security-preflight

Static MCP, source-code and injection-indicator checks with redacted signed receipts.

使うべきか

品質と安全性

B
説明の品質
90%
スキーマの完全性
67%
命名の品質
84%
ポイズニングのリスク
100%
権限の一致
100%
プロトコルへの準拠
100%

検出事項(1)

  • LOWTool 'describe_agent' description lacks action verbdescribe_agent 内

ツール定義とプロトコルへの準拠に関する自動分析に基づいています。

コンテキストコスト

~754トークン数(ツール定義)
~1.2 KB一般的なレスポンスサイズ
注意への影響は中程度(128k コンテキストの 0.59%)

これは、サーバーのツールがモデルのコンテキストに読み込まれるたびに消費されるおおよそのトークン数です。数が多いほど、ほかのタスクに使える注意が減ります。

インストール

ワンクリックインストール

これを `claude_desktop_config.json` ファイルに追加してください:

{
  "mcpServers": {
    "security-preflight": {
      "url": "https://mcp.viridisconservation.com/security-preflight/mcp"
    }
  }
}

リモートエンドポイント

https://mcp.viridisconservation.com/security-preflight/mcpstreamable-http
https://mcp.viridis-security.com/security-preflight/mcpstreamable-http

できること

ツール一覧

ツール(5)

🟢 読み取り専用🟡 書き込み🔴 削除⚪ 不明
⚪security_preflight(agent_id, manifest, subject_profile_sha256, policy, sample_inputs, ...)

Run a $1 static Security Preflight and return a signed receipt. New x402 payer wallets may receive the fleet-wide $0.01 introductory call. No deployed endpoint is fetched or tested. Importing the receipt into an Agent Market profile is a separate, explicit action.

入力スキーマ

{
  "type": "object",
  "properties": {
    "agent_id": {
      "title": "Agent Id",
      "type": "string"
    },
    "manifest": {
      "additionalProperties": true,
      "title": "Manifest",
      "type": "object"
    },
    "subject_profile_sha256": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "title": "Subject Profile Sha256"
    },
    "policy": {
      "anyOf": [
        {
          "additionalProperties": true,
          "type": "object"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "title": "Policy"
    },
    "sample_inputs": {
      "anyOf": [
        {
          "items": {
            "type": "string"
          },
          "type": "array"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "title": "Sample Inputs"
    },
    "payment_ref": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "title": "Payment Ref"
    },
    "request_id": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "title": "Request Id"
    }
  },
  "required": [
    "agent_id",
    "manifest"
  ],
  "title": "security_preflightArguments"
}

出力スキーマ

{
  "type": "object",
  "properties": {
    "result": {
      "title": "Result",
      "type": "string"
    }
  },
  "required": [
    "result"
  ],
  "title": "security_preflightOutput"
}
⚪scan_source(agent_id, source)

$1 bounded inline VulnCanon source scan; indicators, not proven exploits. At most 64 KiB, 2000 lines, 4096 characters per line. No model calls, repository fetching or code execution. Returns a redacted signed receipt.

入力スキーマ

{
  "type": "object",
  "properties": {
    "agent_id": {
      "title": "Agent Id",
      "type": "string"
    },
    "source": {
      "title": "Source",
      "type": "string"
    }
  },
  "required": [
    "agent_id",
    "source"
  ],
  "title": "scan_sourceArguments"
}

出力スキーマ

{
  "type": "object",
  "properties": {
    "result": {
      "title": "Result",
      "type": "string"
    }
  },
  "required": [
    "result"
  ],
  "title": "scan_sourceOutput"
}
⚪screen_injection(agent_id, texts)

$1 batch of 1–20 text samples screened for deterministic injection markers. Maximum 64 KiB total. Heuristic indicators, not calibrated probabilities or a guarantee of safety. No model calls or automatic follow-on purchase.

入力スキーマ

{
  "type": "object",
  "properties": {
    "agent_id": {
      "title": "Agent Id",
      "type": "string"
    },
    "texts": {
      "items": {
        "type": "string"
      },
      "title": "Texts",
      "type": "array"
    }
  },
  "required": [
    "agent_id",
    "texts"
  ],
  "title": "screen_injectionArguments"
}

出力スキーマ

{
  "type": "object",
  "properties": {
    "result": {
      "title": "Result",
      "type": "string"
    }
  },
  "required": [
    "result"
  ],
  "title": "screen_injectionOutput"
}
🟢get_security_receipt(receipt_id)

Read a previously issued public, input-redacted receipt.

入力スキーマ

{
  "type": "object",
  "properties": {
    "receipt_id": {
      "title": "Receipt Id",
      "type": "string"
    }
  },
  "required": [
    "receipt_id"
  ],
  "title": "get_security_receiptArguments"
}

出力スキーマ

{
  "type": "object",
  "properties": {
    "result": {
      "title": "Result",
      "type": "string"
    }
  },
  "required": [
    "result"
  ],
  "title": "get_security_receiptOutput"
}
🟢describe_agent

Describe scope, evidence boundary, inputs, and outputs.

入力スキーマ

{
  "type": "object",
  "properties": {},
  "title": "describe_agentArguments"
}

出力スキーマ

{
  "type": "object",
  "properties": {
    "result": {
      "title": "Result",
      "type": "string"
    }
  },
  "required": [
    "result"
  ],
  "title": "describe_agentOutput"
}

コミュニティ

このサーバーを評価する

エビデンス

最近の観測

検証済みバージョンは記録されていませんツール 5 件
検証済みバージョンは記録されていませんツール 5 件
検証済みバージョンは記録されていませんツール 5 件
検証済みバージョンは記録されていませんツール 5 件