Compatible with every major AI agent and IDE
What is the Casdoor (IAM) MCP Server?
Connect your Casdoor IAM instance to any AI agent to streamline your identity and access management workflows through natural conversation.
What you can do
- User Management — Create, update, delete, and retrieve detailed profiles for users across your organizations using the
add_user,update_user, anddelete_usertools. - Organization Oversight — List all organizations and fetch specific configuration details for your IAM hierarchy with
list_organizationsandget_organization. - Application Control — Query and manage applications registered within your Casdoor instance using
list_applicationsandget_application. - Identity Inspection — Instantly retrieve the profile of the currently authenticated user to verify permissions via
get_userinfo.
How it works
- Subscribe to this server
- Enter your Casdoor Endpoint, Client ID, and Client Secret
- Start managing your identity infrastructure from Claude, Cursor, or any MCP-compatible client
Who is this for?
- DevOps Engineers — Automate user provisioning and organization audits without leaving the terminal or IDE.
- Security Teams — Quickly inspect user permissions and application configurations for compliance and security reviews.
- Full-stack Developers — Manage test users and application settings directly while coding to maintain development flow.
Built-in capabilities (10)
Requires owner (organization) and name (username). Add a new user
Requires the owner (organization) and name (username) of the user to delete. Delete a user
Get a specific application
Get a specific organization
Get a specific user by ID
Get the profile of the authenticated user
List applications in an organization
List all organizations
List users in an organization
The ID parameter must be formatted as <organization>/<username>. Update an existing user
Why OpenAI Agents SDK?
The OpenAI Agents SDK auto-discovers all 10 tools from Casdoor (IAM) through native MCP integration. Build agents with built-in guardrails, tracing, and handoff patterns. chain multiple agents where one queries Casdoor (IAM), another analyzes results, and a third generates reports, all orchestrated through Vinkius.
- —
Native MCP integration via
MCPServerSse, pass the URL and the SDK auto-discovers all tools with full type safety - —
Built-in guardrails, tracing, and handoff patterns let you build production-grade agents without reinventing safety infrastructure
- —
Lightweight and composable: chain multiple agents and MCP servers in a single pipeline with minimal boilerplate
- —
First-party OpenAI support ensures optimal compatibility with GPT models for tool calling and structured output
Casdoor (IAM) in OpenAI Agents SDK
Casdoor (IAM) and 4,000+ other MCP servers. One platform. One governance layer.
Teams that connect Casdoor (IAM) to OpenAI Agents SDK through Vinkius don't need to source, host, or maintain individual MCP servers. Every tool call runs inside a hardened runtime with credential isolation, DLP, and a signed audit chain.
Raw MCP | Vinkius | |
|---|---|---|
| Server catalog | Find and host yourself | 4,000+ managed |
| Infrastructure | Self-hosted | Sandboxed V8 isolates |
| Credential handling | Plaintext in config | Vault + runtime injection |
| Data loss prevention | None | Configurable DLP policies |
| Kill switch | None | Global instant shutdown |
| Financial circuit breakers | None | Per-server limits + alerts |
| Audit trail | None | Ed25519 signed logs |
| SIEM log streaming | None | Splunk, Datadog, Webhook |
| Honeytokens | None | Canary alerts on leak |
| Custom domains | Not applicable | DNS challenge verified |
| GDPR compliance | Manual effort | Automated purge + export |
Why teams choose Vinkius for Casdoor (IAM) in OpenAI Agents SDK
The Casdoor (IAM) MCP Server runs on Vinkius-managed infrastructure inside AWS — a purpose-built runtime with per-request V8 isolates, Ed25519 signed audit chains, and sub-40ms cold starts. All 10 tools execute in hardened sandboxes optimized for native MCP execution.
Your AI agents in OpenAI Agents SDK only access the data you authorize, with DLP that blocks sensitive information from ever reaching the model, kill switch for instant shutdown, and up to 60% token savings. Enterprise-grade infrastructure, zero maintenance.

* Every MCP server runs on Vinkius-managed infrastructure inside AWS - a purpose-built runtime with per-request V8 isolates, Ed25519 signed audit chains, and sub-40ms cold starts optimized for native MCP execution. See our infrastructure
How Vinkius secures
Casdoor (IAM) for OpenAI Agents SDK
Every tool call from OpenAI Agents SDK to the Casdoor (IAM) MCP Server is protected by DLP redaction, cryptographic audit chains, V8 sandbox isolation, kill switch, and financial circuit breakers.
Frequently asked questions
How do I list all users belonging to a specific organization?
Use the list_users tool and provide the organization name in the 'owner' parameter. The agent will return a list of all users registered under that organization.
What format should I use to fetch a specific user's details?
When using the get_user tool, the ID must be formatted as <organization>/<username>. For example, to find user 'alice' in the 'built-in' organization, use 'built-in/alice'.
Can I manage applications and organizations as well?
Yes. You can use list_organizations and get_organization to manage your hierarchy, and list_applications or get_application to inspect app-specific configurations.
How does the OpenAI Agents SDK connect to MCP?
Use MCPServerSse(url=...) to create a server connection. The SDK auto-discovers all tools and makes them available to your agent with full type information.
Can I use multiple MCP servers in one agent?
Yes. Pass a list of MCPServerSse instances to the agent constructor. The agent can use tools from all connected servers within a single run.
Does the SDK support streaming responses?
Yes. The SDK supports SSE and Streamable HTTP transports, both of which work natively with Vinkius.
MCPServerStreamableHttp not found
Ensure you have the latest version: pip install --upgrade openai-agents
Agent not calling tools
Make sure your prompt explicitly references the task the tools can help with.
Explore More MCP Servers
View all →
Particle IoT
8 toolsAccess Particle IoT devices via API — read sensor variables, control device functions, manage devices, and publish events from any AI agent.

KeyPay
10 toolsManage payroll, employees, and pay runs via the Employment Hero Payroll (KeyPay) API.

Mailshake
12 toolsRun cold email outreach campaigns with personalization, automated follow-ups, and reply detection that fills your sales pipeline.

Cin7 Core
10 toolsEquip your AI agent to manage inventory, sales orders, and purchase orders via the Cin7 Core (formerly DEAR Systems) API.
