OAuth 2.1 + OIDC bridge for private MCP servers. Stateless, replay-safe, audit-defensible. Bring any IdP — Keycloak to Entra.
Quick Install
Copy the config for your editor. Some servers may need additional setup — check the README.
Add to claude_desktop_config.json:
{
"mcpServers": {
"mcp-auth-proxy": {
"command": "go",
"args": [
"run",
"github.com/babs/mcp-auth-proxy@latest"
]
}
}
}
Run in terminal:
claude mcp add mcp-auth-proxy go run github.com/babs/mcp-auth-proxy@latest
Add to .cursor/mcp.json:
{
"mcpServers": {
"mcp-auth-proxy": {
"command": "go",
"args": [
"run",
"github.com/babs/mcp-auth-proxy@latest"
]
}
}
}