io.github.springrolldev/springroll

MCPCommunitylive
v0.1.0io.github.springrolldevUnknownAktualisiert vor 1 Mon.

Register, deploy, review, and govern internal applications built with coding agents.

Endpunkt-Statuslive
geprüft vor 10 Tagen · 363 ms
100 % der letzten 5 Prüfungen haben diesen Endpunkt erreicht
Läuft in
ClaudeCursorCopilotChatGPTGemini

Abgeleitet aus den Transporten, die dieser Eintrag deklariert (streamable-http). Ein Client, der hier nicht steht, ist damit nicht ausgeschlossen — Forge kann ihn nur nicht bestätigen.

Automatisch aus öffentlichen Quellen indexiert. Vom Entwickler auf Forge noch nicht verifiziert.Diesen Eintrag beanspruchen →
vor 1 Mon.Letzte Aktualisierung
Paket
Autorio.github.springrolldev
LizenzUnknown
Version0.1.0
Quellemcp-registry
Trust-Status
B
60/100Gut
✓Im Forge-Index gelistet+10/10
—Publisher-Identität verifiziert+0/30
→ Publisher: für diesen Eintrag ist kein Repository hinterlegt, daher kann `forge publish` die Inhaberschaft nicht automatisch prüfen. Nutze oben „Diesen Eintrag beanspruchen“ — Forge prüft diese Fälle von Hand.
—Domain-Verifizierung+0/10
→ Für diesen Eintragstyp derzeit nicht verfügbar — die Domain-Prüfung läuft heute nur für npm-gestützte Pakete, diese Zeile lässt sich hier also noch nicht erreichen, unabhängig davon, was auf der Domain liegt.
✓Prompt-Injection-Scan · sauber+30/30
✓Obfuskations-/Exfiltrations-Scan · sauber+20/20
StatusVon der Community indexiert
PublisherNicht verifiziert
SignaturNicht signiert
Domain—
Herkunft—
AbhängigkeitenNicht auditiert
Tool-Oberfläche15 Tools · keines privilegiert
Sicherheits-Scan✓ Saubervlive · vor 10 TWie gut funktioniert dieser Scan?
EvaluierungenKeine
Indexiert14. Aug. 2026

Die Verifizierung bestätigt die Identität des Publishers (die Inhaberschaft am Repo), nicht die Sicherheit des Codes. Der Sicherheits-Scan deckt bekannte CVEs und verdächtige Installationsskripte ab.

Tools

15 Tools · keines privilegiert
Live am Endpunkt des Anbieters beobachtet10d ago

Aus einem echten MCP-Handshake initialize → tools/list gegen den deklarierten Endpunkt gelesen. Es wurde nie ein Tool aufgerufen — tools/list ist der lesende Introspektionsaufruf, den das Protokoll dafür vorsieht. Es spiegelt wider, was der Server in diesem Moment angeboten hat; ein gehosteter Endpunkt ist an keine Version gebunden und kann sich ohne Ankündigung ändern.

  • https://springroll.dev/api/mcp15 Tools · 363 ms
springroll.contextReturns the organization, identity, and permissions this agent token acts as, together with the deployment runtimes configured for it. Call this first: it tells you which tenant you are in, what you are allowed to do, and whether a deployment can actually land. It never returns credentials.

Returns the organization, identity, and permissions this agent token acts as, together with the deployment runtimes configured for it. Call this first: it tells you which tenant you are in, what you are allowed to do, and whether a deployment can actually land. It never returns credentials.

