# @opentrain-ai/mcp

OpenTrain MCP server: gives MCP-capable agents tools to register an OpenTrain account, draft and publish jobs, review proposals, hire freelancers, manage contracts and milestones, send messages, poll updates or register webhooks, and manage credits and te

- **Type:** MCP server
- **Trust:** 60/100 (B), scored on the package rubric
- **Verification:** community-indexed — nobody has claimed this listing
- **Version:** 0.2.2
- **Author:** OpenTrain AI
- **License:** MIT
- **npm:** @opentrain-ai/mcp
- **Source:** https://github.com/OpenTrain-AI/OpenTrain-Platform-Monorepo
- **Compatible clients:** claude-code, cursor, copilot, gemini (basis: transport)

## Trust

60/100 (B), scored on the package rubric
- Publisher verified: no
- Install scripts: nothing suspicious found
- Prompt-injection scan: not run
- Obfuscation scan: not run
- Evidence age: 111 days — stale; the grade is a claim about the present made from dated evidence

## Security scan

- **Status:** clean
- **Scanned:** 2026-06-16T11:15:51.656Z
- **Version scanned:** 0.2.2
- **CVEs:** none found by OSV at scan time

## Tools

40 declared. Statically extracted from the shipped source — a floor on the surface, not a census.
- `opentrain_register_agent`
- `opentrain_claim_account`
- `opentrain_claim_status`
- `opentrain_auth_status`
- `opentrain_create_job_draft`
- `opentrain_update_job_draft_fields`
- `opentrain_publish_job`
- `opentrain_invite_freelancer`
- `opentrain_get_proposal`
- `opentrain_get_freelancer_profile`
- `opentrain_hire_proposal`
- `opentrain_read_messages`
- `opentrain_send_message`
- `opentrain_list_pending_payments`
- `opentrain_list_jobs`
- `opentrain_list_proposals`
- `opentrain_get_team`
- `opentrain_invite_team_member`
- `opentrain_start_proposal_conversation`
- `opentrain_poll_updates`
- `opentrain_search_jobs`
- `opentrain_capabilities`
- `opentrain_list_tokens`
- `opentrain_revoke_token`
- `opentrain_list_contracts`
- `opentrain_get_contract`
- `opentrain_create_milestone`
- `opentrain_request_milestone_funding`
- `opentrain_request_milestone_approval`
- `opentrain_get_approval`
- `opentrain_end_contract`
- `opentrain_close_job`
- `opentrain_update_published_job`
- `opentrain_get_credits`
- `opentrain_list_credit_ledger`
- `opentrain_create_credit_top_up`
- `opentrain_get_credit_top_up`
- `opentrain_create_webhook`
- `opentrain_list_webhooks`
- `opentrain_get_webhook`

## Install

**Verdict: review** — Installable, but 2 things to check first: The last scan is 111 days old — the evidence behind this verdict is dated.
**Cautions** (coverage gaps and advisories — never blocking)
- The last scan is 111 days old — the evidence behind this verdict is dated.
- No publisher has proved control of this listing; it is indexed, not vouched for.
**Config** (claude-code):
```json
"{\n  \"mcpServers\": {\n    \"mcp\": {\n      \"command\": \"npx\",\n      \"args\": [\n        \"-y\",\n        \"@opentrain-ai/mcp\"\n      ]\n    }\n  }\n}"
```

## Blast radius

Contained to moderate — no credential declaration found, from the publisher, the upstream registry, or the README. Known so far: runs on your machine; read-only tool surface.
- Floor 11, ceiling 29 (tier: unknown)
- `unknown` means the floor and ceiling land in different bands — not measured enough to name one. It does not mean low.
- This is impact, not likelihood. A high radius is not a defect: a filesystem server is supposed to write files. It is never part of the trust score.

## Machine-readable views of this entry

- Signed JSON: https://forgeregistry.com/api/v1/packages/%40opentrain-ai%2Fmcp
- Install plan: https://forgeregistry.com/api/v1/packages/%40opentrain-ai%2Fmcp/install-plan
- Alternatives: https://forgeregistry.com/api/v1/alternatives/%40opentrain-ai%2Fmcp
- HTML page: https://forgeregistry.com/registry/%40opentrain-ai%2Fmcp
- MCP: POST https://forgeregistry.com/api/mcp → `forge_get_package` / `forge_install_plan`

## About this document

Generated by Forge (https://forgeregistry.com) — a compact rendering of the same record served, signed, at the JSON URL above. Trust and scan facts are the registry's own measurements; anything Forge did not measure is named as unmeasured rather than omitted.
