turva-mcp

Read-only MCP server for turva.dev, an agent-readiness audit and advisory service.

我該用這個嗎

品質與安全性

B
說明品質
100%
結構描述完整度
30%
命名品質
100%
汙染風險
100%
權限相符程度
100%
協定合規性
100%

根據工具定義與協定合規性的自動化分析。

上下文成本

~2,029Token(工具定義)
~3.1 KB典型回應大小
中等的注意力影響(128k 上下文的 1.59%)

這是每次將伺服器的工具載入模型上下文時所消耗的約略 token 數量。數量越高,可用於其他工作的注意力就越少。

安裝

一鍵安裝

將以下內容加入你的 `claude_desktop_config.json` 檔案:

{
  "mcpServers": {
    "turva-mcp": {
      "url": "https://mcp.turva.dev/mcp"
    }
  }
}

遠端端點

https://mcp.turva.dev/mcpstreamable-http

它能做什麼

工具清單

工具(5)

🟢 唯讀🟡 寫入🔴 刪除⚪ 未知
🟢get_services

Returns turva.dev's service catalog: the Shopify agent storefront check, agent-readiness audit, advisory, implementation, agent operations, and MCP server design, plus the engagement model and pricing (fixed list prices for the Shopify agent storefront check, audit, advisory and implementation; agent operations and MCP server design on request), and two implementation add-ons that carry a fixed price and are sold only with the diagnosis they follow, bought with it, with its report, or after the report and before implementation starts. Use this when a user asks what turva.dev offers, what it costs, or how an engagement works. For how to reach turva.dev use get_contact instead, and for the rules an engagement follows use get_principles. Read-only: returns static JSON that is compiled into the Worker, so it changes nothing and updates only on deploy.

輸入結構描述

{
  "type": "object",
  "properties": {},
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "additionalProperties": false
}

輸出結構描述

{
  "type": "object",
  "properties": {
    "pricing_model": {
      "type": "string"
    },
    "pricing_note": {
      "type": "string"
    },
    "currency": {
      "type": "string"
    },
    "vat_included": {
      "type": "boolean"
    },
    "engagement": {
      "type": "object",
      "properties": {
        "communication": {
          "type": "string"
        },
        "notes": {
          "type": "array",
          "items": {
            "type": "string"
          }
        }
      },
      "required": [
        "communication",
        "notes"
      ],
      "additionalProperties": false
    },
    "services": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "id": {
            "type": "string"
          },
          "name": {
            "type": "string"
          },
          "url": {
            "type": "string",
            "description": "The turva.dev page that describes the service."
          },
          "sample_url": {
            "description": "A published sample of the deliverable, where one exists.",
            "type": "string"
          },
          "price": {
            "anyOf": [
              {
                "type": "number"
              },
              {
                "type": "string",
                "const": "on request"
              }
            ],
            "description": "EUR, VAT not included, or on request."
          },
          "unit": {
            "type": "string"
          },
          "duration": {
            "type": "string"
          },
          "minimum_commitment": {
            "type": "string"
          },
          "summary": {
            "type": "string"
          },
          "deliverable": {
            "type": "string"
          }
        },
        "required": [
          "id",
          "name",
          "url",
          "price",
          "summary",
          "deliverable"
        ],
        "additionalProperties": false
      }
    },
    "bundled_implementation": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "id": {
            "type": "string"
          },
          "name": {
            "type": "string"
          },
          "price": {
            "type": "number"
          },
          "unit": {
            "type": "string"
          },
          "requires": {
            "type": "string",
            "description": "The id of the service this add-on is sold with."
          },
          "sold_separately": {
            "type": "boolean"
          },
          "summary": {
            "type": "string"
          }
        },
        "required": [
          "id",
          "name",
          "price",
          "unit",
          "requires",
          "sold_separately",
          "summary"
        ],
        "additionalProperties": false
      }
    }
  },
  "required": [
    "pricing_model",
    "pricing_note",
    "currency",
    "vat_included",
    "engagement",
    "services",
    "bundled_implementation"
  ],
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "additionalProperties": false
}
🟢get_agent_readiness

Returns turva.dev's own agent-readiness score from an independent public scanner (isitagentready.com), including category sub-scores, with the measurement date and a link to the scanner's start page, where a new check can be run (the link does not open the recorded reading). Use this when a user asks how turva.dev scores, whether its claims are verifiable, or what proof backs the audit service. For web-security scan results, which are a separate measurement, use get_security_evidence instead. Read-only: returns static JSON that is compiled into the Worker, so it changes nothing and updates only on deploy.

