Warden is featured on Product Hunt

Vote for us

Policy library

Start with the task. Keep the grants small.

Six starting profiles for everyday MCP workflows. Choose your server, review its access, then build a policy around the directories you select.

Candidate profiles. Upstream identity and version metadata are recorded. Runtime preparation and allowed/blocked workflow checks are still required before a profile can be called verified. See the evidence boundary.

6 profiles · metadata reviewed September 30, 2026

Local filesCandidate

Filesystem

Read a selected directory

Selected directory · read only

Network denied

No environment variables

@modelcontextprotocol/server-filesystem@2026.8.31

Review profile
DevelopmentCandidate

Local Git

Inspect a selected repository

Selected directory · read only

Network denied

No environment variables

mcp-server-git@2026.8.18

Review profile
Local filesCandidate

Memory

Store memory in a selected directory

Selected storage · read & write

Network denied

1 allowed variable name

@modelcontextprotocol/server-memory@2026.8.31

Review profile
DevelopmentCandidate

GitHub

Read GitHub with a restricted token

Prepared runtime only

1 explicit API host

1 allowed variable name

github/github-mcp-server@v1.12.2

Review profile
Search & contextCandidate

Brave Search

Search through Brave's API

Prepared runtime only

1 explicit API host

1 allowed variable name

@brave/brave-search-mcp-server@2.1.4

Review profile
Search & contextCandidate

Context7

Look up library documentation

Prepared runtime only

1 explicit API host

1 allowed variable name

@upstash/context7-mcp@4.1.1

Review profile