cQnce MCP

io.github.cqnce-appv0.1.3Updated Sep 28, 2026

Add human approval to AI agent workflows through cQnce authorization tools.

VerifiedStreamable HTTPWeb executableAI & MLSecurity & Monitoring

Overview

AI-generated overview

Lets an AI assistant request and wait for human approval before running risky or irreversible actions.

What it does
Connects an MCP client to cQnce so the assistant can submit authorization requests and block until a human approves or rejects them. Core tools include wait_for_approval, submit_authorization_request, poll_request_status, cancel_request, list_requests and get_request. With an admin token, additional tools cover project, routing-rule, agent, team and webhook management. Requests can carry action details and attachments such as logs, diffs or screenshots for the reviewer.
When to use it
Use it when an agent must get a human decision before deleting data, deploying to production, moving money or changing credentials or permissions. It fits supervised workflows that want an approval step, and production setups that enforce the gate in the host application rather than relying on the agent to call the tool. It is not needed for agents whose actions carry no approval requirement.
Requirements
A cQnce account and project API key, supplied through the CQNCE_API_KEY environment variable for the npm package or as an Authorization Bearer header for the remote endpoint at mcp.cqnce.app. Node.js 18+ is required to run the local package. The optional CQNCE_ADMIN_TOKEN tenant admin JWT enables the project, agent, team and callback management tools. Network access to the cQnce API is needed, and an optional CQNCE_BASE_URL can point at a private deployment.
Before you install
CQNCE_API_KEY and the Authorization header are secrets and the optional CQNCE_ADMIN_TOKEN grants tenant-level project, agent and team management. Approval payloads, including any attachments such as logs, diffs or screenshots, are sent to the cQnce service for a human reviewer. The blocking wait_for_approval tool can pause an agent until a decision or expiry, and the tool-based approval mode can be skipped by a compromised or misconfigured agent unless the host enforces the gate itself.

Installation

In SourceWeft

  1. Open cQnce MCP in the dashboard and add it to a workspace.
  2. Enable the server for the chats that should use its tools.

Web executable via Streamable HTTP. Remote servers run from the web runtime once configured in a workspace.

Other MCP clients

Add this to your client's mcpServers config.

{
  "mcpServers": {
    "cqnce-mcp": {
      "type": "http",
      "url": "https://mcp.cqnce.app/mcp"
    }
  }
}

README

@cqnce/mcp-server

Official MCP server for cQnce — add human-in-the-loop authorization to any AI agent or workflow.

Connect Claude, Cursor, GitHub Copilot, or any MCP-compatible client to cQnce so the AI can request human approval before performing risky or irreversible actions.

Quick start

bash
npx @cqnce/mcp-server

Set the CQNCE_API_KEY environment variable to your project API key before running.

Approval modes

Mode 1 — Agent-requested approval

The agent calls wait_for_approval or submit_authorization_request itself, as instructed in the system prompt or via tool discovery. This is the easiest integration path and works well for supervised workflows.

Risk: a compromised or misconfigured agent may simply not call the tool.

Mode 2 — Enforced approval gate (recommended for production)

The host application or executor intercepts every sensitive tool call before it runs and requires a prior cQnce approval, regardless of what the agent requested. The gate lives outside the model context — the agent cannot skip it.

This is a real security boundary. Build enterprise and compliance-sensitive integrations on this mode.

python
# Example: host-side interception (framework-agnostic)HIGH_RISK_TOOLS = {"send_payment", "deploy_production", "delete_customer"}
def execute_tool_call(tool_call):    if tool_call.name not in HIGH_RISK_TOOLS:        return run_tool(tool_call)    decision = cqnce.submit_and_wait(        payload={"action": tool_call.name, "parameters": tool_call.arguments},        timeout_seconds=300,    )    if decision["status"] != "APPROVED":        return {"error": "not_authorized", "status": decision["status"]}    return run_tool(tool_call)

Add to ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) or %APPDATA%\Claude\claude_desktop_config.json (Windows):

json
{  "mcpServers": {    "cqnce": {      "command": "npx",      "args": ["-y", "@cqnce/mcp-server"],      "env": {        "CQNCE_API_KEY": "your-project-api-key"      }    }  }}

