Skip to main content

MCP server for ODGS governance enforcement — validate data, compile regulations, generate S-Certs, detect drift.

Project description

Open Data Governance Standard (ODGS) — MCP Server

Deterministic governance enforcement at the AI agent boundary.

Protocol MCP Server PyPI Downloads Python License


For engineers: See Quick Start below.
For compliance and risk officers: The ODGS engine generates cryptographic audit trails (S-Certs).
For architectural clearance and certified packs: metricprovenance.com/pricing


[!IMPORTANT] ODGS MCP Server v0.3.0 — Maturity Diagnostics + Certified Pack Access governance_score now delegates to the odgs-maturity 8-pillar DAMA DMBOK engine. Regulatory compilation, drift detection, and catalog synchronisation require a Certified Pack licence. The community tier — validation, scoring, conformance checking — remains open with no registration.


What's New in v0.2.0

Change Detail
governance_score Delegates to odgs-maturity (8-pillar DAMA DMBOK) when installed; falls back to built-in heuristic. Returns 0–100 score with per-pillar gap analysis.
AuthGate Community / Professional / Enterprise access via API key validation. 24h disk cache; workspace.yaml fallback for air-gapped deployments.
Licensed tools compile_regulation, check_drift, detect_conflicts, narrate_audit, discover_bindings (Professional); sync_catalog, harvest_sovereign_rules (Enterprise).

The European Data Governance Maturity Benchmark 2026 recorded an average maturity of 37.6% across 99 enterprises — a 62.4% gap against current regulatory expectation. governance_score applies the same assessment methodology to your project.


What This Is

The ODGS MCP Server connects any MCP-compatible AI agent to the ODGS Sovereign Validation Engine. The engine evaluates data operations against governance rules at runtime and produces S-Certs (Sovereign Certificates) — cryptographically signed, machine-verifiable records that a governance rule was applied.

This is the bridge between probabilistic AI inference and deterministic governance enforcement.

EU AI Act & High-Risk AI Systems

Organisations operating High-Risk AI Systems under EU AI Act Articles 10 and 12 require demonstrable, auditable data governance at the pipeline level. S-Certs provide that audit trail in a format suitable for regulatory submission.

Certified Sovereign Packs and the S-Cert Registry are available through Metric Provenance certified implementation partners. For architectural assessment: metricprovenance.com/pricing.


Capabilities

  • Runtime validation: Data payloads are evaluated against sovereign governance rules at call time; each evaluation produces a signed S-Cert.
  • Governance maturity scoring: 8-pillar DAMA DMBOK assessment (0–100) with per-pillar gap analysis, aligned to the European Governance Maturity Benchmark methodology.
  • Regulatory compilation (licensed): Converts legislative text — EU AI Act, DORA, GDPR — into validated ODGS rule JSON.
  • Semantic drift detection (licensed): Identifies definitional drift between governance artefacts across versions.
  • Enterprise catalog integration (licensed): Harvests and mints sovereign rules from Databricks, Snowflake, and Collibra via the Flint Bridge.

Quick Start

# Core validation capabilities (free, no account needed)
pip install odgs-mcp-server

# With maturity scoring
pip install odgs-mcp-server odgs-maturity

# Complete installation with LLM bridge capabilities
pip install "odgs-mcp-server[llm]"

Client Configuration

The server operates over standard stdio transport, making it instantly compatible with any MCP client.

Claude Desktop

Add to claude_desktop_config.json:

{
  "mcpServers": {
    "odgs-governance": {
      "command": "odgs-mcp-server",
      "args": ["--transport", "stdio"],
      "env": {
        "ODGS_PROJECT_ROOT": "/path/to/your/odgs/project"
      }
    }
  }
}
Cursor

Add to .cursor/mcp.json:

{
  "mcpServers": {
    "odgs-governance": {
      "command": "odgs-mcp-server",
      "args": ["--transport", "stdio"],
      "env": {
        "ODGS_PROJECT_ROOT": "/path/to/your/odgs/project"
      }
    }
  }
}

Licensed Tool Access

Regulatory compilation, certified packs, and catalog synchronisation require a Certified Pack licence. Provide the issued API key in your client configuration:

"env": {
  "ODGS_API_KEY": "sk-odgs-...",
  "ODGS_PROJECT_ROOT": "/path/to/your/odgs/project"
}

Licences are self-serve — buy at metricprovenance.com/pricing and your key is emailed on purchase:

Tier Price Includes
Community Free validate_payload, governance_score, list_packs, conformance_check — no registration
Team €990/yr One certified regulation pack, signed + updated, plus all Professional tools
Professional €2,490/yr All certified packs, priority re-signing on regulatory change
Consultant €4,990/yr Professional + white-label / client-deliverable rights

Enterprise deployments (Sovereign CA nodes, sync_catalog, harvest_sovereign_rules) via certified partners.


