MCPサーバー

IntentFence Agent Action Firewall

io.github.razel369/intentfence
MCP・エージェント基盤 セキュリティ 公開・接続可能 MCP 2025-11-25

このMCPでできること

Authorizes agent actions against policies and spend limits, scans MCP tool metadata for risks, validates x402 payment requests, and issues signed audit receipts.

intentfence_agent_risk_scan
IntentFence MCP Agent Risk Scan
Free metadata-only scan of caller-supplied MCP tool definitions for missing schemas, unsafe annotations, approval binding, and cost boundaries. Does not execute tools or certify security.
読み取り専用
入力スキーマ
{'type': 'object', 'required': ['server_name', 'tools'], 'properties': {'tools': {'type': 'array', 'items': {'type': 'object', 'required': ['name'], 'properties': {'name': {'type': 'string', 'maxLength': 120, 'minLength': 1}, 'annotations': {'type': 'object'}, 'description': {'type': 'string', 'maxLength': 2000}, 'inputSchema': {'type': 'object'}}}, 'maxItems': 100, 'minItems': 1}, 'server_name': {'type': 'string', 'maxLength': 200, 'minLength': 1}}, 'additionalProperties': False}
intentfence_authorize_action
IntentFence Action Authorization
Authorize an exact agent action against an explicit allowlist, spend ceiling, retention ceiling, and optional action-bound approval. Returns a five-minute ES256 receipt and never executes the downstream action. Callers must verify the receipt and fail closed if the action changes.
読み取り専用
入力スキーマ
{'type': 'object', 'required': ['subject', 'action', 'policy'], 'properties': {'action': {'type': 'object', 'required': ['type', 'resource', 'protocol'], 'properties': {'type': {'type': 'string', 'maxLength': 120, 'minLength': 1}, 'method': {'type': 'string', 'maxLength': 20, 'minLength': 1}, 'protocol': {'enum': ['mcp', 'http', 'a2a', 'payment', 'other'], 'type': 'string'}, 'resource': {'type': 'string', 'maxLength': 1000, 'minLength': 1}, 'payload_sha256': {'type': 'string', 'pattern': '^[0-9a-f]{64}$'}}, 'additionalProperties': False}, 'policy': {'type': 'object', 'required': ['allowed_action_types', 'allowed_resources'], 'properties': {'max_cost': {'type': 'object', 'required': ['amount', 'currency'], 'properties': {'amount': {'type': 'number', 'minimum': 0}, 'currency': {'type': 'string', 'maxLength': 12, 'minLength': 1}}, 'additionalProperties': False}, 'allowed_resources': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'minItems': 1, 'uniqueItems': True}, 'allowed_action_types': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'minItems': 1, 'uniqueItems': True}, 'max_data_retention_hours': {'type': 'number', 'minimum': 0}, 'require_human_approval_for': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'uniqueItems': True}}, 'additionalProperties': False}, 'context': {'type': 'object', 'properties': {'currency': {'type': 'string', 'maxLength': 12, 'minLength': 1}, 'quoted_cost': {'type': 'number', 'minimum': 0}, 'data_retention_hours': {'type': 'number', 'minimum': 0}}, 'additionalProperties': False}, 'subject': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'approval': {'type': 'object', 'required': ['approved_by', 'approved_at', 'expires_at', 'action_digest', 'proof_id'], 'properties': {'proof_id': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'expires_at': {'type': 'string', 'format': 'date-time'}, 'approved_at': {'type': 'string', 'format': 'date-time'}, 'approved_by': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'action_digest': {'type': 'string', 'pattern': '^[0-9a-f]{64}$'}}, 'additionalProperties': False}}, 'additionalProperties': False}
intentfence_checkout
IntentFence Agent Checkout
Free machine checkout builder. Select a paid IntentFence outcome and receive the exact endpoint, validated request, USDC cap, shell-safe Agentic Wallet argv, MCP tool call, and opt-in local auto-payment budget. It never signs or initiates payment.
