OrcaTrac sits on the MCP tool path — records calls, syncs org policy, and fail-closes in CI. Start with visibility; tighten BLOCK / ASK when you are ready. We do not claim to block every model hallucination.
Already have an account? Sign in →
Works with MCP hosts you already use
GitHub Actions and other CI runners, Claude Code hooks, Claude Desktop stdio proxy, and Cursor MCP configs. Listing a model family here is not a coverage claim — enforcement depends on the host path (CI profile, hooks, or proxy) and your org policy.
Local stdio MCP has no admin plane. Prompt injection and over-permissioned tools are real risks; the first purchasable control is inventory plus policy you can enforce in non-interactive runners.
execute_sqlbash + egressdeleteFileDesigned for platform engineers — signup to first audited runner in under 15 minutes.
Free org in minutes. Create an API key under Settings → API Keys.
Store ORCATRAC_API_KEY, set ORCATRAC_PROFILE=ci, wrap your MCP server.
Events land in the dashboard. Tighten policy once you see the inventory.
See every MCP tool call from headless runners in one org dashboard — who called what, risk class, and decision — before you tighten enforcement.
ORCATRAC_PROFILE=ci defaults to block and fails closed if the control plane is unreachable. Dashboard policy still wins once synced.
Beyond name prefixes: MCP annotations, SQL verb class, shell egress patterns, custom exact/glob rules, and session lethal-trifecta state.
Claude Code PreToolUse / PostToolUse hooks apply org policy and optional ASK webhooks. We do not replace Anthropic permissions — we add fleet policy + audit.
CLI redacts secrets before upload. Orgs choose full, metadata-only (default), or zero-retention so audit does not mean dumping raw args to the cloud.
One control plane for CI runners, Claude Code hooks, and stdio proxy hosts. Custom ALLOW / WARN / BLOCK / ASK rules without redeploying agents.
Defaults help day one; org custom rules and CI block mode are how you harden.
Result inspection and large attack-corpus evals are still Phase 4 follow-ons — we do not market those as shipped.
Create an account, mint a key, paste the workflow. Optional waitlist if you only want launch updates.