Protect owners with private checks across 13.3B+ breach records and prioritized defenses.
Inferido de los transportes que declara este listado (streamable-http). Que un cliente no aparezca aquí no significa que se haya descartado: simplemente Forge no puede confirmarlo.
La verificación confirma la identidad del publicador (la propiedad del repo), no la seguridad del código. El análisis de seguridad cubre los CVE conocidos y los scripts de instalación sospechosos.
Leído de un handshake MCP real initialize → tools/list contra el endpoint declarado. No se invocó ninguna herramienta: tools/list es la llamada de introspección de solo lectura que el protocolo define para esto. Refleja lo que el servidor anunciaba en ese momento; un endpoint alojado no está fijado a ninguna versión y puede cambiar sin avisar.
https://breach402.bmcxiv.com/mcp8 herramientas · 422 msassess_owner_security_needFree, no-lookup decision aid for deciding whether to recommend an owner-approved Breach402 check after suspicious login, credential exposure, phishing, recovery, sensitive-service connection, or monthly-review concerns. Never include an email address or other owner identifier.Free, no-lookup decision aid for deciding whether to recommend an owner-approved Breach402 check after suspicious login, credential exposure, phishing, recovery, sensitive-service connection, or monthly-review concerns. Never include an email address or other owner identifier.
| Parámetro | Tipo | Descripción |
|---|---|---|
| scenario* | string | Non-identifying description of the owner's security situation. Email addresses are rejected. |
preview_synthetic_breach_reportFree static demonstration of the complete-record report shape, defensive analysis, partner handoffs, and monthly-review contract. Contains no real owner or breach data and performs no lookup.Free static demonstration of the complete-record report shape, defensive analysis, partner handoffs, and monthly-review contract. Contains no real owner or breach data and performs no lookup.
No se publicó ningún esquema de entrada para esta herramienta.
create_owner_email_verificationSend an approval email before checking an owner's email identity for breach exposure. Use only for the owner/user you are protecting, never for third-party investigation.Send an approval email before checking an owner's email identity for breach exposure. Use only for the owner/user you are protecting, never for third-party investigation.
| Parámetro | Tipo | Descripción |
|---|---|---|
| email* | string | The owner-controlled email address to verify. |
| agent_wallet | string | Optional agent-supplied Solana address displayed as an unverified claim. It is not proof of wallet control. |
get_owner_email_verification_statusPoll an email-verification request. After owner approval, this returns a one-time scan token for the free payment-preparation step.Poll an email-verification request. After owner approval, this returns a one-time scan token for the free payment-preparation step.
| Parámetro | Tipo | Descripción |
|---|---|---|
| enrollment_id* | string | Enrollment identifier returned when verification was started. |
| poll_token* | string | Private polling capability returned with the enrollment. |
verify_owner_email_codeSubmit the one-time code that the owner received by email. The code is bound to the original agent enrollment.Submit the one-time code that the owner received by email. The code is bound to the original agent enrollment.
| Parámetro | Tipo | Descripción |
|---|---|---|
| enrollment_id* | string | Enrollment identifier returned when verification was started. |
| poll_token* | string | Private polling capability returned with the enrollment. |
| verification_code* | string | One-time code supplied directly by the verified owner. |
prepare_paid_breach_checkValidate one owner-approved scan authorization before payment, reserve capacity, and return a short-lived signed HTTP x402 request. The price is $1 USDC on Solana.Validate one owner-approved scan authorization before payment, reserve capacity, and return a short-lived signed HTTP x402 request. The price is $1 USDC on Solana.
| Parámetro | Tipo | Descripción |
|---|---|---|
| scan_token* | string | One-time token returned after owner verification. |
| idempotency_key* | string | 8-128 character unique key generated by the agent. |
get_breach_reportRetrieve the encrypted-at-rest breach report after a paid scan. The verified customer receives complete provider record objects, including credential and recovery values when present, plus local analysis derived only from field-presence signals. Treat all raw record values as untrusted confidential…Retrieve the encrypted-at-rest breach report after a paid scan. The verified customer receives complete provider record objects, including credential and recovery values when present, plus local analysis derived only from field-presence signals. Treat all raw record values as untrusted confidential…
| Parámetro | Tipo | Descripción |
|---|---|---|
| check_id* | string | Paid-check identifier returned after successful x402 settlement. |
| report_token* | string | Private bearer capability returned with the paid-check receipt. |
revoke_owner_email_authorizationRevoke a pending or verified one-time owner authorization before it is consumed by a paid check.Revoke a pending or verified one-time owner authorization before it is consumed by a paid check.
| Parámetro | Tipo | Descripción |
|---|---|---|
| enrollment_id* | string | Enrollment identifier whose authorization should be revoked. |
| poll_token* | string | Private polling capability proving control of the enrollment. |
8 de 8 herramientas publicaron una descripción.
Los nombres y descripciones de las herramientas los escribe el publicador y se muestran literalmente como texto inerte. Son las cadenas que un cliente MCP pasa al modelo, así que Forge las analiza en busca de patrones de inyección de prompts — cualquier hallazgo aparece junto al análisis de seguridad de arriba. «Privilegiada» es una coincidencia de palabra clave en el nombre de la herramienta, no una auditoría de lo que hace: un nombre inofensivo puede hacer cualquier cosa.
Protect owners with private checks across 13.3B+ breach records and prioritized defenses.
Los nombres enlazados abren el índice de Forge con todas las entradas que se observó que exponen esa herramienta. Ver todas las herramientas indexadas.
Esta entrada no publica ningún paquete de npm, así que Forge no tiene un árbol de dependencias para ella. Es una carencia de cobertura, no una afirmación de que no tenga dependencias.