mcp

Issue signed receipts for AI agent actions; verify any receipt offline - free, no account.

我该使用它吗

质量与安全性

A
描述质量
100%
模式完整度
70%
命名质量
93%
投毒风险
100%
权限匹配度
100%
协议合规性
100%

基于对工具定义和协议合规性的自动分析。

上下文开销

~661token 数(工具定义)
~1.2 KB典型响应大小
对注意力有中等影响(占 128k 上下文窗口的 0.52%)

这是每次将服务器的工具加载到模型上下文窗口时所消耗的大致 token 数。数值越高,可用于其他任务的注意力就越少。

安装

一键安装

将以下内容添加到你的 `claude_desktop_config.json` 文件中:

{
  "mcpServers": {
    "mcp": {
      "command": "npx",
      "args": [
        "@scytalex-llc/pcrzero-mcp"
      ]
    }
  }
}

可运行的软件包

npm@scytalex-llc/pcrzero-mcp0.2.0streamable-http

远程端点

https://mcp.pcrzero.com/mcpstreamable-http

它能做什么

工具清单

工具(3)

🟢 只读🟡 写入🔴 删除⚪ 未知
⚪issue_receipt(document, documents, policy_id, policy, nonce, ...)

Adjudicates an attestation document against a policy and returns the verdict together with a signed receipt pair — the durable, independently checkable proof that this decision was made, by these keys, over this document. **Metered: every call bills one `receipt_verifications` unit against the API key configured for this server, and a `fail` verdict bills exactly like a `pass`. You are paying for the adjudication, not for the answer you wanted.** This is the only tool here that spends. If you already hold a receipt and want to know whether it is genuine, that is `verify_receipt`, which is free and needs no key.

输入模式

{
  "type": "object",
  "properties": {
    "document": {
      "type": "string",
      "description": "Base64 attestation document (single-document form)."
    },
    "documents": {
      "type": "array",
      "items": {
        "type": "string"
      },
      "description": "Base64 attestation documents (batch form)."
    },
    "policy_id": {
      "type": "string",
      "description": "Stored policy id (pol_…)."
    },
    "policy": {
      "type": "object",
      "additionalProperties": {},
      "description": "Inline policy object (API wire shape)."
    },
    "nonce": {
      "type": "string"
    },
    "receipt": {
      "type": "boolean",
      "description": "Request a signed receipt (default true)."
    }
  },
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}
⚪verify_receipt(receipt, keyset, conformance)

Checks a PCRZERO receipt pair against the signing keyset: whether the signature holds, and whether the receipt says what it appears to say. **Free, with no API key and no account, and it stays free.** Offline by default — supply `keyset` and this call touches the network not at all; omit it and the server fetches the public keyset from api.pcrzero.com once. The result field `keyset_source` tells you which of the two happened, every time. This tool issues nothing, bills nothing, and cannot spend. It is the half of PCRZERO you never pay for.

输入模式

{
  "type": "object",
  "properties": {
    "receipt": {
      "type": "string",
      "description": "Base64url receipt envelope from issue_receipt / the API."
    },
    "keyset": {
      "type": "object",
      "properties": {
        "keys": {
          "type": "array",
          "items": {
            "type": "object",
            "additionalProperties": {}
          }
        }
      },
      "required": [
        "keys"
      ],
      "additionalProperties": false,
      "description": "Optional keyset in GET /v1/keys shape. When supplied, no network is used."
    },
    "conformance": {
      "type": "string",
      "enum": [
        "full",
        "classical-only"
      ]
    }
  },
  "required": [
    "receipt"
  ],
  "additionalProperties": false,
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢get_keyset

Returns the current PCRZERO signing keyset — key ids, public halves, and each key's status. Public and unauthenticated: no API key, no cost, no account. This is the same document an outside party fetches to check a PCRZERO receipt without trusting us, and fetching it is how you stop taking our word for anything.

输入模式

{
  "type": "object",
  "properties": {},
  "$schema": "http://json-schema.org/draft-07/schema#"
}

社区

评价此服务器

证据

最近观测

已验证未记录版本3 个工具
已验证未记录版本3 个工具