IntentFence Agent Action Firewall
Qué hace este MCP
Authorizes agent actions against policies and spend limits, scans MCP tool metadata for risks, validates x402 payment requests, and issues signed audit receipts.
Herramientas
Esquema de entrada
{'type': 'object', 'required': ['server_name', 'tools'], 'properties': {'tools': {'type': 'array', 'items': {'type': 'object', 'required': ['name'], 'properties': {'name': {'type': 'string', 'maxLength': 120, 'minLength': 1}, 'annotations': {'type': 'object'}, 'description': {'type': 'string', 'maxLength': 2000}, 'inputSchema': {'type': 'object'}}}, 'maxItems': 100, 'minItems': 1}, 'server_name': {'type': 'string', 'maxLength': 200, 'minLength': 1}}, 'additionalProperties': False}
Esquema de entrada
{'type': 'object', 'required': ['subject', 'action', 'policy'], 'properties': {'action': {'type': 'object', 'required': ['type', 'resource', 'protocol'], 'properties': {'type': {'type': 'string', 'maxLength': 120, 'minLength': 1}, 'method': {'type': 'string', 'maxLength': 20, 'minLength': 1}, 'protocol': {'enum': ['mcp', 'http', 'a2a', 'payment', 'other'], 'type': 'string'}, 'resource': {'type': 'string', 'maxLength': 1000, 'minLength': 1}, 'payload_sha256': {'type': 'string', 'pattern': '^[0-9a-f]{64}$'}}, 'additionalProperties': False}, 'policy': {'type': 'object', 'required': ['allowed_action_types', 'allowed_resources'], 'properties': {'max_cost': {'type': 'object', 'required': ['amount', 'currency'], 'properties': {'amount': {'type': 'number', 'minimum': 0}, 'currency': {'type': 'string', 'maxLength': 12, 'minLength': 1}}, 'additionalProperties': False}, 'allowed_resources': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'minItems': 1, 'uniqueItems': True}, 'allowed_action_types': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'minItems': 1, 'uniqueItems': True}, 'max_data_retention_hours': {'type': 'number', 'minimum': 0}, 'require_human_approval_for': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'uniqueItems': True}}, 'additionalProperties': False}, 'context': {'type': 'object', 'properties': {'currency': {'type': 'string', 'maxLength': 12, 'minLength': 1}, 'quoted_cost': {'type': 'number', 'minimum': 0}, 'data_retention_hours': {'type': 'number', 'minimum': 0}}, 'additionalProperties': False}, 'subject': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'approval': {'type': 'object', 'required': ['approved_by', 'approved_at', 'expires_at', 'action_digest', 'proof_id'], 'properties': {'proof_id': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'expires_at': {'type': 'string', 'format': 'date-time'}, 'approved_at': {'type': 'string', 'format': 'date-time'}, 'approved_by': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'action_digest': {'type': 'string', 'pattern': '^[0-9a-f]{64}$'}}, 'additionalProperties': False}}, 'additionalProperties': False}
Esquema de entrada
{'type': 'object', 'required': ['product'], 'properties': {'input': {'type': 'object', 'description': 'The exact product input. Omit only to receive a non-executable example recipe.'}, 'product': {'enum': ['us-cpi', 'wallet-risk', 'x402-readiness', 'x402-assessment', 'verified-preflight', 'policy-pack'], 'type': 'string', 'description': 'The paid outcome the agent wants to buy.'}}, 'additionalProperties': False}
Esquema de entrada
{'type': 'object', 'required': ['project_name', 'runtime', 'authorization'], 'properties': {'runtime': {'enum': ['cloudflare-agents', 'coinbase-agentkit', 'mcp-gateway', 'openai-agents-js'], 'type': 'string'}, 'project_name': {'type': 'string', 'maxLength': 120, 'minLength': 1, 'description': 'A public-safe project label. Do not include credentials or secrets.'