MCP 서버

PayeeProof

io.github.davisvillelabs/payeeproof
결제 및 핀테크 보안 공개 · 연결 가능 MCP 2026-07-28

이 MCP로 할 수 있는 일

Assesses whether a payment destination and its claimed service identity are consistent before an autonomous payment.

payeeproof.check_payee
Check payee
Paid $0.01 public machine identity and payment-destination consistency assessment. Use immediately before an autonomous machine payment to compare the requested HTTPS endpoint, claimed service expectations, HTTP 402 challenge, resource binding, public discovery metadata, and prior PayeeProof observations. PayeeProof never authorizes the target payment, never forwards target payment credentials, and actively probes only anonymous public GET/HEAD requests under a bounded SSRF-safe contract; state-changing target methods require caller-observed 402 evidence. Missing evidence can remain unknown. This is not KYC, AML, sanctions screening, fraud certification, legal identity verification, legal advice, or a delivery guarantee.
외부 접근 가능
입력 스키마
{'type': 'object', 'required': ['target_url'], 'properties': {'operation': {'type': 'string', 'maxLength': 160, 'description': 'Optional target operation or tool name the caller expects to invoke.'}, 'live_probe': {'type': 'boolean', 'description': 'Whether PayeeProof may perform its bounded anonymous public probe. Only safe GET or HEAD probes are eligible.'}, 'target_url': {'type': 'string', 'format': 'uri', 'description': 'Public HTTPS target URL whose machine-payment identity should be checked. Default HTTPS port 443 only.'}, 'expected_asset': {'type': 'string', 'description': 'Optional expected public payment asset identifier or symbol.'}, 'request_method': {'enum': ['GET', 'HEAD', 'POST', 'PUT', 'PATCH', 'DELETE'], 'type': 'string', 'default': 'GET', 'description': 'Method of the target operation. PayeeProof actively probes only GET or HEAD; state-changing methods require caller-observed 402 evidence.'}, 'expected_domain': {'type': 'string', 'description': 'Optional hostname the caller expects after URL normalization. Used for deterministic domain consistency checks.'}, 'expected_pay_to': {'type': 'string', 'description': 'Optional expected public payment destination. EVM addresses are normalized case-insensitively before comparison.'}, 'expected_network': {'type': 'string', 'description': 'Optional expected payment network identifier, such as a CAIP-2 network, for comparison with observed metadata.'}, 'expected_currency': {'type': 'string', 'description': 'Optional expected target pricing currency or stablecoin symbol when exposed by the target challenge.'}, 'expected_protocol': {'enum': ['x402', 'mpp'], 'type': 'string', 'description': 'Optional machine-payment protocol the caller expects the target to advertise.'}, 'observed_response': {'type': 'object', 'properties': {'link': {'type': 'string', 'description': 'Observed public Link header when relevant to target discovery or canonical identity.'}, 'location': {'type': 'string', 'description': 'Observed public Location header from a redirect. PayeeProof records but does not follow redirects.'}, 'http_status': {'type': 'integer', 'maximum': 599, 'minimum': 100, 'description': 'Observed target HTTP status, normally 402 for payment-required evidence.'}, 'observed_at': {'type': 'string', 'format': 'date-time', 'description': 'ISO 8601 timestamp indicating when the caller observed the supplied target response metadata.'}, 'content_location': {'type': 'string', 'description': 'Observed public Content-Location header when relevant to canonical resource identity.'}, 'payment_required': {'type': 'string', 'description': 'Observed public PAYMENT-REQUIRED header value from an x402 response. This is challenge metadata, not a payment credential.'}, 'www_authenticate': {'type': 'string', 'description': 'Observed public WWW-Authenticate header value, such as an MPP Payment challenge. Do not include an authorization credential.'}}, 'description': 'Optional caller-observed public target response metadata. Required for state-changing target methods. Never include a payment credential, Authorization, Cookie, or response body.', 'additionalProperties': False}, 'expected_price_cents': {'type': 'integer', 'minimum': 1, 'description': 'Optional expected target price in integer USD cents for comparison with observed public payment metadata.'}, 'expected_service_name': {'type': 'string', 'maxLength': 160, 'description': 'Optional public service name the caller expects the target payment challenge or discovery metadata to identify.'}}, 'additionalProperties': False}
출력 스키마
{'type': 'object', 'required': ['schemaVersion', 'checkedAt', 'assessment', 'target', 'claimedIdentity', 'observedIdentity', 'normalizedPaymentFacts', 'checks', 'historicalContinuity', 'evidence', 'limitations', 'recommendedMachineNextStep', 'deterministicDigest'], 'properties': {'checks': {'type': 'array', 'items': {'type': 'object', 'required': ['id', 'status', 'summary'], 'properties': {'id': {'type': 'string'}, 'status': {'enum': ['pass', 'warn', 'fail', 'unknown']}, 'summary': {'type': 'string'}, 'evidence': {'type': 'array'}}}}, 'target': {'type': 'object'}, 'evidence': {'type': 'array'}, 'checkedAt': {'type': 'string', 'format': 'date-time'}, 'assessment': {'enum': ['consistent', 'review_required', 'conflict']}, 'limitations': {'type': 'array', 'items': {'type': 'string'}}, 'schemaVersion': {'const': 'payeeproof-check.v1'}, 'claimedIdentity': {'type': 'object'}, 'receiptEnvelope': {'$ref': 'https://davisvillelabs.com/agents/davisville-receipt-envelope.v1.schema.json'}, 'observedIdentity': {'type': 'object'}, 'deterministicDigest': {'type': 'string', 'pattern': '^[a-f0-9]{64}$'}, 'historicalContinuity': {'type': 'object'}, 'normalizedPaymentFacts': {'type': 'object'}, 'recommendedMachineNextStep': {'type': 'object'}}, 'additionalProperties': True}
추가됨
payeeproof.check_payee
2026년 9월 28일 2:40 AM