PluginBench
MCP Server
Maintained
AGPL-3.0

Infraveil Control Plane MCP Server

io.github.infraveilhq/control-plane

What is the Infraveil Control Plane MCP server?

Govern your backend control plane from your AI agent - signed, human-approval-gated.

How to install Infraveil Control Plane

Copy-paste configuration for popular MCP clients.

transport: stdio
Config generated by PluginBench — verify against the source before use.
Environment / auth
  • INFRAVEIL_BASE_URL
    required

    Control-plane base URL, e.g. https://api.infraveil.com

  • INFRAVEIL_CLIENT_ID
    required

    Your Infraveil client id (same one the agent uses)

  • INFRAVEIL_AGENT_ID
    required

    The agent id this MCP server speaks for

  • INFRAVEIL_AGENT_TOKEN
    required
    secret

    The agent's existing token; used to sign requests. Never minted here.

  • INFRAVEIL_AGENT_FILE

    Alternative to the four vars above: path to your rendered agent source; ids and token are read from it.

  • INFRAVEIL_VERIFY_RESPONSES

    Verify the control plane's response signatures (default on). Set 0 only for debugging.

~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "control-plane": {
      "command": "uvx",
      "args": [
        "infraveil-mcp"
      ],
      "env": {
        "INFRAVEIL_BASE_URL": "<YOUR_INFRAVEIL_BASE_URL>",
        "INFRAVEIL_CLIENT_ID": "<YOUR_INFRAVEIL_CLIENT_ID>",
        "INFRAVEIL_AGENT_ID": "<YOUR_INFRAVEIL_AGENT_ID>",
        "INFRAVEIL_AGENT_TOKEN": "<YOUR_INFRAVEIL_AGENT_TOKEN>",
        "INFRAVEIL_AGENT_FILE": "<YOUR_INFRAVEIL_AGENT_FILE>",
        "INFRAVEIL_VERIFY_RESPONSES": "<YOUR_INFRAVEIL_VERIFY_RESPONSES>"
      }
    }
  }
}

Related MCP servers

Gate an AI agent's destructive actions behind human approval, with a tamper-evident log.

0
Python
AGPL-3.0
View repository →

eBPF-based GPU causal observability with 7 MCP tools for AI-assisted GPU debugging

View repository →

Block prompt injection, evasive spacing, and obscene content before it reaches your LLM.

0
TypeScript
View repository →
EXExec Sandbox logo

Exec Sandbox

Maintained

Single exec tool running caller Python in a network-isolated locked-down sandbox.

1
Go
MIT
View repository →

Runs a command in a throwaway Kubernetes pod and returns exit code, output and artifacts.

0
Go
MIT
View repository →
SSSSH Fleet logo

SSH Fleet

Maintained

Curated ssh_probe diagnostics and single-host ssh_exec over an allowlisted SSH fleet.

0
Go
MIT
View repository →