Agent-native storage with cryptographic verification on Solana. Keyless: clients sign and pay.
Abgeleitet aus den Transporten, die dieser Eintrag deklariert (streamable-http). Ein Client, der hier nicht steht, ist damit nicht ausgeschlossen — Forge kann ihn nur nicht bestätigen.
Die Verifizierung bestätigt die Identität des Publishers (die Inhaberschaft am Repo), nicht die Sicherheit des Codes. Der Sicherheits-Scan deckt bekannte CVEs und verdächtige Installationsskripte ab.
Aus einem echten MCP-Handshake initialize → tools/list gegen den deklarierten Endpunkt gelesen. Es wurde nie ein Tool aufgerufen — tools/list ist der lesende Introspektionsaufruf, den das Protokoll dafür vorsieht. Es spiegelt wider, was der Server in diesem Moment angeboten hat; ein gehosteter Endpunkt ist an keine Version gebunden und kann sich ohne Ankündigung ändern.
https://mcp.nukez.xyz/mcp15 Tools · 480 msnukez_quoteInjektionsrisikoStep 1: Get storage pricing and payment options. Returns price breakdown and every available payment method (SOL/USDC/USDT/WETH/BETA on Solana, USDC/USDT0/MON/WETH on Monad). Each option carries a `destination_kind`: 'wallet' (native SOL — send lamports to pay_to_address), 'spl_token_account' (Sola…Step 1: Get storage pricing and payment options. Returns price breakdown and every available payment method (SOL/USDC/USDT/WETH/BETA on Solana, USDC/USDT0/MON/WETH on Monad). Each option carries a `destination_kind`: 'wallet' (native SOL — send lamports to pay_to_address), 'spl_token_account' (Sola…
t), or 'evm_address' (Monad — send native value to the address, or call transfer() on the token contract at token_addres…| Parameter | Typ | Beschreibung |
|---|---|---|
| units | integer | — |
| provider | string | — |
| pay_network | — | — |
| pay_asset | — | — |
nukez_payStep 2: Record an externally-executed on-chain payment. The server is keyless and never signs transactions — execute the transfer yourself (Solana sendTransaction or an EVM client) and pass the resulting signature as tx_sig. Uses pay_req_id from nukez_quote (auto-resolved from state). Specify chain…Step 2: Record an externally-executed on-chain payment. The server is keyless and never signs transactions — execute the transfer yourself (Solana sendTransaction or an EVM client) and pass the resulting signature as tx_sig. Uses pay_req_id from nukez_quote (auto-resolved from state). Specify chain…
| Parameter | Typ | Beschreibung |
|---|---|---|
| pay_req_id | — | — |
| tx_sig | — | — |
| chain | — | — |
| pay_asset | — | — |
nukez_provisionStep 3: Confirm payment settlement on the gateway and provision the storage locker. Two modes: (a) Without `envelope`: pass pay_req_id + tx_sig (auto-resolved from state). Returns the receipt_id and a hint to build a signed `locker:provision` envelope. (b) With `receipt_id` + `envelope`: forwards t…Step 3: Confirm payment settlement on the gateway and provision the storage locker. Two modes: (a) Without `envelope`: pass pay_req_id + tx_sig (auto-resolved from state). Returns the receipt_id and a hint to build a signed `locker:provision` envelope. (b) With `receipt_id` + `envelope`: forwards t…
| Parameter | Typ | Beschreibung |
|---|---|---|
| pay_req_id | — | — |
| tx_sig | — | — |
| chain | — | — |
| pay_asset | — | — |
| receipt_id | — | — |
| envelope | — | — |
nukez_setupSet up Nukez storage: checks wallet, purchases storage, and provisions locker in a single call. Call with no args to run the full flow. Call with receipt_id to rehydrate an existing locker. Providers: gcs (default), mongodb, storj, arweave, filecoin, firestore. Payments: Solana (SOL, USDC, USDT, WE…Set up Nukez storage: checks wallet, purchases storage, and provisions locker in a single call. Call with no args to run the full flow. Call with receipt_id to rehydrate an existing locker. Providers: gcs (default), mongodb, storj, arweave, filecoin, firestore. Payments: Solana (SOL, USDC, USDT, WE…
| Parameter | Typ | Beschreibung |
|---|---|---|
| receipt_id | — | — |
| units | integer | — |
| provider | string | — |
| envelope | — | — |
nukez_create_fileCreate a file entry and get upload_url + confirm_url for direct upload. The client PUTs raw bytes directly to the upload_url (307-redirects to GCS), then calls nukez_confirm to finalize. Bytes never transit the MCP server. Use this for large files from local/external sources against Cloud Run. For…Create a file entry and get upload_url + confirm_url for direct upload. The client PUTs raw bytes directly to the upload_url (307-redirects to GCS), then calls nukez_confirm to finalize. Bytes never transit the MCP server. Use this for large files from local/external sources against Cloud Run. For…
| Parameter | Typ | Beschreibung |
|---|---|---|
| filename* | string | — |
| content_type | — | — |
| receipt_id | — | — |
| envelope | — | — |