ParameterTypBeschreibung
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.deployRegisters the project if it is new, attaches whatever source you give it, and deploys it using the application's Deployment workflow. Direct applications go to Production; Staged applications go to Development. Returns the live URL, or a deployment id to poll if the build is still running. **You d…

Registers the project if it is new, attaches whatever source you give it, and deploys it using the application's Deployment workflow. Direct applications go to Production; Staged applications go to Development. Returns the live URL, or a deployment id to poll if the build is still running. **You d…

ParameterTypBeschreibung
applicationstringAn existing app's slug or id. Omit on the first ship; `name` implies it.
namestring—
slugstring—
manifeststringA SpringRoll manifest. Supersedes the metadata fields below; the source fields still apply.
descriptionstring—
departmentstring—
supportContactstringTeam channel or email for users of this app. Required before production.
dataClassificationstring—
tagsarray—
repositoryUrlstring—
refstringBranch, tag, or full commit SHA. Defaults to the app's default revision.
archivestringBase64 of a gzipped tar of the project source. Preferred over `files`.
filesobjectPath-to-contents map. Use `archive` for anything beyond a few files.
filesEncodingstring—
preferSourcestringTie-breaker when both a repository and files are given. Defaults to git.
frameworkstring—
installCommandstring—
buildCommandstring—
outputDirectorystring—
rootDirectorystring—
placementobjectOptional, provider-neutral hints about what this application needs. SpringRoll chooses the provider and plan; these only inform that choice. Leave out anything…
waitSecondsintegerHow long to wait for the build before returning. Defaults to 20. A real build usually outlasts this; poll springroll.deploy.status after.
idempotencyKey*stringRequired. A stable, caller-generated key. Retrying with the same key returns the original result instead of creating a duplicate.
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.deploy.statusReturns a deployment's current status, refreshing it from the runtime provider when the build is still in progress. Statuses: QUEUED, VALIDATING, BUILDING, DEPLOYING, READY, FAILED, CANCELLED, SUPERSEDED, ROLLED_BACK. Poll this after deploying rather than assuming success. Pass `includeLogs` to ge…

Returns a deployment's current status, refreshing it from the runtime provider when the build is still in progress. Statuses: QUEUED, VALIDATING, BUILDING, DEPLOYING, READY, FAILED, CANCELLED, SUPERSEDED, ROLLED_BACK. Poll this after deploying rather than assuming success. Pass `includeLogs` to ge…

ParameterTypBeschreibung
deploymentId*string—
includeLogsbooleanInclude build and deploy log lines. Defaults to false.
logLimitintegerHow many log lines to return, counting from the end. Defaults to 200.
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.deploy.promotePromotes a tested deployment into the next environment (development -> uat, uat -> production). Reuses the already-built artifact rather than rebuilding, so the bytes that were tested are the bytes that ship. Promotion into an environment that requires approval will be refused until the approval e…

Promotes a tested deployment into the next environment (development -> uat, uat -> production). Reuses the already-built artifact rather than rebuilding, so the bytes that were tested are the bytes that ship. Promotion into an environment that requires approval will be refused until the approval e…

ParameterTypBeschreibung
deploymentId*stringThe tested deployment to promote.
targetEnvironmentType*stringCanonical environment class. SpringRoll promotes development -> uat -> production.
idempotencyKey*stringRequired. A stable, caller-generated key. Retrying with the same key returns the original result instead of creating a duplicate.
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.placement.previewScores where SpringRoll would place this application and what it would cost, without deploying or writing anything. It shares its implementation with springroll.deploy, so the receipt it returns is what a deploy right now would decide: the provider and plan, the estimated monthly cost range, every…

Scores where SpringRoll would place this application and what it would cost, without deploying or writing anything. It shares its implementation with springroll.deploy, so the receipt it returns is what a deploy right now would decide: the provider and plan, the estimated monthly cost range, every…

ParameterTypBeschreibung
application*stringApplication slug or id.
environmentTypestringEnvironment class to score for. Defaults to production, which is the strictest: plans published as unsuitable for production are excluded there.
placementobjectOptional, provider-neutral hints about what this application needs. SpringRoll chooses the provider and plan; these only inform that choice. Leave out anything…
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.app.getReturns an application's registry record: metadata, lifecycle stage, risk score, and whichever of the optional sections you ask for. No secrets are included. Sections, all returned by default: • `source`: repository or uploaded bundle, and `cannotBuildReason` when a deploy would be refused for wa…

Returns an application's registry record: metadata, lifecycle stage, risk score, and whichever of the optional sections you ask for. No secrets are included. Sections, all returned by default: • `source`: repository or uploaded bundle, and `cannotBuildReason` when a deploy would be refused for wa…

ParameterTypBeschreibung
application*stringApplication slug or id.
includearraySections to return. Defaults to all of them.
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.app.listLists applications in this organization, newest first. Use `search` to find one by name or slug.

