ALEETH Authority MCP
Description
The first MCP server governed by ICA. A remote streamable HTTP server at https://mcp.aleeth.com/mcp with 37 governed tools: every call is risk-checked by Rail Guard before it runs and sealed with a signed Ed25519 receipt on a hash-chained public ledger anchored to Bitcoin. Fails…
About
The first MCP server governed by ICA. A remote streamable HTTP server at https://mcp.aleeth.com/mcp with 37 governed tools: every call is risk-checked by Rail Guard before it runs and sealed with a signed Ed25519 receipt on a hash-chained public ledger anchored to Bitcoin. Fails closed: no receipt, no response. OAuth…
Details
- Author
- theschreckmethod
- Categories
- Developer Tools, Security
Jump to
Setup
Install ALEETH Authority MCP in your MCP client (Claude Desktop, Cursor, Windsurf, and others).
Repository: https://github.com/theschreckmethod/aleeth-authority-mcp-interface
Follow the installation instructions in the repository README, then restart your MCP client.
ALEETH Authority MCP: public interface and provenance
This repository is the public interface definition, version history, and provenance record for the remote MCP servercom.aleeth/authority-mcp, hosted athttps://mcp.aleeth.com/mcp.
The implementation is private by decision. This repository publishes everything a caller, auditor, or registry can verify without source access: the registry manifest, the complete tool manifest, the version history, and the security policy.
The ALEETH Authority MCP is the first MCP server governed by ICA (Institutional Control Architecture). Every tool call is risk-checked before execution and sealed with a signed Ed25519 receipt on a hash-chained ledger anchored to Bitcoin via OpenTimestamps. The server fails closed: if governance cannot run or the receipt cannot be written, the call does not return a result.
None of the following requires permission from ALEETH or access to the source.
- Protocol and auth conformance (black-box):npx mcp-spec-check https://mcp.aleeth.com/mcp --bearer <token>Read-only credentials are available on request:security@aleeth.com. Current independent grade: A (7 pass, 0 fail, 1 warn), last re-verified 2026-07-24.
- Anonymous access is refused:curl -s -o /dev/null -w "%{http_code}" -X POST https://mcp.aleeth.com/mcpreturns401, with authorization-server discovery served per RFC 9728.
- Receipts verify publicly:any receipt hash from a governed call verifies athttps://imperium.aleeth.com/api/receipts/verify/<hash>, and offline against the pinnable trust anchor athttps://imperium.aleeth.com/.well-known/ica-trust-anchor.json(public keys, SHA-256 DER fingerprints, and an offline verification recipe: you verify with a key you hold, with zero calls to ALEETH).
- Measured latency, floor included:seeperformance/for a live end-to-end run against production and a local server-overhead run, each published with its full run conditions and the enforced decision-timing floor disclosed.
- The full proof surface:https://aleeth.com/proof
Publication is not a precondition for verification. The checks that matter for a hosted remote server probe the running service: protocol conformance, authentication behavior, error contracts, and the receipt ledger. A static scan of this repository can verify the interface and the provenance; runtime governance claims are backed by the signed, Bitcoin-anchored receipt chain, which is public.
Background reading: "Stateless Is Not Governed",https://publications.aleeth.com/stateless-is-not-governed/
- Security disclosures:security@aleeth.com(seeSECURITY.md)
- Read-only evaluation credentials:security@aleeth.com
ALEETH is a brand of The Schreck Group, Inc. AI has met its match. Truth.™
This is a web browser that enables your coding agent, such as Claude Code, to visit websites on your behalf and assist you in identifying bugs or creating UI test cases.
Model Context Protocol server for Skycloak managed Keycloak. Manage clusters, realms, applications, SSO and users from any MCP client.
Turn any OpenAPI spec into a hosted MCP server in 30 seconds. One typed tool per endpoint, server-side auth injection, stable URL across spec updates. EU-hosted, GDPR-native.
Discover powerful AI agents, invoke them instantly, and verify every result with Ed25519 cryptographic proofs. Nine tools — five free, four billed — all protected by OAuth 2.1.
AI-safe approval plan gated Kubernetes operations through MCP with OAuth, RBAC, audit, guardrails.
A remote MCP server with GitHub OAuth authentication and built-in analytics tracking.
A local MCP server that breaks on demand. Test your client against auth failures, disappearing tools, flaky responses, and token expiry, all from a web UI.
An MCP server with built-in GitHub OAuth support, deployable on Cloudflare Workers.
An MCP server with built-in GitHub OAuth support, designed for deployment on Cloudflare Workers.
Hosted mock-API MCP server: agents create live REST/GraphQL mock APIs, import OpenAPI/CSV/db.json, seed fake data, query and write records — free, no auth, stateless Streamable HTTP.
Sign in to leave a review
Use Google, GitHub, or an email account so ratings stay tied to real people.
No reviews posted yet.





