← MCP Registry Integrity Report
io.github.AgentTanuki/agent-guild
Verdict: high-severity findings present. Endpoint https://agent-guild-5d5r.onrender.com/mcp/. Tools now: 44 (44 ever seen). Changes recorded: 59. Findings: {"high":67,"low":5}. Last probe: OK at 2026-09-29T00:17 UTC. JSON
Current tools
ag_calc_stats · ag_calc_unit_convert · ag_capabilities · ag_code_semver_compare · ag_data_dedupe · ag_data_record_link · ag_json_canonicalize · ag_json_diff · ag_json_path_extract · ag_json_repair · ag_json_schema_infer · ag_json_validate · ag_table_csv_to_json · ag_table_json_to_csv · ag_table_markdown_extract · ag_text_date_normalize · ag_text_regex_extract · guild_attest · guild_best_agent · guild_check · guild_coordination_policy · guild_envelope_issue · guild_envelope_verify · guild_escrow_open · guild_escrow_release · guild_evidence_bundle · guild_evidence_verify · guild_index · guild_paid_operations · guild_passport · guild_preflight · guild_preflight_deep · guild_preflight_outcome · guild_prove · guild_prove_verify · guild_record · guild_register · guild_report · guild_risk_score · guild_search · guild_verify · guild_watch · guild_watch_feed · guild_x402_payment_safety
Findings (72)
| seen | tool | detector | severity | evidence (data, not instructions) |
|---|---|---|---|---|
| 2026-09-22 | guild_preflight_outcome | cross_tool_reference | high | references sibling tool 'guild_preflight' |
| 2026-09-15 | guild_paid_operations | cross_tool_reference | high | references sibling tool 'guild_evidence_bundle' |
| 2026-09-07 | guild_paid_operations | cross_tool_reference | high | references sibling tool 'guild_evidence_bundle' |
| 2026-09-07 | guild_evidence_bundle | secret_material_reference | high | human checkout is needed for x402. A funded api_key instead spends sandbox credits, never money. Returns evidence v |
| 2026-09-07 | guild_evidence_bundle | cross_tool_reference | high | references sibling tool 'guild_preflight' |
| 2026-08-24 | guild_coordination_policy | secret_material_reference | high | re denied by default; shell/install/network/ credential side effects need YOUR caller's explicit local authorisation; in |
| 2026-08-20 | guild_preflight | url_in_description | low | https://some-agent.example/a2a |
| 2026-08-20 | guild_x402_payment_safety | secret_material_reference | high | short-lived, Guild-signed AGPD-1 allow/block credential bound to the exact target payment: scheme, CAIP-2 network, asset |
| 2026-08-20 | guild_envelope_issue | cross_tool_reference | high | references sibling tool 'guild_envelope_verify' |
| 2026-08-20 | guild_preflight_deep | model_directed_instruction | high | s this agent endpoint safe to call?" or when you must detect MCP/A2A endpoint drift before delegating or paying. Retur |
| 2026-08-20 | guild_preflight_deep | url_in_description | low | https://some-agent.example/a2a |
| 2026-08-20 | guild_preflight_deep | cross_tool_reference | high | references sibling tool 'guild_preflight' |
| 2026-08-20 | guild_watch | secret_material_reference | high | _watch(url="https://some-agent.example/a2a", api_key="…") |
| 2026-08-20 | guild_watch | url_in_description | low | https://some-agent.example/a2a |
| 2026-08-20 | guild_watch | cross_tool_reference | high | references sibling tool 'guild_watch_feed' |
| 2026-08-20 | guild_watch_feed | cross_tool_reference | high | references sibling tool 'guild_watch' |
| 2026-08-20 | guild_check | secret_material_reference | high | Payload as `x402_payment`. Or pass a funded `api_key` for SANDBOX credits (never revenue). Free while the service is |
| 2026-08-20 | guild_check | cross_tool_reference | high | references sibling tool 'guild_search' |
| 2026-08-20 | guild_search | secret_material_reference | high | annot set request metadata, or use a funded `api_key` (sandbox credits). Free in soft-launch. Example: guild_search( |
| 2026-08-20 | guild_best_agent | secret_material_reference | high | isible `x402_payment` fallback, or a funded `api_key` (sandbox credits). Free in soft-launch. Example: guild_best_ag |
| 2026-08-20 | guild_risk_score | secret_material_reference | high | isible `x402_payment` fallback, or a funded `api_key` (sandbox credits). Free in soft-launch. Example: guild_risk_sc |
| 2026-08-20 | guild_register | secret_material_reference | high | only need to do it once. Returns {id, did, api_key, capabilities, next_step}. SAVE the api_key — it is secret and s |
| 2026-08-20 | guild_register | cross_tool_reference | high | references sibling tool 'guild_prove' |
