Blekline
v0.3.0GitHub

MCP

MCP Proxy

Tool-call governance before downstream sandbox execution.

View as Markdown

Package: @blekline/mcp-proxy

Intercepts tools/call, scans arguments for secrets/destructive patterns, returns allow | mask | block, then forwards approved calls to downstream MCP (sandboxes, frameworks, vector DB tools, or mock).

Use with Frameworks & RAG to govern LangChain, Pinecone, Supabase, and other tool calls.

Env:

  • BLEKLINE_MCP_PROXY_MOCK=1 — demo without downstream API key
  • BLEKLINE_DOWNSTREAM_MCP_COMMAND — e.g. npx,-y,@daytona/mcp-server
  • BLEKLINE_DOWNSTREAM_SERVER — telemetry label: daytona, modal, vercel, cloudflare, e2b
  • Provider API keys — see Sandbox providers

Events: kind: tool_call_enforcement in control plane Activity.


Next steps: AI Enablement Stack · Sandbox providers · MCP server · Open workspace · Report issue