MCP Operation Risk

Operation-level risk guidance for consolidated MCP tools, including schema drift and retry signals.

Sollte ich dies verwenden

Qualität und Sicherheit

A
Qualität der Beschreibung
100%
Vollständigkeit des Schemas
65%
Qualität der Benennung
80%
Risiko der Vergiftung
100%
Übereinstimmung der Berechtigungen
100%
Einhaltung des Protokolls
100%

Befunde (1)

  • LOWTool 'describe_operation_risk_service' name length outside 3-30 rangein describe_operation_risk_service

Basierend auf einer automatisierten Analyse der Tool-Definitionen und der Einhaltung des Protokolls.

Kontextkosten

~983Tokens (Tool-Definitionen)
~4.8 KBTypische Antwortgröße
Mittlere Auswirkung auf die Aufmerksamkeit (0.77% von 128k Kontext)

Dies ist die ungefähre Anzahl der Tokens, die jedes Mal verbraucht werden, wenn die Tools des Servers in den Kontext eines Modells geladen werden. Höhere Werte verringern die Aufmerksamkeit, die für andere Aufgaben verfügbar ist.

Installieren

Installation mit einem Klick

Fügen Sie dies Ihrer Datei `claude_desktop_config.json` hinzu:

{
  "mcpServers": {
    "mcp-operation-risk": {
      "url": "https://87-106-119-237.sslip.io/mcp-operation-risk/mcp"
    }
  }
}

Remote-Endpunkte

https://87-106-119-237.sslip.io/mcp-operation-risk/mcpstreamable-http

Was es kann

Tool-Inventar

Tools (2)

🟢 Nur lesen🟡 Schreiben🔴 Löschen⚪ Unbekannt
🟢describe_operation_risk_service

Check whether the actual operation inside an MCP tool call is safe before execution. Use this when one MCP tool exposes multiple operations with different side effects, so whole-tool permissions are too coarse. Provide the native MCP server identity, the tool's tools/list metadata and the intended arguments. For supported consolidated tools, distinguish read, create/add, update/mutate and delete/destructive operations. Return ALLOW, DENY, or REQUIRE_APPROVAL. Unknown, unsupported, ambiguous, or schema-changed calls fail closed with REQUIRE_APPROVAL. The evaluator never executes the source operation.

Eingabe-Schema

{
  "type": "object",
  "properties": {},
  "title": "describe_operation_risk_serviceArguments"
}

Ausgabe-Schema

{
  "type": "object",
  "additionalProperties": true,
  "title": "describe_operation_risk_serviceDictOutput"
}
🟢evaluate_operation_risk(source, tool, arguments)

Check whether the actual operation inside an MCP tool call is safe before execution. Use this when one MCP tool exposes multiple operations with different side effects, so whole-tool permissions are too coarse. Provide the native MCP server identity, the tool's tools/list metadata and the intended arguments. For supported consolidated tools, distinguish read, create/add, update/mutate and delete/destructive operations. Return ALLOW, DENY, or REQUIRE_APPROVAL. Unknown, unsupported, ambiguous, or schema-changed calls fail closed with REQUIRE_APPROVAL. The evaluator never executes the source operation.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "source": {
      "additionalProperties": false,
      "properties": {
        "server": {
          "additionalProperties": false,
          "properties": {
            "name": {
              "description": "Name reported by the MCP server during initialize; used as a supported-manifest lookup hint.",
              "title": "Name",
              "type": "string"
            },
            "version": {
              "anyOf": [
                {
                  "type": "string"
                },
                {
                  "type": "null"
                }
              ],
              "description": "Server version reported during initialize, or null when unavailable.",
              "title": "Version"
            }
          },
          "required": [
            "name",
            "version"
          ],
          "title": "NativeServerIdentity",
          "type": "object",
          "description": "MCP server identity from the connection's initialize response."
        },
        "protocol_version": {
          "anyOf": [
            {
              "type": "string"
            },
            {
              "type": "null"
            }
          ],
          "description": "Negotiated MCP protocol version, or null when unavailable.",
          "title": "Protocol Version"
        }
      },
      "required": [
        "server",
        "protocol_version"
      ],
      "title": "NativeSource",
      "type": "object",
      "description": "MCP server and negotiated protocol identity for the source tool."
    },
    "tool": {
      "additionalProperties": false,
      "properties": {
        "name": {
          "description": "Exact tool name from the MCP server's tools/list response.",
          "title": "Name",
          "type": "string"
        },
        "title": {
          "anyOf": [
            {
              "type": "string"
            },
            {
              "type": "null"
            }
          ],
          "default": null,
          "description": "Tool title from tools/list, when provided by the server.",
          "title": "Title"
        },
        "description": {
          "anyOf": [
            {
              "type": "string"
            },
            {
              "type": "null"
            }
          ],
          "description": "Tool description from tools/list, or null if the server omitted it.",
          "title": "Description"
        },
        "inputSchema": {
          "additionalProperties": true,
          "description": "Complete inputSchema from tools/list; used to validate the intended arguments and match a supported tool manifest.",
          "title": "Inputschema",
          "type": "object"
        },
        "annotations": {
          "additionalProperties": true,
          "description": "Tool annotations from tools/list, such as read-only or destructive hints; use an empty object when absent.",
          "title": "Annotations",
          "type": "object"
        },
        "execution": {
          "anyOf": [
            {
              "additionalProperties": true,
              "type": "object"
            },
            {
              "type": "null"
            }
          ],
          "default": null,
          "description": "Tool execution metadata from tools/list, when present.",
          "title": "Execution"
        },
        "outputSchema": {
          "anyOf": [
            {
              "additionalProperties": true,
              "type": "object"
            },
            {
              "type": "null"
            }
          ],
          "default": null,
          "description": "Tool output schema from tools/list, when present.",
          "title": "Outputschema"
        },
        "icons": {
          "anyOf": [
            {
              "items": {
                "additionalProperties": true,
                "type": "object"
              },
              "type": "array"
            },
            {
              "type": "null"
            }
          ],
          "default": null,
          "description": "Tool icons from tools/list, when present.",
          "title": "Icons"
        },
        "_meta": {
          "anyOf": [
            {
              "additionalProperties": true,
              "type": "object"
            },
            {
              "type": "null"
            }
          ],
          "default": null,
          "description": "Relevant tool metadata from tools/list, when present.",
          "title": "Meta"
        }
      },
      "required": [
        "name",
        "description",
        "inputSchema"
      ],
      "title": "NativeToolRecord",
      "type": "object",
      "description": "The complete relevant Tool record returned by the source server's tools/list."
    },
    "arguments": {
      "additionalProperties": true,
      "description": "Arguments intended for the source MCP tools/call request being evaluated. The evaluator does not execute that call.",
      "title": "Arguments",
      "type": "object"
    }
  },
  "required": [
    "source",
    "tool",
    "arguments"
  ],
  "additionalProperties": false,
  "title": "NativeMcpEvaluationRequest"
}

Community

Diesen Server bewerten

Nachweis

Aktuelle Beobachtungen

verifiziertVersion nicht aufgezeichnet2 Tools