Rivano · mcpgw · v0.8.1

One shipped product. A clear operating boundary.

Self-hosted MCP gateway for policy enforcement, audit records, authentication, routing, and OpenTelemetry. It runs in your environment and supports legacy stateful MCP plus the 2026-07-28 stateless revision.

Policy and protocol

Six policy actions, claim-aware authorization, guardrail webhook verdicts, task affinity, subscription governance, MRTR result matching, and an optional protocol-version allowlist.

Policy reference →

Operations

Public container, downloadable binaries, a shipped Helm chart, Redis-backed shared rate limits, graceful drain, health/readiness endpoints, audit sinks, and OTLP export.

HA guide →

Trust boundary

mcpgw is not a sandbox, hosted control plane, native MCP resource store, REST wrapper, or semantic classifier. Guardrail endpoints receive full matched envelopes and must be trusted accordingly.

Security posture →

Compatibility

The upgrade guide records default-deny behavior from v0.7.0, v0.8.1 guardrail body limits, reload versus restart boundaries, and rollback/license constraints.

Upgrade guidance →

Evaluate the current release.

Use public distribution routes and the versioned documentation; no private repository access is required.