Read-only verifier for 25 ProofRelay MCP tools and non-confidential evidence bundles.
Inferred from the transports this listing declares (streamable-http). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read from a real MCP initialize → tools/list handshake against the declared endpoint. No tool was ever invoked — tools/list is the read-only introspection call the protocol defines for this. It reflects what the server advertised at that moment; a hosted endpoint is not pinned to any version and can change without notice.
https://mcp.genesisre.io/mcp26 tools · 329msproofrelay.get_verifier_statusRead the ProofRelay verifier status, accepted bundle shape, and trust boundary before submitting evidence. Use this first when an agent needs to understand what ProofRelay verifies and what it does not.Read the ProofRelay verifier status, accepted bundle shape, and trust boundary before submitting evidence. Use this first when an agent needs to understand what ProofRelay verifies and what it does not.
No input schema was published for this tool.
proofrelay.recommend_checkpointChoose the next public-safe GENESIS checkpoint for a paid, material, or relied-upon agent workflow. Submit normalized context only; the tool returns reason codes without protected routing internals.Choose the next public-safe GENESIS checkpoint for a paid, material, or relied-upon agent workflow. Submit normalized context only; the tool returns reason codes without protected routing internals.
| Parameter | Type | Description |
|---|---|---|
| workflow_context* | object | — |
proofrelay.verify_bundleVerify a submitted non-confidential ProofRelay V1 or V2 evidence bundle for hash integrity, monotonic ordering, signatures, and chain continuity. The tool does not charge, settle, mutate storage, or certify external facts.Verify a submitted non-confidential ProofRelay V1 or V2 evidence bundle for hash integrity, monotonic ordering, signatures, and chain continuity. The tool does not charge, settle, mutate storage, or certify external facts.
| Parameter | Type | Description |
|---|---|---|
| bundle* | — | — |
| public_keys | array | — |
| require_signature | boolean | — |
| require_chain | boolean | — |
proofrelay.normalize_payment_proofValidate rail-agnostic payment or entitlement proof hashes and return the ProofRelay payment_context evidence profile. This does not charge, settle, custody funds, or verify external payment finality.Validate rail-agnostic payment or entitlement proof hashes and return the ProofRelay payment_context evidence profile. This does not charge, settle, custody funds, or verify external payment finality.
| Parameter | Type | Description |
|---|---|---|
| payment_proof* | object | — |
proofrelay.build_bundle_draftBuild a canonical, unsigned, non-attesting ProofRelay bundle draft from public-safe event hashes. The public MCP server does not sign or certify caller-provided facts.Build a canonical, unsigned, non-attesting ProofRelay bundle draft from public-safe event hashes. The public MCP server does not sign or certify caller-provided facts.
| Parameter | Type | Description |
|---|---|---|
| draft* | object | — |
proofrelay.describe_stripe_entitlement_flowReturn the agent-native Stripe checkout entitlement workflow for ProofRelay paid verification, including token, status, redemption, and replay expectations.Return the agent-native Stripe checkout entitlement workflow for ProofRelay paid verification, including token, status, redemption, and replay expectations.
No input schema was published for this tool.
proofrelay.adapt_x402_payment_proofMap public-safe x402 request, 402 challenge, payment payload, facilitator response, and resource response hashes into ProofRelay's payment_context evidence profile.Map public-safe x402 request, 402 challenge, payment payload, facilitator response, and resource response hashes into ProofRelay's payment_context evidence profile.
| Parameter | Type | Description |
|---|---|---|
| x402* | object | — |
proofrelay.plan_replay_rejection_testReturn a deterministic replay rejection test plan and optionally classify observed first/replay responses. The tool does not redeem tokens or call paid endpoints.Return a deterministic replay rejection test plan and optionally classify observed first/replay responses. The tool does not redeem tokens or call paid endpoints.
