{
  "data": {
    "tool": {
      "category": "",
      "endpoint": "https://agentavow.com/mcp",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/agentavow-trust.json",
      "kind": "mcp",
      "listed": "indexed",
      "liveUrl": "https://www.anchorterminal.com/api/v1/live/agentavow-trust.json",
      "markdownUrl": "https://www.anchorterminal.com/tools/agentavow-trust.md",
      "mcpTools": {
        "check": {
          "checker": "anchor-check/1.0",
          "totalTokens": 1731,
          "counts": {
            "error": 0,
            "note": 1,
            "warn": 1
          },
          "findings": [
            {
              "rule": "TC11",
              "severity": "warn",
              "tool": "check_interaction_safety",
              "message": "1 parameter without a description: interaction_type",
              "fix": "Describe each one: format, units, an example, and what happens when it's left out."
            },
            {
              "rule": "TC24",
              "severity": "note",
              "message": "8 of 8 tools have no outputSchema",
              "fix": "Declare outputSchema for tools that return structured data, and return structuredContent that matches it."
            }
          ]
        },
        "checkedAt": "2026-10-04T22:21:56Z",
        "count": 8,
        "schemaTokens": 1731,
        "status": "ok",
        "tools": [
          {
            "name": "scan_repo",
            "title": "Scan a GitHub repo",
            "description": "Scan a public GitHub repository with AgentAvow and return whether it is safe for an agent to connect to: a 0-100 trust score, a plain safe / needs-review verdict, the findings behind it (with where and how to fix), and a signed, offline-verifiable attestation. Read-only, no account. Calls the AgentAvow public API at agentavow.com.",
            "inputSchema": {
              "properties": {
                "force": {
                  "description": "Re-scan now instead of returning the cached verdict (results cache ~1h). Use after the target has changed.",
                  "type": "boolean"
                },
                "owner": {
                  "description": "Repo owner (optional if 'repo' is already 'owner/name').",
                  "maxLength": 214,
                  "type": "string"
                },
                "repo": {
                  "description": "Repo as 'owner/name' (e.g. 'vercel/next.js'), or just the name when 'owner' is given separately.",
                  "maxLength": 214,
                  "type": "string"
                }
              },
              "required": [
                "repo"
              ],
              "type": "object"
            },
            "annotations": {
              "destructiveHint": false,
              "idempotentHint": true,
              "openWorldHint": true,
              "readOnlyHint": true,
              "title": "Scan a GitHub repo"
            }
          },
          {
            "name": "scan_package",
            "title": "Scan a package",
            "description": "Scan a published package (npm, PyPI, crates, Docker, or Hugging Face) with AgentAvow. Returns a 0-100 trust score, a safe / needs-review verdict, findings with remediation, and a signed attestation. Also reports repo-vs-artifact drift (files shipped that aren't in the source). Read-only; calls agentavow.com.",
            "inputSchema": {
              "properties": {
                "ecosystem": {
                  "description": "Alias for registry.",
                  "type": "string"
                },
                "force": {
                  "description": "Re-scan now instead of returning the cached verdict (results cache ~1h). Use after a new version ships.",
                  "type": "boolean"
                },
                "name": {
                  "description": "Package name, e.g. 'chalk' (or 'org/model' for hf).",
                  "maxLength": 214,
                  "type": "string"
                },
                "registry": {
                  "description": "Package registry: npm, pypi, crates, docker, or hf.",
                  "type": "string"
                },
                "surface": {
                  "description": "Alias for registry.",
                  "type": "string"
                }
              },
              "required": [
                "name"
              ],
              "type": "object"
            },
            "annotations": {
              "destructiveHint": false,
              "idempotentHint": true,
              "openWorldHint": true,
              "readOnlyHint": true,
              "title": "Scan a package"
            }
          },
          {
            "name": "scan_mcp_server",
            "title": "Scan an MCP server",
            "description": "Scan a live MCP server's tool definitions for tool-poisoning, prompt-injection, invisible-unicode, and manifest-execution risks before your agent connects to it. Returns a 0-100 trust score, a safe / needs-review verdict, findings, and a signed attestation. Read-only; calls the agentavow.com public API.",
            "inputSchema": {
              "properties": {
                "endpoint_url": {
                  "description": "The MCP server's https:// URL.",
                  "maxLength": 512,
                  "type": "string"
                },
                "force": {
                  "description": "Re-scan now instead of returning the cached verdict (results cache ~1h).",
                  "type": "boolean"
                }
              },
              "required": [
                "endpoint_url"
              ],
              "type": "object"
            },
