# com.mosadd/mosadd-mcp

Command your AI agents by voice: PTT rooms, channels, E2EE DMs, agent email, private recall.

- **Type:** MCP server
- **Trust:** 60/100 (B), scored on the content rubric
- **Verification:** community-indexed — nobody has claimed this listing
- **Version:** 3.0.0-alpha.45
- **Author:** com.mosadd
- **License:** Unknown
- **Endpoints:** streamable-http https://mcp.mosadd.com/mcp
- **Source:** https://github.com/Hei33enberg/mosADD-OS
- **Endpoint health:** reachable (last checked 2026-10-01T16:24:02.937Z, 4 samples) — uptime is not a security property and is not part of the trust score
- **Compatible clients:** claude-code, cursor, copilot, chatgpt, gemini (basis: transport)

## Trust

60/100 (B), scored on the content rubric
- Publisher verified: no
- Install scripts: nothing suspicious found
- Prompt-injection scan: clean
- Obfuscation scan: clean
- Evidence age: 27 days

## Security scan

- **Status:** clean
- **Scanned:** 2026-09-08T18:36:36.263Z
- **Version scanned:** HEAD
- **CVEs:** no coverage — this entry has no package coordinates to query OSV against, so "no known CVEs" is NOT asserted for it.

## Tools

40 declared. Statically extracted from the shipped source — a floor on the surface, not a census.
- `mosadd.dev` — One MCP server to pull a human into the loop with your agent: a private 1:1 E2EE DM (X3DH + Double Ratchet; operator cannot read content) and push-to-talk voice
- `komputer_stan` — Stan TEJ maszyny: system, nazwa hosta, użytkownik, czas pracy, pamięć, katalog roboczy agenta.
- `komputer_pliki` — Wypisuje zawartość katalogu na tej maszynie (nazwa, czy katalog, rozmiar, data zmiany).
- `komputer_czytaj` — Czyta plik tekstowy z tej maszyny (do 60 000 znaków). Odmawia plików wyglądających na klucze
- `komputer_zrzut` — Robi zrzut całego ekranu tej maszyny i zapisuje go do pliku w katalogu roboczym agenta.
- `komputer_uruchom` — Uruchamia polecenie na tej maszynie i oddaje jego wynik. WYMAGA świadomego włączenia przez
- `comms_action_create`
- `comms_action_frame_get` — See the LATEST screen frame from a 'screen_share' action you created (pass the action_id from comms_action_create). Returns the current screenshot AS AN IMAGE y
- `mDM_send_voice` — Send a VOICE note to a contact as a first-class mDM `voice` message (not a URL stub). Pass audio bytes as base64; the tool uploads to Storage and posts via mess
- `mDM_send_file` — Send a FILE to a contact as a first-class mDM `file` message. Base64 bytes → Storage → message-send file attachment. SCAFFOLD: mDM E2EE seal is TODO (Lane A).
- `mIRC_send_voice` — Send a VOICE note into a persistent channel as a first-class `voice` message. Base64 audio → Storage → message-send (backing space resolved automatically).
- `mIRC_send_file` — Send a FILE into a persistent channel as a first-class `file` message. Base64 bytes → Storage → message-send.
- `comms_capabilities` — Discover which mosadd tools are available and what transport each requires (any | radio | network). Carrier-aware hosts (e.g. off-grid radio devices) call this 
- `comms_embed_create`
- `mRAG_graph_refresh` — (Re)build the USER'S OWN knowledge graph from their indexed data, then return what it found (counts of parties/mentions/edges). Run this first, or after new dat
- `mRAG_graph_overview` — List the parties (people / companies / services) in the user's knowledge graph, busiest first, each with its party_id, kind, aliases, appearance count, connecti
- `mRAG_graph_neighbors` — Walk the connections of one party (from mRAG_graph_overview) — who/what it is linked to, with the edge type, how many times observed, and when. Answers 'who is 
- `mRAG_graph_timeline` — Return the dated appearance timeline of one party (from mRAG_graph_overview) — each source (email/message/call/…), its thread, the party's role, and when it occ
- `mRAG_ingest`
- `mRAG_search`
- `mRAG_list_sources` — List what is currently indexed in the user's private knowledge base, grouped by source (source_type, source_id, thread_id, title) with per-source chunk counts a
- `mRAG_delete` — Remove indexed content from the user's knowledge base by source_id or thread_id (from mRAG_list_sources). Deletes every embedded chunk for that source so mRAG_s
- `mAYL_agentbox_provision`
- `mAYL_agentbox_list` — List your active agent inboxes (address, display_name, kind, agent_id, expires_at), newest first. Owner-scoped.
- `mAYL_agentbox_release` — Release (delete) one of your agent inboxes by id — frees the address immediately so it stops receiving. Owner-scoped.
- `mAYL_agentbox_extend` — Extend an EPHEMERAL agent inbox's lifetime by id (ttl_seconds counted from NOW, max 24 h). Persistent boxes never expire and cannot be extended. Owner-scoped.
- `mAYL_send_as_agent` — Send an email ATTRIBUTED TO THE AGENT (provenance-stamped). Unlike mAYL_send (sends as the user), this stamps sent_by='agent' plus your agent_id and optional ta
- `mAYL_list` — List the user's mailbox (their <userId>@mosadd.com inbox/outbox) newest-first, with sender, subject, status and a short snippet. Filter by direction ('inbound' 
- `mAYL_send`
- `mAYL_view` — Read the full body and metadata of an email by message_id.
- `mAYL_delete` — Delete one of the user's emails by message_id (from mAYL_list). Soft-delete — it stops showing in mAYL_list. Owner-scoped: only your own mail.
- `mAYL_stats` — Engagement summary for one sent email (by message_id): open_count, unique_opens, click_count, whether it was likely forwarded, first/last opened time, and a bre
- `mAYL_events` — Raw engagement timeline for one email (by message_id): every tracked event (pixel_open, link_click, forwarded, page_view, copy/print/focus signals) with timesta
- `mAYL_metrics` — Mailbox-wide engagement aggregate across the user's sent mail: total_sent, opened_emails, open_rate_pct, total_opens, total_clicks, forwarded_emails. Owner-scop
- `mAYL_revoke` — Revoke (recall) a sent email's secure-reader access by message_id — the recipient can no longer open the full message via the mosadd reader link (Virtru-style r
- `mAYL_audit_export`
- `mAYL_consent`
- `mAYL_notify`
- `mDM_send_as_agent`
- `mDM_list_my_agents`

