Back to Browse

Austrian Law MCP Server

Developer ToolsModerate5.2Local
Free

Austrian federal legislation — statutes and EU cross-references via MCP

About

Austrian federal legislation — statutes and EU cross-references via MCP

Security Report

5.2
Moderate5.2Moderate Risk

This is a well-structured legal research MCP server with strong security practices. The codebase demonstrates comprehensive test coverage, proper input validation, read-only database design, and appropriate use of secure dependencies. Authentication is delegated to the Ansvar Gateway via OAuth, and no credentials are hardcoded. The permissions are appropriate for a legal research tool accessing Austrian legislation data. Supply chain analysis found 7 known vulnerabilities in dependencies (1 critical, 3 high severity). Package verification found 1 issue.

3 files analyzed · 12 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

File System Read

Reads files on your machine. Normal for tools that analyze or process local data.

HTTP Network Access

Connects to external APIs or services over the internet.

env_vars

Check that this permission is expected for this type of plugin.

database

Check that this permission is expected for this type of plugin.

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "eu-ansvar-austrian-law-mcp": {
      "args": [
        "-y",
        "@ansvar/austrian-law-mcp"
      ],
      "command": "npx"
    }
  }
}

Documentation

View on GitHub

From the project's GitHub README.

Austrian Law MCP Server

The Austrian law corpus is now served through the Ansvar Gateway. Connect your AI assistant (Claude, Copilot, Cursor, custom MCP client) to https://gateway.ansvar.eu/mcp — one OAuth connection, free tier available, covering this corpus plus EU regulations, national law across 28 audited jurisdictions, and CVE/security intelligence, every result with a verbatim source citation. Start at https://ansvar.eu/docs/quickstart

Connect

Claude Code (one line):

claude mcp add ansvar --transport http https://gateway.ansvar.eu/mcp

Claude Desktop / Cursor — add to claude_desktop_config.json (or mcp.json):

{
  "mcpServers": {
    "ansvar": {
      "type": "url",
      "url": "https://gateway.ansvar.eu/mcp"
    }
  }
}

Claude.ai — Settings → Connectors → Add custom connector → paste https://gateway.ansvar.eu/mcp

First request opens an OAuth signup flow (setup details: ansvar.eu/docs/quickstart). After signup, your client is bound to your account; tier (free / premium / team / company) determines fan-out, quota, and which downstream MCPs are reachable.


Self-host this MCP

You can also clone this repo and build the corpus yourself. The schema, fetcher, and tool implementations all live here. What is not in the repo is the pre-built database — TDM and standards-licensing constraints on the upstream sources mean we host the corpus on Ansvar infrastructure rather than redistribute it as a public artifact.

Build your own: run this repo's ingestion script (entry-point varies per repo — typically scripts/ingest.sh, npm run ingest, or make ingest; check the repo root).

The RIS (Rechtsinformationssystem) alternative for the AI age.

MCP Registry License GitHub stars CI Daily Data Check Database Provisions

Query 5,101 Austrian statutes -- from Datenschutzgesetz and Strafgesetzbuch to Allgemeines bürgerliches Gesetzbuch, Arbeitsverfassungsgesetz, and more -- directly from Claude, Cursor, or any MCP-compatible client.

If you're building legal tech, compliance tools, or doing Austrian legal research, this is your verified reference database.

Built by Ansvar Systems -- Stockholm, Sweden


Why This Exists

Austrian legal research means navigating the RIS (Rechtsinformationssystem des Bundes), juggling Bundesgesetze, Landesgesetze, and RIS-Suchabfragen. Whether you're:

  • A lawyer validating citations in a brief or contract
  • A compliance officer checking DSGVO obligations or Arbeitsverfassungsgesetz requirements
  • A legal tech developer building tools on Austrian law
  • A researcher tracing legislative history from Regierungsvorlage to enacted statute

...you shouldn't need dozens of browser tabs and manual PDF cross-referencing. Ask Claude. Get the exact provision. With context.

This MCP server makes Austrian law searchable, cross-referenceable, and AI-readable.


Example Queries

Once connected, just ask naturally -- in German or English:

  • "Was sagt das Datenschutzgesetz (DSG 2018) § 4 über Einwilligung?"
  • "Ist das Arbeitsverfassungsgesetz (ArbVG) noch in Kraft?"
  • "Suche nach Bestimmungen über Datenschutz im österreichischen Recht"
  • "Welche EU-Richtlinien setzt das DSG 2018 um?"
  • "Finde die Strafbestimmungen im Strafgesetzbuch (StGB) zu Computerbetrug"
  • "Was regelt das ABGB (Allgemeines bürgerliches Gesetzbuch) über Vertragsabschluss?"
  • "Suche nach Arbeitnehmerschutzvorschriften im ArbVG"
  • "Which Austrian laws implement the GDPR?"
  • "Compare NIS2 implementation requirements across Austrian statutes"

What's Included

CategoryCountDetails
Statutes5,101 statutesComprehensive Austrian federal legislation
Provisions56,760 sectionsFull-text searchable with FTS5
Preparatory Works2,674 documentsRegierungsvorlagen and parliamentary materials (Premium)
Case Law230,201 decisionsOGH, VfGH, VwGH (Premium tier)
Database Size~1.5 GBOptimized SQLite, portable
Daily UpdatesAutomatedFreshness checks against RIS

Verified data only -- every citation is validated against official sources (ris.bka.gv.at). Zero LLM-generated content.


