{"name":"ai.certscore/mcp-light","slug":"certscore-mcp-light","title":"CertScore.ai MCP Light","description":"Free website privacy scanner for pre-consent cookies, trackers, consent, policy, and HTTPS/TLS.","url":"https://mcp.market/server/certscore-mcp-light","rating":null,"grade":"B","score":77,"certified":false,"status":"active","category":"other","tags":[],"presence":{"score":23,"stars":0,"forks":0,"downloads_week":null,"last_push_at":"2026-09-19T16:22:06.000Z","license":null},"uptime":{"percent":100,"checks":8,"ok":8,"last_checked_at":"2026-09-21T06:55:35.541Z","last_ok_at":"2026-09-21T06:55:35.541Z","latency_ms":469},"claimed":false,"transport":"remote","callable_via_gateway":true,"default_price_micros":0,"repository":"https://github.com/ergoveritas1-alt/certscore.ai","website":"https://certscore.ai/mcp/light","version":"0.2.20","remotes":[{"type":"streamable-http","url":"https://mcp.certscore.ai/mcp/light"}],"packages":[],"tools":[{"name":"certscore_get_report_evidence_page","description":"Retrieve scan report display content as paginated JSON, without internal diagnostic JSON downloads. The response also offers a single-file full JSON download; private JSON download links expire after five minutes and need no OAuth header; use pagination if your host blocks file downloads. Repeated display records use reportContentRef JSON Pointers. Includes including evidence tables, full-site page and resource inventories, all retained additional-page form fields, form snapshot download references, and retained limitations. Snapshot images are downloaded separately from the returned URLs, with OAuth bearer authentication for workspace scans. Available on OAuth and Light. Start with scanId; follow pagination.nextCursor until complete. Pages share a snapshot; restart if it changes. Each entry has a JSON Pointer path and value; oversized strings use numbered parts. Export completion is not complete observation coverage. Use the concise scan bundle for summaries; use this tool for exhaustive report evidence. No new scan is created.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"scanId":{"type":"string","format":"uuid"},"cursor":{"type":"string","maxLength":100}},"required":["scanId"],"additionalProperties":false,"$schema":"http://json-schema.org/draft-07/schema#"}},{"name":"certscore_get_scan_bundle","description":"Returns the completed or completed-limited CertScore evidence bundle for a stable scanId as concise TextContent and matching structuredContent. Available sections include the canonical report overview, bounded projected findings, pre-consent cookie and tracker evidence, coverage limitations, persisted execution provenance, and retrieval URLs. Detail tiers and byte budgets control the bounded response, with explicit returned, total, truncated, and omitted-section metadata. Accept and Reject results distinguish registered decisions from retained after-click facts. Their execution reports succeeded for a completed click and bounded observation, and succeeded_with_confirmation when the consent decision is also verified. Optional afterAction summaries remain useful when registration is unconfirmed; absent or failed capture remains explicitly limited. Consume canonical findings for any scoring effect. Results are automated public-web observations, not legal advice, certification, or a compliance determination.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"scanId":{"type":"string","minLength":1,"description":"Stable CertScore scan ID."},"detail":{"type":"string","enum":["summary","findings","evidence","full"],"description":"Response detail. Defaults to summary; evidence and full opt into heavier retained context."},"maxBytes":{"type":"integer","minimum":5000,"maximum":200000,"description":"Requested serialized structured response budget in bytes. The full profile defaults to 50000. MCP Light defaults to and applies a transport-safe 25000-byte ceiling; larger Light requests are clamped and reported in response metadata."},"maxFindings":{"type":"integer","minimum":1,"maximum":50,"description":"Maximum compact findings to return. Defaults to 5 for summary and 20 otherwise."},"maxPreConsentRows":{"type":"integer","minimum":1,"maximum":50,"description":"Maximum compact pre-consent inventory rows to return. Defaults to 20."}},"required":["scanId"],"additionalProperties":false,"$schema":"http://json-schema.org/draft-07/schema#"}},{"name":"certscore_get_scan_status","description":"Returns lifecycle status for a stable CertScore scanId. Active responses include phase, heartbeat, estimated progress, retryAfterSeconds, and sometimes a bounded preliminary preConsentPreview. Terminal responses include completion status, CertScore score and risk metadata when available, coverage, persisted execution region and timestamps, report URL, and a next-action field. Preliminary observations are distinct from completed findings.","write_action":false,"price_micros":0,"input_schema":{"type":"object","properties":{"scanId":{"type":"string","minLength":1,"description":"Stable CertScore scan ID returned by certscore_scan_site."