MCP server · source category: Security

CTRLRun/ctrlrun

Execution safety for AI agent actions. ctrlrun mcp-operator exposes the approval queue as tools (listpendingapprovals, approve, den…

Execution safety for AI agent actions. ctrlrun mcp-operator exposes the approval queue as tools (listpendingapprovals, approve, deny, resolve, plus receipts, effects, stats and inspectaction), so the human who has to answer a held action answers it from the assistant they are already in; read tools answer without a credential and write tools refuse without one that names a person. Separately, the gateway proxies any MCP server so every tool call is checked against a YAML policy before it runs: allow, hold for a human, or deny. Approvals are single-use and bound to the hash of the exact action, one logical effect runs at most once across processes and hosts, and an unknown outcome is…

Open documentation ↗

Record

Type
MCP server
Category
Security & Identity
Authentication
No authentication
Pricing
Free

Fields are reproduced from the source registry as-is. “Unknown” means the source did not describe the field — it is not an inference. See the methodology for how records are collected and normalised.

Browse all Security & Identity MCP servers.