Servidor MCP

ScopeProof

io.github.davisvillelabs/scopeproof
Seguridad Público y accesible MCP 2025-11-25

Qué hace este MCP

Evaluates whether a proposed agent action falls within supplied authority and produces verifiable tamper-evident receipts.

check_action
Check action authority
Determine whether one proposed action is within explicitly supplied authority. $0.01 stablecoin machine payment. Returns within_scope, outside_scope, or review_required plus deterministic reason codes, policy/action digests, and a tamper-evident receipt. This is scope enforcement against supplied authority, not identity verification, legal authorization, or a safety guarantee.
Solo lectura Idempotente
Esquema de entrada
{'type': 'object', 'required': ['authority', 'action'], 'properties': {'action': {'type': 'object', 'required': ['type', 'resource'], 'properties': {'tool': {'type': 'string', 'maxLength': 200}, 'type': {'type': 'string', 'maxLength': 64}, 'amount': {'type': 'object', 'required': ['amountMinor', 'currency'], 'properties': {'currency': {'type': 'string', 'pattern': '^[A-Z]{3}$'}, 'amountMinor': {'type': 'integer', 'minimum': 0}}, 'additionalProperties': False}, 'method': {'type': 'string', 'maxLength': 12}, 'resource': {'type': 'string', 'maxLength': 1024}, 'dataClass': {'type': 'string', 'maxLength': 80}, 'destructive': {'type': 'boolean', 'description': 'Set true when the proposed action is destructive even if its action type or HTTP method is not intrinsically classified as destructive.'}, 'environment': {'type': 'string', 'maxLength': 80}, 'irreversible': {'type': 'boolean'}}, 'additionalProperties': False}, 'context': {'type': 'object', 'properties': {'humanApprovalPresent': {'type': 'boolean', 'description': 'Caller assertion that required human approval has already occurred. ScopeProof records this as caller-asserted and does not independently verify the human identity or approval event.'}}, 'additionalProperties': False}, 'authority': {'type': 'object', 'required': ['allowedActions', 'allowedResources'], 'properties': {'tools': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 64}, 'methods': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 24}, 'issuedAt': {'type': 'string', 'format': 'date-time'}, 'maxSpend': {'type': 'object', 'required': ['amountMinor', 'currency'], 'properties': {'currency': {'type': 'string', 'pattern': '^[A-Z]{3}$'}, 'amountMinor': {'type': 'integer', 'minimum': 0}}, 'additionalProperties': False}, 'expiresAt': {'type': 'string', 'format': 'date-time'}, 'notBefore': {'type': 'string', 'format': 'date-time'}, 'principal': {'type': 'string', 'maxLength': 160}, 'dataClasses': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 32}, 'environments': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 32}, 'deniedActions': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 64}, 'schemaVersion': {'type': 'string', 'maxLength': 64}, 'allowedActions': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 64, 'minItems': 1}, 'deniedResources': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 64}, 'allowDestructive': {'type': 'boolean'}, 'allowedResources': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 64, 'minItems': 1}, 'allowIrreversible': {'type': 'boolean'}, 'approvalRequiredFor': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 32}}, 'additionalProperties': False}}, 'additionalProperties': False}
preflight
Preflight authority envelope
Validate whether a structured authority envelope contains enough explicit constraints for ScopeProof to evaluate one action. Free. Returns no substantive authorization verdict and accepts no credentials, raw prompts, arbitrary request bodies, or secrets.
Solo lectura Idempotente
Esquema de entrada
{'type': 'object', 'required': ['authority', 'action'], 'properties': {'action': {'type': 'object', 'required': ['type', 'resource'], 'properties': {'tool': {'type': 'string', 'maxLength': 200}, 'type': {'type': 'string', 'maxLength': 64}, 'amount': {'type': 'object', 'required': ['amountMinor', 'currency'], 'properties': {'currency': {'type': 'string', 'pattern': '^[A-Z]{3}$'}, 'amountMinor': {'type': 'integer', 'minimum': 0}}, 'additionalProperties': False}, 'method': {'type': 'string', 'maxLength': 12}, 'resource': {'type': 'string', 'maxLength': 1024}, 'dataClass': {'type': 'string', 'maxLength': 80}, 'destructive': {'type': 'boolean', 'description': 'Set true when the proposed action is destructive even if its action type or HTTP method is not intrinsically classified as destructive.'}, 'environment': {'type': 'string', 'maxLength': 80}, 'irreversible': {'type': 'boolean'}}, 'additionalProperties': False}, 'context': {'type': 'object', 'properties': {'humanApprovalPresent': {'type': 'boolean', 'description': 'Caller assertion that required human approval has already occurred. ScopeProof records this as caller-asserted and does not independently verify the human identity or approval event.'}}, 'additionalProperties': False}, 'authority': {'type': 'object', 'required': ['allowedActions', 'allowedResources'], 'properties': {'tools': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 64}, 'methods': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 24}, 'issuedAt': {'type': 'string', 'format': 'date-time'}, 'maxSpend': {'type': 'object', 'required': ['amountMinor', 'currency'], 'properties': {'currency': {'type': 'string', 'pattern': '^[A-Z]{3}$'}, 'amountMinor': {'type': 'integer', 'minimum': 0}}, 'additionalProperties': False}, 'expiresAt': {'type': 'string', 'format': 'date-time'}, 'notBefore': {'type': 'string', 'format': 'date-time'}, 'principal': {'type': 'string', 'maxLength': 160}, 'dataClasses': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 32}, 'environments': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 32}, 'deniedActions': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 64}, 'schemaVersion': {'type': 'string', 'maxLength': 64}, 'allowedActions': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 64, 'minItems': 1}, 'deniedResources': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 64}, 'allowDestructive': {'type': 'boolean'}, 'allowedResources': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 64, 'minItems': 1}, 'allowIrreversible': {'type': 'boolean'}, 'approvalRequiredFor': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 32}}, 'additionalProperties': False}}, 'additionalProperties': False}
verify_receipt
Verify ScopeProof receipt
Verify the cryptographic integrity of one ScopeProof receipt without exposing the server signing key. Free and repeatable.
Solo lectura Idempotente
Esquema de entrada
{'type': 'object', 'required': ['receipt'], 'properties': {'receipt': {'type': 'object'}}, 'additionalProperties': False}
Añadido
verify_receipt
28 de September de 2026 a las 02:40
Añadido
check_action
28 de September de 2026 a las 02:40
Añadido
preflight
28 de September de 2026 a las 02:40