Signet Eval MCP Server

Deterministic policy enforcement for AI agent tool calls. Every action an agent proposes passes through user-defined rules before execution. No LLM in the authorization path. Advisory nudges are separate from authorization. 25ms end-to-end.

People who need security tools inside Claude, Cursor, VS Code, or another MCP client. The project is written in Rust.

VERIFIED ACTIVE

LAST COMMIT 2026-08-01 · ★ 3 · #174 OF 182 MAINTAINED SECURITY · VERIFIED 2026-08-25

MIT · Rust servers · how we verify → /methodology

01 · Evidence

Security posture

What to check before giving this server access to your agent - from the registry, GitHub, and our own probes. We don't score safety; we show what's verifiable.

license MIT - declared in the repository

registry namespace io.github.jmcentire is GitHub-verified and matches the repo owner

02 · What Signet Eval can do

Prose above is summarized from the project's README and registry record - no invented capabilities.

Latest releases

v3.12.1 · 2026-08-01

Durable safety-default release. · Ships the GitHub remote-owner identity guard and embeds its check for atomic first-use installation. · Restores hard denial of ephemeral Task state in favor of Kindex tasks. · Requires…

v3.12.0 · 2026-06-13

Add Antigravity and OpenCode hook adapters, and change prefer_persistent_task_store default policy to Ask

v3.11.1 · 2026-05-29

Fixed · Scoped preflight state to real client chat/session identifiers before falling back to SIGNET_SESSION. · Hook evaluation now extracts session identifiers from client payloads for preflight, pause, and disable…

03 · Who maintains Signet Eval

signet-eval is maintained by jmcentire. We track 2 MCP servers from jmcentire - 2 actively maintained, 27 combined GitHub stars, oldest repo from Feb 2026. Full record: all servers from jmcentire.

  1. Kindex Persistent knowledge graph and MCP server for AI workflows with git-tracked project context. ★ 24

04 · Facts

category
security - ranked #174 of 182 actively-maintained security servers as of 2026-08-25.
release cadence
3 releases in the last 90 days (latest 2026-08-01)
registry
io.github.jmcentire/signet-eval (active, first published 2026-05-16)

05 · Signet Eval FAQ

What is Signet Eval?

Deterministic policy enforcement for AI agent tool calls. Every action an agent proposes passes through user-defined rules before execution. No LLM in the authorization path. Advisory nudges are separate from authorization. 25ms end-to-end.

Is Signet Eval still maintained?

Yes - as of 2026-08-25, its last commit was 2026-08-01 and it shipped 3 releases in the last 90 days. We re-verify nightly.

06 · Alternatives to Signet Eval