Mailbuttons (mbag.ai) is answering right now. Last checked 8 min ago. 37 installs a week from npm. Last commit 15 Jul 2026.
Governed email for AI agents (Mailbuttons / mbag.ai): sandbox inboxes, policy gate, audit log.
We have not read this server's code yet, 21 h ago · rules 3dff92dd89df
What this server is able to do. For an MCP server this is often the job itself — a terminal server runs commands because that is what it is for. Listed so you know what you are plugging in, not as an accusation.
пакет @mailbuttons/mcp-server ссылается на mailbuttons/codecutter-saas
Is this your server and something here is wrong? Tell us — corrections are free and do not require a plan.
We found places where it runs commands, builds paths or queries from values it is given. None of that is a flaw by itself — it becomes one when the code changes, and code changes quietly between releases. We re-read it on every one.
Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 8 min ago.
claude mcp add mcp-server --transport http https://mailbuttons.com/api/v1/mcp/rpc
{
"mcpServers": {
"mcp-server": {
"url": "https://mailbuttons.com/api/v1/mcp/rpc"
}
}
}
[mcp_servers.mcp-server]
url = "https://mailbuttons.com/api/v1/mcp/rpc"
{
"mcpServers": {
"mcp-server": {
"url": "https://mailbuttons.com/api/v1/mcp/rpc"
}
}
}
{
"mcpServers": {
"mcp-server": {
"url": "https://mailbuttons.com/api/v1/mcp/rpc"
}
}
}
This one needs environment variables set before it will start:
MAILBUTTONS_API_KEY (A scoped Mailbuttons MCP token (mb_sandbox_...). Sandbox-by-default; external send requires human promotion.), MAILBUTTONS_API_URL (Backend base URL. Defaults to https://mailbuttons.com; set for self-hosted or local.).
The author declared them in the registry entry; get the values from the project itself.
This endpoint answered with an authorization challenge. The server is running, but it did not say what kind of credentials it expects.
| URL | Transport | State | Latency | Checked |
|---|---|---|---|---|
| https://mailbuttons.com/api/v1/mcp/rpc | streamable-http | needs auth | 246 ms | 8 min ago |
Policy-based governance for AI agent tool calls. YAML policy, approval gates, audit logging.
Persistent Docker/SSH sandbox for AI agents: shell exec, file ops, audit log.
Safe-by-default SQL guardrails for AI agents: AST-checked queries, per-table policy, audit log.
AI agent governance: content scanning, audit logs, policy evaluation, session management.
Policy-gated, audited SSH for Linux and Windows hosts: roles, approvals, and an audit log.
Cordon for MCP. Security gateway with policy enforcement, audit log, and HITL approvals.
Runtime authority for AI agents: credential mediation, spend cap, approval gates, audit log.
Secure SQL proxy for AI agents — NL→SQL, AST safety, per-agent RLS, audit log.
Answers built from our own checks of this server.