}, 'authorization': {'type': 'object', 'required': ['subject', 'action', 'policy'], 'properties': {'action': {'type': 'object', 'required': ['type', 'resource', 'protocol'], 'properties': {'type': {'type': 'string', 'maxLength': 120, 'minLength': 1}, 'method': {'type': 'string', 'maxLength': 20, 'minLength': 1}, 'protocol': {'enum': ['mcp', 'http', 'a2a', 'payment', 'other'], 'type': 'string'}, 'resource': {'type': 'string', 'maxLength': 1000, 'minLength': 1}, 'payload_sha256': {'type': 'string', 'pattern': '^[0-9a-f]{64}$'}}, 'additionalProperties': False}, 'policy': {'type': 'object', 'required': ['allowed_action_types', 'allowed_resources'], 'properties': {'max_cost': {'type': 'object', 'required': ['amount', 'currency'], 'properties': {'amount': {'type': 'number', 'minimum': 0}, 'currency': {'type': 'string', 'maxLength': 12, 'minLength': 1}}, 'additionalProperties': False}, 'allowed_resources': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'minItems': 1, 'uniqueItems': True}, 'allowed_action_types': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'minItems': 1, 'uniqueItems': True}, 'max_data_retention_hours': {'type': 'number', 'minimum': 0}, 'require_human_approval_for': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'uniqueItems': True}}, 'additionalProperties': False}, 'context': {'type': 'object', 'properties': {'currency': {'type': 'string', 'maxLength': 12, 'minLength': 1}, 'quoted_cost': {'type': 'number', 'minimum': 0}, 'data_retention_hours': {'type': 'number', 'minimum': 0}}, 'additionalProperties': False}, 'subject': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'approval': {'type': 'object', 'required': ['approved_by', 'approved_at', 'expires_at', 'action_digest', 'proof_id'], 'properties': {'proof_id': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'expires_at': {'type': 'string', 'format': 'date-time'}, 'approved_at': {'type': 'string', 'format': 'date-time'}, 'approved_by': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'action_digest': {'type': 'string', 'pattern': '^[0-9a-f]{64}$'}}, 'additionalProperties': False}}, 'additionalProperties': False}}, 'additionalProperties': False}
Esquema de entrada
{'type': 'object', 'required': ['subject', 'action'], 'properties': {'action': {'type': 'object', 'required': ['type'], 'properties': {'type': {'type': 'string', 'maxLength': 120, 'minLength': 1}, 'resource': {'type': 'string', 'maxLength': 500}}}, 'proofs': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 20}, 'subject': {'type': 'string', 'maxLength': 200, 'minLength': 1, 'description': 'Agent or principal identifier.'}, 'constraints': {'type': 'object', 'properties': {'currency': {'type': 'string', 'maxLength': 12}, 'quoted_cost': {'type': 'number', 'minimum': 0}, 'cost_ceiling': {'type': 'number', 'minimum': 0}, 'human_approval': {'enum': ['required', 'optional', 'not_required'], 'type': 'string'}, 'data_retention_hours': {'type': 'number', 'minimum': 0}}}}}
Esquema de entrada
{'type': 'object', 'properties': {'month': {'type': 'string', 'pattern': '^20[0-9]{2}-(?:0[1-9]|1[0-2])$', 'description': 'Optional CPI month in YYYY-MM. Omit for the latest complete headline/core period.'}}, 'additionalProperties': False}
Esquema de entrada
{'type': 'object', 'required': ['subject', 'action'], 'properties': {'action': {'type': 'object', 'required': ['type'], 'properties': {'type': {'type': 'string', 'maxLength': 120, 'minLength': 1}, 'resource': {'type': 'string', 'maxLength': 500}}}, 'proofs': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 20}, 'subject': {'type': 'string', 'maxLength': 200, 'minLength': 1, 'description': 'Agent or principal identifier.'}, 'constraints': {'type': 'object', 'properties': {'currency': {'type': 'string', 'maxLength': 12}, 'quoted_cost': {'type': 'number', 'minimum': 0}, 'cost_ceiling': {'type': 'number', 'minimum': 0}, 'human_approval': {'enum': ['required', 'optional', 'not_required'], 'type': 'string'}, 'data_retention_hours': {'type': 'number', 'minimum': 0}}}}}
Esquema de entrada
{'type': 'object', 'required': ['address'], 'properties': {'address': {'type': 'string', 'pattern': '^0x[0-9a-fA-F]{40}$', 'description': 'Base recipient or counterparty address to assess before payment.'}}, 'additionalProperties': False}
Esquema de entrada
