4,500+ servers built on MCP Fusion
Vinkius
Cerbos logo
Vinkius
VS Code Copilot logo

How to Use the Cerbos MCP in VS Code Copilot

Standardize access control testing across your team with the Cerbos MCP Server for VS Code Copilot.

See Vinkius in Action

Works with every AI agent you already use

…and any MCP-compatible client

Cerbos MCP on Cursor AI Code Editor MCP Client Cerbos MCP on Claude Desktop App MCP Integration Cerbos MCP on OpenAI Agents SDK MCP Compatible Cerbos MCP on Visual Studio Code MCP Extension Client Cerbos MCP on GitHub Copilot AI Agent MCP Integration Cerbos MCP on Google Gemini AI MCP Integration Cerbos MCP on Lovable AI Development MCP Client Cerbos MCP on Mistral AI Agents MCP Compatible Cerbos MCP on Amazon AWS Bedrock MCP Support
MCP Servers - Free for Subscribers
VS Code Copilot

Connect Cerbos MCP to VS Code Copilot

Create your Vinkius account to connect Cerbos to VS Code Copilot and route execution through our secure gateway. The platform manages server hosting, runtime updates, and security layers. Configuration requires no manual server provisioning.

GDPR Free for Subscribers

Run AuthZEN evaluations in VS Code Copilot

The `authzen_evaluations` tool handles batch evaluation of multiple access requests using AuthZEN directly in your editor. Your agent processes arrays of permission checks using execute-all semantics, proving your new endpoints are secure before you open a pull request. Granular debugging relies on the `authzen_evaluation` tool for single-action checks. You highlight a function, and Copilot tests the specific principal against the AuthZEN entity model to confirm the user gets blocked or approved correctly.

Validate resource permissions via MCP Server

The `check_resources` tool evaluates permissions for a principal on a set of resources without modifying state. Your team can verify complex role hierarchies right in the chat panel instead of writing disposable curl commands. Translating policies into database filters requires the `plan_resources` tool. Copilot produces a query plan for allowed resources and instantly converts the abstract rules into Prisma, TypeORM, or raw SQL for your current file.

Sync environment details automatically

Via the MCP connection, the `get_server_info` tool returns the version and build details of the Cerbos instance you are currently targeting. This stops developers from wasting hours debugging syntax errors caused by an outdated local binary. Connection routing uses the `get_authzen_config` tool to fetch endpoint URLs for the AuthZEN APIs. Copilot always knows exactly where to send the payload, even if your infrastructure team rotates the internal staging domains.

Setup guide

Set up Cerbos MCP in VS Code Copilot

Prerequisites

  • VS Code 1.99 or later with GitHub Copilot extension
  • Active Vinkius subscription with a valid endpoint token
  1. 1

    Open MCP configuration

    Open the Command Palette (Cmd+Shift+P / Ctrl+Shift+P) and run "MCP: Add Server". Select HTTP (Streamable) as the server type. VS Code will create .vscode/mcp.json in your workspace.

  2. 2

    Add the Cerbos MCP

    Paste the JSON snippet shown on the right into your .vscode/mcp.json. Replace [YOUR_TOKEN_HERE] with your endpoint token from cloud.vinkius.com.

  3. 3

    Switch to Agent mode

    Open Copilot Chat (Cmd+Shift+I / Ctrl+Shift+I) and switch to Agent mode using the dropdown. MCP tools are only available in Agent mode — they do not appear in Edit or Ask modes.

  4. 4

    Verify the connection

    In the Copilot Chat input, type # to list available tools. You should see the Cerbos tools listed. Try asking: "List my recent Cerbos transactions" and Copilot will invoke them automatically.

.vscode/mcp.json
{
  "mcpServers": {
    "cerbos-mcp": {
      "url": "https://edge.vinkius.com/[YOUR_TOKEN_HERE]/mcp"
    }
  }
}

Independent Platform Disclaimer: Vinkius is an independent platform and is not affiliated with, endorsed by, sponsored by, verified by, or otherwise authorized by Cerbos. All third-party trademarks, logos, and brand names are the property of their respective owners. Their use on this website is strictly for informational purposes to identify service compatibility and interoperability.

Why Choose Vinkius

Vinkius connects your tools to AI with real-time monitoring and automatic cost savings — all from one dashboard.

Real-time monitoring

Live

visibility into every interaction

Connect your favorite tools to your AI and see exactly what's happening — every request, every response, in real time.

Built-in savings

60%

lower AI costs

Vinkius compresses data between your apps and your AI automatically. Lower bills every month — no configuration required.

Single dashboard

One

place for every integration

Every tool your AI connects to, managed from a single screen. One account, complete control.

Common questions about Cerbos MCP in VS Code Copilot

Commit a .vscode/mcp.json file to your repository. Every developer opening the project will instantly get access to the same policy evaluation tools.
Yes. The agent executes bulk request arrays against your engine, letting you validate hundreds of role combinations in seconds.
Your agent reads the query plan output from the server and generates the exact SQL required for your database. It maps the allowed resource conditions straight into your WHERE clauses.
Scripts break when your schema changes. MCP tools read your live code, call the evaluation endpoints, and adapt the payload on the fly without requiring maintenance.
The server only processes specific resource IDs and principal roles during a check. Vinkius routes this traffic through a zero-trust sandbox, guaranteeing your proprietary authorization logic never enters the Copilot training pipeline.

Start using the Cerbos MCP today

We host it, we monitor it, we maintain it. You just paste one token.

Built & Managed by Vinkius 30s setup 6 tools

We've already built the connector for Cerbos. Just plug in your AI agents and start using Vinkius.

No hosting. No infrastructure. No complex setup.
All 6 tools are live and waiting. You're up and running in seconds.

Claude Claude
ChatGPT ChatGPT
Cursor Cursor
Gemini Gemini
Windsurf Windsurf
VS Code VS Code
JetBrains JetBrains
Vercel Vercel
+ other MCP clients

Vinkius gives your AI agents access to the full catalog of app connectors, all fully managed, secure, and enterprise-ready. One subscription, every tool you need.

Zero hosting required Full MCP catalog included Enterprise-grade security Auto-updated by Vinkius

Built, hosted, and secured by Vinkius. You just connect and go.