# Proxyman MCP

> Proxyman MCP is an officially published MCP server from Proxyman. Anomity scores its risk at 20 out of 100 (low).

- **Canonical URL:** https://catalog.anomity.ai/mcp/proxyman-mcp
- **Kind:** MCP server
- **Publisher:** Proxyman
- **Trust level:** official
- **Risk score:** 20/100 (low)
- **Website:** https://proxyman.io
- **Last updated:** 2026-09-02
- **JSON:** https://catalog.anomity.ai/api/entries/mcp/proxyman-mcp

## Description

Proxyman's MCP server gives an agent access to captured HTTP traffic — requests, responses, headers, and bodies — so an assistant can debug an API integration from what actually went over the wire.

Intercepted traffic is, by construction, where credentials live: authorization headers, session cookies, and tokens are in nearly every captured request. The server declares filesystem reads for capture files, credential access, and outbound network. This is one of the clearest cases in the catalog where a low-drama developer tool becomes high-consequence when connected to a model, because the whole point of the data is that it contains the secrets.

## Why it scored 20

The score starts at the catalog's neutral base of 50 and moves only through the signals below. The formula is published at https://catalog.anomity.ai/about — there is no model and no hidden heuristic.

| Signal | Contribution | Severity | Evidence |
| --- | --- | --- | --- |
| Published by the vendor | -40 | trust offset |  |
| 1 high-risk capability: credentials:access | +10 | high |  |

Clamped result: **20/100**, band **low**.

## Capabilities

| Capability | Name | Security implication |
| --- | --- | --- |
| `filesystem:read` | Filesystem read | Can read files on the host system. Used for context, indexing, or analysis. |
| `credentials:access` | Credentials access | Reads provider API keys, OAuth tokens, or other secrets from the host keychain or environment. |
| `network:outbound` | Outbound network | Can make outbound network requests. Required for hosted model providers and remote APIs; also the path for data exfiltration if combined with read access. |

## Related MCP servers

- [Blender MCP](https://catalog.anomity.ai/mcp/blender-mcp) — risk 100 (critical)
- [Airtable MCP Server](https://catalog.anomity.ai/mcp/airtable-mcp-server) — risk 45 (medium)
- [Cloudflare MCP Server](https://catalog.anomity.ai/mcp/cloudflare-mcp-server) — risk 45 (medium)
- [ElevenLabs MCP Server](https://catalog.anomity.ai/mcp/elevenlabs-mcp-server) — risk 45 (medium)
- [MiniMax MCP Server](https://catalog.anomity.ai/mcp/minimax-mcp-server) — risk 45 (medium)
- [MongoDB MCP Server](https://catalog.anomity.ai/mcp/mongodb-mcp-server) — risk 45 (medium)

---

Source: Anomity Catalog (https://catalog.anomity.ai/). Scoring methodology: https://catalog.anomity.ai/about. Machine-readable index: https://catalog.anomity.ai/llms.txt · https://catalog.anomity.ai/openapi.json
