mcp
Issue signed receipts for AI agent actions; verify any receipt offline - free, no account.
我该使用它吗
质量与安全性
基于对工具定义和协议合规性的自动分析。
上下文开销
这是每次将服务器的工具加载到模型上下文窗口时所消耗的大致 token 数。数值越高,可用于其他任务的注意力就越少。
安装
一键安装
将以下内容添加到你的 `claude_desktop_config.json` 文件中:
{
"mcpServers": {
"mcp": {
"command": "npx",
"args": [
"@scytalex-llc/pcrzero-mcp"
]
}
}
}可运行的软件包
0.2.0streamable-http远程端点
https://mcp.pcrzero.com/mcpstreamable-http它能做什么
工具清单
工具(3)
⚪issue_receipt(document, documents, policy_id, policy, nonce, ...)
Adjudicates an attestation document against a policy and returns the verdict together with a signed receipt pair — the durable, independently checkable proof that this decision was made, by these keys, over this document. **Metered: every call bills one `receipt_verifications` unit against the API key configured for this server, and a `fail` verdict bills exactly like a `pass`. You are paying for the adjudication, not for the answer you wanted.** This is the only tool here that spends. If you already hold a receipt and want to know whether it is genuine, that is `verify_receipt`, which is free and needs no key.
输入模式
{
"type": "object",
"properties": {
"document": {
"type": "string",
"description": "Base64 attestation document (single-document form)."
},
"documents": {
"type": "array",
"items": {
"type": "string"
},
"description": "Base64 attestation documents (batch form)."
},
"policy_id": {
"type": "string",
"description": "Stored policy id (pol_…)."
},
"policy": {
"type": "object",
"additionalProperties": {},
"description": "Inline policy object (API wire shape)."
},
"nonce": {
"type": "string"
},
"receipt": {
"type": "boolean",
"description": "Request a signed receipt (default true)."
}
},
"additionalProperties": false,
"$schema": "http://json-schema.org/draft-07/schema#"
}⚪verify_receipt(receipt, keyset, conformance)
Checks a PCRZERO receipt pair against the signing keyset: whether the signature holds, and whether the receipt says what it appears to say. **Free, with no API key and no account, and it stays free.** Offline by default — supply `keyset` and this call touches the network not at all; omit it and the server fetches the public keyset from api.pcrzero.com once. The result field `keyset_source` tells you which of the two happened, every time. This tool issues nothing, bills nothing, and cannot spend. It is the half of PCRZERO you never pay for.
输入模式
{
"type": "object",
"properties": {
"receipt": {
"type": "string",
"description": "Base64url receipt envelope from issue_receipt / the API."
},
"keyset": {
"type": "object",
"properties": {
"keys": {
"type": "array",
"items": {
"type": "object",
"additionalProperties": {}
}
}
},
"required": [
"keys"
],
"additionalProperties": false,
"description": "Optional keyset in GET /v1/keys shape. When supplied, no network is used."
},
"conformance": {
"type": "string",
"enum": [
"full",
"classical-only"
]
}
},
"required": [
"receipt"
],
"additionalProperties": false,
"$schema": "http://json-schema.org/draft-07/schema#"
}🟢get_keyset
Returns the current PCRZERO signing keyset — key ids, public halves, and each key's status. Public and unauthenticated: no API key, no cost, no account. This is the same document an outside party fetches to check a PCRZERO receipt without trusting us, and fetching it is how you stop taking our word for anything.
输入模式
{
"type": "object",
"properties": {},
"$schema": "http://json-schema.org/draft-07/schema#"
}社区
证据