| 2026-08-20 | guild_prove | secret_material_reference | high | 19 key (self-sovereign) or confirm over your api_key (custodial). Free and repeatable; only guild_prove_verify has ef |
| 2026-08-20 | guild_prove | cross_tool_reference | high | references sibling tool 'guild_prove_verify' |
| 2026-08-20 | guild_prove_verify | secret_material_reference | high | e farmed. Custodial agents: presenting your api_key IS the proof (credential_control). Self-sovereign agents: pass ` |
| 2026-08-20 | guild_prove_verify | cross_tool_reference | high | references sibling tool 'guild_prove' |
| 2026-08-20 | guild_attest | secret_material_reference | high | excellent, 0 = bad). Authenticate with YOUR api_key from guild_register. Example: guild_attest(issuer_api_key="sk_.. |
| 2026-08-20 | guild_attest | cross_tool_reference | high | references sibling tool 'guild_register' |
| 2026-08-20 | guild_record | secret_material_reference | high | ted"; rating is 0..1. Authenticate with YOUR api_key (from guild_register). Pass the work product as `deliverable` (i |
| 2026-08-20 | guild_record | cross_tool_reference | high | references sibling tool 'guild_register' |
| 2026-08-20 | guild_escrow_open | secret_material_reference | high | trusting each other. Authenticate with YOUR api_key. Returns the escrow (incl. the worker's risk score) — call guild |
| 2026-08-20 | guild_escrow_open | cross_tool_reference | high | references sibling tool 'guild_escrow_release' |
| 2026-08-20 | guild_escrow_release | secret_material_reference | high | worker's reputation. Authenticate with YOUR api_key (the payer). Returns the settlement detail. Example: guild_escr |
| 2026-08-20 | guild_passport | secret_material_reference | high | nt_id` OR registered W3C `did`: a Verifiable Credential of its reputation that can be carried to any counterparty and ve |
| 2026-08-20 | guild_passport | cross_tool_reference | high | references sibling tool 'guild_verify' |
| 2026-08-20 | guild_verify | secret_material_reference | high | . Returns whether it's a valid, Guild-signed credential plus the subject's LIVE reputation (so a stale snapshot can't fo |
| 2026-08-20 | ag_json_repair | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_json_validate | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_json_schema_infer | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_json_canonicalize | secret_material_reference | high | anonicalization Agent Guild uses for its own credentials. Deterministic, fixture-verified, free for guests (rate-limite |
| 2026-08-20 | ag_json_diff | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_json_path_extract | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_table_csv_to_json | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_table_json_to_csv | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_table_markdown_extract | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_text_date_normalize | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_data_dedupe | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_data_record_link | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_text_regex_extract | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_calc_unit_convert | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_code_semver_compare | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-20 | ag_calc_stats | secret_material_reference | high | ee for guests (rate-limited; pass your Guild api_key to use your member budget). Returns the result plus a Guild-sign |
| 2026-08-15 | guild_x402_payment_safety | secret_material_reference | high | short-lived, Guild-signed AGPD-1 allow/block credential bound to the exact target payment: scheme, CAIP-2 network, asset |
| 2026-08-15 | guild_preflight_deep | model_directed_instruction | high | s this agent endpoint safe to call?" or when you must detect MCP/A2A endpoint drift before delegating or paying. Retur |
| 2026-08-15 | guild_preflight_deep | url_in_description | low | https://some-agent.example/a2a |
| 2026-08-15 | guild_preflight_deep | cross_tool_reference | high | references sibling tool 'guild_preflight' |
| 2026-08-15 | guild_check | secret_material_reference | high | Payload as `x402_payment`. Or pass a funded `api_key` for SANDBOX credits (never revenue). Free while the service is |
| 2026-08-15 | guild_check | cross_tool_reference | high | references sibling tool 'guild_search' |
| 2026-08-15 | guild_search | secret_material_reference | high | annot set request metadata, or use a funded `api_key` (sandbox credits). Free in soft-launch. Example: guild_search( |