Tools Reference

Community (Free — no API key required)

Tool Description
validate_payload Validate data against ODGS governance rules, produce S-Cert
validate_batch Validate multiple payloads in one call
list_packs List available Certified Regulation Packs
governance_score Score governance maturity (0–100) across 8 DAMA pillars with gap analysis
conformance_check Run ODGS conformance self-check (L1/L2)

Professional (API Key Required)

Tool Description
download_pack Download and cache certified regulatory rule packs locally
compile_regulation Convert regulation text → validated ODGS rule JSON
check_drift Detect semantic drift in governance definitions
detect_conflicts Find contradictions between regulatory rules
narrate_audit Convert S-Cert → human-readable narrative
discover_bindings Auto-generate physical data mappings from catalogs

Enterprise (API Key Required)

Tool Description
harvest_sovereign_rules (Flint Bridge) Automatically extract and mint rules from data stores
sync_catalog Pull metadata from Databricks / Snowflake / Collibra

Architecture

The ODGS MCP Server is designed for zero-trust, local-first execution. All data validation happens strictly on your machine. No sensitive data leaves your perimeter.

flowchart TB
    Agent[AI Agent\nClaude/Cursor/Custom]
    
    subgraph "ODGS MCP Server"
        Auth[AuthGate]
        Val[OdgsInterceptor v6]
        Maturity[odgs-maturity\n8-pillar DAMA]
        LLM[OdgsLlmBridge]
        Flint[Flint Bridge]
    end
    
    Reg[(S-Cert Registry\nregistry.metricprovenance.com)]
    Project[(Local ODGS Project)]

    Agent -- "JSON-RPC (stdio)" --> Auth
    Auth -- "Validate Key (HTTPS, cached 24h)" --> Reg
    Auth --> Val
    Auth --> Maturity
    Auth --> LLM
    Auth --> Flint
    
    Val -- "Reads Rules" --> Project
    Val -- "Generates" --> SCert[S-Cert]
    Maturity -- "Scores pillars" --> Project
    LLM -- "Compiles Regulations" --> Project
    Flint -- "Harvests Sovereign Rules" --> Project

Certified Regulation Packs

Cryptographically signed rule bundles, each mapped to a specific regulatory instrument. Packs are compiled from authoritative legislative text and certified by Metric Provenance.

Pack Regulation Status
EU AI Act Regulation (EU) 2024/1689 ✅ Certified
DORA Digital Operational Resilience Act ✅ Certified
GDPR General Data Protection Regulation ✅ Certified
CSRD Corporate Sustainability Reporting Directive ✅ Certified
NIS2 Network and Information Security Directive ✅ Certified
Basel III Basel Committee on Banking Supervision ✅ Certified

Full catalogue of 15+ packs. Licensing and deployment via metricprovenance.com/pricing.


Environment Variables

Variable Description Default
ODGS_PROJECT_ROOT Path to ODGS governance definitions Current directory
ODGS_API_KEY API key for Professional/Enterprise access None (community)
ODGS_REGISTRY_URL Registry endpoint for key validation https://registry.metricprovenance.com
ODGS_CACHE_DIR Local cache for downloaded packs ~/.odgs/cache

About ODGS

The Open Data Governance Standard (ODGS) is an open protocol for deterministic data governance enforcement. It cleared the NEN N42 ballot (May 2026) and is approved as a Working Draft; NEN is formally submitting the New Work Item Proposal to CEN/CENELEC JTC 25.

Licence

Apache 2.0 — see LICENSE.

The protocol engine and MCP server are open source. Certified Regulation Packs are issued under a commercial licence.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

odgs_mcp_server-0.3.0.tar.gz (30.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

odgs_mcp_server-0.3.0-py3-none-any.whl (30.3 kB view details)

Uploaded Python 3

File details

Details for the file odgs_mcp_server-0.3.0.tar.gz.

File metadata

  • Download URL: odgs_mcp_server-0.3.0.tar.gz
  • Upload date:
  • Size: 30.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.13.9

File hashes

Hashes for odgs_mcp_server-0.3.0.tar.gz
Algorithm Hash digest
SHA256 ecf84b15b31bb79593c82c3ad4ce85b59b6fe625a370358750866dddbc0cce82
MD5 a4075e78562810d432dd323180858d13
BLAKE2b-256 4e7d44b0c766031eb794ca3daf532479bc69a8ba838136dcb6d3d6290d28773f

See more details on using hashes here.

File details

Details for the file odgs_mcp_server-0.3.0-py3-none-any.whl.

File metadata

File hashes

Hashes for odgs_mcp_server-0.3.0-py3-none-any.whl
Algorithm Hash digest
SHA256 42afdaeddbb93bbf8c5c1a2b6bc4bc9d1155ac2fafec132abbba677ce2efbefc
MD5 6b6b39afa68050e9769673930d378d3c
BLAKE2b-256 7c9ad7e4db59cb2c6b7e64b13227e38f7f7551ea41011e8839aae5407a2088d2

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page