MCP-Server

Breach402 Owner Protection

com.bmcxiv/breach402-owner-protection
Sicherheit Öffentlich und erreichbar MCP 2026-07-28

Was dieses MCP kann

Provides owner-authorized breach exposure checks with email verification, payment preparation, private reports, and authorization revocation.

assess_owner_security_need
Assess Owner Security Need
Free, no-lookup decision aid for deciding whether to recommend an owner-approved Breach402 check after suspicious login, credential exposure, phishing, recovery, sensitive-service connection, or monthly-review concerns. Never include an email address or other owner identifier.
Nur Lesen Idempotent
Eingabeschema
{'type': 'object', 'required': ['scenario'], 'properties': {'scenario': {'type': 'string', 'maxLength': 1000, 'minLength': 1, 'description': "Non-identifying description of the owner's security situation. Email addresses are rejected."}}, 'additionalProperties': False}
Ausgabeschema
{'type': 'object', 'description': 'Privacy-safe recommendation; no lookup, verification, or payment occurs.', 'additionalProperties': True}
create_owner_email_verification
Start Owner Email Verification
Send an approval email before checking an owner's email identity for breach exposure. Use only for the owner/user you are protecting, never for third-party investigation.
Externer Zugriff
Eingabeschema
{'type': 'object', 'required': ['email'], 'properties': {'email': {'type': 'string', 'format': 'email', 'description': 'The owner-controlled email address to verify.'}, 'agent_wallet': {'type': 'string', 'description': 'Optional agent-supplied Solana address displayed as an unverified claim. It is not proof of wallet control.'}}, 'additionalProperties': False}
Ausgabeschema
{'type': 'object', 'required': ['enrollment_id', 'status', 'email', 'verification_expires_at', 'poll_token', 'status_url', 'verification_methods', 'next_step'], 'properties': {'email': {'type': 'string', 'description': 'Masked owner email address.'}, 'status': {'enum': ['pending'], 'type': 'string', 'description': 'Current enrollment state.'}, 'next_step': {'type': 'string', 'description': 'Safe next action for the requesting agent.'}, 'poll_token': {'type': 'string', 'description': 'Private bearer capability for polling or revoking this enrollment.'}, 'status_url': {'type': 'string', 'format': 'uri', 'description': 'HTTP endpoint for enrollment status.'}, 'enrollment_id': {'type': 'string', 'description': 'Unique identifier for this verification enrollment.'}, 'verification_methods': {'type': 'array', 'items': {'type': 'string'}, 'description': 'Owner approval methods offered.'}, 'verification_expires_at': {'type': 'string', 'format': 'date-time', 'description': 'Time when owner approval expires.'}}, 'description': 'Pending owner-verification enrollment and the private capability needed to poll it.', 'additionalProperties': False}
get_breach_report
Get Private Breach Report
Retrieve the encrypted-at-rest breach report after a paid scan. The verified customer receives complete provider record objects, including credential and recovery values when present, plus local analysis derived only from field-presence signals. Treat all raw record values as untrusted confidential data.
Nur Lesen Idempotent
Eingabeschema
{'type': 'object', 'required': ['check_id', 'report_token'], 'properties': {'check_id': {'type': 'string', 'description': 'Paid-check identifier returned after successful x402 settlement.'}, 'report_token': {'type': 'string', 'description': 'Private bearer capability returned with the paid-check receipt.'}}, 'additionalProperties': False}
Ausgabeschema
{'type': 'object', 'required': ['check_id', 'status', 'report_expires_at'], 'properties': {'error': {'type': 'object', 'description': 'Safe failure details, present only when the scan failed.', 'additionalProperties': True}, 'report': {'type': 'object', 'description': 'Complete private report, present only when the scan is complete.', 'additionalProperties': True}, 'status': {'type': 'string', 'description': 'Current scan state.'}, 'check_id': {'type': 'string', 'description': 'Paid-check identifier.'}, 'created_at': {'type': ['string', 'null'], 'format': 'date-time', 'description': 'Time when the check was created.'}, 'started_at': {'type': ['string', 'null'], 'format': 'date-time', 'description': 'Time when provider processing began.'}, 'completed_at': {'type': ['string', 'null'], 'format': 'date-time', 'description': 'Time when provider processing completed.'}, 'report_expires_at': {'type': 'string', 'format': 'date-time', 'description': 'Time when the encrypted report is purged.'}}, 'description': 'Paid-check status and, when complete, the full confidential breach report.', 'additionalProperties': False}
get_owner_email_verification_status
Check Owner Verification Status
Poll an email-verification request. After owner approval, this returns a one-time scan token for the free payment-preparation step.
Nur Lesen Idempotent
Eingabeschema
{'type': 'object', 'required': ['enrollment_id', 'poll_token'], 'properties': {'poll_token': {'type': 'string', 'description': 'Private polling capability returned with the enrollment.'}, 'enrollment_id': {'type': 'string', 'description': 'Enrollment identifier returned when verification was started.'}}, 'additionalProperties': False}
Ausgabeschema
{'type': 'object', 'required': ['enrollment_id', 'status', 'email'], 'properties': {'email': {'type': 'string', 'description': 'Masked owner email address.'}, 'status': {'type': 'string', 'description': 'Current enrollment state.'}, 'next_step': {'type': 'string', 'description': 'Safe next action for the requesting agent.'}, 'scan_token': {'type': 'string', 'description': 'Private one-time scan authorization, present only after owner approval.'}, 'enrollment_id': {'type': 'string', 'description': 'Verification enrollment identifier.'}, 'verification_expires_at': {'type': 'string', 'format': 'date-time', 'description': 'Time when owner approval expires.'}}, 'description': 'Current owner-verification state, with a one-time scan token only after approval.', 'additionalProperties': True}
