Threat Dashboard

Real-time posture across all protected MCP tool servers

System posture
Protected · steady state

1 critical alert · 7 masked keys live

22risk score
Authorized tool calls / min
last 90s
168across 7 tool servers
Keys protected
7
Secrets masked
9
0.0%
Exfil blocked (24h)
1
8.2%
Active alerts
2
Live event stream
4 events

MCP config re-written — 9 secrets replaced with brokered references

masked· config-scan· 6s ago

Blocked credential exfiltration via tool-description injection

blocked· stripe-billing· 12s ago

Tool call authorized via short-lived token (TTL 5m)

call· github-agent· 20s ago

Auto-rotated AWS access key after 24h policy window

rotate· aws-provisioner· 32s ago
Priority alerts
Tool-poisoning exfiltration blocked11s ago

A poisoned tool description on stripe-billing attempted to read STRIPE_SECRET_KEY and send it outbound. KeyFence intercepted the read at the broker and dropped the request.

stripe-billing
New calling geography1m ago

google/search-tools invoked from Frankfurt, DE — outside trusted regions. Token scoped to read-only.

search-tools
Tool servers by load
github-agentanthropic
44 /min
14
stripe-billingopenai
31 /min
17
aws-provisioneraws
29 /min
18
aws-provisionergithub
21 /min
15
stripe-billingstripe
17 /min
15