Cursor

Add to .cursor/mcp.json in your project (or the global ~/.cursor/mcp.json):

json
{  "mcpServers": {    "cqnce": {      "command": "npx",      "args": ["-y", "@cqnce/mcp-server"],      "env": {        "CQNCE_API_KEY": "your-project-api-key"      }    }  }}

Any MCP client (stdio transport)

bash
CQNCE_API_KEY=your-project-api-key npx @cqnce/mcp-server

Cloud agents (Streamable HTTP / remote MCP)

For cloud-hosted agents that cannot run local processes, use the cQnce MCP Worker deployed on Cloudflare Workers. It speaks the MCP Streamable HTTP transport and is stateless — every request authenticates with your API key.

Configure your cloud agent framework to connect to:

https://mcp.cqnce.app/mcpAuthorization: Bearer <your-project-api-key>

Example (Claude API with MCP):

python
import anthropic
client = anthropic.Anthropic()
response = client.beta.messages.create(    model="claude-opus-4-5",    max_tokens=1024,    mcp_servers=[        {            "type": "url",            "url": "https://mcp.cqnce.app/mcp",            "name": "cqnce",            "authorization_token": "your-project-api-key",        }    ],    messages=[{"role": "user", "content": "..."}],    betas=["mcp-client-2025-04-04"],)
Self-hosting

The Worker source is in this repository. Deploy your own instance to Cloudflare Workers:

bash
npm installnpx wrangler deploy

Set CQNCE_BASE_URL in the Cloudflare dashboard if you use a private cQnce deployment (defaults to https://api.cqnce.app).

Configuration

VariableRequiredDescription
CQNCE_API_KEYYesProject API key from cqnce.app
CQNCE_BASE_URLNoAPI base URL (default: https://api.cqnce.app)
CQNCE_ADMIN_TOKENNoTenant admin JWT — enables project/agent/team management tools

Tools

Core (requires CQNCE_API_KEY)

ToolDescription
wait_for_approvalSubmit a request and block until a human approves or rejects it. This is the primary tool for human-in-the-loop workflows.
submit_authorization_requestSubmit a request and return the requestId immediately (non-blocking).
poll_request_statusCheck the current status of a request by ID.
cancel_requestCancel a pending request.
list_requestsList requests for this project (filterable by status, date, tags).
get_requestGet full details of a single request including agent responses.

Admin (requires CQNCE_ADMIN_TOKEN)

Project management, routing rule configuration, agent/team management, and webhook callbacks.

Recommended system prompt

When integrating Claude via the Anthropic API, add this system prompt to enforce the authorization policy automatically — without relying on the user to request it each time:

You have access to the cQnce tool for human-in-the-loop authorization.
ALWAYS call wait_for_approval BEFORE performing any action that is:- Destructive or irreversible (deleting data, dropping tables, removing files)- Affecting production systems (deployments, database migrations, config changes)- Financial (payments, transfers, subscription changes)- Involving credentials or access control (creating/revoking API keys, changing permissions)
In the approval payload, include:- "action": what you are about to do- "target": what resource is affected- "reason": why this action is needed- "risk": what happens if approved or rejected- "attachments": (optional) list of supporting files as { name, contentType, data (base64) }  — include logs, diffs, screenshots, or any evidence that helps the reviewer decide
When the response status is "REJECTED":- Read the rejection reason carefully.- If the reason identifies missing information or context, gather that information,  enrich the payload (or attachments), and resubmit via wait_for_approval.- Only give up if the rejection reason makes clear the action itself is not permitted.
Proceed ONLY if the returned status is "APPROVED".If "EXPIRED" or the rejection reason leaves no actionable path forward, stop and explain.

Example

Once configured, you can tell Claude:

"Before deleting the production database, ask for human approval via cQnce."

Claude will call wait_for_approval with the action details, pause until a human approves or rejects from the cQnce mobile app, and only proceed if the status is APPROVED. If rejected with a reason (e.g. "missing rollback plan"), Claude will gather that information and resubmit automatically.

Requirements

  • Node.js 18+
  • A cQnce account and project API key — sign up free

Source: README.md at commit ae05e67

Tools

0
Tool metadata has not been indexed yet.

Version history

1
  1. v0.1.3LatestSep 28, 2026