Expand description
sequel-mcp library: shared core for the MCP server, CLI and GUI.
Every SQL-bearing surface funnels through the same policy gate and execution pipeline; there is exactly one implementation of connection, policy, approval and SQL behaviour in this crate.
Modules§
- app
- approval
- Approval engine: digest-bound one-time approvals, narrow revocable session grants, and the audit outcome vocabulary.
- audit
- Audit logging with redaction, hash chaining and epoch bookkeeping.
- backup
- Backup capture and restore planning over the audit database.
- config
- Configuration: connection model, v2 store with locked atomic writes, and the v1 → v2 migration.
- gui
- Native approvals GUI: an egui companion window that watches the
authenticated approval IPC socket and answers gate confirmations with
real human clicks. It reuses the
sequel-mcp approveprotocol verbatim (wait→request→ id-boundreply→ok/stale/bad-choice, one round per connection, reconnect forever). - importer
- Sequel Ace integration (legacy
importer/port): read the GUI’s queryHistory.db read-only, parse Favorites.plist into connection configs, and (optionally) copy passwords from the Sequel Ace Keychain entries into our secret store via/usr/bin/security. Sequel Ace data is never modified. - mcp
- MCP server layer: registration, framing, result mapping.
- policy
- sql
- vault