MCP Operation Risk

Operation-level risk guidance for consolidated MCP tools, including schema drift and retry signals.

我该使用它吗

质量与安全性

A
描述质量
100%
模式完整度
65%
命名质量
80%
投毒风险
100%
权限匹配度
100%
协议合规性
100%

发现(1)

  • LOWTool 'describe_operation_risk_service' name length outside 3-30 range在 describe_operation_risk_service 中

基于对工具定义和协议合规性的自动分析。

上下文开销

~983token 数(工具定义)
~4.8 KB典型响应大小
对注意力有中等影响(占 128k 上下文窗口的 0.77%)

这是每次将服务器的工具加载到模型上下文窗口时所消耗的大致 token 数。数值越高,可用于其他任务的注意力就越少。

安装

一键安装

将以下内容添加到你的 `claude_desktop_config.json` 文件中:

{
  "mcpServers": {
    "mcp-operation-risk": {
      "url": "https://87-106-119-237.sslip.io/mcp-operation-risk/mcp"
    }
  }
}

远程端点

https://87-106-119-237.sslip.io/mcp-operation-risk/mcpstreamable-http

它能做什么

工具清单

工具(2)

🟢 只读🟡 写入🔴 删除⚪ 未知
🟢describe_operation_risk_service

Check whether the actual operation inside an MCP tool call is safe before execution. Use this when one MCP tool exposes multiple operations with different side effects, so whole-tool permissions are too coarse. Provide the native MCP server identity, the tool's tools/list metadata and the intended arguments. For supported consolidated tools, distinguish read, create/add, update/mutate and delete/destructive operations. Return ALLOW, DENY, or REQUIRE_APPROVAL. Unknown, unsupported, ambiguous, or schema-changed calls fail closed with REQUIRE_APPROVAL. The evaluator never executes the source operation.

输入模式

{
  "type": "object",
  "properties": {},
  "title": "describe_operation_risk_serviceArguments"
}

输出模式

{
  "type": "object",
  "additionalProperties": true,
  "title": "describe_operation_risk_serviceDictOutput"
}
🟢evaluate_operation_risk(source, tool, arguments)

Check whether the actual operation inside an MCP tool call is safe before execution. Use this when one MCP tool exposes multiple operations with different side effects, so whole-tool permissions are too coarse. Provide the native MCP server identity, the tool's tools/list metadata and the intended arguments. For supported consolidated tools, distinguish read, create/add, update/mutate and delete/destructive operations. Return ALLOW, DENY, or REQUIRE_APPROVAL. Unknown, unsupported, ambiguous, or schema-changed calls fail closed with REQUIRE_APPROVAL. The evaluator never executes the source operation.

输入模式

{
  "type": "object",
  "properties": {
    "source": {
      "additionalProperties": false,
      "properties": {
        "server": {
          "additionalProperties": false,
          "properties": {
            "name": {
              "description": "Name reported by the MCP server during initialize; used as a supported-manifest lookup hint.",
              "title": "Name",
              "type": "string"
            },
            "version": {
              "anyOf": [
                {
                  "type": "string"
                },
                {
                  "type": "null"
                }
              ],
              "description": "Server version reported during initialize, or null when unavailable.",
              "title": "Version"
            }
          },
          "required": [
            "name",
            "version"
          ],
          "title": "NativeServerIdentity",
          "type": "object",
          "description": "MCP server identity from the connection's initialize response."
        },
        "protocol_version": {
          "anyOf": [
            {
              "type": "string"
            },
            {
              "type": "null"
            }
          ],
          "description": "Negotiated MCP protocol version, or null when unavailable.",
          "title": "Protocol Version"
        }
      },
      "required": [
        "server",
        "protocol_version"
      ],
      "title": "NativeSource",
      "type": "object",
      "description": "MCP server and negotiated protocol identity for the source tool."
    },
    "tool": {
      "additionalProperties": false,
      "properties": {
        "name": {
          "description": "Exact tool name from the MCP server's tools/list response.",
          "title": "Name",
          "type": "string"
        },
        "title": {
          "anyOf": [
            {
              "type": "string"
            },
            {
              "type": "null"
            }
          ],
          "default": null,
          "description": "Tool title from tools/list, when provided by the server.",
          "title": "Title"
        },
        "description": {
          "anyOf": [
            {
              "type": "string"
            },
            {
              "type": "null"
            }
          ],
          "description": "Tool description from tools/list, or null if the server omitted it.",
          "title": "Description"
        },
        "inputSchema": {
          "additionalProperties": true,
          "description": "Complete inputSchema from tools/list; used to validate the intended arguments and match a supported tool manifest.",
          "title": "Inputschema",
          "type": "object"
        },
        "annotations": {
          "additionalProperties": true,
          "description": "Tool annotations from tools/list, such as read-only or destructive hints; use an empty object when absent.",
          "title": "Annotations",
          "type": "object"
        },
        "execution": {
          "anyOf": [
            {
              "additionalProperties": true,
              "type": "object"
            },
            {
              "type": "null"
            }
          ],
          "default": null,
          "description": "Tool execution metadata from tools/list, when present.",
          "title": "Execution"
        },
        "outputSchema": {
          "anyOf": [
            {
              "additionalProperties": true,
              "type": "object"
            },
            {
              "type": "null"
            }
          ],
          "default": null,
          "description": "Tool output schema from tools/list, when present.",
          "title": "Outputschema"
        },
        "icons": {
          "anyOf": [
            {
              "items": {
                "additionalProperties": true,
                "type": "object"
              },
              "type": "array"
            },
            {
              "type": "null"
            }
          ],
          "default": null,
          "description": "Tool icons from tools/list, when present.",
          "title": "Icons"
        },
        "_meta": {
          "anyOf": [
            {
              "additionalProperties": true,
              "type": "object"
            },
            {
              "type": "null"
            }
          ],
          "default": null,
          "description": "Relevant tool metadata from tools/list, when present.",
          "title": "Meta"
        }
      },
      "required": [
        "name",
        "description",
        "inputSchema"
      ],
      "title": "NativeToolRecord",
      "type": "object",
      "description": "The complete relevant Tool record returned by the source server's tools/list."
    },
    "arguments": {
      "additionalProperties": true,
      "description": "Arguments intended for the source MCP tools/call request being evaluated. The evaluator does not execute that call.",
      "title": "Arguments",
      "type": "object"
    }
  },
  "required": [
    "source",
    "tool",
    "arguments"
  ],
  "additionalProperties": false,
  "title": "NativeMcpEvaluationRequest"
}

社区

评价此服务器

证据

最近观测

已验证未记录版本2 个工具