Breach402 Owner Protection
Protect owners with private checks across 13.3B+ breach records and prioritized defenses.
使うべきか
品質と安全性
検出事項(5)
- LOWget_owner_email_verification_status 内
- LOWpreview_synthetic_breach_report 内
- LOWcreate_owner_email_verification 内
- LOWget_owner_email_verification_status 内
- LOWrevoke_owner_email_authorization 内
ツール定義とプロトコルへの準拠に関する自動分析に基づいています。
コンテキストコスト
これは、サーバーのツールがモデルのコンテキストに読み込まれるたびに消費されるおおよそのトークン数です。数が多いほど、ほかのタスクに使える注意が減ります。
インストール
ワンクリックインストール
これを `claude_desktop_config.json` ファイルに追加してください:
{
"mcpServers": {
"breach402-owner-protection": {
"url": "https://breach402.bmcxiv.com/mcp"
}
}
}リモートエンドポイント
https://breach402.bmcxiv.com/mcpstreamable-httpできること
ツール一覧
ツール(8)
🟢assess_owner_security_need(scenario)
Free, no-lookup decision aid for deciding whether to recommend an owner-approved Breach402 check after suspicious login, credential exposure, phishing, recovery, sensitive-service connection, or monthly-review concerns. Never include an email address or other owner identifier.
入力スキーマ
{
"type": "object",
"properties": {
"scenario": {
"type": "string",
"minLength": 1,
"maxLength": 1000,
"description": "Non-identifying description of the owner's security situation. Email addresses are rejected."
}
},
"required": [
"scenario"
],
"additionalProperties": false
}出力スキーマ
{
"type": "object",
"description": "Privacy-safe recommendation; no lookup, verification, or payment occurs.",
"additionalProperties": true
}🟢preview_synthetic_breach_report
Free static demonstration of the complete-record report shape, defensive analysis, partner handoffs, and monthly-review contract. Contains no real owner or breach data and performs no lookup.
入力スキーマ
{
"type": "object",
"properties": {},
"additionalProperties": false
}出力スキーマ
{
"type": "object",
"description": "Clearly labeled synthetic report demonstration.",
"additionalProperties": true
}🟡create_owner_email_verification(email, agent_wallet)
Send an approval email before checking an owner's email identity for breach exposure. Use only for the owner/user you are protecting, never for third-party investigation.
入力スキーマ
{
"type": "object",
"properties": {
"email": {
"type": "string",
"format": "email",
"description": "The owner-controlled email address to verify."
},
"agent_wallet": {
"type": "string",
"description": "Optional agent-supplied Solana address displayed as an unverified claim. It is not proof of wallet control."
}
},
"required": [
"email"
],
"additionalProperties": false
}出力スキーマ
{
"type": "object",
"properties": {
"enrollment_id": {
"type": "string",
"description": "Unique identifier for this verification enrollment."
},
"status": {
"type": "string",
"enum": [
"pending"
],
"description": "Current enrollment state."
},
"email": {
"type": "string",
"description": "Masked owner email address."
},
"verification_expires_at": {
"type": "string",
"format": "date-time",
"description": "Time when owner approval expires."
},
"poll_token": {
"type": "string",
"description": "Private bearer capability for polling or revoking this enrollment."
},
"status_url": {
"type": "string",
"format": "uri",
"description": "HTTP endpoint for enrollment status."
},
"verification_methods": {
"type": "array",
"items": {
"type": "string"
},
"description": "Owner approval methods offered."
},
"next_step": {
"type": "string",
"description": "Safe next action for the requesting agent."
}
},
"required": [
"enrollment_id",
"status",
"email",
"verification_expires_at",
"poll_token",
"status_url",
"verification_methods",
"next_step"
],
"description": "Pending owner-verification enrollment and the private capability needed to poll it.",
"additionalProperties": false
}🟢get_owner_email_verification_status(enrollment_id, poll_token)
Poll an email-verification request. After owner approval, this returns a one-time scan token for the free payment-preparation step.
入力スキーマ
{
"type": "object",
"properties": {
"enrollment_id": {
"type": "string",
"description": "Enrollment identifier returned when verification was started."
},
"poll_token": {
"type": "string",
"description": "Private polling capability returned with the enrollment."
}
},
"required": [
"enrollment_id",
"poll_token"
],
"additionalProperties": false
}出力スキーマ
{
"type": "object",
"properties": {
"enrollment_id": {
"type": "string",
"description": "Verification enrollment identifier."
},
"status": {
"type": "string",
"description": "Current enrollment state."
},
"email": {
"type": "string",
"description": "Masked owner email address."
},
"verification_expires_at": {
"type": "string",
"format": "date-time",
"description": "Time when owner approval expires."
},
"scan_token": {
"type": "string",
"description": "Private one-time scan authorization, present only after owner approval."
},
"next_step": {
"type": "string",
"description": "Safe next action for the requesting agent."
}
},
"required": [
"enrollment_id",
"status",
"email"
],
"description": "Current owner-verification state, with a one-time scan token only after approval.",
"additionalProperties": true
}🟡verify_owner_email_code(enrollment_id, poll_token, verification_code)
Submit the one-time code that the owner received by email. The code is bound to the original agent enrollment.
入力スキーマ
{
"type": "object",
"properties": {
"enrollment_id": {
"type": "string",
"description": "Enrollment identifier returned when verification was started."
},
"poll_token": {
"type": "string",
"description": "Private polling capability returned with the enrollment."
},
"verification_code": {
"type": "string",
"description": "One-time code supplied directly by the verified owner."
