Diff two A2A AgentCard documents — classify changes (autonomy escalation, memory escalation, tool/model removal, incident-response URI removal, etc.), surface a breaking flag. The agent-cards counterpart to mcp-tools-diff. Library + CLI.
Diff two A2A Agent Card documents and classify the changes. The agent-cards counterpart to . Status: v0.1.0 — Node 20/22 supported, library + CLI. Agent cards declare an agent's autonomy level, memory persistence, models, tools, refusal taxonomy, evaluations, and incident-response posture. Many of those are load-bearing for procurement and security review. When the card changes between two…
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Forge read 8 source files from the repository archive and matched no MCP tool registrations. Extraction is pattern-based over shipped source: a server that builds its tool list at runtime, or that ships only bundled or minified code, registers nothing this can see. Treat it as “not detected”, not as “exposes none”.
Diff two A2A Agent Card documents and classify the changes. The agent-cards counterpart to . Status: v0.1.0 — Node 20/22 supported, library + CLI. Agent cards declare an agent's autonomy level, memory persistence, models, tools, refusal taxonomy, evaluations, and incident-response posture. Many of those are load-bearing for procurement and security review. When the card changes between two versions, which changes break the trust assumptions downstream operators already approved? This library…
This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.