nukez_storeInjektionsrisikoStore files in your Nukez locker. ALWAYS BATCH: pass ALL the files you want to upload in a SINGLE call, as a list under `files`. Do NOT loop over your file list and call nukez_store once per file — that triggers one on-chain attestation per file (slow + costs SOL fees per push). One nukez_store cal…Store files in your Nukez locker. ALWAYS BATCH: pass ALL the files you want to upload in a SINGLE call, as a list under `files`. Do NOT loop over your file list and call nukez_store once per file — that triggers one on-chain attestation per file (slow + costs SOL fees per push). One nukez_store cal…
ncode files >4KB in one call. Upload path is auto-selected based on size and runtime environment. HARD SIZE LIMITS per…| Parameter | Typ | Beschreibung |
|---|---|---|
| files* | array | — |
| receipt_id | — | — |
| envelope | — | — |
nukez_confirmConfirm a file upload after sandbox curl completes. Call this after executing the curl command returned by nukez_store in sandbox mode. The server computes SHA-256 and records the hash. Requires a payer-signed locker:write envelope: signer-mode deployments sign automatically via the SDK; keyless cl…Confirm a file upload after sandbox curl completes. Call this after executing the curl command returned by nukez_store in sandbox mode. The server computes SHA-256 and records the hash. Requires a payer-signed locker:write envelope: signer-mode deployments sign automatically via the SDK; keyless cl…
| Parameter | Typ | Beschreibung |
|---|---|---|
| filename | — | — |
| receipt_id | — | — |
| envelope | — | — |
| use_job | boolean | — |
| job_id | — | — |
nukez_upload_chunkprivilegiertUpload a file in chunks when sandbox curl/network is blocked. PREPARATION — run this bash script first to split and hash:
python3 -c "
import base64, hashlib, os, json, math
path = '<SANDBOX_FILE_PATH>'
CHUNK = 4096
size = os.path.getsize(path)
n = math.ceil(size / CHUNK)
os.makedirs('/tmp/nkz', e…Upload a file in chunks when sandbox curl/network is blocked. PREPARATION — run this bash script first to split and hash: python3 -c " import base64, hashlib, os, json, math path = '<SANDBOX_FILE_PATH>' CHUNK = 4096 size = os.path.getsize(path) n = math.ceil(size / CHUNK) os.makedirs('/tmp/nkz', e…
| Parameter | Typ | Beschreibung |
|---|---|---|
| filename* | string | — |
| data_b64* | string | — |
| part_no* | integer | — |
| is_last | boolean | — |
| content_type | — | — |
| receipt_id | — | — |
| sha256 | — | — |
| job_id | — | — |
| file_id | — | — |
nukez_retrieveList files or download content from your Nukez locker. Call with no filenames to list all files. Call with filenames=['file.txt'] to download specific files. KEYLESS (hosted) SERVER: a call without `envelope` returns action_required='sign_envelopes' with the exact list spec to sign (locker:list, pl…List files or download content from your Nukez locker. Call with no filenames to list all files. Call with filenames=['file.txt'] to download specific files. KEYLESS (hosted) SERVER: a call without `envelope` returns action_required='sign_envelopes' with the exact list spec to sign (locker:list, pl…
| Parameter | Typ | Beschreibung |
|---|---|---|
| filenames | — | — |
| receipt_id | — | — |
| encoding | string | — |
| envelope | — | — |
nukez_verifyFast structural verification of locker state. Returns merkle root, attestation status, and optional per-file proof. Pass memory_key to verify a specific memory record by key. Cheap: reads the persisted attestation; latency is independent of locker size (~sub-second typical). With push=True, also tr…Fast structural verification of locker state. Returns merkle root, attestation status, and optional per-file proof. Pass memory_key to verify a specific memory record by key. Cheap: reads the persisted attestation; latency is independent of locker size (~sub-second typical). With push=True, also tr…
| Parameter | Typ | Beschreibung |
|---|---|---|
| push | boolean | — |
| receipt_id | — | — |
| filename | — | — |
| memory_key | — | — |
| envelope | — | — |
nukez_recompute_verifyByte-level integrity proof: re-downloads every file from storage, recomputes content hashes, rebuilds the merkle tree, and compares the result against the persisted attestation. Returns match=True when storage bytes still match the recorded hashes, match=False when they have drifted. Cost: scales w…Byte-level integrity proof: re-downloads every file from storage, recomputes content hashes, rebuilds the merkle tree, and compares the result against the persisted attestation. Returns match=True when storage bytes still match the recorded hashes, match=False when they have drifted. Cost: scales w…
| Parameter | Typ | Beschreibung |
|---|---|---|
| receipt_id | — | — |
| envelope | — | — |
nukez_statusCheck wallet balance, locker state, and lifecycle stage. Works at any stage — no active locker required.Check wallet balance, locker state, and lifecycle stage. Works at any stage — no active locker required.
