A transparent MCP security proxy: inspects tool descriptions for injection, pins tool definitions to detect rug-pulls, enforces a default-deny capability policy, and writes a tamper-evident audit log.
{
"mcpServers": {
"vex-1": {
"command": "npx",
"args": [
"-y",
"vex-mcp"
]
}
}
}