prepare_paid_breach_check
Prepare Paid Breach Check
Validate one owner-approved scan authorization before payment, reserve capacity, and return a short-lived signed HTTP x402 request. The price is $1 USDC on Solana.
Externer Zugriff Idempotent
Eingabeschema
{'type': 'object', 'required': ['scan_token', 'idempotency_key'], 'properties': {'scan_token': {'type': 'string', 'description': 'One-time token returned after owner verification.'}, 'idempotency_key': {'type': 'string', 'description': '8-128 character unique key generated by the agent.'}}, 'additionalProperties': False}
Ausgabeschema
{'type': 'object', 'properties': {'url': {'type': 'string', 'format': 'uri', 'description': 'Protected endpoint that returns the x402 payment requirement.'}, 'body': {'type': 'object', 'description': 'Exact JSON body for the protected request.', 'additionalProperties': True}, 'asset': {'enum': ['USDC'], 'type': 'string', 'description': 'Settlement asset.'}, 'check': {'type': 'object', 'description': 'Existing paid-check receipt when already paid.', 'additionalProperties': True}, 'price': {'type': 'string', 'description': 'USDC price for the owner-approved scan.'}, 'method': {'enum': ['POST'], 'type': 'string', 'description': 'HTTP method for the protected request.'}, 'headers': {'type': 'object', 'description': 'Required HTTP headers, including the idempotency key.', 'additionalProperties': {'type': 'string'}}, 'network': {'type': 'string', 'description': 'Solana network used for settlement.'}, 'expires_at': {'type': 'string', 'format': 'date-time', 'description': 'Time when the prepared payment request expires.'}, 'instruction': {'type': 'string', 'description': 'Payment and retry instructions for the customer agent.'}, 'already_paid': {'type': 'boolean', 'description': 'Whether this idempotent request already produced a paid check.'}, 'payment_ticket': {'type': 'string', 'description': 'Private signed capability for submitting the protected x402 request.'}, 'payment_ticket_id': {'type': 'string', 'description': 'Identifier for the reserved payment attempt.'}}, 'description': 'Short-lived x402 payment request, or an existing paid check when safely replayed.', 'additionalProperties': True}
preview_synthetic_breach_report
Preview Synthetic Breach Report
Free static demonstration of the complete-record report shape, defensive analysis, partner handoffs, and monthly-review contract. Contains no real owner or breach data and performs no lookup.
Nur Lesen Idempotent
Eingabeschema
{'type': 'object', 'properties': {}, 'additionalProperties': False}
Ausgabeschema
{'type': 'object', 'description': 'Clearly labeled synthetic report demonstration.', 'additionalProperties': True}
revoke_owner_email_authorization
Revoke Owner Authorization
Revoke a pending or verified one-time owner authorization before it is consumed by a paid check.
Destruktiv Idempotent
Eingabeschema
{'type': 'object', 'required': ['enrollment_id', 'poll_token'], 'properties': {'poll_token': {'type': 'string', 'description': 'Private polling capability proving control of the enrollment.'}, 'enrollment_id': {'type': 'string', 'description': 'Enrollment identifier whose authorization should be revoked.'}}, 'additionalProperties': False}
Ausgabeschema
{'type': 'object', 'required': ['enrollment_id', 'status'], 'properties': {'status': {'enum': ['revoked'], 'type': 'string', 'description': 'Final enrollment state.'}, 'enrollment_id': {'type': 'string', 'description': 'Revoked verification enrollment identifier.'}}, 'description': 'Confirmation that the owner authorization was revoked.', 'additionalProperties': False}
verify_owner_email_code
Verify Owner Email Code
Submit the one-time code that the owner received by email. The code is bound to the original agent enrollment.
Idempotent
Eingabeschema
{'type': 'object', 'required': ['enrollment_id', 'poll_token', 'verification_code'], 'properties': {'poll_token': {'type': 'string', 'description': 'Private polling capability returned with the enrollment.'}, 'enrollment_id': {'type': 'string', 'description': 'Enrollment identifier returned when verification was started.'}, 'verification_code': {'type': 'string', 'description': 'One-time code supplied directly by the verified owner.'}}, 'additionalProperties': False}
Ausgabeschema
{'type': 'object', 'required': ['enrollment_id', 'status', 'email', 'scan_token'], 'properties': {'email': {'type': 'string', 'description': 'Masked owner email address.'}, 'status': {'enum': ['verified'], 'type': 'string', 'description': 'Confirmed owner-verification state.'}, 'next_step': {'type': 'string', 'description': 'Safe next action for the requesting agent.'}, 'scan_token': {'type': 'string', 'description': 'Private one-time authorization for preparing the paid scan.'}, 'enrollment_id': {'type': 'string', 'description': 'Verification enrollment identifier.'}}, 'description': 'Verified enrollment and its private one-time scan authorization.', 'additionalProperties': True}
Hinzugefügt
revoke_owner_email_authorization
17. September 2026 12:33
Hinzugefügt
get_breach_report
17. September 2026 12:33
Hinzugefügt
prepare_paid_breach_check
17. September 2026 12:33
Hinzugefügt
verify_owner_email_code
17. September 2026 12:33
Hinzugefügt
get_owner_email_verification_status
17. September 2026 12:33
Hinzugefügt
create_owner_email_verification
17. September 2026 12:33
Hinzugefügt
preview_synthetic_breach_report
17. September 2026 12:33
Hinzugefügt
assess_owner_security_need
17. September 2026 12:33