meshfleet

MCPcon attestation
v0.22.0UnknownMITActualizado hace 4 dnpmGitHub

Auditable multi-agent coordination for OpenCode — parallel agent fleets with P2P messaging, witnessed receipts, and quorum ratification. Who saw this, who approved it, prove it.

Funciona en
ClaudeCursorCopilotGemini

Inferido de los transportes que declara este listado (stdio). Que un cliente no aparezca aquí no significa que se haya descartado: simplemente Forge no puede confirmarlo.

Build con attestation
Una attestation de procedencia verificada vincula este artefacto al repositorio listado. Nadie ha reclamado todavía el listado: esto demuestra dónde se construyó el código, no quién lo respalda.
217Descargas/sem.
1Estrellas en GitHub
hace 4 dÚltima actualización
Paquete
AutorUnknown
LicenciaMIT
Versión0.22.0
Fuentenpm+mcp-registry
Estado de confianza
A
85/100Fiable
✓Listado en el índice de Forge+10/10
✓Identidad verificada · build con attestation+20/20
—Firma de publicación Ed25519+0/5
→ Se incluye automáticamente cuando el publicador ejecuta `forge publish`
—Verificación de dominio+0/5
→ Publicador: aloja /.well-known/forge.json en la página del paquete con { "publisher": "<github-login>" }
✓npm Trusted Publishing (Sigstore)+5/5
—Coincidencia de maintainer en npm+0/5
→ Publicador: añade el login de GitHub verificado a los maintainers del paquete de npm (npm owner add <login>)
✓Análisis CVE · limpio+30/30
✓Análisis estático · limpio+20/20
Pégalo en Claude Code, Cursor o cualquier asistente de IA para corregir todas las carencias
EstadoIdentidad verificada
PublicadorSin verificar
FirmaSin firmar
Dominio—
Procedencia✓ Verificado con Sigstore · 87bd059
Dependencias✓ 60 resueltas+ · ninguna vulnerable
Superficie de herramientas40 herramientas · 2 privilegiadas
Análisis de seguridad✓ Limpiov0.22.0 · hace 1 d¿Qué tan bien funciona este análisis?
EvaluacionesNinguna
Indexado2 oct 2026

La verificación confirma la identidad del publicador (la propiedad del repo), no la seguridad del código. El análisis de seguridad cubre los CVE conocidos y los scripts de instalación sospechosos.

Herramientas

40 herramientas · 2 privilegiadas
Extraído estáticamente del paquete publicadov0.22.0 · 1d ago

Leído del código que npm publica realmente, en el momento del análisis. El paquete nunca se ejecutó. Las herramientas registradas dinámicamente en tiempo de ejecución, o escondidas en código empaquetado o minificado, pueden pasarse por alto — así que esto es un mínimo de la superficie de herramientas, no un censo completo.

spawn_fleetprivilegiadaSpawn parallel agents. Returns fleet_id. An agent banks complete only when result_contract is ok; refused, blocked, artifact_missing, invalid, or absent banks failed.

Spawn parallel agents. Returns fleet_id. An agent banks complete only when result_contract is ok; refused, blocked, artifact_missing, invalid, or absent banks failed.

No se publicó ningún esquema de entrada para esta herramienta.

fleet_statusCheck fleet and agent status.

Check fleet and agent status.

No se publicó ningún esquema de entrada para esta herramienta.

list_fleetsList all fleets with summaries (agent count, status, completion).

List all fleets with summaries (agent count, status, completion).

No se publicó ningún esquema de entrada para esta herramienta.

set_fleet_timeoutSet a per-fleet timeout override (in milliseconds). Agents exceeding this are auto-failed.

Set a per-fleet timeout override (in milliseconds). Agents exceeding this are auto-failed.

No se publicó ningún esquema de entrada para esta herramienta.

collect_resultsGet fleet outputs and loss tally. Only result_contract ok can bank complete; refused, blocked, artifact_missing, invalid, or absent banks failed. Declared outcome, not quality. Check lost first.

Get fleet outputs and loss tally. Only result_contract ok can bank complete; refused, blocked, artifact_missing, invalid, or absent banks failed. Declared outcome, not quality. Check lost first.

No se publicó ningún esquema de entrada para esta herramienta.

send_messageSend a P2P message from one agent to another within the same fleet. Set to_agent_id to "*" to broadcast to every other agent in the fleet (each recipient acks independently; see get_receipts).

Send a P2P message from one agent to another within the same fleet. Set to_agent_id to "*" to broadcast to every other agent in the fleet (each recipient acks independently; see get_receipts).

