Skip to content
Vinkius

Cerbos (Access Control) Connector for AI agents.

19 live capabilities

Manage RBAC and ABAC policies and audit access control for your security infrastructure.

Live agent request Cerbos (Access Control) / Connector

Waiting for input…

AI Agent

Why people use Cerbos (Access Control)

Cerbos for Automated Access Control Auditing

With this Connector, you just ask your agent to show you the latest audit logs or verify a specific permission. You get immediate answers and a clear view of your security posture in a single chat window.

  • Claude
  • ChatGPT
  • Gemini
  • Cursor
  • Visual Studio Code
  • Windsurf

What Vinkius changes

You get a conversational interface for managing complex authorization without touching your source code.

Use it from Claude, ChatGPT, Cursor or another AI client you already have.

One account · 5,900+ Connectors

  1. Real-world use case 01

    Auditing for Compliance

    A security engineer needs to prove that only admins can delete records.

  2. Real-world use case 02

    Development Testing

    A backend dev wants to know if a user can view a specific record.

  3. Real-world use case 03

    Performance Monitoring

    An ops lead wants to see the request volume.

Complete set · 19capabilities

The complete Cerbos (Access Control) capability set.

These are the exact actions your AI can choose when you ask it to work with Cerbos (Access Control).

Capability set01 / 05

01—04

4 capabilities in this set.

Part of 19 available through Cerbos (Access Control).

  1. 01 Capability

    Get health

    Check the current status of your Cerbos instance. Use this to ensure your policy decision point is online and ready.

  2. 02 Capability

    Get metrics

    Pull Prometheus metrics from your Cerbos setup. This is perfect for monitoring performance and request volume.

  3. 03 Capability

    Get policy

    Fetch the details of a specific policy using its ID. This lets you inspect the logic of a single authorization rule.

  4. 04 Capability

    Get schema

    Get a specific schema by ID

Capability set02 / 05

05—08

4 capabilities in this set.

Part of 19 available through Cerbos (Access Control).

  1. 05 Capability

    Add policy

    Create a new policy within your Cerbos instance. Use this to define new permissions for users or resources.

  2. 06 Capability

    Get authzen config

    Retrieve the configuration metadata for your AuthZEN setup. This helps you verify the underlying configuration details.

  3. 07 Capability

    Add schema

    Create or update a resource schema in your system. This defines the structure of the objects your policies protect.

  4. 08 Capability

    Authzen evaluation

    Perform a single access evaluation using the AuthZEN framework. This is used for specific, single-point permission checks.

Capability set03 / 05

09—12

4 capabilities in this set.

Part of 19 available through Cerbos (Access Control).

  1. 09 Capability

    Authzen evaluations

    Run a batch of AuthZEN access evaluations at once. This is useful for testing multiple permissions in a single request.

  2. 10 Capability

    Check resources

    Evaluate if a specific principal has the rights to perform actions on a set of resources. This helps you quickly verify permissions during a security review.

  3. 11 Capability

    Delete policy

    Remove a specific policy from your system by its unique ID. Use this to clean up old or deprecated authorization rules.

  4. 12 Capability

    Disable policy

    Turn off a policy without deleting it from the system. This is useful for temporary maintenance or troubleshooting.

Capability set04 / 05

13—16

4 capabilities in this set.

Part of 19 available through Cerbos (Access Control).

  1. 13 Capability

    Enable policy

    Reactivate a disabled policy to restore its effect on the system. You can quickly toggle permissions on or off as needed.

  2. 14 Capability

    Get server info

    Retrieve the version and build information for your Cerbos instance. Use this to verify that you are running the correct software version.

  3. 15 Capability

    List audit logs

    View a list of recent access logs from your system. This is your primary way to check who did what and when.

  4. 16 Capability

    List policies

    Get a full list of all active policies in your Cerbos instance. Use this to see the entire scope of your authorization rules.

Capability set05 / 05

17—19

3 capabilities in this set.

Part of 19 available through Cerbos (Access Control).

  1. 17 Capability

    List schemas

    List all resource schemas currently defined in your system. This helps you understand the structure of your authorized resources.

  2. 18 Capability

    Plan resources

    Generate an AST query plan for filtering resources based on auth logic. This allows you to see how your database queries will be modified by security rules.

  3. 19 Capability

    Update policy

    Modify an existing policy to change its permissions or scope. This lets you make surgical changes to your authorization logic.

