baseline # both layers atomically (probes the target, captures the # live tools, persists both fingerprints). Pass --no-probe # to skip the live capture and let it TOFU on next run. # Defends against tool-poisoning where a malicious MCP # quietly adds a tool, mutates a description (prompt- # injection vector), or changes a tool's input schema. block: # array of tool names or globs; "admin_*" supported - <name or glob> instructions: <string> # appended to every tool description dbSchema: driver: postgres
compact includeComments: <bool> # false omits table, view and column comments in Postgres/MySQL metadata refresh: startup
Persistent memory system for Claude Code. Two-layer architecture (hot cache + knowledge wiki), safety hooks, /close-day end-of-day synthesis. Zero external dependencies.
Detect and exploit NoSQL injection vulnerabilities in MongoDB, CouchDB, and other NoSQL databases to demonstrate authentication bypass, data extraction, and unauthorized access risks.
Done-for-you .faf generator. One-click AI context for any project - new, legacy, or famous. Auto-detects stack, scores readiness, works everywhere.
Especialista profundo em Claude Code - CLI da Anthropic. Maximiza produtividade com atalhos, hooks, MCPs, configuracoes avancadas, workflows, CLAUDE.md, memoria, sub-agentes, permissoes e integracao com ecossistemas.
GenBI (Generative BI) for AI agents, an open-source, governed text-to-SQL through an open context layer that turns natural-language questions into trusted dashboards, charts, and SQL across 20+ data sources, such as BigQuery, Snowflake, PostgreSQL, ClickHouse, Amazon Redshift, Databricks and more.
The all-in-one, open-source backend platform for agentic coding. InsForge gives your coding agent database, auth, storage, compute, hosting, and AI gateway to ship full-stack apps end-to-end.
When Philosophy meets AI
AI equity research agent with resilient workflows, Redis Lua single-flight, pgvector RAG, versioned reports, evidence tracing, and RAG evaluation.
Learn how to use the strategy-builder Claude skill. Complete guide with installation instructions and examples.
Learn how to use the Send Email Claude skill. Complete guide with installation instructions and examples.
Learn how to use the sales-alfred Claude skill. Complete guide with installation instructions and examples.