**CI-first MCP supply-chain integrity gate.** Pin the *declared* tool / resource / prompt surface of an [MCP](https://modelcontextprotocol.io) server, then fail CI when that surface drifts from an approved baseline. > mcp-warden is an **MCP supply-chain integrity gate, not a full agent firewall.** > v0.1 verifies that a server's *declared* surface has not changed since a human