読み取り専用 冪等
入力スキーマ
{'type': 'object', 'required': ['product'], 'properties': {'input': {'type': 'object', 'description': 'The exact product input. Omit only to receive a non-executable example recipe.'}, 'product': {'enum': ['us-cpi', 'wallet-risk', 'x402-readiness', 'x402-assessment', 'verified-preflight', 'policy-pack'], 'type': 'string', 'description': 'The paid outcome the agent wants to buy.'}}, 'additionalProperties': False}
intentfence_policy_pack
IntentFence Production Policy Pack
Paid self-service integration pack (1 USDC on Base). Generates a runtime-specific TypeScript guard, signed action and policy receipt, negative test vectors, and a fail-closed deployment checklist for Cloudflare Agents, Coinbase AgentKit, or an MCP gateway. No meeting or account is required.
読み取り専用 外部アクセスあり
入力スキーマ
{'type': 'object', 'required': ['project_name', 'runtime', 'authorization'], 'properties': {'runtime': {'enum': ['cloudflare-agents', 'coinbase-agentkit', 'mcp-gateway', 'openai-agents-js'], 'type': 'string'}, 'project_name': {'type': 'string', 'maxLength': 120, 'minLength': 1, 'description': 'A public-safe project label. Do not include credentials or secrets.'}, 'authorization': {'type': 'object', 'required': ['subject', 'action', 'policy'], 'properties': {'action': {'type': 'object', 'required': ['type', 'resource', 'protocol'], 'properties': {'type': {'type': 'string', 'maxLength': 120, 'minLength': 1}, 'method': {'type': 'string', 'maxLength': 20, 'minLength': 1}, 'protocol': {'enum': ['mcp', 'http', 'a2a', 'payment', 'other'], 'type': 'string'}, 'resource': {'type': 'string', 'maxLength': 1000, 'minLength': 1}, 'payload_sha256': {'type': 'string', 'pattern': '^[0-9a-f]{64}$'}}, 'additionalProperties': False}, 'policy': {'type': 'object', 'required': ['allowed_action_types', 'allowed_resources'], 'properties': {'max_cost': {'type': 'object', 'required': ['amount', 'currency'], 'properties': {'amount': {'type': 'number', 'minimum': 0}, 'currency': {'type': 'string', 'maxLength': 12, 'minLength': 1}}, 'additionalProperties': False}, 'allowed_resources': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'minItems': 1, 'uniqueItems': True}, 'allowed_action_types': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'minItems': 1, 'uniqueItems': True}, 'max_data_retention_hours': {'type': 'number', 'minimum': 0}, 'require_human_approval_for': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 50, 'uniqueItems': True}}, 'additionalProperties': False}, 'context': {'type': 'object', 'properties': {'currency': {'type': 'string', 'maxLength': 12, 'minLength': 1}, 'quoted_cost': {'type': 'number', 'minimum': 0}, 'data_retention_hours': {'type': 'number', 'minimum': 0}}, 'additionalProperties': False}, 'subject': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'approval': {'type': 'object', 'required': ['approved_by', 'approved_at', 'expires_at', 'action_digest', 'proof_id'], 'properties': {'proof_id': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'expires_at': {'type': 'string', 'format': 'date-time'}, 'approved_at': {'type': 'string', 'format': 'date-time'}, 'approved_by': {'type': 'string', 'maxLength': 200, 'minLength': 1}, 'action_digest': {'type': 'string', 'pattern': '^[0-9a-f]{64}$'}}, 'additionalProperties': False}}, 'additionalProperties': False}}, 'additionalProperties': False}
intentfence_preflight
IntentFence Preview
Free declared-input preview with no signed receipt, authorization proof, or enforcement guarantee. Returns safe_to_proceed, needs_review, or denied.
