Skip to main content

mcpseal

An MCP tool-integrity CLI: pins the hash of every approved MCP tool definition and blocks execution the instant a tool's description or input schema drifts — the pattern known as a "rug pull," where a server changes a tool's behavior after you've already trusted it. Free, local, zero-infra.

What it does

  1. mcpseal init launches each MCP server your client is configured to use, records every tool's name/description/input schema as a cryptographic hash, and writes a .mcp-lock.json you commit to your repo (like package-lock.json).
  2. mcpseal install rewrites your client's config so it launches your servers through mcpseal proxy instead of directly.
  3. From then on, every time a tool definition is served to your client, mcpseal re-hashes it and compares against the pinned hash. A match forwards normally. A mismatch gets blocked before your client ever sees it, with the exact old-vs-new description shown.

Privacy

Nothing leaves your machine, ever, unless you explicitly run mcpseal login. No telemetry, no network calls, no account required. login is entirely optional and only relevant if your organization runs the paid Control Plane — everything above is the complete product for a solo developer.

Quickstart

uvx mcpseal init
uvx mcpseal install

or, if you prefer a persistent install:

pip install mcpseal
mcpseal init
mcpseal install

Commands

Command What it does
mcpseal init Discover MCP servers, hash every tool, write .mcp-lock.json
mcpseal install Route your client's servers through the proxy
mcpseal uninstall Restore your original client config exactly
mcpseal scan [--json] Re-check all tools now; non-zero exit on drift (CI-friendly)
mcpseal approve <server> <tool> Trust a tool's current definition (local lockfile only)
mcpseal deny <server> <tool> Block a tool even if its hash matches
mcpseal diff Show the old-vs-new description for any drifted tool
mcpseal status [--json] LOCAL HEALTH + CONTROL PLANE summary, always works offline
mcpseal doctor [--json] Deeper diagnostics; Control Plane unreachability never fails it
mcpseal login / logout Optional: connect/disconnect this machine to a hosted workspace
mcpseal policy-pull Fetch and verify a signed org policy, if connected

Full source, architecture docs, and the Node.js twin of this CLI are in the same monorepo this package is built from.

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

mcpseal-0.1.1.tar.gz (49.0 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

mcpseal-0.1.1-py3-none-any.whl (45.9 kB view details)

Uploaded Python 3

File details

Details for the file mcpseal-0.1.1.tar.gz.

File metadata

  • Download URL: mcpseal-0.1.1.tar.gz
  • Upload date:
  • Size: 49.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/7.0.0 CPython/3.13.9

File hashes

Hashes for mcpseal-0.1.1.tar.gz
Algorithm Hash digest
SHA256 857b5442f3f1cae1631cbf730d8e9a941b9f19bea0999c78c3d300da9aa358a7
MD5 1b11808ce74954c1b92ef46222576fed
BLAKE2b-256 1c30cf6c42274d9ca5ac402a3955868779df8d3e018168a0d9ea784d6a5a2be3

See more details on using hashes here.

File details

Details for the file mcpseal-0.1.1-py3-none-any.whl.

File metadata

  • Download URL: mcpseal-0.1.1-py3-none-any.whl
  • Upload date:
  • Size: 45.9 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/7.0.0 CPython/3.13.9

File hashes

Hashes for mcpseal-0.1.1-py3-none-any.whl
Algorithm Hash digest
SHA256 a1d691503501f0d6a20c9a1f112059bb3f0f355b5734f9deccda61a288bbc416
MD5 4a97174fd8bf6ddb802d84f86d60ff98
BLAKE2b-256 1759216592dea09286b1856b9d8356cb7296773c90d22ca6886093a16b065d7b

See more details on using hashes here.

Release history Release notifications | RSS feed

0.1.4

2 files

0.1.3

2 files

0.1.2

2 files

This release

0.1.1 This release

2 files

0.1.0

2 files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page