ScopeProof
Machine-verifiable authorization checks for autonomous AI agents.
Sollte ich dies verwenden
Qualität und Sicherheit
Basierend auf einer automatisierten Analyse der Tool-Definitionen und der Einhaltung des Protokolls.
Kontextkosten
Dies ist die ungefähre Anzahl der Tokens, die jedes Mal verbraucht werden, wenn die Tools des Servers in den Kontext eines Modells geladen werden. Höhere Werte verringern die Aufmerksamkeit, die für andere Aufgaben verfügbar ist.
Installieren
Installation mit einem Klick
Fügen Sie dies Ihrer Datei `claude_desktop_config.json` hinzu:
{
"mcpServers": {
"scopeproof": {
"url": "https://scopeproof.davisvillelabs.com/mcp"
}
}
}Remote-Endpunkte
https://scopeproof.davisvillelabs.com/mcpstreamable-httpWas es kann
Tool-Inventar
Tools (3)
🟢preflight(authority, action, context)
Validate whether a structured authority envelope contains enough explicit constraints for ScopeProof to evaluate one action. Free. Returns no substantive authorization verdict and accepts no credentials, raw prompts, arbitrary request bodies, or secrets.
Eingabe-Schema
{
"type": "object",
"properties": {
"authority": {
"type": "object",
"required": [
"allowedActions",
"allowedResources"
],
"additionalProperties": false,
"properties": {
"schemaVersion": {
"type": "string",
"maxLength": 64
},
"principal": {
"type": "string",
"maxLength": 160
},
"issuedAt": {
"type": "string",
"format": "date-time"
},
"notBefore": {
"type": "string",
"format": "date-time"
},
"expiresAt": {
"type": "string",
"format": "date-time"
},
"allowedActions": {
"type": "array",
"minItems": 1,
"maxItems": 64,
"items": {
"type": "string"
}
},
"deniedActions": {
"type": "array",
"maxItems": 64,
"items": {
"type": "string"
}
},
"allowedResources": {
"type": "array",
"minItems": 1,
"maxItems": 64,
"items": {
"type": "string"
}
},
"deniedResources": {
"type": "array",
"maxItems": 64,
"items": {
"type": "string"
}
},
"methods": {
"type": "array",
"maxItems": 24,
"items": {
"type": "string"
}
},
"tools": {
"type": "array",
"maxItems": 64,
"items": {
"type": "string"
}
},
"environments": {
"type": "array",
"maxItems": 32,
"items": {
"type": "string"
}
},
"dataClasses": {
"type": "array",
"maxItems": 32,
"items": {
"type": "string"
}
},
"maxSpend": {
"type": "object",
"required": [
"amountMinor",
"currency"
],
"additionalProperties": false,
"properties": {
"amountMinor": {
"type": "integer",
"minimum": 0
},
"currency": {
"type": "string",
"pattern": "^[A-Z]{3}$"
}
}
},
"allowDestructive": {
"type": "boolean"
},
"allowIrreversible": {
"type": "boolean"
},
"approvalRequiredFor": {
"type": "array",
"maxItems": 32,
"items": {
"type": "string"
}
}
}
},
"action": {
"type": "object",
"required": [
"type",
"resource"
],
"additionalProperties": false,
"properties": {
"type": {
"type": "string",
"maxLength": 64
},
"resource": {
"type": "string",
"maxLength": 1024
},
"method": {
"type": "string",
"maxLength": 12
},
"tool": {
"type": "string",
"maxLength": 200
},
"environment": {
"type": "string",
"maxLength": 80
},
"dataClass": {
"type": "string",
"maxLength": 80
},
"amount": {
"type": "object",
"required": [
"amountMinor",
"currency"
],
"additionalProperties": false,
"properties": {
"amountMinor": {
"type": "integer",
"minimum": 0
},
"currency": {
"type": "string",
"pattern": "^[A-Z]{3}$"
}
}
},
"destructive": {
"type": "boolean",
"description": "Set true when the proposed action is destructive even if its action type or HTTP method is not intrinsically classified as destructive."
