OAuth 2.0 framework for MCP servers
RFC-compliant OAuth framework for MCP servers when the protocol lacks built-in auth.
OAuth 2.1 Authorization Server for the Model Context Protocol (MCP)
Agent-to-agent delegation with act-claim chains for MCP authorization flows.
MCP server developers, AI infrastructure engineers
Keycloak · Ory Hydra · Auth0
RFC-compliant OAuth framework for MCP servers when the protocol lacks built-in auth.
RFC 8693 token exchange for agents when Ory and Auth0 already exist.
The project maps the entire OAuth/MCP discovery-to-DCR funnel and gives actionable failure points — e.g., missing WWW-Authenticate headers, malformed PRM or issuer metadata, or broken token endpoints. It’s a focused, practical CLI that also fits into CI (GitHub Actions badge, quickscan command), so teams can catch auth regressions before rollout. Niche but very useful if you run or validate MCP/OAuth endpoints; wider adoption will depend on more examples and integration templates.
RFC 8693 token exchange solves the broken trust chain when AI agents delegate tasks to sub-agents.
Backup Drill verifies restores automatically, unlike Portainer's silent backups.
Free read-only MCP server for Search Console when most others gate data behind paywalls.