AgentAvow Trust MCP server
Signed, offline-verifiable safety scores for the MCP servers, packages & tools an agent connects to
424 downloads/wk
Reviews
Write oneNobody has reviewed AgentAvow Trust yet.
If you have run it, two minutes of your experience saves the next person an afternoon.
AgentAvow Trust tools (8)
write = sends, deletes, buys or postsabout_agentavowFreeWhat AgentAvow is, which tool to use for what, how to read a verdict, and example scans. Call this for an overview or when getting started. No input, read-only.
check_interaction_safetyFreeCheck whether it is safe to interact with another agent by trust threshold. Thresholds: delegate 0.6, trade 0.5, collaborate 0.4, follow 0.1. Returns is_safe, risk_level, the score, and a recommendation. Read-only, no auth.
get_trust_badgeFreeGet an embeddable AgentAvow trust badge (SVG) for an entity, with ready-to-paste Markdown and HTML. The badge auto-updates as the score changes. Read-only, no auth.
lookup_identityFreeLook up an AgentAvow entity by W3C DID or display name. Returns the entity's id, name, type, trust score and tier. Read-only, no auth. Use to resolve an identity before checking its trust.
scan_mcp_serverFreeScan a live MCP server's tool definitions for tool-poisoning, prompt-injection, invisible-unicode, and manifest-execution risks before your agent connects to it. Returns a 0-100 trust score, a safe / needs-review verdict, findings, and a signed attestation. Read-only; calls the agentavow.com public API.
scan_packageFreeScan a published package (npm, PyPI, crates, Docker, or Hugging Face) with AgentAvow. Returns a 0-100 trust score, a safe / needs-review verdict, findings with remediation, and a signed attestation. Also reports repo-vs-artifact drift (files shipped that aren't in the source). Read-only; calls agentavow.com.
scan_repoFreeScan a public GitHub repository with AgentAvow and return whether it is safe for an agent to connect to: a 0-100 trust score, a plain safe / needs-review verdict, the findings behind it (with where and how to fix), and a signed, offline-verifiable attestation. Read-only, no account. Calls the AgentAvow public API at agentavow.com.
verify_trustFreeVerify an AgentAvow entity's trust score. Returns trust_score (0-1), trust_score_pct (0-100), trust_tier, and whether it meets a minimum threshold. Read-only, no auth. Use before interacting with an unknown agent.
Public scan report
scanner v0.1.5 · 2026-09-19 · same rubric, same numbers if you re-run it
- Code scan4 source files scanned25/25
- Live reliabilityremote reachable in 731ms20/20
- Tool poisoning8 tool descriptions checked15/15
- Auth qualityopen endpoint, read-only tools10/15
- Maintenanceno repository listed3/15
- Maintainer identityno repository or website to verify2/10
Findings (1)
- lowNo source repository listed
maint.no-repo
Install directly
claude mcp add --transport http agentavow-trust https://agentavow.com/mcp
AgentAvow Trust: common questions
- Is AgentAvow Trust MCP server safe?
- Mostly: it is graded B (75/100). Read the AgentAvow Trust safety report
- How do I install AgentAvow Trust?
- It runs remotely at agentavow.com. Add it to Claude Code, Claude Desktop or Cursor with the snippets above, or call it through the mcp.market gateway without installing anything.
- Does AgentAvow Trust need an API key?
- Not as far as the registry entry and our scan can tell: no credentials are declared or required.
- Is AgentAvow Trust maintained?
- The latest release is v0.6.2.
- Is AgentAvow Trust up?
- 100% of our last 6 checks got an answer. We check remote servers about four times a day.
- What can I use instead of AgentAvow Trust?
- Servers from other publishers that do the same job: EthersFlow — Trust Gate for AI Agents MCP server, Dvalincode MCP server and Agent Wormhole MCP server. Compare all AgentAvow Trust alternatives.
Alternatives to AgentAvow Trust
Same job from other publishers: the closest match first, then the best rated.
- EthersFlow — Trust Gate for AI AgentsTrust gate for AI agents: multi-model adversarial consensus, signed and verifiable verdicts.not reviewedGrowingA
- DvalincodeDeterministic security scanning, no model or API key, plus offline-verifiable proof a fix worked.not reviewedGrowingA
- Agent WormholeCheck tokens, pages and x402 payments before your agent trusts them. Offline verdicts.not reviewedGrowingB
- mcpmMCP security guard + package manager: trust-scored installs, blocks prompt injection and rug-pulls.not reviewedGrowingB
- MCP ServerStop shipping agents on vibes. Score every agent output for quality, safety, and cost.not reviewedGrowingB