}},"required":["scanId"],"additionalProperties":false,"$schema":"http://json-schema.org/draft-07/schema#"}},{"name":"certscore_scan_site","description":"Creates a public-website privacy scan or reuses an eligible recent completed scan. Coverage includes pre-consent storage, trackers, consent and CMP signals, privacy-policy disclosures, transport security, and GDPR/ePrivacy or CCPA/CPRA review signals. The response contains a stable scanId, lifecycle status, retry timing, and sometimes a bounded preliminary preConsentPreview; preliminary data contains no final findings or score. Results are automated public-web observations, not legal advice, certification, or a compliance determination. Tool and workflow documentation: https://certscore.ai/developers/mcp.","write_action":true,"price_micros":0,"input_schema":{"type":"object","properties":{"taskContext":{"type":"object","properties":{"purpose":{"type":"string","enum":["prelaunch_review","vendor_review","tracking_check","consent_gpc_check","policy_review","recheck","other","unknown"]},"questionSummary":{"type":"string","minLength":1,"maxLength":8192},"questionSource":{"type":"string","enum":["user_wording","agent_paraphrase"]},"shareForImprovement":{"type":"boolean"},"integrationId":{"type":"string","maxLength":80,"pattern":"^[a-zA-Z0-9][a-zA-Z0-9._-]*$"},"integrationVersion":{"$ref":"#/properties/taskContext/properties/integrationId"},"skillVersion":{"$ref":"#/properties/taskContext/properties/integrationId"}},"additionalProperties":false,"description":"Optional caller-declared purpose and integration ID/version for usage research. Only include questionSummary when the user knowingly agrees to share a brief non-sensitive question for product improvement; label user_wording or agent_paraphrase. Never include chat history, personal/account details, secrets or URLs. Omission does not affect scanning."},"url":{"type":"string","minLength":1,"description":"Public URL or domain to scan."},"freshness":{"type":"string","enum":["latest","refresh"],"description":"Scan freshness policy. latest allows eligible recent completed-result reuse when available; refresh requests a new scan. Defaults to latest."},"scanFrom":{"type":"string","enum":["eu_de","eu_ie","california"],"description":"Optional execution region for a newly queued scan: eu_de, eu_ie, california, or the service default when omitted."},"waitForCompletion":{"type":"boolean","description":"Deprecated compatibility field; accepted but ignored. certscore_scan_site never waits for a new scan to finish, though MCP Light may briefly wait within a bounded preview window for preliminary pre-consent observations."},"maxWaitSeconds":{"type":"integer","minimum":1,"maximum":45,"description":"Deprecated compatibility field; accepted but ignored. The bounded preliminary-preview wait is controlled by CertScore and never waits for scan completion."}},"required":["url"],"additionalProperties":false,"$schema":"http://json-schema.org/draft-07/schema#"}}],"scan":{"score":77,"grade":"B","scanned_at":"2026-09-19T19:17:42.772Z","report":{"scannerVersion":"0.1.5","scannedAt":"2026-09-19T19:17:42.759Z","components":{"code":{"score":-1,"max":25,"notes":["remote-only server, no package to scan"]},"reliability":{"score":20,"max":20,"notes":["remote reachable in 1371ms"]},"poisoning":{"score":15,"max":15,"notes":["4 tool descriptions checked"]},"auth":{"score":3,"max":15,"notes":["open endpoint exposes 1 write-action tools with no auth"]},"maintenance":{"score":15,"max":15,"notes":["last push 0 days ago"]},"identity":{"score":5,"max":10,"notes":["namespace and repository owner differ","website matches verified namespace"]}},"findings":[{"id":"auth.open-write","severity":"high","component":"auth","title":"Write-action tools reachable without authentication"}],"inputs":{"probes":[{"url":"https://mcp.certscore.ai/mcp/light","reachable":true,"authRequired":false,"latencyMs":1371,"serverInfo":{"name":"certscore","version":"0.2.21"}}],"packages":[],"repo":{"found":true,"owner":"ergoveritas1-alt","repo":"certscore.ai","archived":false,"pushedAt":"2026-09-19T16:22:06Z","stars":0,"forks":0,"openIssues":3,"ownerType":"User","ownerAvatarUrl":"https://avatars.githubusercontent.com/u/263458422?v=4","ownerCreatedAt":"2026-02-23T19:36:53Z"},"icon":{"url":"https://certscore.ai/certscore-mark-dark.png","source":"registry","width":512,"height":512},"presence":{"stars":0,"forks":0,"downloadsWeek":null,"license":null,"lastPushAt":"2026-09-19T16:22:06.000Z","score":23}}}},"grade_history":[],"reviews":[]}