security-preflight

Static MCP, source-code and injection-indicator checks with redacted signed receipts.

Sollte ich dies verwenden

Qualität und Sicherheit

B
Qualität der Beschreibung
90%
Vollständigkeit des Schemas
67%
Qualität der Benennung
84%
Risiko der Vergiftung
100%
Übereinstimmung der Berechtigungen
100%
Einhaltung des Protokolls
100%

Befunde (1)

  • LOWTool 'describe_agent' description lacks action verbin describe_agent

Basierend auf einer automatisierten Analyse der Tool-Definitionen und der Einhaltung des Protokolls.

Kontextkosten

~754Tokens (Tool-Definitionen)
~1.2 KBTypische Antwortgröße
Mittlere Auswirkung auf die Aufmerksamkeit (0.59% von 128k Kontext)

Dies ist die ungefähre Anzahl der Tokens, die jedes Mal verbraucht werden, wenn die Tools des Servers in den Kontext eines Modells geladen werden. Höhere Werte verringern die Aufmerksamkeit, die für andere Aufgaben verfügbar ist.

Installieren

Installation mit einem Klick

Fügen Sie dies Ihrer Datei `claude_desktop_config.json` hinzu:

{
  "mcpServers": {
    "security-preflight": {
      "url": "https://mcp.viridisconservation.com/security-preflight/mcp"
    }
  }
}

Remote-Endpunkte

https://mcp.viridisconservation.com/security-preflight/mcpstreamable-http
https://mcp.viridis-security.com/security-preflight/mcpstreamable-http

Was es kann

Tool-Inventar

Tools (5)

🟢 Nur lesen🟡 Schreiben🔴 Löschen⚪ Unbekannt
⚪security_preflight(agent_id, manifest, subject_profile_sha256, policy, sample_inputs, ...)

Run a $1 static Security Preflight and return a signed receipt. New x402 payer wallets may receive the fleet-wide $0.01 introductory call. No deployed endpoint is fetched or tested. Importing the receipt into an Agent Market profile is a separate, explicit action.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "agent_id": {
      "title": "Agent Id",
      "type": "string"
    },
    "manifest": {
      "additionalProperties": true,
      "title": "Manifest",
      "type": "object"
    },
    "subject_profile_sha256": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "title": "Subject Profile Sha256"
    },
    "policy": {
      "anyOf": [
        {
          "additionalProperties": true,
          "type": "object"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "title": "Policy"
    },
    "sample_inputs": {
      "anyOf": [
        {
          "items": {
            "type": "string"
          },
          "type": "array"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "title": "Sample Inputs"
    },
    "payment_ref": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "title": "Payment Ref"
    },
    "request_id": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "title": "Request Id"
    }
  },
  "required": [
    "agent_id",
    "manifest"
  ],
  "title": "security_preflightArguments"
}

Ausgabe-Schema

{
  "type": "object",
  "properties": {
    "result": {
      "title": "Result",
      "type": "string"
    }
  },
  "required": [
    "result"
  ],
  "title": "security_preflightOutput"
}
⚪scan_source(agent_id, source)

$1 bounded inline VulnCanon source scan; indicators, not proven exploits. At most 64 KiB, 2000 lines, 4096 characters per line. No model calls, repository fetching or code execution. Returns a redacted signed receipt.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "agent_id": {
      "title": "Agent Id",
      "type": "string"
    },
    "source": {
      "title": "Source",
      "type": "string"
    }
  },
  "required": [
    "agent_id",
    "source"
  ],
  "title": "scan_sourceArguments"
}

Ausgabe-Schema

{
  "type": "object",
  "properties": {
    "result": {
      "title": "Result",
      "type": "string"
    }
  },
  "required": [
    "result"
  ],
  "title": "scan_sourceOutput"
}
⚪screen_injection(agent_id, texts)

$1 batch of 1–20 text samples screened for deterministic injection markers. Maximum 64 KiB total. Heuristic indicators, not calibrated probabilities or a guarantee of safety. No model calls or automatic follow-on purchase.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "agent_id": {
      "title": "Agent Id",
      "type": "string"
    },
    "texts": {
      "items": {
        "type": "string"
      },
      "title": "Texts",
      "type": "array"
    }
  },
  "required": [
    "agent_id",
    "texts"
  ],
  "title": "screen_injectionArguments"
}

Ausgabe-Schema

{
  "type": "object",
  "properties": {
    "result": {
      "title": "Result",
      "type": "string"
    }
  },
  "required": [
    "result"
  ],
  "title": "screen_injectionOutput"
}
🟢get_security_receipt(receipt_id)

Read a previously issued public, input-redacted receipt.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "receipt_id": {
      "title": "Receipt Id",
      "type": "string"
    }
  },
  "required": [
    "receipt_id"
  ],
  "title": "get_security_receiptArguments"
}

Ausgabe-Schema

{
  "type": "object",
  "properties": {
    "result": {
      "title": "Result",
      "type": "string"
    }
  },
  "required": [
    "result"
  ],
  "title": "get_security_receiptOutput"
}
🟢describe_agent

Describe scope, evidence boundary, inputs, and outputs.

Eingabe-Schema

{
  "type": "object",
  "properties": {},
  "title": "describe_agentArguments"
}

Ausgabe-Schema

{
  "type": "object",
  "properties": {
    "result": {
      "title": "Result",
      "type": "string"
    }
  },
  "required": [
    "result"
  ],
  "title": "describe_agentOutput"
}

Community

Diesen Server bewerten

Nachweis

Aktuelle Beobachtungen

verifiziertVersion nicht aufgezeichnet5 Tools
verifiziertVersion nicht aufgezeichnet5 Tools
verifiziertVersion nicht aufgezeichnet5 Tools
verifiziertVersion nicht aufgezeichnet5 Tools
verifiziertVersion nicht aufgezeichnet5 Tools
verifiziertVersion nicht aufgezeichnet5 Tools