Lists applications in this organization, newest first. Use `search` to find one by name or slug.

ParameterTypBeschreibung
searchstring—
limitinteger—
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.app.updateUpdates App Portal metadata: description, icon, tags, department, support contact, and data classification. Visibility is deliberately not editable here, because widening an audience requires an approval request (sec. 15.4).

Updates App Portal metadata: description, icon, tags, department, support contact, and data classification. Visibility is deliberately not editable here, because widening an audience requires an approval request (sec. 15.4).

ParameterTypBeschreibung
application*stringApplication slug or id.
descriptionstring—
iconUrlstring—
tagsarray—
departmentstring—
supportContactstring—
dataClassificationstring—
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.approval.submitSubmits an approval request of any supported type: UAT_PROMOTION, UAT_SIGN_OFF, PRODUCTION_PROMOTION, VISIBILITY_CHANGE, OWNERSHIP_TRANSFER, RETIREMENT, DOMAIN_CHANGE, or ROLLBACK. **An agent may submit but never decide**: SpringRoll requires a human approver, and an agent token cannot approve its…

Submits an approval request of any supported type: UAT_PROMOTION, UAT_SIGN_OFF, PRODUCTION_PROMOTION, VISIBILITY_CHANGE, OWNERSHIP_TRANSFER, RETIREMENT, DOMAIN_CHANGE, or ROLLBACK. **An agent may submit but never decide**: SpringRoll requires a human approver, and an agent token cannot approve its…

ParameterTypBeschreibung
application*stringApplication slug or id.
requestType*string—
releaseIdstringRelease this concerns. For PRODUCTION_PROMOTION, defaults to the latest release.
targetEnvironmentTypestringCanonical environment class. SpringRoll promotes development -> uat -> production.
justificationstringWhy this should happen. Shown to reviewers. Required for ROLLBACK and RETIREMENT, and at least 10 characters when required.
payloadobjectType-specific detail, e.g. { visibility: 'TENANT' }, { newOwnerMembershipId: '…' }, or { targetDeploymentId: '…' } for a rollback.
idempotencyKey*stringRequired. A stable, caller-generated key. Retrying with the same key returns the original result instead of creating a duplicate.
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.approval.getReturns an approval request with its assigned reviewers, decisions so far, and the policy snapshot taken at submission. Poll this to find out whether a release has been approved.

Returns an approval request with its assigned reviewers, decisions so far, and the policy snapshot taken at submission. Poll this to find out whether a release has been approved.

ParameterTypBeschreibung
approvalRequestId*string—
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.policy.checkReports which governance policies an application would pass or fail for an environment. Send `manifest` (YAML or JSON) to validate a document without creating anything. Call this before springroll.deploy to avoid a rejected submission. Read the `springroll://manifest/example` resource for the docu…

Reports which governance policies an application would pass or fail for an environment. Send `manifest` (YAML or JSON) to validate a document without creating anything. Call this before springroll.deploy to avoid a rejected submission. Read the `springroll://manifest/example` resource for the docu…

ParameterTypBeschreibung
manifeststringThe manifest document, as YAML or JSON. Mutually exclusive with `application`.
applicationstringAn existing application to explain. Mutually exclusive with `manifest`.
environmentTypestringEnvironment to evaluate against. Defaults to production.
releaseIdstringRelease to evaluate. Only meaningful with `application`.
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.connect.data_productsWithout `dataProduct`, lists the governed data products this organization publishes: what each one holds, who owns it, and how sensitive it is. With `dataProduct`, returns that product's schema: its datasets, the available fields with their types and sensitivity, the business glossary its owner wr…