            "annotations": {
              "destructiveHint": false,
              "idempotentHint": true,
              "openWorldHint": true,
              "readOnlyHint": true,
              "title": "Scan an MCP server"
            }
          },
          {
            "name": "verify_trust",
            "title": "Verify an entity's trust score",
            "description": "Verify an AgentAvow entity's trust score. Returns trust_score (0-1), trust_score_pct (0-100), trust_tier, and whether it meets a minimum threshold. Read-only, no auth. Use before interacting with an unknown agent.",
            "inputSchema": {
              "properties": {
                "entity_id": {
                  "description": "UUID of a registered AgentAvow entity (resolve one with lookup_identity; unknown ids return guidance, not an error).",
                  "maxLength": 64,
                  "type": "string"
                },
                "min_trust": {
                  "default": 0.3,
                  "description": "Min score, 0-1.",
                  "type": "number"
                }
              },
              "required": [
                "entity_id"
              ],
              "type": "object"
            },
            "annotations": {
              "destructiveHint": false,
              "idempotentHint": true,
              "openWorldHint": true,
              "readOnlyHint": true,
              "title": "Verify an entity's trust score"
            }
          },
          {
            "name": "check_interaction_safety",
            "title": "Check interaction safety",
            "description": "Check whether it is safe to interact with another agent by trust threshold. Thresholds: delegate 0.6, trade 0.5, collaborate 0.4, follow 0.1. Returns is_safe, risk_level, the score, and a recommendation. Read-only, no auth.",
            "inputSchema": {
              "properties": {
                "interaction_type": {
                  "enum": [
                    "delegate",
                    "trade",
                    "collaborate",
                    "follow"
                  ],
                  "type": "string"
                },
                "target_entity_id": {
                  "description": "UUID of a registered target entity (resolve one with lookup_identity).",
                  "maxLength": 64,
                  "type": "string"
                }
              },
              "required": [
                "target_entity_id",
                "interaction_type"
              ],
              "type": "object"
            },
            "annotations": {
              "destructiveHint": false,
              "idempotentHint": true,
              "openWorldHint": true,
              "readOnlyHint": true,
              "title": "Check interaction safety"
            }
          },
          {
            "name": "lookup_identity",
            "title": "Look up an agent or tool",
            "description": "Look up an AgentAvow entity by W3C DID or display name. Returns the entity's id, name, type, trust score and tier. Read-only, no auth. Use to resolve an identity before checking its trust.",
            "inputSchema": {
              "properties": {
                "query": {
                  "description": "A did:web:... or a display name.",
                  "maxLength": 200,
                  "pattern": "^[\\w .:/@#+-]{1,200}$",
                  "type": "string"
                }
              },
              "required": [
                "query"
              ],
              "type": "object"
            },
            "annotations": {
              "destructiveHint": false,
              "idempotentHint": true,
              "openWorldHint": true,
              "readOnlyHint": true,
              "title": "Look up an agent or tool"
            }
          },
          {
            "name": "get_trust_badge",
            "title": "Get a trust badge",
            "description": "Get an embeddable AgentAvow trust badge (SVG) for an entity, with ready-to-paste Markdown and HTML. The badge auto-updates as the score changes. Read-only, no auth.",
            "inputSchema": {
              "properties": {
                "entity_id": {
                  "description": "UUID of a registered AgentAvow entity (resolve one with lookup_identity).",
                  "maxLength": 64,
                  "type": "string"
                }
              },
              "required": [
                "entity_id"
              ],
              "type": "object"
            },
            "annotations": {
              "destructiveHint": false,
              "idempotentHint": true,
              "openWorldHint": true,
              "readOnlyHint": true,
              "title": "Get a trust badge"
            }
          },
          {
            "name": "about_agentavow",
            "title": "About AgentAvow",
            "description": "What AgentAvow is, which tool to use for what, how to read a verdict, and example scans. Call this for an overview or when getting started. No input, read-only.",
            "inputSchema": {
              "properties": {},
              "type": "object"
            },
            "annotations": {
              "destructiveHint": false,
              "idempotentHint": true,
              "openWorldHint": false,
              "readOnlyHint": true,
              "title": "About AgentAvow"
            }
          }
        ]
      },
      "name": "AgentAvow Trust",
      "note": "Indexed from the official MCP registry: facts and our own checks, not reviewed, so no score, grade or rank.",
      "packages": [
        {
          "registryType": "pypi",
          "identifier": "agentavow-trust",
