Mistral

8 tools. 6 can modify or destroy data without limits.

6 write tools that can modify data. Rate limits recommended.

Last updated:

6 can modify or destroy data
2 read-only
8 tools total
Read (2) Write / Execute (6) Destructive / Financial (0)

Execute tools (codestral_fim, mistral_chat, mistral_ocr) trigger processes with side effects. Builds, notifications, workflows — all fired without throttling.

Cap read operations
voxtral_transcribe:
  rules:
    - rate_limit: 60/minute

Controls API costs and prevents retry loops from exhausting upstream rate limits.

Is the Mistral MCP server safe to use without restrictions? +

The Mistral server is primarily read-only with 2 read tools. While it cannot modify data, an agent in a retry loop can make thousands of API calls per minute, exhausting rate limits and running up costs. Rate limiting is still recommended.

How many tools does the Mistral MCP server expose? +

8 tools across 2 categories: Execute, Read. 2 are read-only. 6 can modify, create, or delete data.

How do I add Intercept to my Mistral setup? +

One line change. Instead of running the Mistral server directly, prefix it with Intercept: intercept -c io-github-swih-mistral-mcp.yaml -- npx -y @mistral-mcp. Download a pre-built policy from policylayer.com/policies/io-github-swih-mistral-mcp and adjust the limits to match your use case.

Other MCP servers with similar tools.

Starter policies available for each. Same risk classification, same one-command setup.

Let agents act without letting them run wild.

Deterministic policy on every MCP tool call. Per-identity grants. Full audit log.

Currently onboarding teams running MCP in production.
// GET IN TOUCH

Have a question or want to learn more? Send us a message.

Message sent.

We'll get back to you soon.

// REQUEST EARLY ACCESS

We're letting people in as fast as we can.

You're in the queue.

We'll be in touch as soon as we can let you in.