Audit Ledger MCP Server
by shahidh68io.github.shahidh68/audit-ledger-mcpv0.3.1
Record AI decisions to a tamper-evident audit ledger from any MCP-compatible agent.
context tax
queued
security
queued
cold start
queued
freshness
Slowing4mo ago
Install Audit Ledger MCP server
Install in Claude Code
claude mcp add audit-ledger -e AUDIT_WRITE_KEY='<audit-write-key>' -e AUDIT_READ_KEY='<audit-read-key>' -e AUDIT_HMAC_KEY='<audit-hmac-key>' -- npx -y audit-ledger-mcpInstall in Cursor
{
"mcpServers": {
"audit-ledger": {
"command": "npx",
"args": [
"-y",
"audit-ledger-mcp"
],
"env": {
"AUDIT_WRITE_KEY": "<audit-write-key>",
"AUDIT_READ_KEY": "<audit-read-key>",
"AUDIT_HMAC_KEY": "<audit-hmac-key>"
}
}
}
}Add to ~/.cursor/mcp.json (global) or .cursor/mcp.json (project).
Install in Claude Desktop
{
"mcpServers": {
"audit-ledger": {
"command": "npx",
"args": [
"-y",
"audit-ledger-mcp"
],
"env": {
"AUDIT_WRITE_KEY": "<audit-write-key>",
"AUDIT_READ_KEY": "<audit-read-key>",
"AUDIT_HMAC_KEY": "<audit-hmac-key>"
}
}
}
}Settings → Developer → Edit Config (claude_desktop_config.json), then restart.
Install in VS Code
{
"servers": {
"audit-ledger": {
"type": "stdio",
"command": "npx",
"args": [
"-y",
"audit-ledger-mcp"
],
"env": {
"AUDIT_WRITE_KEY": "<audit-write-key>",
"AUDIT_READ_KEY": "<audit-read-key>",
"AUDIT_HMAC_KEY": "<audit-hmac-key>"
}
}
}
}Add to .vscode/mcp.json in your workspace.
Install in Windsurf
{
"mcpServers": {
"audit-ledger": {
"command": "npx",
"args": [
"-y",
"audit-ledger-mcp"
],
"env": {
"AUDIT_WRITE_KEY": "<audit-write-key>",
"AUDIT_READ_KEY": "<audit-read-key>",
"AUDIT_HMAC_KEY": "<audit-hmac-key>"
}
}
}
}Add to ~/.codeium/windsurf/mcp_config.json.
Configuration
| Variable | Required | Secret | Description |
|---|---|---|---|
| AUDIT_API_URL | — | — | Your deployed audit-ledger API endpoint (e.g. https://<api-id>.execute-api.<region>.amazonaws.com/prod). Leave unset to run in sandbox mode against the public shared tenant. |
| AUDIT_WRITE_KEY | — | yes | Tenant write key for your deployed ledger. Required if AUDIT_API_URL is set and you want to call record_decision. |
| AUDIT_READ_KEY | — | yes | Tenant read key for your deployed ledger. Required if AUDIT_API_URL is set and you want to call verify_decision or list_decisions. |
| AUDIT_TIMEOUT_MS | — | — | HTTP timeout in milliseconds. Defaults to 5000. |
| AUDIT_RETRY_ATTEMPTS | — | — | Number of retry attempts on transient failures. Defaults to 3. |
| AUDIT_HMAC_KEY | — | yes | Tenant secret used to HMAC-SHA256 PII and prompts locally before sending. Generate once per tenant (e.g. node -e "console.log(require('crypto').randomBytes(32).toString('hex'))") and keep it in your environment. The key never leaves your process. If unset, the MCP falls back to plain SHA-256 for backwards compatibility and logs a one-time deprecation warning; set this to switch to keyed hashing, which regulators (ICO/EDPB) expect for pseudonymisation. |
Freshness
Slowing — last maintenance signal 4mo ago. The newest of the signals below sets the band.
Last commit (default branch)
2026-06-13 · 4mo ago · GitHub
Latest release
no data · GitHub
Package published
no data · npm/PyPI
Registry entry updated
2026-06-05 · 4mo ago · official registry · v0.3.1
FAQ
›How do I install the Audit Ledger MCP server in Claude Code?
Run: claude mcp add audit-ledger -e AUDIT_WRITE_KEY='<audit-write-key>' -e AUDIT_READ_KEY='<audit-read-key>' -e AUDIT_HMAC_KEY='<audit-hmac-key>' -- npx -y audit-ledger-mcp. For Cursor, VS Code, Claude Desktop and Windsurf, use the install tabs above.
›Does Audit Ledger require an API key?
Yes. It expects AUDIT_WRITE_KEY, AUDIT_READ_KEY, AUDIT_HMAC_KEY, of which 3 are secrets.
›Can I use Audit Ledger as a remote (hosted) MCP server?
No hosted endpoint is published; it runs locally over stdio.
›Is Audit Ledger in the official MCP registry?
Yes, as io.github.shahidh68/audit-ledger-mcp.