ro.meseriasi/meseriasi-mcp-server

MCPcommunitylive
v1.0.0ro.meseriasiUnknownUpdated 1mo ago

MCP server for meseriasi.ro, a Romanian homeowner-tradesperson marketplace.

Endpoint healthlive
checked 1 day ago · 497ms
100% of the last 4 checks reached this endpoint
Works in
ClaudeCursorCopilotChatGPTGemini

Inferred from the transports this listing declares (streamable-http). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.

Automatically indexed from public sources. Not yet verified by the developer on Forge.Claim this listing →
1mo agoLast update
Package
Authorro.meseriasi
LicenseUnknown
Version1.0.0
Sourcemcp-registry
Trust Status
D
30/100Risk
Listed in Forge index+10/10
Publisher identity verified+0/30
Publisher: this listing has no repository on file, so `forge publish` cannot verify ownership automatically. Use "Claim this listing" above — Forge reviews these by hand.
Domain verification+0/10
Not currently available for this listing type — the domain-verification check only runs for npm-backed packages today, so this row cannot be earned here yet regardless of what's hosted at the domain.
Prompt-injection scan · findings+0/30
Publisher: remove instructions in the source aimed at AI clients rather than human readers
Obfuscation / exfil scan · clean+20/20
StatusCommunity-indexed
PublisherUnverified
SignatureUnsigned
Domain
Provenance
DependenciesNot audited
Tool surface5 tools · none privileged
Security scan⚠ Warnings (1)vlive · 1d agoHow well does this scan work?
PROMPTtool:request_chat_otpExfiltration-shaped instruction
EvalsNone
IndexedJul 22, 2026

Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.

Tools

5 tools · none privileged · 1 flagged for injection
Observed live from the vendor's endpoint1d ago

Read from a real MCP initialize → tools/list handshake against the declared endpoint. No tool was ever invoked — tools/list is the read-only introspection call the protocol defines for this. It reflects what the server advertised at that moment; a hosted endpoint is not pinned to any version and can change without notice.

  • https://www.meseriasi.ro/api/mcp5 tools · 497ms
search_tradespeopleSearch for tradespeople on meseriasi.ro by location and/or category (trade type). Returns a paginated list of matching profiles.

Search for tradespeople on meseriasi.ro by location and/or category (trade type). Returns a paginated list of matching profiles.

ParameterTypeDescription
locationstringCity or region name to filter by (e.g. "București", "Cluj-Napoca")
categorystringTrade type / profession category (e.g. "electrician", "instalator", "zugrav")
pagenumberPage number (default 1)
per_pagenumberResults per page, max 50 (default 10)
get_tradesperson_profileFetch the full profile of a tradesperson by their UUID (or legacy WordPress integer ID). Includes bio, location, trade type, and bid statistics.

Fetch the full profile of a tradesperson by their UUID (or legacy WordPress integer ID). Includes bio, location, trade type, and bid statistics.

ParameterTypeDescription
id*stringTradesperson UUID or legacy integer ID
request_chat_otpinjection riskSend a one-time password (OTP) to the user's email so they can verify their identity before starting a conversation with a tradesperson. Call this first, then call start_conversation with the OTP the user receives.

Send a one-time password (OTP) to the user's email so they can verify their identity before starting a conversation with a tradesperson. Call this first, then call start_conversation with the OTP the user receives.

INJECTIONExfiltration-shaped instructionSend a one-time password (OTP) to the user's email so they can verify their identity…
ParameterTypeDescription
email*stringThe homeowner's email address
start_conversationVerify the OTP sent to the user's email and start a direct conversation with a tradesperson. Creates a homeowner account automatically if the email is new.

Verify the OTP sent to the user's email and start a direct conversation with a tradesperson. Creates a homeowner account automatically if the email is new.

ParameterTypeDescription
email*stringThe homeowner's email address (same as used in request_chat_otp)
otp*stringThe 6-digit OTP code the user received by email
tradesperson_id*stringUUID of the tradesperson to contact
message*stringThe initial message to send to the tradesperson
create_projectCreate a new project on meseriasi.ro as a homeowner. Notifies nearby tradespeople automatically. Requires the caller to supply a valid Supabase access token in the "access_token" argument.

Create a new project on meseriasi.ro as a homeowner. Notifies nearby tradespeople automatically. Requires the caller to supply a valid Supabase access token in the "access_token" argument.

ParameterTypeDescription
access_token*stringSupabase JWT access token for the homeowner account
title*stringShort descriptive title for the project (max 255 chars)
descriptionstringDetailed description of the work needed
tradeType*stringCategory of trade required (e.g. "electrician", "instalator")
budgetnumberApproximate budget in RON (optional)
location*stringCity / address where the work is needed

5 of 5 tools published a description.

Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.

About

MCP server for meseriasi.ro, a Romanian homeowner-tradesperson marketplace.

Keywords
mcp
Alternatives
Comparing tool surfaces…

No dependency coverage

This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.