Prefect
  • Blog
  • Customers
Get a Demo
Sign InSign Up

Product

  • Prefect Cloud
  • Prefect Open Source
  • Prefect Cloud vs OSS
  • Pricing
  • How Prefect Works
  • Prefect vs Airflow
  • Prefect vs Dagster
  • FastMCP
  • Prefect Horizon
    NEW

Resources

  • Docs
  • Case Studies
  • Blog
  • Resources
  • Community
  • Learn
  • Support
  • Cloud Status

Company

  • About
  • Contact
  • Careers
  • Legal
  • Security
  • Brand Assets
  • Open Source Pledge

Social

  • Twitter
  • GitHub
  • LinkedIn
  • YouTube

© Copyright 2026 Prefect Technologies, Inc. All rights reserved.

The MCP Gateway for Authentication,
Access Control, and Audit

Most enterprises are governing AI agents with system prompts and wishful thinking. Horizon Gateway replaces vibe governance with real access control — authentication, RBAC, and audit enforced at the infrastructure layer, not in a prompt a model can ignore.

From the creators of FastMCP
OAuth 2.1 & SSO
Tool-level RBAC
Audit logging
Start freeView Documentation

Tool access is not a binary.
It's a policy surface.

When you build the framework most MCP servers run on, you learn quickly that the questions are always the same: Who can call this tool? Under what conditions? Using which credentials? With what audit trail?

Horizon Gateway answers those questions at the infrastructure layer — authentication, access control, and audit logging enforced by the platform, not by prompts.

MCP Access Control

Every tool call. Authenticated, authorized, audited.

Who can call this tool?

MCP RBAC down to the individual tool. Tie access to identity provider roles and groups so teams only see the tools they should actually use.

Under what conditions?

Separate permissions for discovering a server, using it, and managing it. Granular MCP governance instead of a binary allow or deny.

Using which credentials?

Authentication handled at the gateway. OAuth, SSO, and API key controls keep your underlying systems from ever exposing raw credentials to agents.

With what audit trail?

Every access attempt is logged, showing who called what, when, and whether they were allowed. Usage dashboards and audit trails give security teams the visibility they actually need.

The Risk

You can't prompt-engineer your way out of operational risk

Vibe governance is everywhere. Agents with access to billing systems, production databases, and customer credentials — constrained by nothing more than a system prompt asking them to “please be careful.” You already know how that ends.

That's not MCP server security. That's a breach report waiting to be written.

Horizon Gateway turns MCP tools into governed capabilities. Every tool invocation passes through the gateway, where authentication is verified, permissions are enforced, and access is logged. Your agents get exactly the capabilities they need, nothing more and nothing less.

Add MCP governance in minutes

Start free, then layer on enterprise governance as your MCP footprint grows.

Start freeTalk to the experts