GPR-016 · high risk
Review remote MCP connections
Require review before using a named remote MCP endpoint or server identity.
Decision
review
Matcher
mcp = remote-mcp-server
Reviewed
2026-08-09
Safe test cases
matching synthetic case
mcp = remote-mcp-server → review
different benign synthetic case
mcp = benign-remote-mcp-server → unmatched
Limitations
- Network destination controls remain separate from MCP server identity controls.
Review before applying
This recipe is a starting point, not a universal security policy. Open it in Policy Studio, replace example identifiers where necessary, review scope and blast radius, simulate where supported, and use the normal approval flow before enforcement.
Recipe SHA-256: 865249a50c6f27991b4b3262ee57d236a5b9182690e03044342f4d276ee9141b
When a policy is saved and delivered through Guard Cloud, it uses the existing Guard policy-bundle compiler. If the policy-bundle signing key is configured, that compiler produces an RSA-PSS-SHA256 signed bundle that local Guard verifies before applying.