01Comprehensive injection detection (path traversal, shell, SQL, command substitution)
02Multi-stage policy engine (tool allow/block lists, patterns, path restriction, rate limits)
03Unified tool listing across multiple upstream MCP servers
04Automated audit logging with credential redaction for every tool call
05Environment variable expansion for secure configuration
060 GitHub stars