Skip to main content

Ethicore Engine® Guardian — MCP server

On-demand AI-threat screening for MCP-speaking coding agents (Claude Desktop, Claude Code, Codex, Cursor). Exposes Guardian's four scans as tools:

Tool Use it before…
analyze acting on any prompt, document, or web text
scan_tool_call executing a tool/function the model chose
scan_tool_output letting a tool / RAG result back into context
scan_documents ingesting files (PDF/DOCX/PPTX/XLSX/RTF/TXT, base64)

Each returns Guardian's verdict — BLOCK / CHALLENGE / ALLOW — with threat categories and reasoning.

Paid feature — no free tier

The Guardian MCP is available to:

  • Pro API plan and up — set ETHICORE_API_KEY to a Pro/Team/Enterprise key (hosted), or
  • Bronze self-hosted and up — set ETHICORE_SELFHOST_LICENSE (+ ETHICORE_SELFHOST_PUBKEY) for a local, zero-egress server that wraps the self-hosted engine.

Free/community keys are refused at startup with an upgrade link. (Free access to Guardian is still available directly via the API/SDK — the MCP is the paid, agent-native convenience.) Purchase / upgrade: https://portal.oraclestechnologies.com/billing.

Install

pip install ethicore-guardian-mcp            # hosted edition
pip install "ethicore-guardian-mcp[selfhost]"  # + local self-hosted edition

Configure your client

Claude Desktop — claude_desktop_config.json → mcpServers:

{
  "mcpServers": {
    "guardian": {
      "command": "guardian-mcp",
      "env": { "ETHICORE_API_KEY": "eg-sk-your-PRO-key" }
    }
  }
}

Claude Code — one line:

claude mcp add guardian --env ETHICORE_API_KEY=eg-sk-your-PRO-key -- guardian-mcp

Self-hosted (local, zero egress) — swap the env for your license:

{
  "mcpServers": {
    "guardian": {
      "command": "guardian-mcp",
      "env": {
        "ETHICORE_SELFHOST_LICENSE": "EG-BRONZE-…",
        "ETHICORE_SELFHOST_PUBKEY": "<entitlement public key>"
      }
    }
  }
}

Codex and Cursor use the same command + env in their respective MCP config.

Environment

Variable Edition Meaning
ETHICORE_API_KEY hosted Pro-plan-or-higher Guardian API key
ETHICORE_API_BASE hosted API base URL (default https://api.oraclestechnologies.com)
ETHICORE_SELFHOST_LICENSE local Self-hosted (Bronze+) license key
ETHICORE_SELFHOST_PUBKEY local Entitlement public key (portal / self-hosted docs)
ETHICORE_MCP_TIMEOUT both Per-request timeout seconds (default 30)

If a self-hosted license is present it takes precedence (air-gapped use).

How entitlement is enforced

  • Hosted: the server calls GET /v1/me once at startup; unless the key's plan is Pro or higher (mcp_entitled: true), it exits with an upgrade message and serves nothing.
  • Local: the server activates the self-hosted SDK; a valid Bronze+ license is required to activate, so activation is the entitlement. No data leaves your infrastructure.

© 2026 Oracles Technologies LLC · Ethicore Engine® Guardian

Release files for ethicore-guardian-mcp 0.1.0

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for ethicore-guardian-mcp 0.1.0
File Size Uploaded
ethicore_guardian_mcp-0.1.0.tar.gz 10.3 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for ethicore-guardian-mcp 0.1.0
File Interpreter ABI Platform
ethicore_guardian_mcp-0.1.0-py3-none-any.whl Python 3 none any Details

Total release size: 20.5 kB

Release files / ethicore_guardian_mcp-0.1.0.tar.gz

Download URL ethicore_guardian_mcp-0.1.0.tar.gz
Size 10.3 kB
Tags Source
SHA-256 checksum
How to use checksums
560f9b529ca2b7bf6cc745eedc56e21c49221bf55e286490b8a6cadfc5c0ee3c
BLAKE2b-256 checksum
How to use checksums
f8ff3760e91e7ef3a02742d819af289f9aac03e6c309505f22a1bc5945ed7b2a
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.13.13

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Sep 29, 2026.

Transparency log

Release files / ethicore_guardian_mcp-0.1.0-py3-none-any.whl

Download URL ethicore_guardian_mcp-0.1.0-py3-none-any.whl
Size 10.2 kB
Tags Python 3
SHA-256 checksum
How to use checksums
31055f1f8761854750e71f2dca5105378589124b3ae8e2ba0238de944412998d
BLAKE2b-256 checksum
How to use checksums
e08304c8ec69e8fc0f146fe9151ce5ac3cb8fc15be893c3efae22a9c70035277
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.13.13

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Sep 29, 2026.

Transparency log

Release history Release notifications | RSS feed

0.1.2

2 release files

0.1.1

2 release files

This release

0.1.0 This release

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page