cmcp
cMCP: Confidential MCP Gateway. Hardware-attested policy enforcement for MCP tool calls.
File Explorer
- bug_report.md
- config.yml
- feature_request.md
- ci.yml
- codeql.yml
- contributor-check.yml
- docker.yml
- docs.yml
- limitations-parity.yml
- release-drafter.yml
- release.yml
- require-maintainer-approval.yml
- sbom.yml
- scorecard.yml
- CODEOWNERS
- dependabot.yml
- PULL_REQUEST_TEMPLATE.md
- .gitkeep
- 0001-isolate-agt-from-runtime.md
- icon.svg
- og.png
- attestation.md
- call-graph.md
- catalog-approval-provenance.md
- catalog-lifecycle.md
- cedar-policy.md
- component-model.md
- embodied-action-evidence.md
- error-codes.md
- execution-correlation.md
- failure-modes.md
- mcp-2026-roadmap-impact.md
- phase2-server.md
- policy-hot-reload.md
- proxy-security.md
- response-inspection.md
- session-policy.md
- stdio-transport.md
- threat-model.md
- tool-identity.md
- tpm-security-model.md
- transport.md
- verification-library.md
- benchmarks.md
- hardware-validation.md
- soak-test.md
- advisory-mode-debugging.md
- cedar-policy-walkthrough.md
- connecting-agent-frameworks.md
- deploy-azure.md
- deploy-gcp.md
- existing-mcp-clients.md
- kill-switch.md
- multi-tenant-config.md
- response-inspection.md
- tee-attestation.md
- tls-pinning.md
- tool-catalog-authoring.md
- verifying-a-trace-claim.md
- CNAME
- concepts.md
- configuration.md
- index.md
- limitations.md
- quickstart.md
- spec-index.md
- SPEC.md
- sponsors.md
- allow-approved-tools.cedar
- block-mnpi-to-communication.cedar
- block-phi-to-uncovered.cedar
- manifest.json
- schema.cedarschema
- catalog.json
- cmcp-config.yaml
- README.md
- allow-all.cedar
- manifest.json
- schema.cedarschema
- catalog.json
- cmcp-config.yaml
- README.md
- run.py
- allow_ehr_tools.cedar
- manifest.json
- schema.cedarschema
- allow_ehr_tools.cedar
- manifest.json
- schema.cedarschema
- README.md
- run.py
- trace_corpus.json
- README.md
- run.py
- catalog.json
- README.md
- run.py
- catalog-approved.json
- catalog-tampered.json
- README.md
- run.py
- README.md
- run.py
- README.md
- run.py
- README.md
- run.py
- cmcp_evidence.bin
- cmcp_nonce.hex
- harness.py
- transcript.json
- README.md
- README.md
- cmcp-enforcement.yaml
- main.html
- audit-entry.schema.json
- catalog-approval.schema.json
- catalog-entry.schema.json
- cedar-schema.cedarschema
- trace-claim.schema.json
- deploy-azure.sh
- deploy-gcp.sh
- gen_agt_evidence.py
- mock_upstream.py
- verify_python_distribution.py
- __init__.py
- chain.py
- keys.py
- store.py
- trace_claim.py
- __init__.py
- approval.py
- loader.py
- scanner.py
- __init__.py
- patterns_v1.json
- pipeline.py
- __init__.py
- client_bridge.py
- proxy.py
- server.py
- stdio.py
- streamable_http.py
- tls_pinning.py
- __init__.py
- otel.py
- __init__.py
- annotations.py
- bundle.py
- cedar.py
- decisions.py
- evaluator.py
- __init__.py
- call_log.py
- manager.py
- state.py
- __init__.py
- azure_cvm.py
- base.py
- detect.py
- measurement.py
- nras.py
- opaque.py
- report_binding.py
- sev_snp.py
- spiffe.py
- tdreport.py
- tdx.py
- tpm.py
- vtpm_ca_bundle.py
- __init__.py
- agent_manifest.py
- benchmarks.py
- cli.py
- config.py
- errors.py
- kill_switch.py
- provenance.py
- runtime_gateway.py
- startup.py
- __init__.py
- azure_cvm.py
- embodied_action.py
- nv_certify.py
- opaque.py
- sev_snp.py
- tcg_event_log.py
- tdx.py
- tpm.py
- tpm_roots.py
- verify.py
- __init__.py
- conftest.py
- README.md
- test_audit_conformance.py
- test_gateway_conformance.py
- ros2-fibonacci-aborted.json
- ak.pub
- akcert_0x01C101D0.der
- nonce.hex
- pcrs.bin
- quote.msg
- quote.sig
- README.md
- test_official_client_bridge.py
- __init__.py
- reference_server.py