読み取り専用 冪等
入力スキーマ
{'type': 'object', 'required': ['subject', 'action'], 'properties': {'action': {'type': 'object', 'required': ['type'], 'properties': {'type': {'type': 'string', 'maxLength': 120, 'minLength': 1}, 'resource': {'type': 'string', 'maxLength': 500}}}, 'proofs': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 20}, 'subject': {'type': 'string', 'maxLength': 200, 'minLength': 1, 'description': 'Agent or principal identifier.'}, 'constraints': {'type': 'object', 'properties': {'currency': {'type': 'string', 'maxLength': 12}, 'quoted_cost': {'type': 'number', 'minimum': 0}, 'cost_ceiling': {'type': 'number', 'minimum': 0}, 'human_approval': {'enum': ['required', 'optional', 'not_required'], 'type': 'string'}, 'data_retention_hours': {'type': 'number', 'minimum': 0}}}}}
intentfence_us_cpi
IntentFence Official U.S. CPI
Paid official U.S. CPI and core CPI data ($0.001 USDC on Base), retrieved from the Bureau of Labor Statistics with a six-hour edge cache and returned with an ES256 provenance receipt. Optionally request a YYYY-MM period.
読み取り専用 外部アクセスあり
入力スキーマ
{'type': 'object', 'properties': {'month': {'type': 'string', 'pattern': '^20[0-9]{2}-(?:0[1-9]|1[0-2])$', 'description': 'Optional CPI month in YYYY-MM. Omit for the latest complete headline/core period.'}}, 'additionalProperties': False}
intentfence_verified_preflight
IntentFence Verified Preflight
Paid production preflight ($0.005 USDC on Base). Settles through x402 and returns a signed ES256 audit receipt plus settlement metadata.
読み取り専用 外部アクセスあり
入力スキーマ
{'type': 'object', 'required': ['subject', 'action'], 'properties': {'action': {'type': 'object', 'required': ['type'], 'properties': {'type': {'type': 'string', 'maxLength': 120, 'minLength': 1}, 'resource': {'type': 'string', 'maxLength': 500}}}, 'proofs': {'type': 'array', 'items': {'type': 'string'}, 'maxItems': 20}, 'subject': {'type': 'string', 'maxLength': 200, 'minLength': 1, 'description': 'Agent or principal identifier.'}, 'constraints': {'type': 'object', 'properties': {'currency': {'type': 'string', 'maxLength': 12}, 'quoted_cost': {'type': 'number', 'minimum': 0}, 'cost_ceiling': {'type': 'number', 'minimum': 0}, 'human_approval': {'enum': ['required', 'optional', 'not_required'], 'type': 'string'}, 'data_retention_hours': {'type': 'number', 'minimum': 0}}}}}
intentfence_wallet_risk
IntentFence Wallet Risk
Paid AML/KYT wallet screening ($0.002 USDC on Base) before sending funds or approving a transaction. Checks live Base activity plus GoPlus sanctions, phishing, mixer, money-laundering, dark-web, blacklist, and related counterparty-risk flags, then returns a five-minute ES256 receipt. A low-risk result is not proof of identity, ownership, authorization, or future behavior.
読み取り専用 外部アクセスあり
入力スキーマ
{'type': 'object', 'required': ['address'], 'properties': {'address': {'type': 'string', 'pattern': '^0x[0-9a-fA-F]{40}$', 'description': 'Base recipient or counterparty address to assess before payment.'}}, 'additionalProperties': False}
intentfence_x402_assessment
IntentFence x402 Quote Assessment
Paid assessment ($0.005 USDC on Base). Forward the exact base64 or base64url PAYMENT-REQUIRED header observed by the caller. IntentFence validates the quote, canonical Base USDC asset, price ceiling, payee allowlist, timeout, and resource binding without contacting the target, then returns a short-lived ES256 receipt bound to the quote hash. Supply allowed_payees for safe_to_proceed; omission yields needs_review.