No se publicó ningún esquema de entrada para esta herramienta.

send_messagesSend a batch of P2P messages in ONE ledger transaction — use instead of repeated send_message calls for bulk fan-out (much faster: the recipient inbox is updated once per batch, not once per message). Atomic: one invalid message rejects the whole batch. Max 1000 messages per call.

Send a batch of P2P messages in ONE ledger transaction — use instead of repeated send_message calls for bulk fan-out (much faster: the recipient inbox is updated once per batch, not once per message). Atomic: one invalid message rejects the whole batch. Max 1000 messages per call.

No se publicó ningún esquema de entrada para esta herramienta.

get_inboxGet messages in an agent's inbox, optionally since a timestamp.

Get messages in an agent's inbox, optionally since a timestamp.

No se publicó ningún esquema de entrada para esta herramienta.

ack_messageAcknowledge a message, removing it from the agent's inbox. Writes an 'ack' receipt (per-recipient — a broadcast is acked independently by each recipient).

Acknowledge a message, removing it from the agent's inbox. Writes an 'ack' receipt (per-recipient — a broadcast is acked independently by each recipient).

No se publicó ningún esquema de entrada para esta herramienta.

receiptWrite a non-consuming receipt on a message — the audit primitive. Use actions like 'seen', 'r-ack' (approve), 'retracted'. Unlike ack_message, the message stays in the inbox. One receipt per (message, agent, action); repeat calls are idempotent.

Write a non-consuming receipt on a message — the audit primitive. Use actions like 'seen', 'r-ack' (approve), 'retracted'. Unlike ack_message, the message stays in the inbox. One receipt per (message, agent, action); repeat calls are idempotent.

No se publicó ningún esquema de entrada para esta herramienta.

get_receiptsGet the full receipt trail for a message: who acked, who annotated, when. Answers 'who saw this and who acted on it'.

Get the full receipt trail for a message: who acked, who annotated, when. Answers 'who saw this and who acted on it'.

No se publicó ningún esquema de entrada para esta herramienta.

verify_ledgerSin descripción publicada

Esta herramienta no publicó ninguna descripción. Forge no se la inventa.

verify_ledger_v2Versioned verifier output read from a dedicated read-only file snapshot; the handler performs no ledger writes. Normal parent-server startup recovery or migration may initialize or change the configured ledger before tool dispatch. Returns the unchanged internal-consistency report inside meshfleet.…

Versioned verifier output read from a dedicated read-only file snapshot; the handler performs no ledger writes. Normal parent-server startup recovery or migration may initialize or change the configured ledger before tool dispatch. Returns the unchanged internal-consistency report inside meshfleet.…

No se publicó ningún esquema de entrada para esta herramienta.

verify_ledger_v3Opt-in verifier output read from a dedicated read-only file snapshot; the handler performs no ledger writes. Returns a detached meshfleet.verify/v3 report with one local consistency band per finding, derived only from its severity. Those labels are not provenance or confidence and do not establish…

Opt-in verifier output read from a dedicated read-only file snapshot; the handler performs no ledger writes. Returns a detached meshfleet.verify/v3 report with one local consistency band per finding, derived only from its severity. Those labels are not provenance or confidence and do not establish…

No se publicó ningún esquema de entrada para esta herramienta.

open_ratificationOpen a quorum vote ('council') over the fleet. Broadcasts a proposal; peers vote with cast_vote. Ratifies when approvals reach the quorum and every required signoff approves. Returns the proposal message_id.

Open a quorum vote ('council') over the fleet. Broadcasts a proposal; peers vote with cast_vote. Ratifies when approvals reach the quorum and every required signoff approves. Returns the proposal message_id.

No se publicó ningún esquema de entrada para esta herramienta.

cast_voteCast a vote on an open ratification. approve=true records approval, approve=false rejection. Re-casting CHANGES your effective vote (each change appends a new sequenced receipt — history is never rewritten); repeating your current vote is a no-op.

Cast a vote on an open ratification. approve=true records approval, approve=false rejection. Re-casting CHANGES your effective vote (each change appends a new sequenced receipt — history is never rewritten); repeating your current vote is a no-op.

No se publicó ningún esquema de entrada para esta herramienta.

tally_ratificationRead the live vote tally and current status (open / ratified / rejected / expired) of a ratification, and persist the status if it has reached a terminal state.

Read the live vote tally and current status (open / ratified / rejected / expired) of a ratification, and persist the status if it has reached a terminal state.

No se publicó ningún esquema de entrada para esta herramienta.

sweep_ratificationsEvaluate every open ratification now and persist any that reached a terminal state (deadline expiry, silent-approval, unreachable quorum). The server also sweeps automatically every AGENT_MESH_RATIFY_SWEEP_MS (default 60s).

