Kaval runs on your own machine — the client starts it, so there is no endpoint to ping. 193 installs a week from npm. Last commit 19 Aug 2026.
Verify the facts an agent's action depends on before it acts — ALLOW, REVIEW, or BLOCK.
Today is the operative word: we check Kaval every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.
This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.
claude mcp add kaval -- npx -y @usekaval/mcp
{
"mcpServers": {
"kaval": {
"args": [
"-y",
"@usekaval/mcp"
],
"command": "npx"
}
}
}
[mcp_servers.kaval]
command = "npx"
args = ["-y", "@usekaval/mcp"]
{
"mcpServers": {
"kaval": {
"args": [
"-y",
"@usekaval/mcp"
],
"command": "npx"
}
}
}
{
"mcpServers": {
"kaval": {
"args": [
"-y",
"@usekaval/mcp"
],
"command": "npx"
}
}
}
Verify the facts an agent's action depends on before it acts — ALLOW, REVIEW, or BLOCK.
Vet any MCP server before you depend on it. Stamp: PASS, REVIEW, or BLOCK.
Deterministic allow/require_approval/deny verdicts for agent actions, before they happen.
Check whether a real-world fact can be verified before an agent acts on it. Free, no auth.
Action firewall for AI agents: blocks the wrong action before it runs, every verdict Ed25519-signed.
Check an email before an AI agent sends it: send / ask a human / block. Detects prompt injection.
Validate and verify data from other agents before acting on it. Zero LLM costs.
Explainable ALLOW/WARN/BLOCK risk decisions for AI agent actions before execution, signed as OAA.
Answers built from our own checks of this server.