| Parameter | Typ | Beschreibung |
|---|---|---|
| receipt_id | — | — |
| envelope | — | — |
nukez_deleteprivilegiertDelete files from your Nukez locker. WARNING: permanent and irreversible. Invalidates existing attestation. KEYLESS (hosted) SERVER: a call without `envelope` returns action_required='sign_envelopes' with the exact delete spec to sign (locker:write, bound to one file's path); sign it with your wall…Delete files from your Nukez locker. WARNING: permanent and irreversible. Invalidates existing attestation. KEYLESS (hosted) SERVER: a call without `envelope` returns action_required='sign_envelopes' with the exact delete spec to sign (locker:write, bound to one file's path); sign it with your wall…
| Parameter | Typ | Beschreibung |
|---|---|---|
| filenames* | array | — |
| receipt_id | — | — |
| envelope | — | — |
nukez_rememberStore a structured memory record in your Nukez locker. Memories are indexed for fast search via nukez_recall. Use namespaces to organize (e.g., 'config', 'context', 'decisions'). Requires: key, content, summary. ENVELOPE: pass a list of 2 envelopes (each with unique nonce, POST path, ops=locker:wri…Store a structured memory record in your Nukez locker. Memories are indexed for fast search via nukez_recall. Use namespaces to organize (e.g., 'config', 'context', 'decisions'). Requires: key, content, summary. ENVELOPE: pass a list of 2 envelopes (each with unique nonce, POST path, ops=locker:wri…
| Parameter | Typ | Beschreibung |
|---|---|---|
| key* | string | — |
| content* | string | — |
| summary* | string | — |
| namespace | string | — |
| tags | string | — |
| supersedes | string | — |
| receipt_id | — | — |
| envelope | — | — |
nukez_recallSearch and retrieve memory records from your Nukez locker. Two modes: exact key lookup (pass key) returns full content + proof, or search (pass namespace/tags/query/prefix) returns matching index entries. ENVELOPE: none needed — both index and record are read via the public receipt-proxy URL. Just…Search and retrieve memory records from your Nukez locker. Two modes: exact key lookup (pass key) returns full content + proof, or search (pass namespace/tags/query/prefix) returns matching index entries. ENVELOPE: none needed — both index and record are read via the public receipt-proxy URL. Just…
| Parameter | Typ | Beschreibung |
|---|---|---|
| key | string | — |
| namespace | string | — |
| tags | string | — |
| query | string | — |
| prefix | string | — |
| limit | integer | — |
| receipt_id | — | — |
| envelope | — | — |
15 von 15 Tools haben eine Beschreibung veröffentlicht.
Tool-Namen und -Beschreibungen stammen vom Publisher und werden wortgetreu als inerter Text angezeigt. Es sind die Zeichenketten, die ein MCP-Client an ein Modell übergibt, deshalb prüft Forge sie auf Prompt-Injection-Muster — jeder Befund erscheint oben beim Sicherheits-Scan. „Privilegiert“ ist ein Schlagwort-Treffer im Tool-Namen, keine Prüfung dessen, was das Tool tut: ein harmlos klingender Name kann trotzdem alles tun.
Agent-native storage with cryptographic verification on Solana. Keyless: clients sign and pay.
Verlinkte Namen öffnen den Forge-Index aller Einträge, bei denen dieses Tool beobachtet wurde. Alle indexierten Tools durchsuchen.
Dieser Eintrag veröffentlicht kein npm-Paket, daher hat Forge keinen Abhängigkeitsbaum dafür. Das ist eine Lücke in der Abdeckung — keine Aussage, dass er keine Abhängigkeiten hat.