          "version": "0.6.1",
          "transport": "stdio"
        }
      ],
      "pageJsonUrl": "https://www.anchorterminal.com/tools/agentavow-trust.json",
      "popularity": {
        "pypiWeekly": 30
      },
      "registryName": "com.agentavow/agentavow-trust",
      "remotes": [
        {
          "type": "streamable-http",
          "url": "https://agentavow.com/mcp"
        }
      ],
      "repository": "",
      "reviewed": false,
      "slug": "agentavow-trust",
      "source": "the official MCP registry",
      "sourceUrl": "https://registry.modelcontextprotocol.io/v0.1/servers?search=com.agentavow/agentavow-trust",
      "summary": "Signed, offline-verifiable safety scores for the MCP servers, packages \u0026 tools an agent connects to",
      "updatedAt": "2026-09-18T17:59:10Z",
      "url": "https://www.anchorterminal.com/tools/agentavow-trust",
      "vendor": "agentavow.com",
      "vendorUrl": "https://agentavow.com",
      "version": "0.6.2",
      "websiteUrl": "",
      "where": "both",
      "why": [
        "vendor"
      ]
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/tools/agentavow-trust",
    "json": "https://www.anchorterminal.com/tools/agentavow-trust.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/tools/agentavow-trust.md",
    "slim": "https://www.anchorterminal.com/tools/agentavow-trust.min.md"
  },
  "markdown": "# AgentAvow Trust\n\n\u003e Indexed, not reviewed: facts from the official MCP registry and our own checks. No score, grade or rank, and not in the rankings until the panel reviews it. How the index works: https://www.anchorterminal.com/indexed/\n\n- Kind: MCP server, by agentavow.com (https://agentavow.com)\n- Listed because: It's published in the registry under agentavow.com, a namespace the registry only gives to whoever proves they control that domain.\n- What the official MCP registry says: Signed, offline-verifiable safety scores for the MCP servers, packages \u0026 tools an agent connects to\n\n## Facts\n\n- MCP registry: `com.agentavow/agentavow-trust` 0.6.2\n- Endpoint: https://agentavow.com/mcp (streamable HTTP)\n- Package: pypi `agentavow-trust` (stdio)\n- PyPI downloads a week: 30\n- Registry entry updated: 2026-09-18\n\n## Tools\n\n- Tools it lists (8, about 1,731 tokens of context, `tools/list` without credentials over MCP 2025-11-25, checked 2026-10-04 22:21 UTC):\n  - `scan_repo` (read-only): Scan a public GitHub repository with AgentAvow and return whether it is safe for an agent to connect to: a 0-100 trust score, a plain safe / needs-review…\n  - `scan_package` (read-only): Scan a published package (npm, PyPI, crates, Docker, or Hugging Face) with AgentAvow. Returns a 0-100 trust score, a safe / needs-review verdict, findings with…\n  - `scan_mcp_server` (read-only): Scan a live MCP server's tool definitions for tool-poisoning, prompt-injection, invisible-unicode, and manifest-execution risks before your agent connects to…\n  - `verify_trust` (read-only): Verify an AgentAvow entity's trust score. Returns trust_score (0-1), trust_score_pct (0-100), trust_tier, and whether it meets a minimum threshold. Read-only,…\n  - `check_interaction_safety` (read-only): Check whether it is safe to interact with another agent by trust threshold. Thresholds: delegate 0.6, trade 0.5, collaborate 0.4, follow 0.1. Returns is_safe,…\n  - `lookup_identity` (read-only): Look up an AgentAvow entity by W3C DID or display name. Returns the entity's id, name, type, trust score and tier. Read-only, no auth. Use to resolve an…\n  - `get_trust_badge` (read-only): Get an embeddable AgentAvow trust badge (SVG) for an entity, with ready-to-paste Markdown and HTML. The badge auto-updates as the score changes. Read-only, no…\n  - `about_agentavow` (read-only): What AgentAvow is, which tool to use for what, how to read a verdict, and example scans. Call this for an overview or when getting started. No input, read-only.\n- How its tools read to an agent (0 errors, 1 warning, 1 note, about 1,731 tokens; rules at https://www.anchorterminal.com/check.md; not part of the score):\n  - warn TC11 check_interaction_safety: 1 parameter without a description: interaction_type\n  - note TC24 server: 8 of 8 tools have no outputSchema\n\n- JSON: https://www.anchorterminal.com/api/v1/tools/agentavow-trust.json\n- Being indexed says nothing about quality, and nobody can pay for it. Ask for a review: https://www.anchorterminal.com/builders/#claiming\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-05",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.3",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Terminal",
        "url": "https://www.anchorterminal.com/tools/"
      },
      {
        "name": "Indexed",
        "url": "https://www.anchorterminal.com/indexed/"
      },
      {
        "name": "AgentAvow Trust",
        "url": ""
      }
    ],
    "description": "AgentAvow Trust, an MCP server by agentavow.com, listed from the official MCP registry. Indexed, not reviewed: facts and our own checks, no score or ranking. Signed, offline-verifiable safety scores for the MCP servers, packages \u0026 tools an agent connects to",
    "facts": [
      "not reviewed",
      "not ranked",
      "facts only"
    ],
    "h1": "AgentAvow Trust",
    "image": "https://www.anchorterminal.com/assets/og/indexed.png",
    "path": "/tools/agentavow-trust",
    "published": "",
    "section": "indexed",
    "title": "AgentAvow Trust: MCP server, indexed from the official MCP registry",
    "toc": null,
    "updated": "2026-10-05",
    "url": "https://www.anchorterminal.com/tools/agentavow-trust"
  },
  "tokens": {
    "markdown": 950,
    "slim": 880
  },
  "version": 1
}
