MCPGate is the self-hosted, air-gapped sovereign deployment of the CAIN Trust Fabric. Designed for defense, intelligence, and regulated financial environments requiring zero outbound data leakage.
Every sovereign capability is verified against deterministic mathematical invariants: fail-closed enforcement, zero self-authoring, Ed25519 node signatures, and RFC-3161 Merkle WORM notarization.
All visiting users, developers, and autonomous AI agents can crawl and cryptographically verify each evidence bundle:
13 hostile attack vectors blocked (100% defense rate).
Self-assessed Underwriting Credit Score 948/1000 (not an insurer rating).
Durable SQLite WAL spillover isolation and emergency halt audit.
Proven BFT f=1 consensus (N=4, Q=3) with live vector clocks & attestation.
200 formal invariants & 120 adversarial red-team vectors blocked fail-closed.
Technical comparison vs Palo Alto, Cisco, Lakera, Cloudflare.
32 canonical production features proving dual-channel execution governance monopoly.
12 production monetization engines scaling from $4.55M ARR to $113M+ ARR (2026–2028).
| Architectural Dimension | CAIN Studio (cainstudio.online) | MCPGate Sovereign (mcpgate.online) |
|---|---|---|
| Deployment Environment | Managed Multi-Tenant Cloud | Customer Private K8s / Air-Gapped Enclave |
| Network Boundary | Public HTTPS / Edge | Zero Outbound Internet Required |
| MCP Interceptor | Cloud API Proxy & Live Sandbox | Transparent stdio & HTTP sidecar proxy |
| Consensus Engine | Hosted Distributed Fabric | Local Byzantine Fault Tolerant (BFT) nodes |
| Telemetry Export | Live Cloud SSE Streams | Air-gapped CEF / LEEF / Signed JSON files |
1. Deploy the official Helm chart in your isolated cluster:
2. Verify health and BFT cluster consensus:
3. Execute full 156-point conformance audit:
4. Execute adversarial self-red-team attack suite:
5. Verify cryptographic code and runtime provenance:
Test real-time tool gating, sub-15ms certificate evaluation, and live SIEM event generation in the dark-mode interactive sandbox: