On-chain DEX aggregator: quotes and verified swap calldata computed on your own RPC. No API key.
Inferred from the transports this listing declares (streamable-http). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.
get_quoteQuote a swap on-chain through YOUR RPC: net output after the fee, the minimum the Router enforces, price impact and the PhoenixQuote a swap on-chain through YOUR RPC: net output after the fee, the minimum the Router enforces, price impact and the Phoenix
No input schema was published for this tool.
build_swapQuote a swap and return verified UNSIGNED calldata for the Router, with the minimum output and deadline baked in.Quote a swap and return verified UNSIGNED calldata for the Router, with the minimum output and deadline baked in.
No input schema was published for this tool.
simulate_swapBuild the swap, then dry-run it from the given account with an eth_call on your node. Returns the plan and the simulation.Build the swap, then dry-run it from the given account with an eth_call on your node. Returns the plan and the simulation.
No input schema was published for this tool.
check_solvencyLive staking solvency read from the chain: isSolvent() and the decoded solvency() struct. Defaults to Base.Live staking solvency read from the chain: isSolvent() and the decoded solvency() struct. Defaults to Base.
No input schema was published for this tool.
get_token_infoSymbol, decimals and name of a token, read from the chain through your RPC.Symbol, decimals and name of a token, read from the chain through your RPC.
No input schema was published for this tool.
get_deploymentsThe versioned deployment registry: Core, Hub, Solver, Quoter and Router addresses per chain and protocol version.The versioned deployment registry: Core, Hub, Solver, Quoter and Router addresses per chain and protocol version.
No input schema was published for this tool.
verify_deploymentCheck that the registry addresses for a chain and version match what is deployed on-chain, through your RPC.Check that the registry addresses for a chain and version match what is deployed on-chain, through your RPC.
No input schema was published for this tool.
7 of 7 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
On-chain DEX aggregator: quotes and verified swap calldata computed on your own RPC. No API key.
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.