See It In Action

Why This Works

Verbatim Source Text (No LLM Processing):

  • All statute text is ingested from RIS (Rechtsinformationssystem des Bundes) official sources
  • Provisions are returned unchanged from SQLite FTS5 database rows
  • Zero LLM summarization or paraphrasing -- the database contains regulation text, not AI interpretations

Smart Context Management:

  • Search returns ranked provisions with BM25 scoring (safe for context)
  • Provision retrieval gives exact text by BGBl number + paragraph/section
  • Cross-references help navigate without loading everything at once

Technical Architecture:

RIS OGD API → Parse → SQLite → FTS5 snippet() → MCP response
                ↑                      ↑
         Provision parser       Verbatim database query

Traditional Research vs. This MCP

Traditional ApproachThis MCP Server
Search RIS by GesetzestitelSearch by plain German: "Datenschutz Einwilligung"
Navigate multi-paragraph statutes manuallyGet the exact provision with context
Manual cross-referencing between lawsbuild_legal_stance aggregates across sources
"Ist dieses Gesetz noch in Kraft?" → manual checkcheck_currency tool → answer in seconds
Find EU basis → dig through EUR-Lexget_eu_basis → linked EU directives instantly
Check RIS for updatesDaily automated freshness checks
No API, no integrationMCP protocol → AI-native

Traditional: Search RIS → Download PDF → Ctrl+F → Cross-reference with Regierungsvorlage → Check EUR-Lex → Repeat

This MCP: "Welche EU-Richtlinie liegt dem DSG 2018 § 4 zur Einwilligung zugrunde?" → Done.


Available Tools (13)

Core Legal Research Tools (8)

ToolDescription
search_legislationFTS5 search on 56,760 provisions with BM25 ranking
get_provisionRetrieve specific provision by BGBl number + paragraph/section
validate_citationValidate citation against database (zero-hallucination check)
build_legal_stanceAggregate citations from statutes, case law, preparatory works
format_citationFormat citations per Austrian conventions (full/short/pinpoint)
check_currencyCheck if statute is in force, amended, or repealed
list_sourcesList all available statutes with metadata and data provenance
aboutServer info, capabilities, dataset statistics, and coverage summary

EU Law Integration Tools (5)

ToolDescription
get_eu_basisGet EU directives/regulations for Austrian statute
get_austrian_implementationsFind Austrian laws implementing EU act
search_eu_implementationsSearch EU documents with Austrian implementation counts
get_provision_eu_basisGet EU law references for specific provision
validate_eu_complianceCheck implementation status (requires EU MCP)

EU Law Integration

Austria is an EU member state. Austrian law is heavily shaped by EU directives and regulations, particularly in data protection, financial services, consumer protection, and environmental law.

MetricValue
EU Member Since1995
GDPR ImplementationDSG 2018 (Datenschutzgesetz)
NIS2 ImplementationNISG 2024 (Netz- und Informationssystemsicherheitsgesetz)
AuthorityDatenschutzbehörde (DSB)
EUR-Lex IntegrationAutomated metadata fetching

Key Austrian EU Implementations

  • GDPR (2016/679) → Datenschutzgesetz 2018 (DSG 2018)
  • NIS2 Directive (2022/2555) → NISG 2024
  • AI Act (2024/1689) → Austrian implementation in progress
  • eIDAS (910/2014) → E-Government-Gesetz, Signaturgesetz
  • AML Directive (2015/849) → Finanzmarkt-Geldwäschegesetz (FM-GwG)
  • Consumer Rights Directive (2011/83) → Konsumentenschutzgesetz (KSchG)

See EU_INTEGRATION_GUIDE.md for detailed documentation.