{'type': 'object', 'required': ['subject', 'target_url', 'payment_required', 'policy'], 'properties': {'method': {'enum': ['GET', 'HEAD', 'POST'], 'type': 'string', 'default': 'GET'}, 'policy': {'type': 'object', 'required': ['max_price_usdc'], 'properties': {'allowed_payees': {'type': 'array', 'items': {'type': 'string', 'pattern': '^0x[0-9a-fA-F]{40}$'}, 'maxItems': 20, 'minItems': 1, 'description': 'Explicit payee allowlist. Without it, the result cannot be safe_to_proceed.', 'uniqueItems': True}, 'max_price_usdc': {'type': 'string', 'pattern': '^(?:0|[1-9][0-9]{0,11})(?:\\.[0-9]{1,6})?$', 'description': 'Exact USDC ceiling as a decimal string.'}}, 'additionalProperties': False}, 'subject': {'type': 'string', 'maxLength': 200, 'minLength': 1, 'description': 'Agent or principal identifier.'}, 'target_url': {'type': 'string', 'format': 'uri', 'maxLength': 2048, 'description': 'Exact public HTTPS resource URL from the caller-observed x402 challenge.'}, 'payment_required': {'type': 'string', 'maxLength': 16384, 'minLength': 1, 'description': 'Exact base64 or base64url PAYMENT-REQUIRED header value observed by the caller.'}}, 'additionalProperties': False}
Esquema de entrada
{'type': 'object', 'required': ['target_url'], 'properties': {'body': {'description': 'Optional JSON request body for POST probes, limited to 4096 encoded bytes.'}, 'method': {'enum': ['GET', 'HEAD', 'POST'], 'type': 'string', 'default': 'GET'}, 'policy': {'type': 'object', 'required': ['max_price_usdc'], 'deprecated': True, 'properties': {'allowed_payees': {'type': 'array', 'items': {'type': 'string', 'pattern': '^0x[0-9a-fA-F]{40}$'}, 'maxItems': 20, 'minItems': 1, 'description': 'Optional explicit payee allowlist. Omission yields ready_with_review for an otherwise valid quote.', 'uniqueItems': True}, 'max_price_usdc': {'type': 'string', 'pattern': '^(?:0|[1-9][0-9]{0,11})(?:\\.[0-9]{1,6})?$', 'description': 'Maximum acceptable x402 price in USDC.'}}, 'description': 'Legacy nested policy input. New buyers should use the optional top-level fields.', 'additionalProperties': False}, 'subject': {'type': 'string', 'default': 'agent:anonymous-marketplace-buyer', 'maxLength': 200, 'minLength': 1, 'description': 'Optional buyer identifier. Omit for anonymous marketplace delivery.'}, 'target_url': {'type': 'string', 'format': 'uri', 'maxLength': 2048, 'description': 'Public HTTPS x402 resource URL on the standard HTTPS port.'}, 'allowed_payees': {'type': 'array', 'items': {'type': 'string', 'pattern': '^0x[0-9a-fA-F]{40}$'}, 'maxItems': 20, 'minItems': 1, 'description': 'Optional explicit payee allowlist. Omission yields ready_with_review for an otherwise valid quote.', 'uniqueItems': True}, 'max_price_usdc': {'type': 'string', 'default': '1.00', 'pattern': '^(?:0|[1-9][0-9]{0,11})(?:\\.[0-9]{1,6})?$', 'description': 'Optional maximum acceptable x402 price in USDC.'}}, 'additionalProperties': False}
Cambios recientes en herramientas
Servidores MCP similares
AIMEAT
Provides a self-hosted agent operating system with agent work delegation, access controls, federation, hooks, SSO, security admin…
hyperion
Acts as a paid MCP tool marketplace and utility gateway with server discovery, HTTP and JavaScript tools, research, data conversi…
Japan Public Ledgers MCP
Provides agent identity, memory, audit, trust, proxy, temporary email, webhook, CAPTCHA, and alerting capabilities alongside publ…
PHION Agent Trust Infrastructure
Provides agent trust, policy, provenance, evidence, delegation, telemetry, and transaction-control services for MCP and agent wor…
Swamp
Coordinates security agents through scoped bug-bounty programs, target claims, vulnerability submissions, peer review, shared fin…
AgentBIT
Routes pay-per-call tools over x402 on Base, covering discovery, data conversion, company research, counterparty screening, domai…
SaSame MCP Observatory + Gold Rush Town
Audits and profiles MCP servers, provides ecosystem analytics, trust and claim records, and non-custodial transaction or escrow a…
ThinkNEO Control Plane
Provides an enterprise AI control plane for governance, guardrails, spend tracking, compliance, and model or tool routing.