Without `dataProduct`, lists the governed data products this organization publishes: what each one holds, who owns it, and how sensitive it is. With `dataProduct`, returns that product's schema: its datasets, the available fields with their types and sensitivity, the business glossary its owner wr…

ParameterTypBeschreibung
dataProductstringData product slug. Omit to list every product this organization publishes.
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.connect.request_accessRequests access to a data product for one environment, naming the exact fields the application needs. A data owner must approve, and may narrow the field list or add a row filter before doing so. Nothing is readable until then. You never receive a credential: an approved grant lets the deployed app…

Requests access to a data product for one environment, naming the exact fields the application needs. A data owner must approve, and may narrow the field list or add a row filter before doing so. Nothing is readable until then. You never receive a credential: an approved grant lets the deployed app…

ParameterTypBeschreibung
application*stringApplication slug or id.
dataProduct*stringData product slug from springroll.connect.data_products.
environmentType*stringCanonical environment class. SpringRoll promotes development -> uat -> production.
fields*arrayQualified field names to request, as `dataset.field`. Ask for what the application actually reads, because a narrower request is approved faster and survives r…
purposestringWhy the application needs this data. Shown to the data owner.
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.connect.access_statusReturns the status of a data access request: REQUESTED, APPROVED, REJECTED, REVOKED, or EXPIRED, with the fields actually approved. Approved fields are often narrower than requested, and a row filter may restrict which rows the application can see at all.

Returns the status of a data access request: REQUESTED, APPROVED, REJECTED, REVOKED, or EXPIRED, with the fields actually approved. Approved fields are often narrower than requested, and a row filter may restrict which rows the application can see at all.

ParameterTypBeschreibung
grantId*string—
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…
springroll.app.record_promptsAttaches the conversation that produced this application to its record, as reference for whoever maintains it next and for the reviewer who has to approve it. Ask the user before calling this, every time. The transcript is STORED and is READABLE BY ANYONE who can see the application record. Spring…

Attaches the conversation that produced this application to its record, as reference for whoever maintains it next and for the reviewer who has to approve it. Ask the user before calling this, every time. The transcript is STORED and is READABLE BY ANYONE who can see the application record. Spring…

ParameterTypBeschreibung
application*stringApplication slug or id.
sessionKey*stringStable identifier for this build conversation.
turns*arrayUp to 50 turns per call, in order.
startTurnIndexintegerWhere this batch starts. Defaults to after the last recorded turn.
agentNamestring—
modelNamestring—
inputTokensinteger—
outputTokensinteger—
releaseIdstring—
idempotencyKey*stringRequired. A stable, caller-generated key. Retrying with the same key returns the original result instead of creating a duplicate.
context*stringExplain why you are calling this tool and how it fits into the user's overall goal. This parameter is used for analytics and user intent tracking. YOU MUST pro…

15 von 15 Tools haben eine Beschreibung veröffentlicht.

Tool-Namen und -Beschreibungen stammen vom Publisher und werden wortgetreu als inerter Text angezeigt. Es sind die Zeichenketten, die ein MCP-Client an ein Modell übergibt, deshalb prüft Forge sie auf Prompt-Injection-Muster — jeder Befund erscheint oben beim Sicherheits-Scan. „Privilegiert“ ist ein Schlagwort-Treffer im Tool-Namen, keine Prüfung dessen, was das Tool tut: ein harmlos klingender Name kann trotzdem alles tun.

Über

Register, deploy, review, and govern internal applications built with coding agents.

Schlagwörter
mcp
Alternativen
Tool-Oberflächen werden verglichen…

Keine Abdeckung der Abhängigkeiten

Dieser Eintrag veröffentlicht kein npm-Paket, daher hat Forge keinen Abhängigkeitsbaum dafür. Das ist eine Lücke in der Abdeckung — keine Aussage, dass er keine Abhängigkeiten hat.