protoos-mcp

protoos-mcp

Provides a JSON-RPC MCP server that exposes policy-governed agent tools, including paid tools, tool muxing, and OpenAPI-to-MCP conversion, enabling agents to discover, coordinate, and execute tasks within the ProtoOS ecosystem.

Category
Visit Server

README

ProtoOS v0.2.0 — Unified Autonomous Protocols Operating System

CI License Python 3.12+ Tests Requirements MCP SDK CLI API x402

Reference implementation of a policy-governed control plane that composes existing agent protocols — MCP, A2A, AP2 mandates, x402, MPP, UCP/ACP-style commerce, AG-UI, ANP/DID-style identity — into one environment where agents are built, discovered, coordinated, authorized, paid, and audited.

Pure Python 3.12 standard library (+ optional cryptography for Ed25519, with OS-verified HMAC fallback). Zero network required.

Related: OpenMesha · rui · server-os

Surfaces

Surface Entry
CLI protoos status · protoos verify · protoos graph · protoos vault
SDK from protoos.sdk import ProtoOSClient
MCP Server protoos-mcp / protoos/mcp.py (JSON-RPC, paid tools, mux, OpenAPI→MCP)
HTTP/JSON-RPC + SSE protoos/httpapi.py (/mcp, /a2a, /agui/<run>, /.well-known/agents)
Multi-agent workflows discovery + budgeted delegate + TaskGraph + AG-UI
Skills skills/*/SKILL.md (policy, x402, multi-agent, constellation, mcp)
Constellation + Vault python -m protoos.graph · python -m protoos.vault
CI .github/workflows/ci.yml
AGENTS.md Coding-agent contract at repo root
Requirement audit traceability.json · VERIFICATION.md · python -m protoos.verify

New in 0.2.0 — Constellation & Obsidian vault

The world is now a first-class graph, at parity with the web console's Constellation tab.

  • protoos.graph.build_graph(os) derives the live object graph — principals, budgets, MCP servers/tools, AP2 mandate chains, receipts, tasks, pending approvals — with the same node-type/edge-kind vocabulary as the browser build (parity-checked: MATCH).
  • protoos.graph.layout(graph, seed=…) is a deterministic force layout. Exports: to_json, to_dot, to_svg.
  • protoos.vault.write_vault[_zip](os, dest) writes an Obsidian vault of wikilinked notes; unresolved_links() proves integrity.
  • Hardening: AuditLog.append deep-copies payloads; TraditionalRail retains receipts.
python3 -m protoos.graph out/        # constellation.{json,dot,svg}
python3 -m protoos.vault vault.zip   # Obsidian vault
python3 demo.py                      # also writes both artifacts
python3 -m protoos.cli status

Quickstart

python3 -m unittest discover -s tests   # 95 tests
python3 demo.py                          # end-to-end scenario
python3 -m protoos.verify                # traceability audit + live smoke
pip install -e ".[crypto]"               # optional Ed25519
protoos status
from protoos import ProtoOS, Catalog
from protoos.sdk import ProtoOSClient

os_ = ProtoOS()
os_.engine.add_rule("user", "allow", ["payment.settle"], "amount <= 200")
os_.engine.add_rule("org", "require_approval", ["payment.settle"], "amount > 50")

casey  = os_.create_user("casey")
shop   = os_.create_merchant("shop")
budget = os_.wallet.create_budget(casey.did, 500.0, window=(300.0, 86400))

catalog = Catalog(shop.did, "shop")
catalog.add("bk1", "Distributed Systems 101", 10.00, "USD", "digital")

receipt = os_.purchase(casey.did, catalog, [{"sku": "bk1", "qty": 2}],
                       intent_text="buy two intro ebooks", max_amount=100,
                       budget_id=budget.id, categories=["digital"])
# Intent Mandate -> checkout -> Cart Mandate -> Payment Mandate
# -> policy + budget -> x402 settle -> hash-chained audit