輸入結構描述

{
  "type": "object",
  "properties": {},
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "additionalProperties": false
}

輸出結構描述

{
  "type": "object",
  "properties": {
    "domain": {
      "type": "string"
    },
    "measured_at": {
      "type": "string",
      "description": "Date of the reading, YYYY-MM-DD."
    },
    "note": {
      "type": "string"
    },
    "scans": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "provider": {
            "type": "string"
          },
          "result": {
            "type": "string"
          },
          "note": {
            "type": "string"
          },
          "categories": {
            "type": "object",
            "propertyNames": {
              "type": "string"
            },
            "additionalProperties": {
              "type": "string"
            }
          },
          "url": {
            "type": "string"
          }
        },
        "required": [
          "provider",
          "result",
          "note",
          "categories",
          "url"
        ],
        "additionalProperties": false
      }
    }
  },
  "required": [
    "domain",
    "measured_at",
    "note",
    "scans"
  ],
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "additionalProperties": false
}
🟢get_security_evidence

Returns the latest public web-security scan results for turva.dev's own domain (Hardenize, Internet.nl site and mail), each with its scan date. Use this when a user asks about turva.dev's own security posture or wants evidence beyond agent-readiness scores. For the agent-readiness score itself, which is a separate measurement, use get_agent_readiness instead. Read-only: returns static JSON that is compiled into the Worker, so it changes nothing and updates only on deploy.

輸入結構描述

{
  "type": "object",
  "properties": {},
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "additionalProperties": false
}

輸出結構描述

{
  "type": "object",
  "properties": {
    "domain": {
      "type": "string"
    },
    "measured_at": {
      "type": "string",
      "description": "Date of the scans, YYYY-MM-DD."
    },
    "scans": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "provider": {
            "type": "string"
          },
          "result": {
            "type": "string"
          },
          "score": {
            "type": "number"
          },
          "scale": {
            "type": "string"
          },
          "note": {
            "type": "string"
          },
          "measured_at": {
            "description": "Date of this reading, YYYY-MM-DD, when it differs from the top-level date.",
            "type": "string"
          },
          "url": {
            "type": "string"
          }
        },
        "required": [
          "provider",
          "url"
        ],
        "additionalProperties": false
      }
    },
    "note": {
      "type": "string"
    }
  },
  "required": [
    "domain",
    "measured_at",
    "scans",
    "note"
  ],
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "additionalProperties": false
}
🟢get_principles

Returns turva.dev's engagement principles: async-only, least access, the result shows up in scanner numbers, and open and verifiable. Use this when a user asks how turva.dev works with clients or what rules an engagement follows. For what is sold and what it costs use get_services instead, and for how to start use get_contact. Read-only: returns static JSON that is compiled into the Worker, so it changes nothing and updates only on deploy.

輸入結構描述

{
  "type": "object",
  "properties": {},
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "additionalProperties": false
}

輸出結構描述

{
  "type": "object",
  "properties": {
    "model": {
      "type": "string"
    },
    "rules": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "id": {
            "type": "string"
          },
          "title": {
            "type": "string"
          },
          "rationale": {
            "type": "string"
          }
        },
        "required": [
          "id",
          "title",
          "rationale"
        ],
        "additionalProperties": false
      }
    }
  },
  "required": [
    "model",
    "rules"
  ],
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "additionalProperties": false
}
🟢get_contact

Returns who runs turva.dev and the official ways to reach it: the operator and business details, the email address, the Signal link, the LinkedIn profile, the correspondence languages, the first-reply time and the access an audit needs. Use this when a user asks who is behind turva.dev, how to contact it, how to start an audit or what access has to be granted. For what is sold and what it costs use get_services instead. Read-only: returns static JSON that is compiled into the Worker, so it changes nothing and updates only on deploy.

輸入結構描述

{
  "type": "object",
  "properties": {},
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "additionalProperties": false
}

輸出結構描述

{
  "type": "object",
  "properties": {
    "email": {
      "type": "string"
    },
    "signal": {
      "type": "string"
    },
    "linkedin": {
      "type": "string"
    },
    "business_id": {
      "type": "string"
    },
    "location": {
      "type": "string"
    },
    "engagement": {
      "type": "string"
    },
    "correspondence_languages": {
      "type": "array",
      "items": {
        "type": "string"
      }
    },
    "first_reply": {
      "type": "string"
    },
    "channel_note": {
      "type": "string"
    },
    "how_to_start": {
      "type": "array",
      "items": {
        "type": "string"
      }
    },
    "operator": {
      "type": "object",
      "properties": {
        "name": {
          "type": "string"
        },
        "run_by": {
          "type": "string"
        },
        "legal_form": {
          "type": "string"
        },
        "business_id": {
          "type": "string"
        },
        "vat_id": {
          "type": "string"
        },
        "location": {
          "type": "string"
        },
        "team": {
          "type": "string"
        },
        "background": {
          "type": "string"
        },
        "company_page": {
          "type": "string",
          "description": "The turva.dev page that states the business details."
        }
      },
      "required": [
        "name",
        "run_by",
        "legal_form",
        "business_id",
        "vat_id",
        "location",
        "team",
        "background",
        "company_page"
      ],
      "additionalProperties": false
    }
  },
  "required": [
    "email",
    "signal",
    "linkedin",
    "business_id",
    "location",
    "engagement",
    "correspondence_languages",
    "first_reply",
    "channel_note",
    "how_to_start",
    "operator"
  ],
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "additionalProperties": false
}

社群

為此伺服器評分

證據

近期觀測

已驗證未記錄版本5 個工具
已驗證未記錄版本5 個工具
已驗證未記錄版本5 個工具