MCPサーバー

webhook-inbox

co.kymac.inbox/webhook-inbox

このMCPでできること

Creates temporary HTTPS webhook inboxes, captures and lists POST requests, and manages test credits, keys, expiration, and revocation.

capture_inbox
Capture a raw POST — webhook inbox, request bin
Public capture (POST /c/{id}). No API key. No debit. Not an install entry. Stores raw body + headers for list_inbox_events. Rejects revoked (410 inbox_revoked) or expired (410 inbox_expired) inboxes. Body limit 1MB.
入力スキーマ
{'type': 'object', '$schema': 'https://json-schema.org/draft/2020-12/schema', 'required': ['id'], 'properties': {'id': {'type': 'string', 'description': 'Inbox id from mint_inbox (inb_â\x80¦).'}, 'body': {'description': 'Raw capture payload. Objects are JSON-encoded. Strings are sent as-is.'}, 'content_type': {'type': 'string', 'description': 'Content-Type for the capture. Defaults to application/json for objects.'}}}
checkout_credits
Checkout credit pack — webhook inbox, request bin
Stripe TEST PaymentIntent for a pack (POST /credits/checkout). Intent only — returns credits_pending; credits are not granted or spendable until confirm_credits succeeds. Requires a caller key.
入力スキーマ
{'type': 'object', '$schema': 'https://json-schema.org/draft/2020-12/schema', 'required': ['pack_id'], 'properties': {'pack_id': {'type': 'string', 'description': 'Pack id from list_credit_packs (e.g. pack_10).'}}}
confirm_credits
Confirm TEST credit purchase — webhook inbox, request bin
Confirm a TEST PaymentIntent with Stripe test card pm_card_visa (POST /credits/confirm). This is when credits become granted/spendable (appends credit.purchase with credits_added). TEST only.
入力スキーマ
{'type': 'object', '$schema': 'https://json-schema.org/draft/2020-12/schema', 'required': ['stripe_payment_intent_id'], 'properties': {'stripe_payment_intent_id': {'type': 'string', 'description': 'PaymentIntent id (pi_â\x80¦) from checkout_credits.'}}}
credit_balance
Credit balance — webhook inbox, request bin
Derived prepaid balance for this caller_id (GET /credits/balance).
読み取り専用
入力スキーマ
{'type': 'object', 'properties': {}}
credit_events
Credit ledger events — webhook inbox, request bin
Append-only Ledger events for this caller_id (GET /credits/events): credit.grant (first_key), credit.purchase, credit.debit reason=inbox_mint, optional credit.balance_snapshot.
読み取り専用
入力スキーマ
{'type': 'object', 'properties': {}}
health
Health — webhook inbox, request bin
Public readiness (GET /health): billing (test|live|gated) and runner_ready. No key.
読み取り専用
入力スキーマ
{'type': 'object', 'properties': {}}
issue_key
Issue caller key — webhook inbox, request bin
Mint a caller key (POST /keys). Bot install starts at GET https://inbox.kymac.co/llms.txt (sole advertised entry). Secret whi_… is returned once. Prefer Authorization: Bearer; X-API-Key is an alias. First issue grants 1 free credit (credit.grant reason=first_key). Quote cost with quote_credits before mint_inbox.
入力スキーマ
{'type': 'object', 'properties': {}}
list_credit_packs
List credit packs — webhook inbox, request bin
Prepaid TEST packs (GET /credits/packs). checkout_credits is intent only; credits grant after confirm_credits.
読み取り専用
入力スキーマ
{'type': 'object', 'properties': {}}
list_inbox_events
List captured POSTs — webhook inbox, request bin
Owner list (GET /inbox/{id}/events). Returns captured POSTs as JSON (headers + body). Does not debit. Other callers see 404.
読み取り専用
入力スキーマ
{'type': 'object', '$schema': 'https://json-schema.org/draft/2020-12/schema', 'required': ['id'], 'properties': {'id': {'type': 'string', 'description': 'Inbox id from mint_inbox (inb_â\x80¦).'}}}
mint_inbox
Mint ephemeral inbox — webhook inbox, request bin
Mint a capture URL (POST /inbox). Install via GET https://inbox.kymac.co/llms.txt only. Prefer Authorization: Bearer; X-API-Key is an alias. First key includes 1 free credit. Quote first with quote_credits (no debit). Debits 1 credit on success (credit.debit reason=inbox_mint, request_id=inbox id). 201 body includes id, capture_url, expires_at, credits_remaining. HTTP fails use code/message/retryable/next (error aliases message). 401 next=refresh key. 402: code=insufficient_credits, retryable=false, next=buy credits.
入力スキーマ
{'type': 'object', 'properties': {}}
quote_credits
Quote credit cost — webhook inbox, request bin
Dry-run cost for an op without debit (GET /credits/quote?op=inbox). Returns cost, balance, and would_succeed.
読み取り専用
入力スキーマ
{'type': 'object', '$schema': 'https://json-schema.org/draft/2020-12/schema', 'properties': {'op': {'type': 'string', 'description': 'Operation to quote. Defaults to inbox.'}}}
revoke_inbox
Revoke inbox early — webhook inbox, request bin
Stop further captures (DELETE /inbox/{id}). Does not refund the mint debit. Owner only.
破壊的操作あり
入力スキーマ
{'type': 'object', '$schema': 'https://json-schema.org/draft/2020-12/schema', 'required': ['id'], 'properties': {'id': {'type': 'string', 'description': 'Inbox id from mint_inbox (inb_â\x80¦).'}}}
revoke_key
Revoke caller key — webhook inbox, request bin
Invalidate the presented secret (POST /keys/revoke). Same id is revoked; old secret then fails 401 invalid_api_key. Prefer Authorization: Bearer; X-API-Key is an alias only. No ops file-edit.
破壊的操作あり
入力スキーマ
{'type': 'object', 'properties': {}}
rotate_key
Rotate caller key — webhook inbox, request bin
Replace the presented secret (POST /keys/rotate). Same id/caller_id and credits. New whi_… is returned once. Old secret then fails 401 invalid_api_key. Prefer Authorization: Bearer; X-API-Key is an alias only. No ops file-edit.
入力スキーマ
{'type': 'object', 'properties': {}}
verify_key
Verify caller key — webhook inbox, request bin
Confirm WEBHOOK_INBOX_API_KEY or Authorization: Bearer (GET /keys/verify). X-API-Key is an alias only. Does not echo the secret.
読み取り専用
入力スキーマ
{'type': 'object', 'properties': {}}
追加
health
2026年9月19日2:40
追加
revoke_inbox
2026年9月19日2:40
追加
list_inbox_events
2026年9月19日2:40
追加
capture_inbox
2026年9月19日2:40
追加
mint_inbox
2026年9月19日2:40
追加
credit_events
2026年9月19日2:40
追加
credit_balance
2026年9月19日2:40
追加
quote_credits
2026年9月19日2:40
追加
confirm_credits
2026年9月19日2:40
追加
checkout_credits
2026年9月19日2:40
追加
list_credit_packs
2026年9月19日2:40
追加
revoke_key
2026年9月19日2:40
追加
rotate_key
2026年9月19日2:40
追加
verify_key
2026年9月19日2:40
追加
issue_key
2026年9月19日2:40