Evaluate every open ratification now and persist any that reached a terminal state (deadline expiry, silent-approval, unreachable quorum). The server also sweeps automatically every AGENT_MESH_RATIFY_SWEEP_MS (default 60s).

No se publicó ningún esquema de entrada para esta herramienta.

register_capabilityRegister an agent's capabilities (role, skills, model) for routing.

Register an agent's capabilities (role, skills, model) for routing.

No se publicó ningún esquema de entrada para esta herramienta.

route_workRoute a work description to the best-matching registered agents by keyword + role/skill overlap scoring (with synonym expansion), weighted by routing feedback (success/fail history). top_n controls how many matches to return (default 1, max = fleet size).

Route a work description to the best-matching registered agents by keyword + role/skill overlap scoring (with synonym expansion), weighted by routing feedback (success/fail history). top_n controls how many matches to return (default 1, max = fleet size).

No se publicó ningún esquema de entrada para esta herramienta.

compile_route_candidatesOffline projection of caller-supplied route-candidate snapshots. Does not persist, rank, execute, authorize, wake, or contact providers.

Offline projection of caller-supplied route-candidate snapshots. Does not persist, rank, execute, authorize, wake, or contact providers.

No se publicó ningún esquema de entrada para esta herramienta.

recommend_routeAdvisory-only ranking over caller-supplied sanitized task traits and candidate snapshots. Does not persist, execute, authorize, wake agents, or contact providers.

Advisory-only ranking over caller-supplied sanitized task traits and candidate snapshots. Does not persist, execute, authorize, wake agents, or contact providers.

No se publicó ningún esquema de entrada para esta herramienta.

plan_speculative_backlogPure, caller-approved speculative backlog projection. Does not persist, execute, authorize, wake agents, contact providers, poll, allocate capacity, schedule, spend, send, or publish.

Pure, caller-approved speculative backlog projection. Does not persist, execute, authorize, wake agents, contact providers, poll, allocate capacity, schedule, spend, send, or publish.

No se publicó ningún esquema de entrada para esta herramienta.

record_routing_outcomeRecord whether a routed task succeeded or failed. Future route_work calls for the same agent weight their score by accumulated outcomes (Wilson-style). NOTE: outcomes are currently accumulated PER AGENT, not per capability — capability_key is recorded for forward compatibility but does not yet scop…

Record whether a routed task succeeded or failed. Future route_work calls for the same agent weight their score by accumulated outcomes (Wilson-style). NOTE: outcomes are currently accumulated PER AGENT, not per capability — capability_key is recorded for forward compatibility but does not yet scop…

No se publicó ningún esquema de entrada para esta herramienta.

list_agentsList all available premade agents from .opencode/agents/ directories.

List all available premade agents from .opencode/agents/ directories.

No se publicó ningún esquema de entrada para esta herramienta.

attach_agentAttach an agent to a running fleet. It banks complete only when result_contract is ok; refused, blocked, artifact_missing, invalid, or absent banks failed.

Attach an agent to a running fleet. It banks complete only when result_contract is ok; refused, blocked, artifact_missing, invalid, or absent banks failed.

No se publicó ningún esquema de entrada para esta herramienta.

pingMinimal liveness check. Returns { status: 'ok', timestamp }.

Minimal liveness check. Returns { status: 'ok', timestamp }.

No se publicó ningún esquema de entrada para esta herramienta.

subscribe_inboxSubscribe to an agent's inbox via Server-Sent Events (SSE). Returns a stream URL that the agent opens to receive real-time push of incoming P2P messages. Falls back to polling get_inbox if SSE is unreachable. If the operator set MESHFLEET_AUTH_TOKEN, requests to the stream must carry it (Authorizat…

Subscribe to an agent's inbox via Server-Sent Events (SSE). Returns a stream URL that the agent opens to receive real-time push of incoming P2P messages. Falls back to polling get_inbox if SSE is unreachable. If the operator set MESHFLEET_AUTH_TOKEN, requests to the stream must carry it (Authorizat…

No se publicó ningún esquema de entrada para esta herramienta.

subscribe_eventsSubscribe to the unified fleet-wide event stream via Server-Sent Events (SSE). Returns a stream URL that emits every ledger event (messages, receipts, ratifications, spawns, completions, discussions) as it is appended. Keep-alive :hb comment frames are sent every 30s. Optional fleet_id filter narro…

Subscribe to the unified fleet-wide event stream via Server-Sent Events (SSE). Returns a stream URL that emits every ledger event (messages, receipts, ratifications, spawns, completions, discussions) as it is appended. Keep-alive :hb comment frames are sent every 30s. Optional fleet_id filter narro…

No se publicó ningún esquema de entrada para esta herramienta.

get_healthFleet health + liveness. Pass verbosity="summary" for a smaller routine probe (entrypoints map omitted); default "full" is the full BuildIdentityReport. Use `get_build_identity` for diagnostics.

