io.github.kanywst/mcp-opa-authz MCP Server
io.github.kanywst/mcp-opa-authz
What is the io.github.kanywst/mcp-opa-authz MCP server?
Authorization answers from real policy code: evaluate Rego locally, or ask an AuthZEN 1.0 PDP.
How to install io.github.kanywst/mcp-opa-authz
Copy-paste configuration for popular MCP clients.
AUTHZEN_PDP_URLDefault AuthZEN Access Evaluation endpoint, e.g. https://pdp.example.com/access/v1/evaluation. Only evaluate_policy works without it.
AUTHZEN_PDP_TOKENsecretAuthorization header value for the PDP. A value with no scheme is sent as "Bearer <token>".
AUTHZEN_PDP_TIMEOUTPer-request timeout for PDP calls, as a Go duration. Default 10s.
MCP_OPA_EVAL_TIMEOUTWall-clock limit on a single Rego evaluation, as a Go duration. Default 5s.
MCP_OPA_ALLOW_NETWORK_BUILTINSRe-enable http.send, net.lookup_ip_addr and opa.runtime inside evaluated policies. Off by default: policy source evaluated here comes from a model and runs inside the server process.
Related MCP servers

Firekeep
Self-hosted operating layer for AI agents: knowledge, continuity, coordination, and governance.

io.github.kapillamba4/code-memory
Local semantic code search with Git history—no API key, runs offline, saves 50% tokens.

io.github.kapillamba4/meta-prompt-mcp
MCP server providing official Google and Anthropic prompting guides for meta-prompt generation.

humanMCP — kapoost
Personal MCP server for humans who create. Proof of authorship, license control.
Federated listings from personal humanMCP servers. Search offers, trades by humans.

io.github.kapruka/reviewguru
Query Sri Lankan businesses, doctors, and reviews from any MCP-aware AI agent.