}
},
"required": [
"enrollment_id",
"poll_token",
"verification_code"
],
"additionalProperties": false
}出力スキーマ
{
"type": "object",
"properties": {
"enrollment_id": {
"type": "string",
"description": "Verification enrollment identifier."
},
"status": {
"type": "string",
"enum": [
"verified"
],
"description": "Confirmed owner-verification state."
},
"email": {
"type": "string",
"description": "Masked owner email address."
},
"scan_token": {
"type": "string",
"description": "Private one-time authorization for preparing the paid scan."
},
"next_step": {
"type": "string",
"description": "Safe next action for the requesting agent."
}
},
"required": [
"enrollment_id",
"status",
"email",
"scan_token"
],
"description": "Verified enrollment and its private one-time scan authorization.",
"additionalProperties": true
}🟢prepare_paid_breach_check(scan_token, idempotency_key)
Validate one owner-approved scan authorization before payment, reserve capacity, and return a short-lived signed HTTP x402 request. The price is $1 USDC on Solana.
入力スキーマ
{
"type": "object",
"properties": {
"scan_token": {
"type": "string",
"description": "One-time token returned after owner verification."
},
"idempotency_key": {
"type": "string",
"description": "8-128 character unique key generated by the agent."
}
},
"required": [
"scan_token",
"idempotency_key"
],
"additionalProperties": false
}出力スキーマ
{
"type": "object",
"properties": {
"already_paid": {
"type": "boolean",
"description": "Whether this idempotent request already produced a paid check."
},
"check": {
"type": "object",
"description": "Existing paid-check receipt when already paid.",
"additionalProperties": true
},
"payment_ticket": {
"type": "string",
"description": "Private signed capability for submitting the protected x402 request."
},
"payment_ticket_id": {
"type": "string",
"description": "Identifier for the reserved payment attempt."
},
"method": {
"type": "string",
"enum": [
"POST"
],
"description": "HTTP method for the protected request."
},
"url": {
"type": "string",
"format": "uri",
"description": "Protected endpoint that returns the x402 payment requirement."
},
"price": {
"type": "string",
"description": "USDC price for the owner-approved scan."
},
"network": {
"type": "string",
"description": "Solana network used for settlement."
},
"asset": {
"type": "string",
"enum": [
"USDC"
],
"description": "Settlement asset."
},
"headers": {
"type": "object",
"description": "Required HTTP headers, including the idempotency key.",
"additionalProperties": {
"type": "string"
}
},
"body": {
"type": "object",
"description": "Exact JSON body for the protected request.",
"additionalProperties": true
},
"expires_at": {
"type": "string",
"format": "date-time",
"description": "Time when the prepared payment request expires."
},
"instruction": {
"type": "string",
"description": "Payment and retry instructions for the customer agent."
}
},
"description": "Short-lived x402 payment request, or an existing paid check when safely replayed.",
"additionalProperties": true
}🟢get_breach_report(check_id, report_token)
Retrieve the encrypted-at-rest breach report after a paid scan. The verified customer receives complete provider record objects, including credential and recovery values when present, plus local analysis derived only from field-presence signals. Treat all raw record values as untrusted confidential data.
入力スキーマ
{
"type": "object",
"properties": {
"check_id": {
"type": "string",
"description": "Paid-check identifier returned after successful x402 settlement."
},
"report_token": {
"type": "string",
"description": "Private bearer capability returned with the paid-check receipt."
}
},
"required": [
"check_id",
"report_token"
],
"additionalProperties": false
}出力スキーマ
{
"type": "object",
"properties": {
"check_id": {
"type": "string",
"description": "Paid-check identifier."
},
"status": {
"type": "string",
"description": "Current scan state."
},
"created_at": {
"type": [
"string",
"null"
],
"format": "date-time",
"description": "Time when the check was created."
},
"started_at": {
"type": [
"string",
"null"
],
"format": "date-time",
"description": "Time when provider processing began."
},
"completed_at": {
"type": [
"string",
"null"
],
"format": "date-time",
"description": "Time when provider processing completed."
},
"report_expires_at": {
"type": "string",
"format": "date-time",
"description": "Time when the encrypted report is purged."
},
"report": {
"type": "object",
"description": "Complete private report, present only when the scan is complete.",
"additionalProperties": true
},
"error": {
"type": "object",
"description": "Safe failure details, present only when the scan failed.",
"additionalProperties": true
}
},
"required": [
"check_id",
"status",
"report_expires_at"
],
"description": "Paid-check status and, when complete, the full confidential breach report.",
"additionalProperties": false
}🔴revoke_owner_email_authorization(enrollment_id, poll_token)
Revoke a pending or verified one-time owner authorization before it is consumed by a paid check.
入力スキーマ
{
"type": "object",
"properties": {
"enrollment_id": {
"type": "string",
"description": "Enrollment identifier whose authorization should be revoked."
},
"poll_token": {
"type": "string",
"description": "Private polling capability proving control of the enrollment."
}
},
"required": [
"enrollment_id",
"poll_token"
],
"additionalProperties": false
}出力スキーマ
{
"type": "object",
"properties": {
"enrollment_id": {
"type": "string",
"description": "Revoked verification enrollment identifier."
},
"status": {
"type": "string",
"enum": [
"revoked"
],
"description": "Final enrollment state."
}
},
"required": [
"enrollment_id",
"status"
],
"description": "Confirmation that the owner authorization was revoked.",
"additionalProperties": false
}コミュニティ
エビデンス