Back to Directory/Security & Auth

io.github.andrewszk/clawvault-mcp-server

AI agent payment security - spending limits, whitelists, and human approval.

Security & AuthJavaScriptv0.1.1

clawvault-mcp-server

MCP (Model Context Protocol) server for ClawVault - AI agent payment security layer.

Installation

npm install -g clawvault-mcp-server

Or use directly with npx (no install needed):

npx clawvault-mcp-server

Usage with Claude Desktop

Add to your Claude Desktop config:

Mac: ~/Library/Application Support/Claude/claude_desktop_config.json Windows: %APPDATA%\Claude\claude_desktop_config.json

{
  "mcpServers": {
    "clawvault": {
      "command": "npx",
      "args": ["clawvault-mcp-server"],
      "env": {
        "CLAWVAULT_API_KEY": "cv_live_your_api_key_here"
      }
    }
  }
}

Restart Claude Desktop after saving.

Getting Your API Key

  1. Go to clawvault.cc and sign up
  2. Navigate to the Agents page
  3. Create a new agent or use an existing one
  4. Copy the API key (format: cv_live_...)

Available Tools

Once connected, Claude has access to these tools:

request_payment

Request a payment through ClawVault. The payment will be evaluated against your security rules.

Amount: "10.00"
Token: "USDC"
Recipient: "0x..."
Chain: "base"
Reason: "API credits" (optional)

check_limits

Check if a payment would be allowed before making it. Returns whether it would auto-approve or need manual approval.

get_payment_status

Check the status of a pending payment by ID.

list_transactions

List recent payment transactions with pagination.

get_vault

Get vault status including wallet address, balances, and current spending limits.

freeze_agent

Emergency freeze an agent to block all its payment requests.

How It Works

  1. You ask Claude to pay for something
  2. Claude uses request_payment tool
  3. ClawVault checks your rules:
    • Within rules → auto-approved, payment executes
    • Outside rules → pending, you get a Telegram/dashboard notification
  4. You approve or deny from Telegram or the web dashboard
  5. Claude gets the result

Environment Variables

VariableRequiredDefaultDescription
CLAWVAULT_API_KEYYes-Your ClawVault API key
CLAWVAULT_API_URLNohttps://api.clawvault.ccAPI base URL

For Other AI Agents

Not using Claude Desktop? Any AI agent can use ClawVault by reading the skill documentation:

https://api.clawvault.cc/skill

This returns plain text that teaches the agent how to use the ClawVault API.

Development

# Clone the repo
git clone https://github.com/clawvault/mcp-server

# Install dependencies
npm install

# Build
npm run build

# Run locally
CLAWVAULT_API_KEY=cv_live_xxx npm start

Links

License

MIT

Installation

Source-derived launch command. Check the maintainer’s required arguments and credentials before running:

bash
npx -y clawvault-mcp-server

Set up in your AI client

Merge this template into ~/Library/Application Support/Claude/claude_desktop_config.json. Keep existing servers. Add any arguments, credentials, and permissions required by the maintainer; this template has not been install-tested.

json
{
  "mcpServers": {
    "io-github-andrewszk-clawvault-mcp-server": {
      "command": "npx",
      "args": [
        "-y",
        "clawvault-mcp-server"
      ]
    }
  }
}

Restart Claude Desktop completely for changes to take effect. Confirm the server appears connected in the client’s tool list, then try a read-only example from its documentation.

Claude Desktop setup reference

Package

clawvault-mcp-servernpm

Compatible MCP Clients

io.github.andrewszk/clawvault-mcp-server works with any MCP-compatible client. Copy the config snippet from the Configuration section above and add it to the file shown for your client, then restart the application.

  • Claude Desktop~/Library/Application Support/Claude/claude_desktop_config.jsonRestart Claude Desktop completely for changes to take effect.
  • Cursor~/.cursor/mcp.jsonRestart Cursor for changes to take effect.
  • VS Code.vscode/mcp.jsonReload VS Code window for changes to take effect.
  • Windsurf~/.codeium/windsurf/mcp_config.jsonRestart Windsurf for changes to take effect.
  • Claude Code.mcp.jsonSave at the project root, then start Claude Code in that project and review the MCP server approval prompt. Keep real credentials out of shared files.

Learn More