How to Use the Cerbos MCP in Pydantic AI
Add type-safe, validated authorization to your agent with Cerbos and Pydantic AI.
Works with every AI agent you already use
…and any MCP-compatible client
Connect Cerbos MCP to Pydantic AI
Create your Vinkius account to connect Cerbos to Pydantic AI and route execution through our secure gateway. The platform manages server hosting, runtime updates, and security layers. Configuration requires no manual server provisioning.
Get Guaranteed Auth Decisions
The `check_resources` tool evaluates if a principal has permission for an action on a set of resources. It's a read-only check that gives you a clear authorization result. With Pydantic AI, the response from this tool is automatically validated against a Pydantic model. If Cerbos ever returns an unexpected format, your agent will raise a `ValidationError` immediately—no silent failures or corrupted state.
Build Type-Safe Query Plans
Use `plan_resources` to have Cerbos generate a structured query plan for accessing resources. This plan tells your application exactly how to filter data for a specific user. Pydantic AI ensures the query plan your agent receives is a valid, well-formed object. You can trust the structure of the plan and use it to build database queries without worrying about malformed input from the LLM or the API.
Evaluate Policies with your Pydantic AI MCP Server
The `authzen_evaluation` and `authzen_evaluations` tools let your agent check permissions against a formal AuthZEN policy set. You can run checks one by one or batch them together. Because you're using Pydantic AI, you know the inputs you send are correctly typed and the outputs you get back are validated. This brings a level of correctness that's essential when dealing with something as critical as authorization. This MCP server handles the logic; Pydantic AI ensures the data is sound.
Set up Cerbos MCP in Pydantic AI
Prerequisites
- Python 3.10+ installed
-
pydantic-ai-slim[fastmcp]package - Active Vinkius subscription with a valid endpoint token
- 1
Install Pydantic AI with FastMCP
Run
pip install "pydantic-ai-slim[fastmcp]". The FastMCP toolset replaces the deprecatedMCPServerHTTPclass with full protocol support. - 2
Configure the FastMCPToolset
Pass a JSON-style config dict to
FastMCPToolsetwith your Vinkius URL. Replace[YOUR_TOKEN_HERE]with your token from cloud.vinkius.com. Supports Streamable HTTP, SSE, and Stdio transports. - 3
Create and run your agent
Pass the toolset to
Agent(toolsets=[toolset])and callagent.run(). Swapopenai:gpt-4ofor any supported model — Anthropic, Google, Mistral, or Groq.
from pydantic_ai import Agent
from pydantic_ai.toolsets.fastmcp import FastMCPToolset
toolset = FastMCPToolset({
"mcpServers": {
"cerbos-mcp": {
"url": "https://edge.vinkius.com/[YOUR_TOKEN_HERE]/mcp"
}
}
})
agent = Agent(
"openai:gpt-4o",
toolsets=[toolset],
system_prompt="You have access to Cerbos tools.",
)
result = await agent.run("List recent Cerbos transactions")
print(result.output) Independent Platform Disclaimer: Vinkius is an independent platform and is not affiliated with, endorsed by, sponsored by, verified by, or otherwise authorized by Cerbos. All third-party trademarks, logos, and brand names are the property of their respective owners. Their use on this website is strictly for informational purposes to identify service compatibility and interoperability.
Why Choose Vinkius
Vinkius connects your tools to AI with real-time monitoring and automatic cost savings — all from one dashboard.
Real-time monitoring
Live
visibility into every interaction
Connect your favorite tools to your AI and see exactly what's happening — every request, every response, in real time.
Built-in savings
60%
lower AI costs
Vinkius compresses data between your apps and your AI automatically. Lower bills every month — no configuration required.
Single dashboard
One
place for every integration
Every tool your AI connects to, managed from a single screen. One account, complete control.
Common questions about Cerbos MCP in Pydantic AI
Use it with your favorite AI tools
Connect this server to Cursor, Claude, VS Code, and more.
Start using the Cerbos MCP today
We host it, we monitor it, we maintain it. You just paste one token.