| Parameter | Type | Description |
|---|---|---|
| replay_test* | object | — |
proofrelay.wrap_mcp_tool_evidenceConvert hash-only MCP tool request, response, schema, authority, and payment context references into a portable ProofRelay evidence wrapper without ingesting raw prompts, outputs, credentials, or logs.Convert hash-only MCP tool request, response, schema, authority, and payment context references into a portable ProofRelay evidence wrapper without ingesting raw prompts, outputs, credentials, or logs.
| Parameter | Type | Description |
|---|---|---|
| tool_evidence* | object | — |
proofrelay.map_openapi_operation_evidenceMap public OpenAPI operation metadata and schema hashes into a ProofRelay event plan with checkpoint recommendations for paid, mutating, or relied-upon API operations.Map public OpenAPI operation metadata and schema hashes into a ProofRelay event plan with checkpoint recommendations for paid, mutating, or relied-upon API operations.
| Parameter | Type | Description |
|---|---|---|
| operation* | object | — |
proofrelay.generate_paid_tool_receiptGenerate an unsigned, hash-only paid MCP/API tool receipt draft that callers can include in a signed ProofRelay bundle. The tool does not charge, redeem, settle, or attest to external facts.Generate an unsigned, hash-only paid MCP/API tool receipt draft that callers can include in a signed ProofRelay bundle. The tool does not charge, redeem, settle, or attest to external facts.
| Parameter | Type | Description |
|---|---|---|
| receipt* | object | — |
proofrelay.scan_mcp_riskReturn a read-only, public-metadata MCP risk score from tool descriptors, schemas, and registry claims. Use before listing, integrating, or wrapping another MCP server; it does not fetch network data, require auth, mutate systems, inspect source code, or certify vulnerability status.Return a read-only, public-metadata MCP risk score from tool descriptors, schemas, and registry claims. Use before listing, integrating, or wrapping another MCP server; it does not fetch network data, require auth, mutate systems, inspect source code, or certify vulnerability status.
| Parameter | Type | Description |
|---|---|---|
| risk_scan* | object | — |
proofrelay.describe_cli_sdk_helperReturn public-safe setup guidance for connecting MCP clients to ProofRelay and preparing hash-only evidence inputs without exposing secrets or requiring package installation.Return public-safe setup guidance for connecting MCP clients to ProofRelay and preparing hash-only evidence inputs without exposing secrets or requiring package installation.
| Parameter | Type | Description |
|---|---|---|
| helper* | object | — |
proofrelay.build_human_approval_receiptBuild an unsigned, hash-only human approval receipt draft for authority, policy, and subject evidence. The tool does not create approval authority or certify the approver's identity.Build an unsigned, hash-only human approval receipt draft for authority, policy, and subject evidence. The tool does not create approval authority or certify the approver's identity.
| Parameter | Type | Description |
|---|---|---|
| approval* | object | — |
proofrelay.build_audit_pack_manifestBuild a portable hash-only audit pack manifest from bundle, verifier, policy, and evidence hashes without uploading private files or logs.Build a portable hash-only audit pack manifest from bundle, verifier, policy, and evidence hashes without uploading private files or logs.
| Parameter | Type | Description |
|---|---|---|
| audit_pack* | object | — |
proofrelay.summarize_agent_action_logSummarize public-safe agent action log counts and hashes into a governance review profile without ingesting raw logs or traces.Summarize public-safe agent action log counts and hashes into a governance review profile without ingesting raw logs or traces.
| Parameter | Type | Description |
|---|---|---|
| action_log* | object | — |
proofrelay.review_vendor_risk_profileReview public vendor or MCP server risk metadata for governance signals using hashes and declared boundaries only. This is not legal, security, or procurement certification.Review public vendor or MCP server risk metadata for governance signals using hashes and declared boundaries only. This is not legal, security, or procurement certification.
