{"_id":"@apono-io/mcp-aws-managed","name":"@apono-io/mcp-aws-managed","dist-tags":{"latest":"0.2.0"},"versions":{"0.2.0":{"name":"@apono-io/mcp-aws-managed","version":"0.2.0","description":"Apono MCP server for AWS — signs requests to the managed AWS MCP Server with STS AssumeRole credentials","type":"module","main":"dist/index.js","types":"dist/index.d.ts","bin":{"apono-mcp-aws-managed":"dist/index.js"},"scripts":{"build":"tsc -p tsconfig.build.json","test":"vitest run","prepublishOnly":"npm run build"},"dependencies":{"@aws-crypto/sha256-js":"^5.2.0","@aws-sdk/client-sts":"^3.0.0","@modelcontextprotocol/sdk":"^1.30.0","@smithy/signature-v4":"^5.0.0"},"devDependencies":{"@types/node":"^22.0.0","typescript":"^5.7.0","vitest":"^3.0.0"},"publishConfig":{"access":"public"},"author":{"name":"Apono"},"license":"ISC","_id":"@apono-io/mcp-aws-managed@0.2.0","gitHead":"785842c1b79c147d9270ff024032125eb26cc31a","_nodeVersion":"22.23.2","_npmVersion":"10.9.8","dist":{"integrity":"sha512-uGdXtFUiWE/RL720eFot9gn/H40WxIMCkK8io4gH41tbDLW+eb+EBAYiVi/zGR1ViGfEhtuoFYKqk4kQGdvCBg==","shasum":"6dcced87b0de34d51bfc4a0f0daf7364748266ea","tarball":"https://registry.npmjs.org/@apono-io/mcp-aws-managed/-/mcp-aws-managed-0.2.0.tgz","fileCount":18,"unpackedSize":21876,"signatures":[{"keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U","sig":"MEQCIHqIU/F17boL7Gu8CH37FPPrvT2pv4+k8w6KCK5RbrngAiAD7vGpSwdozGI3YC7QOmIcA3roqfRWI3oRPbZdRJHPaQ=="}]},"_npmUser":{"name":"dima.g_apono.io","email":"dima.g@apono.io"},"directories":{},"maintainers":[{"name":"dima.g_apono.io","email":"dima.g@apono.io"},{"name":"ofir76","email":"ofir@apono.io"},{"name":"matanbd","email":"matan.bd@apono.io"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages-npm-production","tmp":"tmp/mcp-aws-managed_0.2.0_1787823226349_0.44110031852081155"},"_hasShrinkwrap":false}},"time":{"created":"2026-08-27T09:33:46.102Z","0.2.0":"2026-08-27T09:33:46.503Z","modified":"2026-08-27T09:33:46.821Z"},"maintainers":[{"name":"dima.g_apono.io","email":"dima.g@apono.io"},{"name":"ofir76","email":"ofir@apono.io"},{"name":"matanbd","email":"matan.bd@apono.io"}],"description":"Apono MCP server for AWS — signs requests to the managed AWS MCP Server with STS AssumeRole credentials","author":{"name":"Apono"},"license":"ISC","readme":"# @apono-io/mcp-aws-managed\n\nApono MCP server for AWS. Assumes the granted role via STS, then proxies stdio MCP\ntraffic to the [managed AWS MCP Server](https://docs.aws.amazon.com/agent-toolkit/latest/userguide/getting-started-aws-mcp-server.html),\nsigning every request with SigV4.\n\nUnlike `@apono-io/mcp-aws` it spawns no vendor process, so `uvx`, `uv` and Python\nare not required on the host.\n\n## Usage\n\nLaunched by the Apono CLI via `npx`. Environment variables:\n\n| Variable | Description |\n|---|---|\n| `AWS_ACCESS_KEY_ID` | Brokered IAM credentials — access key |\n| `AWS_SECRET_ACCESS_KEY` | Brokered IAM credentials — secret key |\n| `AWS_SESSION_TOKEN` | Brokered IAM credentials — session token |\n| `AWS_ROLE_ARN` | ARN of the role to assume via STS |\n| `AWS_REGION` | Region for the STS call (default `us-east-1`) |\n| `AWS_MCP_ENDPOINT` | Override the endpoint (default `https://aws-mcp.us-east-1.api.aws/mcp`; `https://aws-mcp.eu-central-1.api.aws/mcp` also exists) |\n\nThe SigV4 signing service and region are derived from the endpoint hostname, so\noverriding `AWS_MCP_ENDPOINT` is enough to switch region.\n\n## Limitations\n\nThe role is assumed once at startup, as in `@apono-io/mcp-aws`. Sessions outliving\nthe assumed credentials will see `ExpiredToken` surface as tool errors rather than\nas a startup failure.\n","readmeFilename":"README.md","_rev":"1-8465f25f95bb9c7b2de8a999afddbe30"}