Severino Vault Mcp

security MCP Server

Local-first MCP server for safely querying Git-backed Obsidian runbooks and operations inventories with AI tools.

Verified
securitysecurity
3 views0 stars0 forksMIT

Why This Matters

Discovered via github-topic:model-context-protocol and last synced 3mo ago.

Verified
Source
github-topic:model-context-protocol
Stars
0
Last synced
3mo ago
Install
Check source

Install

Install instructions not detected yet

Check the source repository for the latest setup steps.

View source instructions
31
Tools
0
Resources
0
Prompts
Standard I/O
Transport

Available Tools (31)

resource

The Quick Index navigation hub (`report-playbook-mcp-index`)

write

Applies multiple scalar updates plus the complete featured order in one locked, staged transaction with rollback.

SVMC_CACHE_SECONDS

`30`

Sensitivity

`read_doc` returns

Tool

Read or write

SVMC_INDEXED_DIRS

`01 Projects:02 Infrastructure:03 Runbooks`

SVMC_SECRET_ADJACENT_UNLOCK_KEYCHAIN_ACCOUNT

`secret-adjacent-unlock`

Doc

Purpose

Resource

Type

read

Low-latency interactive-client snapshot: all writeup summaries, featured order, and validation results loaded once.

Var

Default

SVMC_CONFIG

`~/.config/severino-vault-mcp/config.toml`

SVMC_SECRET_ADJACENT_UNLOCK_HASH_FILE

`~/.config/severino-vault-mcp/secret-adjacent-unlock.sha256`

SVMC_SECRET_ADJACENT_UNLOCK_KEYCHAIN_SERVICE

`severino-vault-mcp`

secret_adjacent

Metadata only by default. May expose credentials, key paths, recovery flows, internal auth procedures, or escalation paths. Full body requires explicit request plus local unlock.

SVMC_METADATA_URL

unset

SVMC_SECRET_ADJACENT_UNLOCK_AUDIT_LOG

`~/.local/state/severino-vault-mcp/audit.log`

SVMC_ALLOW_SECRET_ADJACENT_UNLOCK

`false`

public

Full body. Safe to publish.

SVMC_SECRET_ADJACENT_UNLOCK_HASH

unset

internal

Full body. Private operational context, but safe to enter an AI chat you control.

SVMC_RESTRICTED_UNLOCK_KEYCHAIN_SERVICE

`severino-vault-mcp`

SVMC_ALIASES_PATH

`<vault>/.svmc/aliases.toml`

SVMC_RESTRICTED_UNLOCK_AUDIT_LOG

`~/.local/state/severino-vault-mcp/audit.log`

SVMC_VAULT_PATH

`~/Documents/vault`

SVMC_ALLOW_RESTRICTED_UNLOCK

`false`

SVMC_RESTRICTED_UNLOCK_HASH

unset

SVMC_RESTRICTED_UNLOCK_HASH_FILE

`~/.config/severino-vault-mcp/restricted-unlock.sha256`

SVMC_RESTRICTED_UNLOCK_KEYCHAIN_ACCOUNT

`restricted-unlock`

sensitive

Full body + advisory. Private but still safe to enter chat when handled deliberately.

restricted

Metadata only by default. May expose credentials, key paths, recovery flows, internal auth procedures, or escalation paths. Full body requires explicit request plus local unlock.