v1.0 Now Available

The Secure Proxy for
Model Context Protocol

Abstract your cloud infrastructure. Give your MCP clients a single, highly-scoped authentication token. We handle the routing, rapid rotation, and strict access controls behind the scenes.

$ wget https://api.mcpcloudvault.dev/get_config/<MCP_ID>/mcp.json
HTTP request sent, awaiting response... 200 OK
Saving to: 'mcp.json' [100%]


$ mcp-client call fetch_aws_credentials --config mcp.json
Authenticated via Vault Proxy (Mapping: AWS_STS)
{
  "AccessKeyId": "ASIAVYEXAMPLEKEY123",
  "SecretAccessKey": "wJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKEY",
  "SessionToken": "IQoJb3JpZ2luX2Vj...",
  "Expiration": "2026-06-08T00:15:00Z"
}


> STS token securely scoped. Auto-rotation in 14m 58s...

Security & Simplicity combined

🔑

Unified Authentication

Stop managing dozens of API keys across your AI agents. Issue a single MCP Cloud Vault token to your clients, and we map it to your multi-cloud infrastructure automatically.

🎯

Granular Scope Control

Ensure AI agents only have access to exactly what they need. Define strict boundaries and restrict token scopes per-client, per-resource, or per-action without modifying underlying IAM roles.

🔄

Ultra-Fast Rotation

Mitigate token leakage with automated, zero-downtime key rotation. Configure lifetimes as short as 5 minutes, ensuring that even if an agent's context is compromised, your infrastructure stays safe.

Low-Latency Abstraction

Built on the Edge. Our proxy sits right between your clients and your cloud providers, adding less than 15ms of latency to your Model Context Protocol requests.

📊

Audit & Observability

Get full visibility into what your AI agents are doing. Every request passing through the proxy is logged, categorized by scope, and exportable to your SIEM.

🔌

Universal Compatibility

Works out of the box with the official Model Context Protocol specifications. If your client speaks MCP, it speaks MCP Cloud Vault. Zero vendor lock-in.