| Parameter | Type | Description |
|---|---|---|
| vendor* | object | — |
proofrelay.build_title_production_evidenceBuild a hash-only title production evidence profile from order, property, title-search, commitment, exception, and tax-cert hashes. The tool does not certify title status or legal sufficiency.Build a hash-only title production evidence profile from order, property, title-search, commitment, exception, and tax-cert hashes. The tool does not certify title status or legal sufficiency.
| Parameter | Type | Description |
|---|---|---|
| title_evidence* | object | — |
proofrelay.build_closing_proof_packBuild a hash-only closing proof pack manifest from settlement, title, lender, funding, notary, disbursement, and approval hashes. The tool does not authorize closing or disbursement.Build a hash-only closing proof pack manifest from settlement, title, lender, funding, notary, disbursement, and approval hashes. The tool does not authorize closing or disbursement.
| Parameter | Type | Description |
|---|---|---|
| closing_pack* | object | — |
proofrelay.review_wire_payoff_changeReview hash-only wire, payoff, or disbursement change metadata for red flags and required controls without approving funds movement.Review hash-only wire, payoff, or disbursement change metadata for red flags and required controls without approving funds movement.
| Parameter | Type | Description |
|---|---|---|
| wire_change* | object | — |
proofrelay.map_lender_condition_evidenceMap lender condition text, evidence, reviewer, and waiver hashes into a portable condition profile without satisfying lender conditions.Map lender condition text, evidence, reviewer, and waiver hashes into a portable condition profile without satisfying lender conditions.
| Parameter | Type | Description |
|---|---|---|
| condition* | object | — |
proofrelay.compute_readiness_signalCompute a public-safe readiness signal from title, closing, wire, lender-condition, approval, exception, and risk hashes/counts. The tool does not certify readiness to close or fund.Compute a public-safe readiness signal from title, closing, wire, lender-condition, approval, exception, and risk hashes/counts. The tool does not certify readiness to close or fund.
| Parameter | Type | Description |
|---|---|---|
| readiness* | object | — |
proofrelay.adapt_agent_identity_evidenceMap Concordium, ERC-8004, DID, domain, wallet-controller, or IAM identity references into a hash-only PREP-3 input. ProofRelay accepts identity as evidence; it does not issue identity or certify people.Map Concordium, ERC-8004, DID, domain, wallet-controller, or IAM identity references into a hash-only PREP-3 input. ProofRelay accepts identity as evidence; it does not issue identity or certify people.
| Parameter | Type | Description |
|---|---|---|
| identity* | object | — |
proofrelay.build_registry_entryBuild a public-safe ProofRelay Registry entry draft for an agent, API, MCP server, workflow, or adapter using only hashes and profile markers.Build a public-safe ProofRelay Registry entry draft for an agent, API, MCP server, workflow, or adapter using only hashes and profile markers.
| Parameter | Type | Description |
|---|---|---|
| entry* | object | — |
proofrelay.issue_conformance_badgeBuild an unsigned ProofRelay evidence-conformance badge draft such as PREP-compatible, Verified Bundle, Verified MCP, or Replay Tested. This is not legal, security, model-safety, or platform certification.Build an unsigned ProofRelay evidence-conformance badge draft such as PREP-compatible, Verified Bundle, Verified MCP, or Replay Tested. This is not legal, security, model-safety, or platform certification.
| Parameter | Type | Description |
|---|---|---|
| badge* | object | — |
proofrelay.verify_signed_attestationVerify a legacy Ed25519 or V2 ES256 ProofRelay artifact using public key material and optional issuer/purpose pins. The tool never accepts private keys and does not sign caller claims.Verify a legacy Ed25519 or V2 ES256 ProofRelay artifact using public key material and optional issuer/purpose pins. The tool never accepts private keys and does not sign caller claims.
| Parameter | Type | Description |
|---|---|---|
| verification* | object | — |
26 of 26 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
Read-only verifier for 25 ProofRelay MCP tools and non-confidential evidence bundles.
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.