Data Sources & Freshness

All content is sourced from authoritative Austrian legal databases:

Data Provenance

FieldValue
AuthorityBundeskanzleramt Österreich
Retrieval methodRIS OGD API
LanguageGerman
LicenseAT-Statutory-PD — Austrian statutory public domain (UrhG §7(1) "Freie Werke")
Coverage5,101 federal statutes
Last ingested2026-02-25

Automated Freshness Checks (Daily)

A daily GitHub Actions workflow monitors all data sources:

SourceCheckMethod
Statute amendmentsRIS API date comparisonAll 5,101 statutes checked
New statutesRIS Bundesgesetzblatt feedDiffed against database
EU reference stalenessGit commit timestampsFlagged if >90 days old

Security

This project uses multiple layers of automated security scanning:

ScannerWhat It DoesSchedule
CodeQLStatic analysis for security vulnerabilitiesWeekly + PRs
SemgrepSAST scanning (OWASP top 10, secrets, TypeScript)Every push
GitleaksSecret detection across git historyEvery push
TrivyCVE scanning on filesystem and npm dependenciesDaily
Docker SecurityContainer image scanning + SBOM generationDaily
Socket.devSupply chain attack detectionPRs
OSSF ScorecardOpenSSF best practices scoringWeekly
DependabotAutomated dependency updatesWeekly

See SECURITY.md for the full policy and vulnerability reporting.


Important Disclaimers

Legal Advice

THIS TOOL IS NOT LEGAL ADVICE

Statute text is sourced from official RIS publications. However:

  • This is a research tool, not a substitute for professional legal counsel
  • Court case coverage is available in Premium tier only -- do not rely solely on this for case law research in the free tier
  • Verify critical citations against primary sources (ris.bka.gv.at) for court filings
  • EU cross-references are extracted from Austrian statute text, not EUR-Lex full text

Before using professionally, read: DISCLAIMER.md | PRIVACY.md

Client Confidentiality

Queries go through the Claude API. For privileged or confidential matters, use on-premise deployment. See PRIVACY.md for Österreichischer Rechtsanwaltskammertag (ÖRAK) compliance guidance.


Documentation


Development

Setup

git clone https://github.com/Ansvar-Systems/Austria-law-mcp
cd Austria-law-mcp
npm install
npm run build
npm test

Running Locally

npm run dev                                       # Start MCP server
npx @anthropic/mcp-inspector node dist/index.js   # Test with MCP Inspector

Data Management

npm run ingest                     # Ingest statutes from RIS
npm run build:db                   # Rebuild SQLite database
npm run drift:detect               # Run drift detection
npm run check-updates              # Check for amendments and new statutes
npm run db:update-seed             # Update database from seed data

Performance

  • Search Speed: <100ms for most FTS5 queries
  • Database Size: ~1.5 GB (comprehensive corpus)
  • Reliability: 100% ingestion success rate

More Ansvar MCPs

Full fleet coverage at ansvar.eu/coverage.

Contributing

Contributions welcome! See CONTRIBUTING.md for guidelines.

Priority areas:

  • EU regulation cross-reference expansion
  • Historical statute versions and amendment tracking
  • English translations for key statutes
  • Lower court decision coverage

Roadmap

  • Core statute database with FTS5 search

  • Full corpus ingestion (5,101 statutes, 56,760 provisions)

  • EU law integration tools

  • Vercel Streamable HTTP deployment

  • Daily freshness checks against RIS

  • Court case law expansion (Premium tier)

  • Historical statute versions (amendment tracking)

  • English translations for key statutes

  • Landesrecht coverage (provincial law)


Citation

If you use this MCP server in academic research:

@software{austrian_law_mcp_2026,
  author = {Ansvar Systems AB},
  title = {Austrian Law MCP Server: Production-Grade Legal Research Tool},
  year = {2026},
  url = {https://github.com/Ansvar-Systems/Austria-law-mcp},
  note = {5,101 Austrian statutes with 56,760 provisions and EU law cross-references}
}

License

Apache License 2.0. See LICENSE for details.

Data Licenses

  • Statutes & Legislation: AT-Statutory-PD — Austrian statutory public domain. UrhG §7(1) "Freie Werke" excludes laws (Gesetze), ordinances (Verordnungen), official decrees (amtliche Erlässe), public notices (Bekanntmachungen), and court decisions (Entscheidungen) from copyright protection. Verified verbatim 2026-05-17 via RIS consolidated text — see docs/audits/2026-05-17-eu-copyright-statutory-works-batch-1a-AT-BE-DK-FI-FR.md in arch-docs. Catalog entry: AT-Statutory-PD in infrastructure/attribution-licenses.json.
  • EU Metadata: EUR-Lex (EU public domain, Decision 2011/833/EU)

About Ansvar Systems

We build AI-accelerated compliance and legal research tools for the European market. This MCP server started as our internal reference tool for Austrian law -- turns out everyone building for the DACH market has the same research frustrations.

So we're open-sourcing it. Navigating 5,101 statutes in the RIS shouldn't require a Rechtswissenschaftsstudium.

ansvar.eu -- Stockholm, Sweden


Reviews

No reviews yet

Be the first to review this server!