Fleet health + liveness. Pass verbosity="summary" for a smaller routine probe (entrypoints map omitted); default "full" is the full BuildIdentityReport. Use `get_build_identity` for diagnostics.

No se publicó ningún esquema de entrada para esta herramienta.

get_build_identityFull BuildIdentityReport for the running install: package name/version, source_commit, entrypoint_count, per-entrypoint SHA-256 map, entrypoints_match_runtime bit. Diagnostic access to the install's identity.

Full BuildIdentityReport for the running install: package name/version, source_commit, entrypoint_count, per-entrypoint SHA-256 map, entrypoints_match_runtime bit. Diagnostic access to the install's identity.

No se publicó ningún esquema de entrada para esta herramienta.

save_fleet_templateSave a named fleet template (set of agent specs) for reuse. Names: lowercase letters, numbers, dashes, underscores.

Save a named fleet template (set of agent specs) for reuse. Names: lowercase letters, numbers, dashes, underscores.

No se publicó ningún esquema de entrada para esta herramienta.

list_fleet_templatesList all saved fleet templates, sorted by name.

List all saved fleet templates, sorted by name.

No se publicó ningún esquema de entrada para esta herramienta.

spawn_from_templateprivilegiadaReturn a fleet spec from a saved template, ready to pass to spawn_fleet.

Return a fleet spec from a saved template, ready to pass to spawn_fleet.

No se publicó ningún esquema de entrada para esta herramienta.

ask_peerOpen a bounded, two-agent Discussion: sends the root question and (optionally) explicitly reserves one peer attempt, then waits until the conversation deadline for a settled answer. Message arrival never starts an agent by itself — wake_peer:true is the explicit, budgeted authority to run the peer…

Open a bounded, two-agent Discussion: sends the root question and (optionally) explicitly reserves one peer attempt, then waits until the conversation deadline for a settled answer. Message arrival never starts an agent by itself — wake_peer:true is the explicit, budgeted authority to run the peer…

No se publicó ningún esquema de entrada para esta herramienta.

wake_agentSin descripción publicada

Esta herramienta no publicó ninguna descripción. Forge no se la inventa.

reply_discussionSin descripción publicada

Esta herramienta no publicó ninguna descripción. Forge no se la inventa.

get_discussionSin descripción publicada

Esta herramienta no publicó ninguna descripción. Forge no se la inventa.

record_work_receiptSin descripción publicada

Esta herramienta no publicó ninguna descripción. Forge no se la inventa.

get_work_receiptSin descripción publicada

Esta herramienta no publicó ninguna descripción. Forge no se la inventa.

34 de 40 herramientas publicaron una descripción.

Los nombres y descripciones de las herramientas los escribe el publicador y se muestran literalmente como texto inerte. Son las cadenas que un cliente MCP pasa al modelo, así que Forge las analiza en busca de patrones de inyección de prompts — cualquier hallazgo aparece junto al análisis de seguridad de arriba. «Privilegiada» es una coincidencia de palabra clave en el nombre de la herramienta, no una auditoría de lo que hace: un nombre inofensivo puede hacer cualquier cosa.

Acerca de

Auditable multi-agent coordination for OpenCode — parallel agent fleets with P2P messaging, witnessed receipts, and quorum ratification. Who saw this, who approved it, prove it.

Palabras clave
mcpopencodeagentorchestrationswarmfleetp2ppeer-to-peermodel-context-protocolauditreceiptsquorummulti-agent
Alternativas
Comparando superficies de herramientas…

Árbol de dependencias

Lo que un análisis de Forge resolvió a partir de los metadatos de npm el 2026-10-02: resolución observada, no una declaración del publicador.

60 paquetes resueltos · 2 directos · ninguno con avisos de seguridad La resolución se detiene en la profundidad 4 y en 60 paquetes.

El rastreo se detuvo en el límite de 60 paquetes. El resto del árbol nunca se resolvió.

Hay 36 paquetes resueltos más que no se dibujan aquí (límite de visualización: 24). Toda dependencia con avisos de seguridad se dibuja aunque se supere el límite. Inventario completo (SBOM CycloneDX)

Declaradas pero no resueltas

76 dependencias declaradas nunca llegaron al árbol. Faltan en la resolución de Forge, no en el paquete.

+64 más sin listar. Los recuentos por motivo de arriba las incluyen todas.

No se siguen: peerDependencies. Este árbol cubre solo dependencias en tiempo de ejecución, así que lo que estas arrastren nunca se resolvió.