Open Source MCP Gateway

Every agent call, allowed, denied, or reviewed
on purpose.

A lightweight MCP gateway you can deploy anywhere. Run it yourself for free, or let us manage it for you.

gateway-log — all mcp connections
live
-03smcp:stripe/chargeALLOW
-06smcp:linear/create_issueALLOW
-09smcp:github/delete_repoDENY
-13smcp:stripe/refund $840REVIEW
-16smcp:slack/post_messageALLOW
-20smcp:postgres/drop_tableDENY
-03smcp:stripe/chargeALLOW
-06smcp:linear/create_issueALLOW
-09smcp:github/delete_repoDENY
-13smcp:stripe/refund $840REVIEW
-16smcp:slack/post_messageALLOW
-20smcp:postgres/drop_tableDENY
2.3k+ GitHub Stars
10k+ Self-Hosted Deployments
MIT Licensed
99.9% Managed Uptime

Architecture

Zero SDK integration. One lightweight proxy.

Connect any standard MCP-compatible client—from Claude Desktop to Cursor—to our managed proxy. Zero changes to your application codebase required.

Client Config

Point your client to the bridge.

Instead of direct local configurations, configure your agent or IDE client once to route its transport commands securely through our edge.

`// claude_desktop_config.json`
"mcpServers": {
  "managent-gateway": {
    "command": "npx",
    "args": ["-y", "@managent/mcp-bridge"],
    "env": { "GATEWAY_URL": "env.MANAGENT_URL" }
  }
}
Policy Dashboard

Manage security through the UI.

Define global authorization scopes and enforce safety constraints through a visual interface. No configuration files needed.

mcp-github:read_*ALLOW

All agents

mcp-stripe:chargeREVIEW

If amount > $100

mcp-*:delete_*DENY

Production agents

Gateway Policy Engine

Granular tool control. Zero untrusted executions.

Write safety rules globally. Managent intercepts tool executions instantly based on user parameters, schema arguments, and developer configurations.

ALLOW

The tool call matches your approved scopes and resolves instantly. Credentials are safely injected at the gateway edge.

agent:support-bot → mcp-linear:read_issue

REQUIRE APPROVAL

Held and routed to Slack, Discord, or your custom webhook. Tool execution pauses until resolved by a human operator.

agent:billing-bot → mcp-stripe:refund > $500

DENY

Blocked immediately at the proxy. Your model client receives standard error context with zero silent context failures.

agent:*-bot → mcp-github:delete_repo

Platform Map

One control plane. Absolute visibility.

Every active MCP server, local client connector, and live tool session reports into a single screen—enforcing enterprise governance over LLM capabilities.

Unified Registry

Instantly discover every connected MCP server, tool definition, and client connection in one live map.

Declarative Policies

Evaluate granular tool-level rules—allow, deny, or human-in-the-loop triggers—top to bottom.

Structured Auditing

Record every request payload, parameter arguments, timestamp, and server response automatically.

Instant Revocation

Unlink or pause any downstream tool or external service immediately without modifying your client configs.

Flexible Deployment

Self-host for free, or let us run it

Managent is 100% open source. Deploy it yourself or use our managed cloud.

Free

Perfect for trying out Managent

$0forever
Start Free
  • Up to 3 agents
  • 10,000 gateway calls/month
  • 30-day audit retention
  • Community support
  • Basic policies (allow/deny)
Popular

Starter

For small teams getting started

$29per month
Start Trial
  • Up to 10 agents
  • 100,000 gateway calls/month
  • 90-day audit retention
  • Email support
  • All policy types
  • Slack/Discord integrations
  • SSO (Google, GitHub)

Professional

For growing teams at scale

$149per month
Start Trial
  • Up to 50 agents
  • 1M gateway calls/month
  • 1-year audit retention
  • Priority support + Slack
  • Advanced conditions
  • Custom workflows
  • RBAC
  • SOC 2 infrastructure

Enterprise

Custom deployment, dedicated support, and SLA guarantees

Unlimited agentsOn-premise optionCustom SLADedicated support

Frequently Asked Questions

What counts as a gateway call?

Each tool invocation that passes through Managent, regardless of outcome (allow/deny/review).

Can I upgrade or downgrade anytime?

Yes, changes take effect immediately with prorated billing. No lock-in contracts.

How is self-hosted different from managed?

Same features, same code. Managed cloud handles infrastructure, updates, and scaling for you.

Is my data secure?

All data encrypted in transit and at rest. SOC 2 Type II certified. Self-host for complete control.

Bring compliance and safety to MCP.

Start securing tool execution in minutes. Deploy yourself or use our managed cloud.