XGuard — Payment Decision & Discovery

Payment decisions, durable evidence, x402 resource discovery and live gateway status for AI agents.

Should I use this

Quality & Safety

B
Description quality
95%
Schema completeness
64%
Naming quality
80%
Poisoning risk
100%
Permission match
100%
Protocol compliance
100%

Based on automated analysis of tool definitions and protocol compliance.

Context Cost

~988Tokens (tool definitions)
~775 BTypical response size
Moderate attention impact (0.77% of 128k context)

This is the approximate number of tokens consumed each time the server's tools are loaded into a model's context. Higher counts reduce the attention available for other tasks.

Install

One-Click Install

Add this to your `claude_desktop_config.json` file:

{
  "mcpServers": {
    "xguard": {
      "url": "https://xguard-mainnet.maqamapp.workers.dev/mcp"
    }
  }
}

Remote endpoints

https://xguard-mainnet.maqamapp.workers.dev/mcpstreamable-http
https://xguardgate.com/mcpstreamable-http

What it can do

Tool inventory

Tools (8)

🟢 Read-only🟡 Write🔴 Delete⚪ Unknown
🔴xguard_execute(intent, operation, capability, input, idempotency_key)

Execute an explicit scoped provider operation, or a supported public-source outcome. intent:demo is free. Never infer a mutation from ambiguous text.

Input Schema

{
  "type": "object",
  "properties": {
    "intent": {
      "type": [
        "string",
        "object"
      ]
    },
    "operation": {
      "type": "string"
    },
    "capability": {
      "type": "string"
    },
    "input": {
      "type": "object"
    },
    "idempotency_key": {
      "type": "string"
    }
  },
  "additionalProperties": true
}
🔴xguard_secretless_call(capability, operation, input, target, method, ...)

Call an allowed provider operation with a capability. Enforces scope, call/credit budget and billing before server-side credential injection. Writes require idempotency_key.

Input Schema

{
  "type": "object",
  "properties": {
    "capability": {
      "type": "string",
      "description": "Scoped XGuard capability, never an upstream key."
    },
    "operation": {
      "type": "string",
      "enum": [
        "github.repository.read",
        "github.issue.create",
        "github.issue.comment",
        "github.pull_request.create",
        "cloudflare.zone.read",
        "cloudflare.worker.metadata",
        "slack.channel.read",
        "slack.message.send",
        "notion.page.read",
        "notion.database.read",
        "notion.page.create",
        "notion.page.update",
        "openai.response.create",
        "anthropic.message.create",
        "gemini.content.generate",
        "stripe.customer.read"
      ]
    },
    "input": {
      "type": "object"
    },
    "target": {
      "type": "string",
      "format": "uri"
    },
    "method": {
      "type": "string",
      "enum": [
        "GET",
        "HEAD",
        "POST",
        "PUT",
        "PATCH",
        "DELETE"
      ]
    },
    "body_json": {},
    "idempotency_key": {
      "type": "string",
      "minLength": 8,
      "maxLength": 128
    }
  },
  "required": [
    "capability"
  ],
  "additionalProperties": false,
  "anyOf": [
    {
      "required": [
        "operation",
        "input"
      ]
    },
    {
      "required": [
        "target"
      ]
    }
  ]
}
🟢xguard_preflight(intent, operation, capability, input, idempotency_key)

Inspect validation, scope and remaining capability budget without reserving, billing or executing. Execution rechecks everything.

Input Schema

{
  "type": "object",
  "properties": {
    "intent": {
      "type": [
        "string",
        "object"
      ]
    },
    "operation": {
      "type": "string"
    },
    "capability": {
      "type": "string"
    },
    "input": {
      "type": "object"
    },
    "idempotency_key": {
      "type": "string"
    }
  },
  "additionalProperties": true
}
🟢xguard_quote(intent, operation, capability, input, idempotency_key)

Inspect XGuard credit pricing for a capability, or obtain a signed x402 quote for a public outcome. Does not execute.

Input Schema

{
  "type": "object",
  "properties": {
    "intent": {
      "type": [
        "string",
        "object"
      ]
    },
    "operation": {
      "type": "string"
    },
    "capability": {
      "type": "string"
    },
    "input": {
      "type": "object"
    },
    "idempotency_key": {
      "type": "string"
    }
  },
  "additionalProperties": true
}
🟢xguard_verify_receipt(proof, receipt, result_sha256)

Verify a ProofRail proof and optionally its bound x402 receipt and result digest. Signature validity does not prove source truth.

Input Schema

{
  "type": "object",
  "properties": {
    "proof": {
      "type": "string",
      "maxLength": 16000
    },
    "receipt": {
      "type": "object"
    },
    "result_sha256": {
      "type": "string",
      "pattern": "^[a-f0-9]{64}$"
    }
  },
  "required": [
    "proof"
  ],
  "additionalProperties": false
}
🟢xguard_discover

Find the paid API catalog and buying instructions, plus explicit provider operations and input schemas.

Input Schema

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
🟢xguard_status

Read observed execution/MCP metrics and configuration; empty observations do not imply uptime.

Input Schema

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
🟢xguard_get_result(payment_identifier, quote)

Recover a paid public outcome with its payment identifier and original signed quote without execution or another payment.

Input Schema

{
  "type": "object",
  "properties": {
    "payment_identifier": {
      "type": "string"
    },
    "quote": {
      "type": "string"
    }
  },
  "required": [
    "payment_identifier",
    "quote"
  ],
  "additionalProperties": false
}

Community

Rate this Server

Evidence

Recent observations

verifiedversion not recorded8 tools
failed observationversion not recorded—
verifiedversion not recorded3 tools