Ciphertrust Manager MCP Server

Testing utilities for CipherTrust Manager MCP Server

Local serverstdioPython

What is the Ciphertrust Manager MCP server?

Testing utilities for CipherTrust Manager MCP Server. Exposed over MCP by the ciphertrust manager mcp server, that capability becomes something an assistant can invoke while it works, not something you go and do afterwards.

What it actually does

This project implements an independently-developed CipherTrust MCP (Model Context Protocol) server that allows AI Assistants like Claude or Cursor to interact with CipherTrust Manager resources using the ksctl CLI.

  • Key management
  • CTE client management
  • User management
  • Connection management
  • Unified interface for AI assistants to interact with CipherTrust Manager
  • Support for key management, connection management, CTE client management, and more

Its toolset

Everything the assistant can do here goes through one of these:

  • Dependencies — The pyproject.toml file includes these dependencies: - mcp>=1.0.0 - pydantic>=2.0.0 - pydantic-settings>=2.0.0 - httpx>=0.27.0 - python-dotenv>=1.0.0
  • Support — This is an independent project. For official CipherTrust Manager support, please contact Thales directly. For issues with this unofficial MCP server

Configuration

You will need 5 environment variables: CIPHERTRUST_URL, CIPHERTRUST_USER, CIPHERTRUST_PASSWORD, KSCTL_PATH, KSCTL_CONFIG_PATH. The server will not start without them, which is usually why the tools fail to appear on a first run. Keep credentials in your client's env block or a secrets manager rather than in a file you might commit.

  • Git - Python 3.11 or higher - uv for dependency management - Access to a CipherTrust Manager instance

Adding it to your client

Installation goes through your MCP client rather than a global install: point it at @modelcontextprotocol/inspector on npm and it is fetched when the client starts. The copy-paste blocks for Claude Desktop, Claude Code and Cursor are further down this page.

When to reach for it

Among the developer tooling options, the useful question is rarely "what can it do" but "what does it cost you to run" — permissions, credentials, and how much of your context its toolset consumes. Ciphertrust Manager's toolset — Dependencies, Support — is a fair guide to whether it matches your workflow. It is maintained by sanyambassi; worth a glance at recent repository activity before you build anything load-bearing on it.

This entry was verified against Ciphertrust Manager's own documentation before publication; SyncDev keeps the directory reviewed rather than auto-generated.

Caveats

  • It runs with your machine's permissions. That is convenient and also the reason to think about what you point it at before you approve a tool call.
  • Missing credentials fail quietly in some clients — if no tools show up, check the environment block first.
  • MCP clients confirm each tool call by default. Leave that on until you have watched what the ciphertrust manager mcp server does with a few real requests.

Available tools

ToolWhat it does
DependenciesThe pyproject.toml file includes these dependencies: - mcp>=1.0.0 - pydantic>=2.0.0 - pydantic-settings>=2.0.0 - httpx>=0.27.0 - python-dotenv>=1.0.0
SupportThis is an independent project. For official CipherTrust Manager support, please contact Thales directly. For issues with this unofficial MCP server, please use the GitHub issue tracker.

How to install the Ciphertrust Manager MCP server

**Windows Example:**
```json
{
  "mcpServers": {
    "ciphertrust": {
      "command": "C:\\absolute\\path\\to\\ciphertrust-manager-mcp-server\\.venv\\Scripts\\ciphertrust-mcp-server",
      "env": {
        "CIPHERTRUST_URL": "https://your-ciphertrust.example.com",
        "CIPHERTRUST_USER": "admin",
        "CIPHERTRUST_PASSWORD": "your-password-here"
      }
    }
  }
}

Configuration as documented by the project. Restart the client after saving.

Configuration

  • Git - Python 3.11 or higher - uv for dependency management - Access to a CipherTrust Manager instance
VariableDescriptionRequired
CIPHERTRUST_URLEndpoint or connection string the server talks to.Yes
CIPHERTRUST_USERConfiguration value read at startup.Optional
CIPHERTRUST_PASSWORDConfiguration value read at startup.Optional
KSCTL_PATHFilesystem location the server is allowed to use.Optional
KSCTL_CONFIG_PATHFilesystem location the server is allowed to use.Optional

Example prompts to try

  • Use Ciphertrust Manager to Dependencies.
  • Use Ciphertrust Manager to Support.

Frequently asked questions

It connects Ciphertrust Manager to MCP-compatible AI assistants such as Claude and Cursor, exposing 2 tools (Dependencies, Support) that the assistant can call on your behalf. Instead of copying data back and forth by hand, the assistant works with Ciphertrust Manager directly.