
CipherHUB Cryptography Toolkit
- Updated April 30, 2026
- bowenerchen/CipherHUB-MCP-Server
CipherHUB is an MCP server that exposes 31 production-grade cryptography tools for classical, PQC, and KMS workflows through a hosted streamable-http endpoint.
About
CipherHUB is an MCP server that packages a production-oriented cryptography toolkit for AI coding agents. Developers who need more than “ask the model for AES example code” can register the remote server and call 31 tools spanning classical algorithms, post-quantum cryptography (PQC), and KMS-style workflows. That matters when you are shipping APIs, handling customer secrets, or experimenting with PQC before regulators and customers ask for it. The catalog lists it under Ship → Security because crypto choices belong in your release checklist, not as an afterthought in operate. Hosted access uses streamable HTTP; the open repository lets you inspect or run your own instance if policy requires it. Pair it with your agent when you want deterministic tool calls instead of hallucinated cipher modes or key formats.
- 31 MCP tools covering classical cryptography, PQC, and KMS-oriented workflows
- Remote streamable-http endpoint at tools.cipherhub.cloud—no local server required for hosted use
- Production-grade CipherHUB toolkit (v1.9.4) aimed at repeatable agent-driven crypto ops
- GitHub source at CipherHUB-MCP-Server for self-hosting or auditing behavior
- Suited to agents that must generate keys, sign, verify, or orchestrate KMS patterns via MCP
CipherHUB Cryptography Toolkit by the numbers
- Data as of Jul 7, 2026 (Skillselion catalog sync)
claude mcp add --transport http cipherhub https://tools.cipherhub.cloud/cipherhub/mcpAdd your badge
Show developers this MCP server is listed on Skillselion. Paste this into your README.
| Transport | HTTP |
|---|---|
| Auth | None |
| Last updated | April 30, 2026 |
| Repository | bowenerchen/CipherHUB-MCP-Server ↗ |
What it does
Wire your coding agent into classical crypto, post-quantum (PQC), and KMS-style operations without hand-rolling OpenSSL calls.
Who is it for?
Best when you're shipping products that touch encryption, signatures, or key management and want agent-accessible crypto via MCP rather than copy-paste from docs.
Skip if: Skip if you have no crypto requirements, or anyone and only needs TLS termination handled entirely by your cloud provider with no custom crypto logic.
What you get
After you add CipherHUB, your agent can invoke vetted crypto and KMS operations as MCP tools instead of generating one-off snippets.
- Agent-callable classical, PQC, and KMS workflow operations via 31 MCP tools
- Repeatable crypto operations suitable for scripts and CI-adjacent agent tasks
- Path to self-hosted MCP from published server schema and repository
By the numbers
- 31 MCP tools documented for classical, PQC, and KMS workflows
- Server version 1.9.4 in catalog metadata
- Hosted remote URL: tools.cipherhub.cloud/cipherhub/mcp (streamable-http)
README.md
CipherHUB MCP Server
Production-grade cryptography toolkit exposing 31 cryptographic operations via MCP (Model Context Protocol).
