MCP 服务器

trust-oracle

io.github.New1Direction/trust-oracle
MCP 与智能体基础设施 安全 公开且可连接 MCP 2026-07-28

此 MCP 可以做什么

Grades MCP server security and reliability, monitors tool-schema drift, and provides pre-execution trust verdicts.

check_mcp_drift
Check whether an MCP server's tool definitions have changed since it was last trusted (rug-pull / schema-drift detection, the CVE-2025-54136 class). Returns how long the tool surface has been stable, how many times it has changed, and the last change. Use after approval to detect post-trust mutation.
输入模式
{'type': 'object', 'required': ['url'], 'properties': {'url': {'type': 'string', 'description': 'The MCP server endpoint URL to check.'}}}
grade_mcp_server
Independently grade an MCP server (A–F) BEFORE connecting an agent to it. Returns spec-conformance, security (OWASP MCP Top 10), reliability, tool-hygiene and transparency sub-scores plus a connect/caution/avoid recommendation. Audited by wmcp.sh; the grade is free and never for sale.
输入模式
{'type': 'object', 'required': ['url'], 'properties': {'url': {'type': 'string', 'description': 'The MCP server endpoint URL to grade (e.g. https://mcp.example.com/mcp).'}, 'fresh': {'type': 'boolean', 'description': 'Force a live re-probe instead of returning a recent cached grade.'}}}
verify_before_execute
Verify an MCP server immediately BEFORE you execute any of its tools. Combines the continuously-watched trust grade and live drift status into a single connect/caution/avoid verdict (ok | caution | drifted | failing | ungraded), so you can gate the call in one step. Free, read-tier. The grade is independent and never for sale.
输入模式
{'type': 'object', 'required': ['url'], 'properties': {'url': {'type': 'string', 'description': 'The MCP server endpoint URL you are about to call.'}, 'fresh': {'type': 'boolean', 'description': 'Force a live re-probe instead of returning a recent cached grade (<6h).'}}}
已添加
verify_before_execute
2026年9月17日 12:45
已添加
check_mcp_drift
2026年9月17日 12:45
已添加
grade_mcp_server
2026年9月17日 12:45