Build and validate IndexNow payloads, check key files, and diff sitemaps into a submission list.
Inferred from the transports this listing declares (streamable-http). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read from a real MCP initialize → tools/list handshake against the declared endpoint. No tool was ever invoked — tools/list is the read-only introspection call the protocol defines for this. It reflects what the server advertised at that moment; a hosted endpoint is not pinned to any version and can change without notice.
https://indexnow-toolkit-mcp.lipmichal.workers.dev/mcp3 tools · 201msbuild_indexnow_payloadValidates a key and URL list against the IndexNow spec and returns the exact JSON POST body, the endpoint, a ready-to-run curl command, and the reason for every URL it dropped. Enforces the same-host rule, the 10000-URL batch limit, https/http consistency, fragment stripping and de-duplication.Validates a key and URL list against the IndexNow spec and returns the exact JSON POST body, the endpoint, a ready-to-run curl command, and the reason for every URL it dropped. Enforces the same-host rule, the 10000-URL batch limit, https/http consistency, fragment stripping and de-duplication.
keyLocation: Links to undeclared domain: host| Parameter | Type | Description |
|---|---|---|
| key* | string | The IndexNow key, 8-128 characters of [a-zA-Z0-9-]. |
| urlList* | array | Absolute URLs to submit. All must be on the same host. |
| host | string | The host, e.g. example.com. Inferred from the first URL if omitted. |
| keyLocation | string | Optional URL of the key file if it is not at https://host/<key>.txt. |
| engine | string | indexnow (default), bing, yandex, seznam or naver. |
validate_indexnow_keyChecks an IndexNow key against the protocol schema (length, character set) and, given a host, returns the exact URL the key file must be served from, the exact contents it must have, and the curl command to verify it. Most 403 rejections are a key file that returns an HTML 404 page with a 200 statu…Checks an IndexNow key against the protocol schema (length, character set) and, given a host, returns the exact URL the key file must be served from, the exact contents it must have, and the curl command to verify it. Most 403 rejections are a key file that returns an HTML 404 page with a 200 statu…
| Parameter | Type | Description |
|---|---|---|
| key* | string | The key to check. |
| host | string | Optional host, e.g. example.com, to compute the key file URL. |
diff_sitemapsParses two sitemap documents (urlset XML, sitemapindex XML, or a newline-delimited URL list) and reports added, removed and lastmod-changed URLs. Returns only the URLs worth submitting to IndexNow. Pass a key to also get the finished, validated POST body.Parses two sitemap documents (urlset XML, sitemapindex XML, or a newline-delimited URL list) and reports added, removed and lastmod-changed URLs. Returns only the URLs worth submitting to IndexNow. Pass a key to also get the finished, validated POST body.
| Parameter | Type | Description |
|---|---|---|
| previous_sitemap* | string | The earlier sitemap document. |
| current_sitemap* | string | The current sitemap document. |
| key | string | Optional IndexNow key; supplying it returns a ready-to-send payload. |
| keyLocation | string | Optional key file URL. |
| engine | string | Optional target endpoint name. |
| include_removed | boolean | Include removed URLs in the submission list. Default false. |
3 of 3 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
Build and validate IndexNow payloads, check key files, and diff sitemaps into a submission list.
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.