io.github.insivotron/agent-utility-mcp

MCPcommunitylive
v0.3.0io.github.insivotronUnknownUpdated 1mo ago

Stop your agent before it runs rm -rf /etc or emails your .env. Deterministic preflight checks.

Endpoint healthlive
checked 9 days ago · 228ms
100% of the last 5 checks reached this endpoint
Works in
ClaudeCursorCopilotChatGPTGemini

Inferred from the transports this listing declares (streamable-http). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.

Automatically indexed from public sources. Not yet verified by the developer on Forge.Claim this listing →
1mo agoLast update
Package
Authorio.github.insivotron
LicenseUnknown
Version0.3.0
Sourcemcp-registry
Trust Status
B
60/100Good
✓Listed in Forge index+10/10
—Publisher identity verified+0/30
→ Publisher: this listing has no repository on file, so `forge publish` cannot verify ownership automatically. Use "Claim this listing" above — Forge reviews these by hand.
—Domain verification+0/10
→ Not currently available for this listing type — the domain-verification check only runs for npm-backed packages today, so this row cannot be earned here yet regardless of what's hosted at the domain.
✓Prompt-injection scan · clean+30/30
✓Obfuscation / exfil scan · clean+20/20
StatusCommunity-indexed
PublisherUnverified
SignatureUnsigned
Domain—
Provenance—
DependenciesNot audited
Tool surface4 tools · 1 privileged
Security scan✓ Cleanvlive · 9d agoHow well does this scan work?
EvalsNone
IndexedAug 15, 2026

Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.

Tools

4 tools · 1 privileged
Observed live from the vendor's endpoint9d ago

Read from a real MCP initialize → tools/list handshake against the declared endpoint. No tool was ever invoked — tools/list is the read-only introspection call the protocol defines for this. It reflects what the server advertised at that moment; a hosted endpoint is not pinned to any version and can change without notice.

  • https://agent-utility-mcp.insivotron.workers.dev/mcp4 tools · 228ms
analyze_url_riskAnalyze a URL for structural and security risk signals and return a deterministic, policy-aware decision (allow, notice, confirm or block) under the applicable policy — permissive, balanced or strict, balanced by default.

Analyze a URL for structural and security risk signals and return a deterministic, policy-aware decision (allow, notice, confirm or block) under the applicable policy — permissive, balanced or strict, balanced by default.

ParameterTypeDescription
url*stringThe absolute URL to analyze.
policystringOptional policy used to compute the decision: permissive, balanced or strict (default: balanced).
contextobjectOptional declarative context.
inspect_commandprivilegedAnalyze a shell command before execution and return a deterministic, policy-aware decision (allow, notice, confirm or block) without running it, under the applicable policy — permissive, balanced or strict, balanced by default. Paths outside a known workspace_root are treated as higher risk than pa…

Analyze a shell command before execution and return a deterministic, policy-aware decision (allow, notice, confirm or block) without running it, under the applicable policy — permissive, balanced or strict, balanced by default. Paths outside a known workspace_root are treated as higher risk than pa…

ParameterTypeDescription
command*stringThe complete command text to inspect without executing it.
shellstringThe command shell, when known.
cwdstringOptional working-directory context. It is never accessed.
policystringOptional policy used to compute the decision: permissive, balanced or strict (default: balanced).
contextobjectOptional declarative context.
inspect_fileInspect a Base64-encoded file locally for deterministic structural and security risk signals without executing it, and return a policy-aware decision (allow, notice, confirm or block) under the applicable policy — permissive, balanced or strict, balanced by default.

Inspect a Base64-encoded file locally for deterministic structural and security risk signals without executing it, and return a policy-aware decision (allow, notice, confirm or block) under the applicable policy — permissive, balanced or strict, balanced by default.

ParameterTypeDescription
filename*stringThe original filename, including its extension.
content_base64*stringThe complete file content encoded as canonical Base64 (maximum decoded size: 1 MiB).
policystringOptional policy used to compute the decision: permissive, balanced or strict (default: balanced).
contextobjectOptional declarative context.
analyze_tool_callAnalyze a proposed AI-agent tool call before execution and return a deterministic, policy-aware decision (allow, notice, confirm or block) covering destructive actions, sensitive-data exposure, external transmission, privilege changes and irreversible operations, under the applicable policy — permi…

Analyze a proposed AI-agent tool call before execution and return a deterministic, policy-aware decision (allow, notice, confirm or block) covering destructive actions, sensitive-data exposure, external transmission, privilege changes and irreversible operations, under the applicable policy — permi…

ParameterTypeDescription
tool_name*stringThe exact name of the proposed tool.
arguments*—The proposed tool arguments. They are analyzed as data and never executed.
policystringOptional policy used to compute the decision: permissive, balanced or strict (default: balanced).
contextobjectOptional declarative context about the proposed operation.

4 of 4 tools published a description.

Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.

About

Stop your agent before it runs rm -rf /etc or emails your .env. Deterministic preflight checks.

Keywords
mcp
Alternatives
Comparing tool surfaces…

No dependency coverage

This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.