Overview
CipherHUB is a cryptography toolkit that enables AI agents to perform cryptographic operations without implementing algorithms themselves. It covers:
- Classical Algorithms: AES, RSA, ECC (SECP256R1/384R1/521R1, X25519, Ed25519)
- Chinese National Standards: SM2, SM3, SM4, ZUC
- Post-Quantum Cryptography: ML-KEM (FIPS 203), ML-DSA (FIPS 204), X25519+ML-KEM-768 Hybrid KEX
- Interoperability: Certified with AWS KMS (64/64) and Tencent Cloud KMS (39/39)
Quick Start
MCP Endpoint
https://tools.cipherhub.cloud/cipherhub/mcp
Protocol
- Type: Streamable HTTP
- Format: JSON-RPC 2.0
- Stateless: No session required
Example: Call a Tool
curl -X POST https://tools.cipherhub.cloud/cipherhub/mcp \
-H "Content-Type: application/json" \
-H "Accept: application/json, text/event-stream" \
-d '{
"jsonrpc": "2.0",
"method": "tools/call",
"params": {
"name": "hash_sum",
"arguments": {
"plain_in_hex": "48656c6c6f",
"required_hash_modes": ["SHA256"]
}
},
"id": 1
}'
Example: List Resources
curl -X POST https://tools.cipherhub.cloud/cipherhub/mcp \
-H "Content-Type: application/json" \
-H "Accept: application/json, text/event-stream" \
-d '{
"jsonrpc": "2.0",
"method": "resources/list",
"id": 1
}'
Tools
Hash Functions
| Tool | Description |
|---|---|
hash_sum |
SHA-1/224/256/384/512, SM3 |
hmac_sum |
HMAC with all hash algorithms |
Symmetric Encryption
| Tool | Description |
|---|---|
block_cipher_encrypt / block_cipher_decrypt |
AES-128/256, SM4 (CBC mode) |
stream_cipher_encrypt / stream_cipher_decrypt |
AES-256-GCM, ChaCha20-Poly1305, SM4-GCM |
zuc_cipher |
ZUC-128 stream cipher |
Asymmetric Cryptography
| Tool | Description |
|---|---|
rsa_generate_key |
Generate RSA key pair (2048/3072/4096 bits) |
rsa_encrypt / rsa_decrypt |
RSA encryption/decryption |
rsa_sign / rsa_verify |
RSA signatures |
ecc_generate_key |
Generate ECC key pair |
ecc_sign / ecc_verify |
ECDSA/EdDSA signatures |
ecc_key_exchange |
ECDH + HKDF key agreement |
Chinese National Standards
| Tool | Description |
|---|---|
sm2_generate_key |
Generate SM2 key pair |
sm2_encrypt / sm2_decrypt |
SM2 encryption |
sm2_sign / sm2_verify |
SM2 signatures |
Post-Quantum Cryptography
| Tool | Description |
|---|---|
ml_kem_keygen |
ML-KEM key generation |
ml_kem_encapsulate / ml_kem_decapsulate |
ML-KEM encapsulation/decapsulation |
ml_dsa_keygen |
ML-DSA key generation |
ml_dsa_sign / ml_dsa_verify |
ML-DSA signatures |
hybrid_kex_keygen |
X25519+ML-KEM-768 hybrid key exchange |
Utility
| Tool | Description |
|---|---|
generate_random_data |
Generate secure random bytes |
data_padding / data_unpadding |
PKCS#7 padding |
Resources
| URI | Description |
|---|---|
cipherhub://algorithms |
Complete algorithm catalog |
cipherhub://tool-categories |
Tool categorization |
cipherhub://interop/aws-kms |
AWS KMS interoperability report |
cipherhub://interop/tencent-kms |
Tencent Cloud KMS interoperability report |
cipherhub://channel-implementation |
SDK channel protocol guide |
Client Configuration
Claude Desktop
Add to your Claude Desktop config:
{
"mcpServers": {
"cipherhub": {
"url": "https://tools.cipherhub.cloud/cipherhub/mcp"
}
}
}
Cursor IDE
Add to your Cursor settings.
Custom Client
Use any MCP-compatible client with the endpoint URL.
API Documentation
- OpenAPI: https://tools.cipherhub.cloud/.well-known/openapi.yaml
- llms.txt: https://tools.cipherhub.cloud/llms.txt
Web Interface
Interactive web UI available at: https://tools.cipherhub.cloud
Author
Yang X. CHEN
- Blog: https://cipherhub.cloud
- GitHub: @bowenerchen
License
MIT License
Recommended MCP Servers
How it compares
MCP cryptography toolkit with 31 discrete tools—not a single “write secure code” agent skill or a generic secrets scanner.
FAQ
Who is CipherHUB for?
Developers and small teams using Claude Code, Cursor, or similar agents who need classical, PQC, or KMS-style crypto operations exposed as MCP tools during security-focused shipping work.
When should I use CipherHUB?
Use it when you are implementing or reviewing encryption, signing, or key workflows and want the agent to call CipherHUB tools instead of inventing algorithm parameters or OpenSSL usage.
How do I add CipherHUB to my agent?
Register the remote MCP server URL https://tools.cipherhub.cloud/cipherhub/mcp (streamable-http) in your client’s MCP configuration, or deploy from the GitHub repository if you need a self-hosted instance.