XGuard Secretless Agent Gateway is answering right now. Last checked 13 min ago. It exposes 15 tools. Last commit 29 Aug 2026.
Protect AI agents from API-key exposure with secretless credentials and signed execution proofs.
We read the source, 11 h ago · tools taken from the live server · rules 3dff92dd89df
What this server is able to do. For an MCP server this is often the job itself — a terminal server runs commands because that is what it is for. Listed so you know what you are plugging in, not as an accusation.
- name: Create or update immutable-version release assets
env:
GH_TOKEN: ${{ github.token }}
const LOGO_PNG_BASE64 = "iVBORw0KGgoAAAANSUhEUgAAAZAAAAGQCAYAAACAvzbMAAAMe0lEQVR42u3dwU0kS7Cw0QaNhFjQPowXYwJGYAZbJCS2mIERmIAX+NAOMKvZ0IO6uyqzMiPinN2TnvT/tyorvgz6Xr2rm9u7rx0AXOjaIwBAQAAQEAAEBAABAQABAUBAABAQAAQEAAEBAAEBQEAAEBAABAQAAQEAAQFAQAAQEAAEBAABAQABAUBAABAQAAQEAAEBAAEBQEAAEBA…
Is this your server and something here is wrong? Tell us — corrections are free and do not require a plan.
We found places where it runs commands, builds paths or queries from values it is given. None of that is a flaw by itself — it becomes one when the code changes, and code changes quietly between releases. We re-read it on every one.
Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 13 min ago.
claude mcp add xguard-control-plane --transport http https://api.xguardgate.com/mcp
{
"mcpServers": {
"xguard-control-plane": {
"url": "https://api.xguardgate.com/mcp"
}
}
}
[mcp_servers.xguard-control-plane]
url = "https://api.xguardgate.com/mcp"
{
"mcpServers": {
"xguard-control-plane": {
"url": "https://api.xguardgate.com/mcp"
}
}
}
{
"mcpServers": {
"xguard-control-plane": {
"url": "https://api.xguardgate.com/mcp"
}
}
}
Read directly from the server with tools/list, grouped by what they act on.
If a tool disappears, we record the date.
xguard_action_rail
xguard_discovery_search
xguard_egress_fetch
xguard_facilitator
xguard_health
xguard_inspect
xguard_integration
xguard_proofrail
xguard_protocols
xguard_receipt
xguard_route
xguard_safety_test
xguard_secretless_egress
xguard_supported
xguard_verify_proof
| URL | Transport | State | Latency | Checked |
|---|---|---|---|---|
| https://api.xguardgate.com/mcp | streamable-http | answering | 202 ms | 13 min ago |
Security gateway for AI agents: policy, approval, and audited execution, no secrets shared.
Secure secrets proxy for AI agents — manages API keys so agents never see raw credentials.
Secure grip for your agent's secrets - security-hardened MCP gateway with proxy token architecture
Scans projects for secret exposure: leaked API keys, unprotected .env files, and secrets in logs.
Scans code changes for leaked secrets and insecure config, with actionable fixes for AI agents.
Security gateway for MCP agents: blocks prompt-injection-driven tool calls before they execute.
Encrypted secrets and credential management for agents
Secure MCP gateway and quarantine for AI agent traffic — three-layer prompt injection defense
Answers built from our own checks of this server.