io.github.toolhail/gateway

gateway

Find and call the right MCP server for any task - pay per use, no install.

0.2.0
Version
remote
Transport
2
Tools

Security review

Review passed

Reviewed Jan 1, 2000.

  • tools: 2 tools scanned
  • metadata: scanned

No findings.

Tools (2)

  • find_mcp_server

  • call_tool

    Proxy one tool call to a discovered remote MCP server (paid). Every call passes pre-execution guards before anything runs: tools on TOOLHAIL_BLOCKED_TOOLS are always refused; when TOOLHAIL_ALLOWED_TOOLS is set (non-empty, no "*") only listed tools may fire; write/mutating-looking tool names are refused unless allowWrite:true is passed or the tool is allowlisted; and TOOLHAIL_ARG_LIMITS can cap specific argument values per tool (e.g. daily_budget<=500) so an allowlisted broad tool still cannot push a value past its ceiling. Any refusal executes nothing and bills nothing, and every receipt records the gate decision.