Ironclaw MCP Server

Each one runs sealed in a sandbox that provably cannot phone home, read your host, or rewrite its own rules.

People who work with agent platform, ai assistant and sandbox and want it reachable from Claude, Cursor, VS Code, or another MCP client. The project is written in Go.

VERIFIED ACTIVE

LAST COMMIT 2026-09-16 · ★ 19 · #134 OF 204 MAINTAINED SECURITY · VERIFIED 2026-09-18

AGPL-3.0 · Go servers · how we verify → /methodology

01 · Install Ironclaw

before you install - you'll need

Set IRONCLAW_API_TOKEN before connecting.

Docker

docker run -i --rm ghcr.io/ironsecco/ironclaw-mcp:v0.1.526

Claude Desktop - add to config

{
  "mcpServers": {
    "ironsecco-ironclaw": {
      "command": "docker",
      "args": [
        "run",
        "-i",
        "--rm",
        "ghcr.io/ironsecco/ironclaw-mcp:v0.1.526"
      ]
    }
  }
}
Using another client? Same JSON, different key

Claude Desktop · mcpServers

Cursor · mcpServers

VS Code · servers

Windsurf · mcpServers

Zed · context_servers

Cline · mcpServers

Roo Code · mcpServers

Continue · mcpServers

LibreChat · mcpServers

Gemini CLI · mcpServers

Codex CLI · mcp_servers

Full setup guides: every client.

02 · Evidence

Security posture

What to check before giving this server access to your agent - from the registry, GitHub, and our own probes. We don't score safety; we show what's verifiable.

runs as container (OCI image) - can be sandboxed away from your filesystem

license AGPL-3.0 - declared in the repository

registry namespace io.github.IronSecCo is GitHub-verified and matches the repo owner

03 · What Ironclaw can do

Prose above is summarized from the project's README and registry record - no invented capabilities.

Latest releases

v0.1.526 · 2026-09-16

Automated release for commit 372d63412f2b59055e8f294a720b55c61a6f7886. · Install (macOS / Linux) · sh · curl -fsSL | sh · Install (Windows, PowerShell) · powershell · irm | iex · To pin this version, set…

v0.1.524 · 2026-09-16

Automated release for commit 809176016026badd7f27f95562c6a7caaa01bb7f. · Install (macOS / Linux) · sh · curl -fsSL | sh · Install (Windows, PowerShell) · powershell · irm | iex · To pin this version, set…

v0.1.523 · 2026-09-16

Automated release for commit ba2ebb7db3c017766a57836afa2c40d74a150048. · Install (macOS / Linux) · sh · curl -fsSL | sh · Install (Windows, PowerShell) · powershell · irm | iex · To pin this version, set…

04 · Who maintains Ironclaw

ironclaw is maintained by ironsecco. It's the only MCP server we track from this author; the repo dates to Jun 2026.

05 · Facts

category
security - ranked #134 of 204 actively-maintained security servers as of 2026-09-18.
release cadence
10+ releases in the last 90 days (latest 2026-09-16)
registry
io.github.IronSecCo/ironclaw (active, first published 2026-07-05 · 75 versions)
packages
oci:ghcr.io/ironsecco/ironclaw-mcp:v0.1.526

06 · Ironclaw FAQ

What is Ironclaw?

Each one runs sealed in a sandbox that provably cannot phone home, read your host, or rewrite its own rules.

Is Ironclaw still maintained?

Yes - as of 2026-09-18, its last commit was 2026-09-16 and it shipped 10+ releases in the last 90 days. We re-verify nightly.

How do I install Ironclaw?

Run `docker run -i --rm ghcr.io/ironsecco/ironclaw-mcp:v0.1.526`. The README documents one environment variable (IRONCLAW_API_TOKEN) to set first. Set IRONCLAW_API_TOKEN before connecting. You can also paste the ready-made client config above.

07 · Alternatives to Ironclaw

More security MCP servers · HubVibe Site Audits · Scan MCP · Signet Eval · Shellward · Patch Tuesday

More Go MCP servers · Termada · GitLab MCP Server · Books & Papers MCP Server · Lastsaas · Lightcms · see all