Now in private beta

Policy enforcement
for MCP servers

Third-party MCP servers are permissive. You can't change them.
Add access control, rate limits, and cost management—without touching a line of code.

Join 200+ teams waiting for access

⚠️

The Problem

MCP servers expose powerful tools—GitHub, Slack, databases—with zero restrictions. Your AI agents can do anything. That's terrifying in production.

The Solution

Keypost sits between your agents and MCP servers. One URL swap gives you access control, constraints, rate limits, and cost management—with full audit trail.

How it works

1

Connect your MCP server

Point Keypost at any MCP server. We auto-discover all available tools.

2

Define policies in YAML

Access rules, parameter constraints, rate limits, cost budgets—all declarative.

3

Swap one URL

Replace your MCP server URL with Keypost. Instant enforcement, zero code changes.

Everything you need to ship agents safely

Access

Allow / Deny

Block dangerous tools entirely. Allowlist only what your agent needs.

- tool: delete_repository
  access: deny
Constraints

Parameter Rules

Restrict what values can be passed. Regex patterns, blocklists, ranges.

- tool: delete_file
  param:
    path:
      must_match: "^/tmp/"
Constraints

Time-based

No 3am deploys. No Friday releases. Schedule when tools can run.

- tool: deploy_to_prod
  schedule:
    blocked_days: ["Fri", "Sat"]
Constraints

DLP / PII Scanning

Block SSNs, credit cards, API keys from ever leaving your system.

- tool: send_email
  dlp:
    block_patterns:
      - ssn: "\\d{3}-\\d{2}-\\d{4}"
Rate Limits

Throttle & Quotas

Cap calls per minute, hour, day. Per-user, per-org, per-recipient.

- tool: send_sms
  quota:
    max_per_recipient: 3
    per: day
Cost Control

Budgets & Alerts

Track spend by team and project. Alert before you blow your budget.

- tool: query_llm
  cost:
    per_call: 0.02
    alert_when:
      daily_spend: "> 50"
Cost Control

Response Caching

Don't pay twice for the same call. TTL-based caching with smart keys.

- tool: get_weather
  reuse:
    ttl: 5m
    key: [city]
Compliance

Audit Trail

Full logging for HIPAA, SOC2. Require justification for sensitive ops.

- tool: access_medical_record
  audit:
    level: full
    compliance: ["hipaa"]

Simple, usage-based pricing

Start free. Scale as you grow.

Free

$0
  • 1 MCP server
  • 1,000 calls/month
  • 7-day audit log
  • Community support
Get Started

Team

$99/mo
  • 20 MCP servers
  • 500,000 calls/month
  • 1-year audit log
  • Priority support
  • SSO & RBAC
  • SLA guarantee
Get Started

Ship agents to production with confidence

Join the waitlist for early access.