Spec → module map

Spec box Module
Policy Engine + Mandate Store protoos/policy.py
Orchestrator / Task Graph protoos/runtime.py, protoos/core.py
Identity & Credential Service protoos/identity.py
Discovery & Registry protoos/registry.py
Observability & Audit protoos/audit.py
Wallet / Spending Controller protoos/wallet.py
MCP adapter (+OpenAPI→MCP, federation, cache) protoos/mcp.py
A2A adapter + AG-UI event bus protoos/a2a.py
UCP/ACP-style commerce protoos/commerce.py
HTTP/JSON-RPC + SSE transport protoos/httpapi.py
Control-plane facade (ProtoOS) protoos/core.py
CLI protoos/cli.py
SDK protoos/sdk/
Constellation graph protoos/graph.py
Obsidian vault export protoos/vault.py
Kubernetes CRDs + Deployment deploy/k8s/
Skills skills/
Requirement audit traceability.json, VERIFICATION.md, protoos/verify.py

What "reference implementation" means here

Every protocol surface named by the spec is working and tested in-process: JSON-RPC MCP with paid tools, the A2A task lifecycle, the full AP2 Intent→Cart→Payment mandate chain, x402 challenge/settle with an in-process facilitator, MPP prepaid sessions, AG-UI event streams over SSE, DID documents and well-known publication. This sandbox has no network egress, no Kubernetes cluster, and no external SDKs, so anything that requires the open internet is implemented against local/loopback equivalents and explicitly marked partial or deferred in traceability.json — nothing is silently omitted.

Production hardening path

  1. Rust control plane (X1): module boundaries here mirror the intended services; the Python build is the executable specification.
  2. Storage (X3): in-memory + JSONL → etcd/Postgres / object storage / vector DB.
  3. Rails (M1/X6): official x402/MPP/AP2 SDKs slot into the existing rail seams.
  4. Transports (X4/X5): add gRPC/QUIC beside httpapi.py.
  5. Sandboxing (G4): replace SandboxedExecutor with container/microVM isolation.

Design principles

  1. Compose, don't replace
  2. Policy-first autonomy (every sensitive action gated)
  3. Cryptographic mandates + hash-chained audit
  4. Human-in-the-loop as a first-class primitive
  5. Multi-rail everything (tools, messaging, payments, identity)
  6. Offline-first reference with honest partial/deferred markers

License

Apache-2.0. Governance charter draft: GOVERNANCE.md.

Recommended Servers

playwright-mcp

playwright-mcp

A Model Context Protocol server that enables LLMs to interact with web pages through structured accessibility snapshots without requiring vision models or screenshots.

Official
Featured
TypeScript
Audiense Insights MCP Server

Audiense Insights MCP Server

Enables interaction with Audiense Insights accounts via the Model Context Protocol, facilitating the extraction and analysis of marketing insights and audience data including demographics, behavior, and influencer engagement.

Official
Featured
Local
TypeScript
Magic Component Platform (MCP)

Magic Component Platform (MCP)

An AI-powered tool that generates modern UI components from natural language descriptions, integrating with popular IDEs to streamline UI development workflow.

Official
Featured
Local
TypeScript
VeyraX MCP

VeyraX MCP

Single MCP tool to connect all your favorite tools: Gmail, Calendar and 40 more.

Official
Featured
Local
graphlit-mcp-server

graphlit-mcp-server

The Model Context Protocol (MCP) Server enables integration between MCP clients and the Graphlit service. Ingest anything from Slack to Gmail to podcast feeds, in addition to web crawling, into a Graphlit project - and then retrieve relevant contents from the MCP client.

Official
Featured
TypeScript
Kagi MCP Server

Kagi MCP Server

An MCP server that integrates Kagi search capabilities with Claude AI, enabling Claude to perform real-time web searches when answering questions that require up-to-date information.

Official
Featured
Python
E2B

E2B

Using MCP to run code via e2b.

Official
Featured
Neon Database

Neon Database

MCP server for interacting with Neon Management API and databases

Official
Featured
Exa Search

Exa Search

A Model Context Protocol (MCP) server lets AI assistants like Claude use the Exa AI Search API for web searches. This setup allows AI models to get real-time web information in a safe and controlled way.

Official
Featured
Qdrant Server

Qdrant Server

This repository is an example of how to create a MCP server for Qdrant, a vector search engine.

Official
Featured