MCPサーバー

skill-audit-mcp

io.github.eltociear/skill-audit-mcp
セキュリティ 公開・接続可能 MCP 2026-07-28

このMCPでできること

Scans agent skills, MCP server sources, plugins, and URLs for malicious patterns, while also providing general web, geographic, and public-data lookup tools.

air_quality
Current air quality for a place: PM2.5, PM10, ozone, NO2, SO2, CO and dust, plus the US and European AQI and the US AQI band ('Good', 'Unhealthy'). Takes a place name — no coordinates needed. (Free. This server also sells a paid API — call `paid_catalogue` for the routes and prices; x402 over USDC on Base, no signup.)
入力スキーマ
{'type': 'object', 'required': ['location'], 'properties': {'location': {'type': 'string', 'description': "Place name, e.g. 'Tokyo'"}}}
audit_skill_text
Scan text — an agent skill, MCP server source, or plugin — for malicious behaviour before loading it. 17 attack patterns / 65 regex signatures across 4 severity levels — credential exfiltration, download-and-execute, prompt injection, command execution, seed-phrase harvesting and more.
入力スキーマ
{'type': 'object', 'required': ['content'], 'properties': {'content': {'type': 'string', 'description': 'File or snippet to scan'}}}
audit_skill_url
Fetch a URL and scan what it serves for malicious behaviour. 17 attack patterns / 65 regex signatures across 4 severity levels — credential exfiltration, download-and-execute, prompt injection, command execution, seed-phrase harvesting and more.
入力スキーマ
{'type': 'object', 'required': ['url'], 'properties': {'url': {'type': 'string', 'description': 'Raw file URL to fetch and scan'}}}
country_indicator
World Bank time series for a country: gdp, gdp_per_capita, population, inflation, unemployment, life_expectancy, co2_per_capita or internet_users. (Free. This server also sells a paid API — call `paid_catalogue` for the routes and prices; x402 over USDC on Base, no signup.)
入力スキーマ
{'type': 'object', 'required': ['country'], 'properties': {'years': {'type': 'integer', 'description': '1-60 most recent years (default 5)'}, 'country': {'type': 'string', 'description': 'ISO 2- or 3-letter country code'}, 'indicator': {'type': 'string', 'description': 'Alias above, or a World Bank code'}}}
earthquakes
Recent earthquakes from the USGS feed — worldwide, or within a radius of a named place. Returns magnitude, depth, tsunami flag and felt reports. (Free. This server also sells a paid API — call `paid_catalogue` for the routes and prices; x402 over USDC on Base, no signup.)
入力スキーマ
{'type': 'object', 'required': [], 'properties': {'days': {'type': 'integer', 'description': '1-30 days back (default 1)'}, 'limit': {'type': 'integer', 'description': '1-100 events (default 20)'}, 'location': {'type': 'string', 'description': 'Centre on a place name'}, 'radius_km': {'type': 'number', 'description': 'Radius around location (default 500)'}, 'min_magnitude': {'type': 'number', 'description': 'Lower bound (default 4.5)'}}}
elevation
Ground elevation in metres for a place name. (Free. This server also sells a paid API — call `paid_catalogue` for the routes and prices; x402 over USDC on Base, no signup.)
入力スキーマ
{'type': 'object', 'required': ['location'], 'properties': {'location': {'type': 'string', 'description': 'Place name'}}}
geocode
Resolve a place name to coordinates, country, admin region, timezone, elevation and population. (Free. This server also sells a paid API — call `paid_catalogue` for the routes and prices; x402 over USDC on Base, no signup.)
入力スキーマ
{'type': 'object', 'required': ['name'], 'properties': {'name': {'type': 'string', 'description': 'Place name to resolve'}, 'count': {'type': 'integer', 'description': '1-20 candidates (default 5)'}}}
paid_catalogue
List the paid API routes this same server offers, with prices and which ones need no input. The MCP tools here are free and general-purpose; the paid routes are specialised (on-chain token safety, live DEX prices, wallet intel, supply-chain scans). Payment is x402 over USDC on Base — no account or API key. Takes no arguments.
入力スキーマ
{'type': 'object', 'required': [], 'properties': {}}
public_holidays
Public holidays for a country and year, with local names and a past/upcoming flag. (Free. This server also sells a paid API — call `paid_catalogue` for the routes and prices; x402 over USDC on Base, no signup.)
入力スキーマ
{'type': 'object', 'required': ['country'], 'properties': {'year': {'type': 'integer', 'description': 'Calendar year (defaults to current)'}, 'country': {'type': 'string', 'description': 'ISO 2-letter country code, e.g. JP'}}}
read_url
Fetch a URL and return its main content as clean Markdown, boilerplate stripped. (Free. This server also sells a paid API — call `paid_catalogue` for the routes and prices; x402 over USDC on Base, no signup.)
入力スキーマ
{'type': 'object', 'required': ['url'], 'properties': {'url': {'type': 'string', 'description': 'Page to fetch'}}}
web_search
Search the live web and return ranked title/url/snippet results, through an automatic multi-engine failover chain. (Free. This server also sells a paid API — call `paid_catalogue` for the routes and prices; x402 over USDC on Base, no signup.)
入力スキーマ
{'type': 'object', 'required': ['query'], 'properties': {'query': {'type': 'string', 'description': 'Search query'}, 'max_results': {'type': 'integer', 'description': '1-25 (default 10)'}}}
変更
audit_skill_url
2026年10月1日2:45
変更
audit_skill_text
2026年10月1日2:45
追加
audit_skill_url
2026年9月17日12:41
追加
audit_skill_text
2026年9月17日12:41
追加
read_url
2026年9月17日12:41
追加
web_search
2026年9月17日12:41
追加
elevation
2026年9月17日12:41
追加
country_indicator
2026年9月17日12:41
追加
public_holidays
2026年9月17日12:41
追加
earthquakes
2026年9月17日12:41
追加
geocode
2026年9月17日12:41
追加
air_quality
2026年9月17日12:41
追加
paid_catalogue
2026年9月17日12:41