読み取り専用 外部アクセスあり
入力スキーマ
{'type': 'object', 'required': ['subject', 'target_url', 'payment_required', 'policy'], 'properties': {'method': {'enum': ['GET', 'HEAD', 'POST'], 'type': 'string', 'default': 'GET'}, 'policy': {'type': 'object', 'required': ['max_price_usdc'], 'properties': {'allowed_payees': {'type': 'array', 'items': {'type': 'string', 'pattern': '^0x[0-9a-fA-F]{40}$'}, 'maxItems': 20, 'minItems': 1, 'description': 'Explicit payee allowlist. Without it, the result cannot be safe_to_proceed.', 'uniqueItems': True}, 'max_price_usdc': {'type': 'string', 'pattern': '^(?:0|[1-9][0-9]{0,11})(?:\\.[0-9]{1,6})?$', 'description': 'Exact USDC ceiling as a decimal string.'}}, 'additionalProperties': False}, 'subject': {'type': 'string', 'maxLength': 200, 'minLength': 1, 'description': 'Agent or principal identifier.'}, 'target_url': {'type': 'string', 'format': 'uri', 'maxLength': 2048, 'description': 'Exact public HTTPS resource URL from the caller-observed x402 challenge.'}, 'payment_required': {'type': 'string', 'maxLength': 16384, 'minLength': 1, 'description': 'Exact base64 or base64url PAYMENT-REQUIRED header value observed by the caller.'}}, 'additionalProperties': False}
intentfence_x402_readiness
IntentFence Live x402 Readiness
Paid live endpoint check ($0.002 USDC on Base). Makes one bounded credential-free request to a public HTTPS target, blocks private networks and redirects, never pays the target, validates the returned x402 challenge, and returns a signed five-minute receipt.
読み取り専用 外部アクセスあり
入力スキーマ
{'type': 'object', 'required': ['target_url'], 'properties': {'body': {'description': 'Optional JSON request body for POST probes, limited to 4096 encoded bytes.'}, 'method': {'enum': ['GET', 'HEAD', 'POST'], 'type': 'string', 'default': 'GET'}, 'policy': {'type': 'object', 'required': ['max_price_usdc'], 'deprecated': True, 'properties': {'allowed_payees': {'type': 'array', 'items': {'type': 'string', 'pattern': '^0x[0-9a-fA-F]{40}$'}, 'maxItems': 20, 'minItems': 1, 'description': 'Optional explicit payee allowlist. Omission yields ready_with_review for an otherwise valid quote.', 'uniqueItems': True}, 'max_price_usdc': {'type': 'string', 'pattern': '^(?:0|[1-9][0-9]{0,11})(?:\\.[0-9]{1,6})?$', 'description': 'Maximum acceptable x402 price in USDC.'}}, 'description': 'Legacy nested policy input. New buyers should use the optional top-level fields.', 'additionalProperties': False}, 'subject': {'type': 'string', 'default': 'agent:anonymous-marketplace-buyer', 'maxLength': 200, 'minLength': 1, 'description': 'Optional buyer identifier. Omit for anonymous marketplace delivery.'}, 'target_url': {'type': 'string', 'format': 'uri', 'maxLength': 2048, 'description': 'Public HTTPS x402 resource URL on the standard HTTPS port.'}, 'allowed_payees': {'type': 'array', 'items': {'type': 'string', 'pattern': '^0x[0-9a-fA-F]{40}$'}, 'maxItems': 20, 'minItems': 1, 'description': 'Optional explicit payee allowlist. Omission yields ready_with_review for an otherwise valid quote.', 'uniqueItems': True}, 'max_price_usdc': {'type': 'string', 'default': '1.00', 'pattern': '^(?:0|[1-9][0-9]{0,11})(?:\\.[0-9]{1,6})?$', 'description': 'Optional maximum acceptable x402 price in USDC.'}}, 'additionalProperties': False}
追加
intentfence_us_cpi
2026年9月17日12:49
追加
intentfence_wallet_risk
2026年9月17日12:49
追加
intentfence_x402_readiness
2026年9月17日12:49
追加
intentfence_x402_assessment
2026年9月17日12:49
追加
intentfence_verified_preflight
2026年9月17日12:49
追加
intentfence_policy_pack
2026年9月17日12:49
追加
intentfence_preflight
2026年9月17日12:49
追加
intentfence_checkout
2026年9月17日12:49
追加
intentfence_agent_risk_scan
2026年9月17日12:49
追加
intentfence_authorize_action
2026年9月17日12:49