Serveur MCP

AgentAvow Trust

com.agentavow/agentavow-trust
Infrastructure MCP et agents Sécurité Public et accessible MCP 2025-11-25

Ce que fait ce MCP

Assesses trust and safety for MCP servers, packages, repositories, agents, and tools, producing signed safety verdicts.

about_agentavow
About AgentAvow
What AgentAvow is, which tool to use for what, how to read a verdict, and example scans. Call this for an overview or when getting started. No input, read-only.
Lecture seule Idempotent
Schéma d’entrée
{'type': 'object', 'properties': {}}
check_interaction_safety
Check interaction safety
Check whether it is safe to interact with another agent by trust threshold. Thresholds: delegate 0.6, trade 0.5, collaborate 0.4, follow 0.1. Returns is_safe, risk_level, the score, and a recommendation. Read-only, no auth.
Lecture seule Accès externe Idempotent
Schéma d’entrée
{'type': 'object', 'required': ['target_entity_id', 'interaction_type'], 'properties': {'interaction_type': {'enum': ['delegate', 'trade', 'collaborate', 'follow'], 'type': 'string'}, 'target_entity_id': {'type': 'string', 'maxLength': 64, 'description': 'UUID of a registered target entity (resolve one with lookup_identity).'}}}
get_trust_badge
Get a trust badge
Get an embeddable AgentAvow trust badge (SVG) for an entity, with ready-to-paste Markdown and HTML. The badge auto-updates as the score changes. Read-only, no auth.
Lecture seule Accès externe Idempotent
Schéma d’entrée
{'type': 'object', 'required': ['entity_id'], 'properties': {'entity_id': {'type': 'string', 'maxLength': 64, 'description': 'UUID of a registered AgentAvow entity (resolve one with lookup_identity).'}}}
lookup_identity
Look up an agent or tool
Look up an AgentAvow entity by W3C DID or display name. Returns the entity's id, name, type, trust score and tier. Read-only, no auth. Use to resolve an identity before checking its trust.
Lecture seule Accès externe Idempotent
Schéma d’entrée
{'type': 'object', 'required': ['query'], 'properties': {'query': {'type': 'string', 'pattern': '^[\\w .:/@#+-]{1,200}$', 'maxLength': 200, 'description': 'A did:web:... or a display name.'}}}
scan_mcp_server
Scan an MCP server
Scan a live MCP server's tool definitions for tool-poisoning, prompt-injection, invisible-unicode, and manifest-execution risks before your agent connects to it. Returns a 0-100 trust score, a safe / needs-review verdict, findings, and a signed attestation. Read-only; calls the agentavow.com public API.
Lecture seule Accès externe Idempotent
Schéma d’entrée
{'type': 'object', 'required': ['endpoint_url'], 'properties': {'force': {'type': 'boolean', 'description': 'Re-scan now instead of returning the cached verdict (results cache ~1h).'}, 'endpoint_url': {'type': 'string', 'maxLength': 512, 'description': "The MCP server's https:// URL."}}}
scan_package
Scan a package
Scan a published package (npm, PyPI, crates, Docker, or Hugging Face) with AgentAvow. Returns a 0-100 trust score, a safe / needs-review verdict, findings with remediation, and a signed attestation. Also reports repo-vs-artifact drift (files shipped that aren't in the source). Read-only; calls agentavow.com.
Lecture seule Accès externe Idempotent
Schéma d’entrée
{'type': 'object', 'required': ['name'], 'properties': {'name': {'type': 'string', 'maxLength': 214, 'description': "Package name, e.g. 'chalk' (or 'org/model' for hf)."}, 'force': {'type': 'boolean', 'description': 'Re-scan now instead of returning the cached verdict (results cache ~1h). Use after a new version ships.'}, 'surface': {'type': 'string', 'description': 'Alias for registry.'}, 'registry': {'type': 'string', 'description': 'Package registry: npm, pypi, crates, docker, or hf.'}, 'ecosystem': {'type': 'string', 'description': 'Alias for registry.'}}}
scan_repo
Scan a GitHub repo
Scan a public GitHub repository with AgentAvow and return whether it is safe for an agent to connect to: a 0-100 trust score, a plain safe / needs-review verdict, the findings behind it (with where and how to fix), and a signed, offline-verifiable attestation. Read-only, no account. Calls the AgentAvow public API at agentavow.com.
Lecture seule Accès externe Idempotent
Schéma d’entrée
{'type': 'object', 'required': ['repo'], 'properties': {'repo': {'type': 'string', 'maxLength': 214, 'description': "Repo as 'owner/name' (e.g. 'vercel/next.js'), or just the name when 'owner' is given separately."}, 'force': {'type': 'boolean', 'description': 'Re-scan now instead of returning the cached verdict (results cache ~1h). Use after the target has changed.'}, 'owner': {'type': 'string', 'maxLength': 214, 'description': "Repo owner (optional if 'repo' is already 'owner/name')."}}}
verify_trust
Verify an entity's trust score
Verify an AgentAvow entity's trust score. Returns trust_score (0-1), trust_score_pct (0-100), trust_tier, and whether it meets a minimum threshold. Read-only, no auth. Use before interacting with an unknown agent.
Lecture seule Accès externe Idempotent
Schéma d’entrée
{'type': 'object', 'required': ['entity_id'], 'properties': {'entity_id': {'type': 'string', 'maxLength': 64, 'description': 'UUID of a registered AgentAvow entity (resolve one with lookup_identity; unknown ids return guidance, not an error).'}, 'min_trust': {'type': 'number', 'default': 0.3, 'description': 'Min score, 0-1.'}}}
Ajouté
about_agentavow
20 September 2026 02:40
Ajouté
get_trust_badge
20 September 2026 02:40
Ajouté
lookup_identity
20 September 2026 02:40
Ajouté
check_interaction_safety
20 September 2026 02:40
Ajouté
verify_trust
20 September 2026 02:40
Ajouté
scan_mcp_server
20 September 2026 02:40
Ajouté
scan_package
20 September 2026 02:40
Ajouté
scan_repo
20 September 2026 02:40