WORKS Public Verifier

Independent static verification for exact immutable public GitHub commits.

我該用這個嗎

品質與安全性

A
說明品質
100%
結構描述完整度
87%
命名品質
80%
汙染風險
100%
權限相符程度
100%
協定合規性
100%

根據工具定義與協定合規性的自動化分析。

上下文成本

~1,181Token(工具定義)
~3.8 KB典型回應大小
中等的注意力影響(128k 上下文的 0.92%)

這是每次將伺服器的工具載入模型上下文時所消耗的約略 token 數量。數量越高,可用於其他工作的注意力就越少。

安裝

一鍵安裝

將以下內容加入你的 `claude_desktop_config.json` 檔案:

{
  "mcpServers": {
    "works-public": {
      "url": "https://works-runner.vercel.app/mcp-registry"
    }
  }
}

遠端端點

https://works-runner.vercel.app/mcp-registrystreamable-http

它能做什麼

工具清單

工具(3)

🟢 唯讀🟡 寫入🔴 刪除⚪ 未知
🟢works_public_eligibility(source_kind, repository_url, repository_visibility, reference, claim)

Fast deterministic preflight for tool-only clients. Call this before any other WORKS tool when eligibility is uncertain, especially for mutable or abbreviated refs, local or private repositories, and build, test, runtime, deployment, or production claims. It does not download a repository or persist data. If eligible is false, stop without calling verification.

輸入結構描述

{
  "type": "object",
  "properties": {
    "source_kind": {
      "type": "string",
      "enum": [
        "public-github",
        "private-github",
        "local",
        "other"
      ],
      "description": "Classify where the requested source lives."
    },
    "repository_url": {
      "description": "Exact repository URL supplied by the user, if any.",
      "type": "string",
      "maxLength": 512
    },
    "repository_visibility": {
      "type": "string",
      "enum": [
        "public",
        "private",
        "unknown"
      ],
      "description": "Use public only when the request identifies a public repository."
    },
    "reference": {
      "description": "Reference exactly as supplied; never expand a branch, tag, or short SHA.",
      "type": "string",
      "maxLength": 128
    },
    "claim": {
      "type": "string",
      "enum": [
        "node-package",
        "env-safety",
        "static-evidence",
        "build",
        "tests",
        "runtime",
        "deployment",
        "production-readiness",
        "other"
      ],
      "description": "Use static-evidence for generic signed or static repository evidence; it maps conservatively to node-package. Never use it for build, tests, runtime, deployment, or production claims."
    }
  },
  "required": [
    "source_kind",
    "repository_visibility",
    "claim"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}

輸出結構描述

{
  "type": "object",
  "properties": {
    "eligible": {
      "type": "boolean"
    },
    "reason": {
      "type": "string",
      "enum": [
        "eligible",
        "public_github_required",
        "public_repository_required",
        "valid_repository_url_required",
        "exact_commit_required",
        "supported_static_claim_required"
      ]
    },
    "contract": {
      "anyOf": [
        {
          "type": "string",
          "enum": [
            "node-package",
            "env-safety"
          ]
        },
        {
          "type": "null"
        }
      ]
    },
    "next_tool": {
      "anyOf": [
        {
          "type": "string",
          "const": "works_verify_public_repository"
        },
        {
          "type": "null"
        }
      ]
    },
    "report": {
      "type": "string"
    }
  },
  "required": [
    "eligible",
    "reason",
    "contract",
    "next_tool",
    "report"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#",
  "additionalProperties": false
}
🟢works_public_contract_lint(contract)

After a task is already known to have a public GitHub repository, an exact lowercase 40-character commit SHA, and a matching supported static claim, return the pinned contract digest and scope. Do not call for mutable or abbreviated refs, local or private repositories, runtime, builds, tests, deployments, or broad production-readiness claims.

輸入結構描述

{
  "type": "object",
  "properties": {
    "contract": {
      "type": "string",
      "enum": [
        "node-package",
        "env-safety"
      ]
    }
  },
  "required": [
    "contract"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}

輸出結構描述

{
  "type": "object",
  "properties": {
    "valid": {
      "type": "boolean",
      "const": true
    },
    "id": {
      "type": "string"
    },
    "title": {
      "type": "string"
    },
    "description": {
      "type": "string"
    },
    "digest": {
      "type": "string"
    },
    "execution": {
      "type": "string",
      "const": "none"
    },
    "trust": {
      "type": "string"
    }
  },
  "required": [
    "valid",
    "id",
    "title",
    "description",
    "digest",
    "execution",
    "trust"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#",
  "additionalProperties": false
}
🟢works_verify_public_repository(contract, repository_url, commit_sha)

Use only after works_public_eligibility returns eligible. Download that immutable public GitHub snapshot, run the selected pinned static contract without executing repository commands, and return a signed receipt. Return the report field verbatim and stop.

輸入結構描述

{
  "type": "object",
  "properties": {
    "contract": {
      "type": "string",
      "enum": [
        "node-package",
        "env-safety"
      ]
    },
    "repository_url": {
      "type": "string",
      "maxLength": 512,
      "format": "uri"
    },
    "commit_sha": {
      "type": "string",
      "pattern": "^[0-9a-f]{40}$"
    }
  },
  "required": [
    "contract",
    "repository_url",
    "commit_sha"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}

輸出結構描述

{
  "type": "object",
  "properties": {
    "status": {
      "type": "string",
      "enum": [
        "passed",
        "failed",
        "blocked",
        "error"
      ]
    },
    "contract": {
      "type": "object",
      "properties": {
        "id": {
          "type": "string"
        },
        "digest": {
          "type": "string"
        },
        "trust": {
          "type": "string"
        }
      },
      "required": [
        "id",
        "digest",
        "trust"
      ],
      "additionalProperties": false
    },
    "source": {
      "type": "object",
      "properties": {
        "kind": {
          "type": "string",
          "const": "github-public"
        },
        "repository": {
          "type": "string"
        },
        "commit": {
          "type": "string",
          "pattern": "^[0-9a-f]{40}$"
        }
      },
      "required": [
        "kind",
        "repository",
        "commit"
      ],
      "additionalProperties": false
    },
    "outcomes": {
      "type": "array",
      "items": {
        "type": "object",
        "properties": {
          "id": {
            "type": "string"
          },
          "status": {
            "type": "string",
            "enum": [
              "pass",
              "fail",
              "blocked"
            ]
          }
        },
        "required": [
          "id",
          "status"
        ],
        "additionalProperties": false
      }
    },
    "trust": {
      "type": "object",
      "properties": {
        "key_id": {
          "type": "string"
        },
        "pinned_key_identity": {
          "type": "string",
          "const": "matched"
        }
      },
      "required": [
        "key_id",
        "pinned_key_identity"
      ],
      "additionalProperties": false
    },
    "report": {
      "type": "string"
    },
    "receipt": {
      "type": "object",
      "propertyNames": {
        "type": "string"
      },
      "additionalProperties": {}
    },
    "limitations": {
      "type": "array",
      "items": {
        "type": "string"
      }
    }
  },
  "required": [
    "status",
    "contract",
    "source",
    "outcomes",
    "trust",
    "report",
    "receipt",
    "limitations"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#",
  "additionalProperties": false
}

社群

為此伺服器評分

證據

近期觀測

已驗證未記錄版本3 個工具
已驗證未記錄版本3 個工具
已驗證未記錄版本3 個工具