Your whole team on approved MCP servers in five minutes.
MCP is how AI agents reach your APIs, which in practice means a live key pasted into a config file on somebody's laptop. Statio connects the whole team to an approved server in one click and enforces the tool-level permissions you set. Nothing gets installed on developer machines, and there is no sales call between you and a working setup.
- Claude Code
- Claude Desktop
- Cursor
- Windsurf
- VS Code
- Cline
- Continue
- Zed
- Amazon Q
Your agents hold one token instead of every key.
Both files below hold the same three integrations. On the left, three live secrets sitting in plaintext on a laptop; on the right, one token that expires in 24 hours.
Connect the team without handing out the keys.
A new hire gets the approved servers on their first morning. Access is granted per tool rather than per server, so an agent that can read charges cannot issue refunds, and every call it makes is logged against the person behind it.
One-click provisioning →
Connect your whole team to an MCP server in one click: Claude Code, Claude Desktop, Cursor, Windsurf, VS Code and more. No hand-edited JSON, and new hires get the approved set on day one.Shadow MCP discovery →
See every MCP server your team has installed, including the ones nobody approved. No EDR or MDM required, and most tools cannot see this without one.Access policies
Grant or revoke a tool in one click. Permissions are per tool, not per server, and enforced on every request at the gateway.Credential vaulting →
Keys are encrypted at rest and fetched at call time. A compromised agent leaks a token that expires in a day, not a key that never does.Pre-built catalog
Official MCP servers, hosted and kept working: Stripe, GitHub, Notion and more.Audit trails →
Every tool call logged with identity, timestamp and outcome. Stream it to your SIEM.Find the MCP servers nobody approved, without CrowdStrike, Intune or Jamf.
Most tools discover unapproved MCP servers by reading an endpoint-security or device-management system you already run: CrowdStrike, Intune, Jamf. If you don’t have one, and most teams under a few hundred people don’t, they see nothing. Statio ships its own lightweight agent, so discovery works on day one.
Finds what you did not approve
Configures everything for them
Notices the moment it changes
Every call passes one checkpoint.
Your agents never hold a credential. They hold a token, the gateway trades it for the real key at call time, and the key is back in the vault before the response reaches them.
AI agent
Statio gateway
Credential vault
MCP server
External API
Watch a call get refused.
Policies are evaluated at the gateway before a credential is ever decrypted. The agent gets an error, the API is never touched, and you get a line naming who asked, what they wanted and which policy said no.Shipped recently
Statio is under active development. Here’s what landed most recently.Self-serve capacity
Per-tool access policies
Fleet MCP discovery
SIEM export
Flat monthly prices, never per seat.
Adding a member never changes your bill. Free needs no card and has no path to a charge.
Free
- Servers3 MCP servers
- HostedNone · connect by URL
- API calls5,000 / month
- Members1 member
- PoliciesCatalog defaults
- Audit logs7 days
Developer
- Servers10 MCP servers
- Hosted3 from your own spec
- API calls25,000 / month
- Members1 member
- PoliciesCatalog defaults
- Audit logs90 days
Team
- Servers25 MCP servers
- Hosted10 from your own spec
- API calls250,000 / month
- MembersUp to 25 members
- PoliciesPer-tool access
- Audit logs90 days
Business
- ServersUnlimited
- Hosted50 from your own spec
- API calls1,000,000 / month
- MembersUnlimited members
- PoliciesFull RBAC + SSO/SAML
- Audit logs1 year, SIEM export
Enterprise
Unlimited servers and members, custom call volume and log retention, 99.9% SLA, audit exports in the formats your review asks for, bring-your-own proxy, and a named contact who answers.Common questions
Connect your first server.
Three MCP servers and 5,000 calls a month, free and without a card. If you outgrow it the next plan is $19, and it stays $19 as the team grows.- Keys are encrypted at rest and never handed to an agent
- Cancel anytime. You drop to Free, nothing is deleted
- No card required, and no way to spend money on Free