## Install

**Verdict: review** — Installable, but 2 things to check first: No CVE coverage: this entry has no npm/PyPI coordinates to query OSV against, so "no known vulnerabilities" is not a claim that can be made about it.
**Cautions** (coverage gaps and advisories — never blocking)
- No CVE coverage: this entry has no npm/PyPI coordinates to query OSV against, so "no known vulnerabilities" is not a claim that can be made about it.
- No publisher has proved control of this listing; it is indexed, not vouched for.
**Config** (claude-code):
```json
"{\n  \"mcpServers\": {\n    \"mosadd-mcp\": {\n      \"type\": \"http\",\n      \"url\": \"https://mcp.mosadd.com/mcp\"\n    }\n  }\n}"
```

## Blast radius

Moderate to extensive — no credential declaration found, from the publisher, the upstream registry, or the README. Known so far: deletes data; runs on someone else's infrastructure.
- Floor 33, ceiling 57 (tier: unknown)
- `unknown` means the floor and ceiling land in different bands — not measured enough to name one. It does not mean low.
- This is impact, not likelihood. A high radius is not a defect: a filesystem server is supposed to write files. It is never part of the trust score.

## Machine-readable views of this entry

- Signed JSON: https://forgeregistry.com/api/v1/packages/com.mosadd%2Fmosadd-mcp
- Install plan: https://forgeregistry.com/api/v1/packages/com.mosadd%2Fmosadd-mcp/install-plan
- Alternatives: https://forgeregistry.com/api/v1/alternatives/com.mosadd%2Fmosadd-mcp
- HTML page: https://forgeregistry.com/registry/com.mosadd%2Fmosadd-mcp
- MCP: POST https://forgeregistry.com/api/mcp → `forge_get_package` / `forge_install_plan`

## About this document

Generated by Forge (https://forgeregistry.com) — a compact rendering of the same record served, signed, at the JSON URL above. Trust and scan facts are the registry's own measurements; anything Forge did not measure is named as unmeasured rather than omitted.