},
"irreversible": {
"type": "boolean"
}
}
},
"context": {
"type": "object",
"additionalProperties": false,
"properties": {
"humanApprovalPresent": {
"type": "boolean",
"description": "Caller assertion that required human approval has already occurred. ScopeProof records this as caller-asserted and does not independently verify the human identity or approval event."
}
}
}
},
"required": [
"authority",
"action"
],
"additionalProperties": false
}🟢check_action(authority, action, context)
Determine whether one proposed action is within explicitly supplied authority. $0.01 stablecoin machine payment. Returns within_scope, outside_scope, or review_required plus deterministic reason codes, policy/action digests, and a tamper-evident receipt. This is scope enforcement against supplied authority, not identity verification, legal authorization, or a safety guarantee.
Eingabe-Schema
{
"type": "object",
"properties": {
"authority": {
"type": "object",
"required": [
"allowedActions",
"allowedResources"
],
"additionalProperties": false,
"properties": {
"schemaVersion": {
"type": "string",
"maxLength": 64
},
"principal": {
"type": "string",
"maxLength": 160
},
"issuedAt": {
"type": "string",
"format": "date-time"
},
"notBefore": {
"type": "string",
"format": "date-time"
},
"expiresAt": {
"type": "string",
"format": "date-time"
},
"allowedActions": {
"type": "array",
"minItems": 1,
"maxItems": 64,
"items": {
"type": "string"
}
},
"deniedActions": {
"type": "array",
"maxItems": 64,
"items": {
"type": "string"
}
},
"allowedResources": {
"type": "array",
"minItems": 1,
"maxItems": 64,
"items": {
"type": "string"
}
},
"deniedResources": {
"type": "array",
"maxItems": 64,
"items": {
"type": "string"
}
},
"methods": {
"type": "array",
"maxItems": 24,
"items": {
"type": "string"
}
},
"tools": {
"type": "array",
"maxItems": 64,
"items": {
"type": "string"
}
},
"environments": {
"type": "array",
"maxItems": 32,
"items": {
"type": "string"
}
},
"dataClasses": {
"type": "array",
"maxItems": 32,
"items": {
"type": "string"
}
},
"maxSpend": {
"type": "object",
"required": [
"amountMinor",
"currency"
],
"additionalProperties": false,
"properties": {
"amountMinor": {
"type": "integer",
"minimum": 0
},
"currency": {
"type": "string",
"pattern": "^[A-Z]{3}$"
}
}
},
"allowDestructive": {
"type": "boolean"
},
"allowIrreversible": {
"type": "boolean"
},
"approvalRequiredFor": {
"type": "array",
"maxItems": 32,
"items": {
"type": "string"
}
}
}
},
"action": {
"type": "object",
"required": [
"type",
"resource"
],
"additionalProperties": false,
"properties": {
"type": {
"type": "string",
"maxLength": 64
},
"resource": {
"type": "string",
"maxLength": 1024
},
"method": {
"type": "string",
"maxLength": 12
},
"tool": {
"type": "string",
"maxLength": 200
},
"environment": {
"type": "string",
"maxLength": 80
},
"dataClass": {
"type": "string",
"maxLength": 80
},
"amount": {
"type": "object",
"required": [
"amountMinor",
"currency"
],
"additionalProperties": false,
"properties": {
"amountMinor": {
"type": "integer",
"minimum": 0
},
"currency": {
"type": "string",
"pattern": "^[A-Z]{3}$"
}
}
},
"destructive": {
"type": "boolean",
"description": "Set true when the proposed action is destructive even if its action type or HTTP method is not intrinsically classified as destructive."
},
"irreversible": {
"type": "boolean"
}
}
},
"context": {
"type": "object",
"additionalProperties": false,
"properties": {
"humanApprovalPresent": {
"type": "boolean",
"description": "Caller assertion that required human approval has already occurred. ScopeProof records this as caller-asserted and does not independently verify the human identity or approval event."
}
}
}
},
"required": [
"authority",
"action"
],
"additionalProperties": false
}🟢verify_receipt(receipt)
Verify the cryptographic integrity of one ScopeProof receipt without exposing the server signing key. Free and repeatable.
Eingabe-Schema
{
"type": "object",
"properties": {
"receipt": {
"type": "object"
}
},
"required": [
"receipt"
],
"additionalProperties": false
}Community
Nachweis