TAP

by holonym-foundation

Not rated
GitHub

About

Credential isolation for AI agents: placeholder secrets, policy checks, optional human approval.

Details

Author
holonym-foundation
Categories
Other

Setup

Install TAP in your MCP client (Claude Desktop, Cursor, Windsurf, and others).

Repository: https://github.com/holonym-foundation/tap-oss

Follow the installation instructions in the repository README, then restart your MCP client.

Credential isolation, approval gating, and connector routing for AI agents.

This repository contains the code that is most useful for:

- auditing request routing and connector behavior
- debugging failed requests
- understanding approval flows
- improving connector-side request shaping
- contributing fixes to the core TAP experience

[!WARNING]Self-hosting means you own the security of your credentials and signing keys.TAP keeps secrets out of your agents, but running it yourself puts the host hardening, key isolation, and correct policy-engine operation on you. It's a path for teams that are well versed in security. For everyone else the hosted version is strongly recommended: credentials sit in a hardware enclave we can't read into, with no ops to run. Start free attap.human.tech.

- crates/tap-proxy/src/routing.rs— how TAP resolves connector target shapes
- crates/tap-proxy/src/placeholder.rs— credential substitution and position validation
- crates/tap-proxy/src/policy.rs— approval policy enforcement
- docs/— full documentation including self-hosting guide

- core proxy and storage crates
- Telegram and Matrix approval bots
- remote MCP server (tap-mcp)
- CLI
- docs (self-hosting, API reference, credential setup)

- enclave deployment glue (CCE policy generation, release-policy automation, ARM templates, env config)
- production workflows and secret bootstrapping
- managed hosting operations glue
- the hosted dashboard UI source (a placeholder is shipped so the proxy compiles)

The enclavekey-management source is included(key_provider_enclave.rs,kms_azure.rs,skr.rs) — it's the custody model documented atdocs.tap.human.tech/security, and each hosted release's enclave measurement is published inmeasurements/. Hosted deployment and operational infrastructure are maintained separately from this repository.

SeeSECURITY.mdto report a vulnerability.

Apache-2.0: free to use, read, modify, and self-host. This repo is the open-source TAP runtime (tap-core,tap-proxy,tap-bot,tap-cli,tap-mcp). The hosted dashboard and managed-service deployment glue are proprietary and live in a separate private repo.

# Needs Postgres (default postgres://tap:tap@localhost:5434/tap, override with # POSTGRES_DATABASE_URL). Isolated suites parallelize; env-mutating unit tests stay serial. cargo test -p tap-core cargo test -p tap-proxy --test integration --test e2e cargo test -p tap-proxy -p tap-bot -p tap-cli --lib --bins -- --test-threads=1

Transaction-complete hotel booking over MCP — 300K+ properties, real hotel confirmation numbers, loyalty points, secure checkout. Hotels are merchant of record. Builders set their own booking fee via Stripe Connect. Built on proven distribution infrastructure.

An MCP server for AI video generation. MCP server for AI video generation. Lets Claude, ChatGPT, OpenClaw , Hermes & other agents create AI videos and publish them to YouTube, TikTok, Instagram etc..

Institutional research and manager diligence reports on hedge funds, venture capital and private equity managers. Summary of filings, personnel changes, media screening and social signals delivered to you in minutes.

ALTER - identity infrastructure for the AI economy

D2C eCommerce fulfillment platform: manage orders, inventory, shipments, campaigns, and billing via AI agents

Apigene MCP Gateway is the runtime layer that connects AI agents to APIs and MCP servers via Model Context Protocol.

MCP to interface with multiple blockchains, staking, DeFi, swap, bridging, wallet management, DCA, Limit Orders, Coin Lookup, Tracking and more.

MCP server for Bitnovo Pay integration with AI agents. Provides cryptocurrency payment capabilities through Bitnovo Pay API. Features include payment creation, status checking, QR code generation, and webhook management with support for multiple tunnel providers (ngrok, zrok, manual).

Shop for gift cards, esims, phone topups. Pay with cards and crypto.

You built it, now get users! GoToMarket MCP server

No reviews yet — be the first

Sign in to leave a review

Use Google, GitHub, or an email account so ratings stay tied to real people.

Email sign in

No reviews posted yet.