- run_soak.py
- __init__.py
- conftest.py
- test_agent_manifest.py
- test_agent_manifest_cose.py
- test_agt_evidence.py
- test_audit.py
- test_audit_chain_anchor.py
- test_audit_sqlite.py
- test_azure_cvm_verify.py
- test_benchmarks.py
- test_break_glass.py
- test_call_log.py
- test_call_log_integration.py
- test_catalog.py
- test_catalog_approval.py
- test_catalog_canonical_json.py
- test_catalog_scanner.py
- test_cedar_backend.py
- test_claim1_hash_binding.py
- test_claim2_session_gap.py
- test_claim3_rug_pull_detection.py
- test_claim4_trace_claim_nonce.py
- test_claim5_temporal_adjacency.py
- test_claim6_cross_org_attestation.py
- test_cli_output_encoding.py
- test_cli_wiring.py
- test_client_bridge.py
- test_config.py
- test_container_hardening.py
- test_egress_policy.py
- test_embodied_action_evidence.py
- test_gateway_measurement.py
- test_initialize_protocol_version.py
- test_inspection.py
- test_intent_binding.py
- test_issue_571_finalization.py
- test_kill_switch.py
- test_low_batch_186_187_191_194.py
- test_mcp_proxy.py
- test_mcp_server_auth.py
- test_measurement_report_binding.py
- test_mid_session_failure.py
- test_mock_upstream_gate.py
- test_no_agt_runtime_dependency.py
- test_nras_client.py
- test_nv_certify.py
- test_policy_advice.py
- test_policy_bundle.py
- test_policy_evaluator.py
- test_policy_signing.py
- test_provenance_consumption.py
- test_release_distribution_smoke.py
- test_resource_scoped_policy.py
- test_runtime_gateway.py
- test_session.py
- test_session_call_log.py
- test_session_close.py
- test_session_manager.py
- test_session_reset.py
- test_sev_snp_verify.py
- test_silent_mode_contract.py
- test_snp_signature_verify.py
- test_soak.py
- test_spiffe.py
- test_stage2_schema.py
- test_stage3_sensitivity.py
- test_startup.py
- test_stdio_upstream.py
- test_streamable_http.py
- test_tcg_event_log.py
- test_tdx_opaque_verify.py
- test_tdx_quote_verify.py
- test_tee.py
- test_tee_dev_mode_freeze.py
- test_tee_providers.py
- test_tls_pinning.py
- test_tpm_chained_signature_metadata.py
- test_tpm_chained_verify.py
- test_tpm_claim_signature_verify.py
- test_tpm_parser.py
- test_tpm_platform_ak.py
- test_tpm_quote_signature.py
- test_tpm_verify.py
- test_trace_claim.py
- test_upstream_catalog_drift.py
- test_upstream_forwarding.py
- test_verify.py
- test_verify_command.py
- test_vtpm_ca_bundle.py
- test_workflow_scope.py
- __init__.py
- test_aarm_conformance.py
- .dockerignore
- .gitignore
- ADOPTERS.md
- CHANGELOG.md
- CHARTER.md
- CODE_OF_CONDUCT.md
- CONTRIBUTING.md
- docker-compose.yml
- Dockerfile
- GOVERNANCE.md
- LICENSE
- LIMITATIONS.md
- MAINTAINERS.md
- mkdocs.yml
- NOTICE
- PRIVACY.md
- pyproject.toml
- README.md
- requirements-docs.txt
- ROADMAP.md
- robots.txt
- SECURITY.md
- SPONSORS.md
- STATUS.md
# Use via CDN
jsDelivrjsDelivr serves any public GitHub repository as a CDN with zero setup. Pick a version and a file to get a ready-to-paste link and snippet.
Link
Example
Command Glossary
Commands referenced in this DOCs, explained below.
hash
View Details ▼
hash
View cached executable locations.
hash
View cached command locations for the current shell:
hash -r
Clear the hash table:
hash -d {{command}}
Delete a specific command from the hash table:
pip install
View Details ▼
pip install
Install Python packages.
pip install {{package1 package2 ...}}
Install one or more packages:
pip install {{package1 package2 ...}} {{[-U|--upgrade]}}
Upgrade all specified packages to the latest version, installing any that are not already present:
pip install {{package}}=={{version}}
Install a specific version of a package:
// repository documentation
Was this content helpful?
(0 ratings)
