Production MCP Operations

Start free. Upgrade when your API reaches production.

Free

Try it out

$0
  • 1 production MCP operations server
  • 1,000 requests/month
  • OpenAPI 3.x, Swagger 2.x & Postman
  • Security Report & Score
  • Side Effect Detection
  • Tool Permissions
  • Approval Workflows (5/month)
  • Audit Logs (last 50 events)
  • Credentials Vault (1 credential)
  • Community support
Start free
Most popular

Starter

For solo builders

$29/month
  • 3 production MCP operations servers
  • 100k requests/month
  • Auto-sync with your spec URL
  • Usage analytics
  • Security Report & Score
  • Side Effect Detection
  • Tool Permissions
  • Approval Workflows (100/month)
  • Audit Logs (30 days)
  • Credentials Vault (3 credentials)
  • Email support
Recommended for Production

Pro

For production teams

$79/month
  • 10 production MCP operations servers
  • 1M requests/month
  • Auto-sync & analytics
  • Security Report
  • Security Score
  • Side Effect Detection
  • Tool Permissions
  • Approval Workflows
  • Audit Logs
  • Credentials Vault
  • Priority support

Agency

For AI agencies

$199/month
  • Unlimited MCP servers
  • Unlimited requests
  • Auto-sync & analytics
  • Security Report
  • Security Score
  • Side Effect Detection
  • Tool Permissions
  • Approval Workflows
  • Audit Logs
  • Credentials Vault
  • White-label endpoints
  • Team access
  • SLA + dedicated support

See what your API looks like before exposing it to AI agents.

Everything included for secure MCP deployment and operations

Production MCP adoption often requires approval from security, IAM, and platform teams. MCPForge provides the controls they expect before AI agents can access production APIs.

🔒Tool Permissions

Control exactly which API operations AI agents can access.

Approval Workflows

Require human approval before sensitive actions execute.

🔑Credentials Vault

Keep API credentials encrypted and isolated from Claude, Cursor, and other AI clients.

📋Audit Logs

Track every tool call, approval, denial, failure, and execution.

⚠️High-Risk Actions Blocked

DELETE, billing, auth, admin, and refund operations are detected and disabled automatically.

📊Security Reports

Generate a Security Score, risk analysis, side-effect classification, and actionable recommendations before deployment.

Feature comparison

FeatureFreeStarterProAgency
MCP Servers1310Unlimited
Requests/month1k100k1MUnlimited
MCP Verify100/month1,000/month5,000/monthUnlimited
Security Report
Security Score
Side Effect Detection
Tool Quality Score
Tool Permissions
Approval Workflows5/month100/monthUnlimitedUnlimited
Audit LogsLast 5030 days90 days1 year
Credentials Vault1 credential3 credentialsUnlimitedUnlimited
White Labelsoon

Frequently asked questions

What is an MCP server?

An MCP server exposes API functionality as AI-accessible tools that can be used by Claude, Cursor, OpenAI agents, and other MCP-compatible clients.

Do I need to write any code?

No. Paste your OpenAPI spec URL or Postman collection — we handle everything. Your MCP server is live in under 60 seconds.

How does MCPForge help with security reviews?

MCPForge generates Security Reports, Security Scores, Side Effect Detection, Tool Permissions, Approval Workflows, Audit Logs, and Credentials Vault controls that help teams evaluate MCP deployments before production use.

Can I block dangerous API operations?

Yes. MCPForge automatically detects DELETE endpoints, billing operations, authentication endpoints, refund actions, and administrative APIs. These operations can be disabled or protected with approval workflows.

Do AI agents ever see my API credentials?

No. API credentials are stored encrypted and injected server-side. Claude, Cursor, and other AI clients never receive raw credentials.

What is auto-sync?

Paid plans automatically check your OpenAPI spec URL for changes and update your MCP server — so it stays in sync with your API without any manual work.

Can I cancel anytime?

Yes. Cancel from the billing portal anytime. Your servers stay active until the end of the billing period. No questions asked.

What formats do you support?

OpenAPI 3.x (JSON & YAML), Swagger 2.x, and Postman collections (v2.1).

Why are core governance features available on Free?

MCPForge is designed so teams can experience the full governance workflow before upgrading. Free includes limited Tool Permissions, Approval Workflows, Audit Logs, Credentials Vault, Security Reports, Security Score, Tool Quality Score, and Side Effect Detection. Paid plans increase limits, retention, scale, and production usage.

Review your MCP security and agent readiness before deployment

Import an OpenAPI specification and receive an instant security assessment, risk classification, and actionable recommendations.

Security Report — Stripe API
✓ Security Review Ready

SECURITY SCORE

85/100Good

Why 85/100?

28 Read-only tools
8 Critical actions blocked
2 Billing endpoints enabled
Credentials Vault not configured

48 TOOLS ANALYZED

28 Read-only
12 Side Effects
🔒8 Critical — blocked by default

HIGH PRIORITY

Disable deleteCustomer
Require approval for refundPayment

MEDIUM PRIORITY

Configure Credentials Vault
Enable audit logging

LOW PRIORITY

Improve tool descriptions
Tool Classification — 48 tools detected
getCustomerRead-only
listOrdersRead-only
searchInvoicesRead-only
createCustomerSide Effect
updateCustomerSide Effect
createInvoiceSide Effect
deleteCustomerCritical 🔒
refundPaymentCritical 🔒
cancelSubscriptionCritical 🔒
+ 39 more tools classified

Why this matters

Security and IAM teams often need visibility into tool permissions, high-risk operations, side effects, and approval requirements before MCP servers can be approved for production use.

·Tool permissions
·High-risk operations
·Side effects
·Approval requirements

Security Score

85/100

Good

Is it safe to deploy?

Tool Quality Score

81/100

Good

Is it Agent-Ready?

Used by teams preparing for

Security Reviews
IAM Reviews
Production Deployment
Governance Approvals
Understand MCP risk before deployment
Identify dangerous API operations automatically
Classify tools by side effects
Prepare for security and IAM reviews
Generate actionable recommendations
Block critical actions by default

MCPForge focuses on helping teams understand and govern MCP deployments before exposing production APIs to AI agents.

More than an MCP generator

Most MCP tools focus on generating servers. MCPForge focuses on operating MCP securely in production through permissions, approvals, audit logs, credentials management, side-effect detection, and security reporting.