Command Palette

Search for a command to run...

UnylyUnyly
Browse all

Envbouncer

FreeNot checked

A tiny local MCP server and CLI that lets AI agents read only allowlisted environment variables, redacts known secrets from text, and logs every access.

GitHubEmbed

About

A tiny local MCP server and CLI that lets AI agents read only allowlisted environment variables, redacts known secrets from text, and logs every access.

README

envbouncer

A tiny local MCP server and CLI that lets AI agents read only allowlisted environment variables, redacts known secrets from text, and logs every access.

License Language Status Python 3.11+ License: MIT MCP

Demo

🎯 Why?

AI coding agents and MCP servers often need environment variables, but giving them full shell or .env access risks leaking secrets. Existing guardrails mostly block dangerous shell commands or reduce context, but do not broker environment-variable access at runtime. EnvBouncer fills that gap with a declarative allowlist, redaction tooling, and an audit trail.

Target audience: Developers using Claude Code, Cursor, Codex, or custom MCP servers who want to grant agents limited access to environment configuration without exposing the entire .env file or shell environment.

✨ Features

  • Declarative TOML allowlist for environment variables
  • MCP tools for listing, reading, and redacting allowed variables
  • CLI commands for init, check, redact, audit, and stdio MCP serving
  • JSONL audit trail for reads, denials, missing variables, and redactions

🚀 Quick Start

# Install
pip install envbouncer

# Run
envbouncer --help

📦 Installation

From Source

git clone https://github.com/YOUR_USERNAME/envbouncer.git
cd envbouncer
# Create virtual environment
python -m venv .venv
source .venv/bin/activate  # Windows: .venv\Scripts\activate

# Install in development mode
pip install -e ".[dev]"

# Run tests
pytest -v

🎬 Demo

The GIF above was recorded using Charm VHS:

vhs < demo.tape

📖 Usage

# Show help
envbouncer --help

# Common usage examples
envbouncer --example

🏗️ Architecture

graph LR
    A[Input] --> B[Core Engine]
    B --> C[Output]
    B --> D[Plugins]
    D --> E[Extensions]

🤝 Contributing

Contributions are welcome! Please:

  1. Fork the repo
  2. Create a feature branch (git checkout -b feature/amazing-feature)
  3. Commit your changes (git commit -m 'Add amazing feature')
  4. Push to the branch (git push origin feature/amazing-feature)
  5. Open a Pull Request

📄 License

MIT © 2026 — See LICENSE for details.


If this project helped you, please ⭐ star it!

Made with ❤️ and AI

from github.com/yulinlina/envbouncer

Installing Envbouncer

This server has no published package — it is built from source. Open the repository and follow its README.

▸ github.com/yulinlina/envbouncer

FAQ

Is Envbouncer MCP free?

Yes, Envbouncer MCP is free — one-click install via Unyly at no cost.

Does Envbouncer need an API key?

No, Envbouncer runs without API keys or environment variables.

Is Envbouncer hosted or self-hosted?

Self-hosted: the server runs locally on your machine via the install command above.

How do I install Envbouncer in Claude Desktop, Claude Code or Cursor?

Open Envbouncer on unyly.org, pick your client tab (Claude Desktop, Claude Code, Cursor) and press Install — the config is generated automatically, no JSON editing.

Related MCPs

Compare Envbouncer with

Not sure what to pick?

Find your stack in 60 seconds

Author?

Embed badge for your README

Browse similar

All ai MCPs