Set up in minutes

One URL. Then ask Cerbos (Access Control) to work.

Claude and ChatGPT only need the Connector URL. Copy it once, add it in settings, and use Cerbos (Access Control) from the conversation.

Choose your client

Live preview
Advanced clients IDE · CLI

Claude · Web + desktop

Official guide ↗

Connector URL · ready to paste

Streamable HTTP
https://edge.vinkius.com/vk_preview_InOwgNCcuNoJDDtlbw3Rpbk72NQ9Y39enLJWWQOg/mcp
  1. Step 01

    Open Connectors

    In Claude Web or Claude Desktop, open Settings and choose Connectors.

  2. Step 02

    Add the URL

    Choose Add custom connector, name it Cerbos (Access Control), and paste the URL above.

  3. Step 03

    Turn it on in chat

    Select +, open Connectors, and enable Cerbos (Access Control) for the conversation.

Where the request belongs

Work Cerbos can move forward.

Built around the request

The security engineer who needs to verify permissions across dozens of microservices without writing custom scripts. The backend dev who wants to see how a policy will affect their database queries before they deploy.

01

Security Engineer

Auditing existing policies and verifying permission logic to ensure there are no over-privileged accounts.

02

Backend Developer

Testing authorization scenarios and generating database filter plans during the development cycle.

03

Compliance Officer

Retrieving audit logs and policy definitions to prove the system meets organizational security standards.

Bring your own AI

Change the model, client or framework. Keep Cerbos connected.

  • Claude
  • ChatGPT
  • Gemini
  • Cursor
  • VS Code
  • Windsurf
  • ZCode
  • Cline
  • Zed
  • Continue
  • Kiro
  • Roo Code
  • Zencoder
  • Goose
  • Void
  • Augment Code
  • Amp
  • Qodo
  • Tabnine
  • Pieces
  • Sourcegraph Cody
  • JetBrains
  • Warp
  • Amazon Q
  • Antigravity
  • BoltAI
  • Raycast
  • Jan
  • LM Studio
  • AnythingLLM
  • Open WebUI
  • Msty
  • Cherry Studio
  • LibreChat
  • TypingMind
  • Chorus
  • 5ire
  • n8n
  • LangChain
  • LlamaIndex
  • CrewAI
  • Vercel AI SDK

Before you connect

Questions about Cerbos.

The practical details behind the request, access and result.

What does the Cerbos MCP do for my security?

It gives you a conversational interface to manage your RBAC and ABAC policies. You can check permissions, audit logs, and manage your security rules in plain English.

Can I use Cerbos MCP to check permissions for my users?

Yes, you can ask your agent to verify if a specific user has the rights to perform actions on certain resources, and it will check your Cerbos instance for the answer.

How does Cerbos MCP help with database queries?

It can generate AST query plans. This shows you exactly how your database filters will be modified by your authorization logic before you run the query.

Can I manage my RBAC policies with Cerbos MCP?

Yes, you can list, add, update, and disable policies directly through your AI client without needing to manually edit JSON files or use a dashboard.

Does Cerbos MCP support audit logs?

Yes, you can retrieve and review your access logs in plain English to see who accessed what resources and whether those actions were allowed.

Can I see the health of my Cerbos instance?

Yes, you can ask your agent to check the health status and Prometheus metrics of your Cerbos instance to ensure everything is running correctly.

How do I set up Cerbos MCP for my team?

Once you subscribe to the Connector on Vinkius, you just need to provide your Cerbos PDP URL and any necessary admin credentials to connect it to your AI client.

Can I test if a specific user has access to a resource without writing code?

Yes. You can ask the agent to use the check_resources capability by providing the principal (user) details and the resource you want to check. The agent will return the allowed or denied status based on your Cerbos policies.

How do I view all the authorization policies currently loaded in my Cerbos server?

Simply ask the agent to 'list all policies'. It will invoke the list_policies capability (requires Admin credentials) and display the IDs of all active policies in your environment.

Can the AI help me generate filters for my database based on permissions?

Yes, by using the plan_resources capability. The agent will generate a query plan (AST) that describes the conditions under which a user is allowed to access resources, which you can then apply to your database queries.

One connection away

Give your agent a direct line to Cerbos.

Connect Cerbos once. Keep it beside 5,900+ managed Connectors when the next task needs more.

Explore every Connector No credit card required · Free tier available