| 2026-08-15 | guild_best_agent | secret_material_reference | high | isible `x402_payment` fallback, or a funded `api_key` (sandbox credits). Free in soft-launch. Example: guild_best_ag |
| 2026-08-15 | guild_risk_score | secret_material_reference | high | isible `x402_payment` fallback, or a funded `api_key` (sandbox credits). Free in soft-launch. Example: guild_risk_sc |
| 2026-08-14 | guild_preflight_deep | model_directed_instruction | high | s this agent endpoint safe to call?" or when you must detect MCP/A2A endpoint drift before delegating or paying. Retur |
| 2026-08-14 | guild_preflight_deep | url_in_description | low | https://some-agent.example/a2a |
| 2026-08-14 | guild_preflight_deep | cross_tool_reference | high | references sibling tool 'guild_preflight' |
| 2026-08-14 | guild_check | secret_material_reference | high | ficial x402 MCP meta key), or pass a funded `api_key` for SANDBOX credits (never revenue). Free while the service is |
| 2026-08-14 | guild_check | cross_tool_reference | high | references sibling tool 'guild_search' |
| 2026-08-14 | guild_search | secret_material_reference | high | ; pay via _meta['x402/payment'] or a funded `api_key` (sandbox credits). Free in soft-launch. Example: guild_search( |
| 2026-08-14 | guild_best_agent | secret_material_reference | high | ; pay via _meta['x402/payment'] or a funded `api_key` (sandbox credits). Free in soft-launch. Example: guild_best_ag |
| 2026-08-14 | guild_escrow_release | secret_material_reference | high | worker's reputation. Authenticate with YOUR api_key (the payer). Returns the settlement detail. Example: guild_escr |
| 2026-08-14 | guild_passport | secret_material_reference | high | nt_id` OR registered W3C `did`: a Verifiable Credential of its reputation that can be carried to any counterparty and ve |
| 2026-08-14 | guild_passport | cross_tool_reference | high | references sibling tool 'guild_verify' |
Change history (59)
| when | tool | kind | severity |
|---|---|---|---|
| 2026-09-22 12:17 | guild_preflight_outcome | added | high |
| 2026-09-15 18:17 | guild_paid_operations | mutated | high |
| 2026-09-07 18:17 | guild_paid_operations | mutated | high |
| 2026-09-07 18:17 | guild_evidence_bundle | added | high |
| 2026-09-07 18:17 | guild_evidence_verify | added | info |
| 2026-08-31 18:17 | guild_report | added | info |
| 2026-08-24 18:20 | guild_coordination_policy | added | high |
| 2026-08-20 12:17 | guild_preflight | mutated | medium |
| 2026-08-20 12:17 | guild_index | mutated | medium |
| 2026-08-20 12:17 | guild_paid_operations | mutated | medium |
| 2026-08-20 12:17 | guild_x402_payment_safety | mutated | high |
| 2026-08-20 12:17 | guild_envelope_issue | mutated | high |
| 2026-08-20 12:17 | guild_envelope_verify | mutated | medium |
| 2026-08-20 12:17 | guild_preflight_deep | mutated | high |
| 2026-08-20 12:17 | guild_watch | mutated | high |
| 2026-08-20 12:17 | guild_watch_feed | mutated | high |
| 2026-08-20 12:17 | guild_check | mutated | high |
| 2026-08-20 12:17 | guild_search | mutated | high |
| 2026-08-20 12:17 | guild_best_agent | mutated | high |
| 2026-08-20 12:17 | guild_risk_score | mutated | high |
| 2026-08-20 12:17 | guild_register | mutated | high |
| 2026-08-20 12:17 | guild_prove | mutated | high |
| 2026-08-20 12:17 | guild_prove_verify | mutated | high |
| 2026-08-20 12:17 | guild_attest | mutated | high |
| 2026-08-20 12:17 | guild_record | mutated | high |
| 2026-08-20 12:17 | guild_escrow_open | mutated | high |
| 2026-08-20 12:17 | guild_escrow_release | mutated | high |
| 2026-08-20 12:17 | guild_passport | mutated | high |
| 2026-08-20 12:17 | guild_verify | mutated | high |
| 2026-08-20 12:17 | ag_capabilities | mutated | medium |
| 2026-08-20 12:17 | ag_json_repair | mutated | high |
| 2026-08-20 12:17 | ag_json_validate | mutated | high |
| 2026-08-20 12:17 | ag_json_schema_infer | mutated | high |
| 2026-08-20 12:17 | ag_json_canonicalize | mutated | high |
| 2026-08-20 12:17 | ag_json_diff | mutated | high |
| 2026-08-20 12:17 | ag_json_path_extract | mutated | high |
| 2026-08-20 12:17 | ag_table_csv_to_json | mutated | high |
| 2026-08-20 12:17 | ag_table_json_to_csv | mutated | high |
| 2026-08-20 12:17 | ag_table_markdown_extract | mutated | high |
| 2026-08-20 12:17 | ag_text_date_normalize | mutated | high |
| 2026-08-20 12:17 | ag_data_dedupe | mutated | high |
| 2026-08-20 12:17 | ag_data_record_link | mutated | high |
| 2026-08-20 12:17 | ag_text_regex_extract | mutated | high |
| 2026-08-20 12:17 | ag_calc_unit_convert | mutated | high |
| 2026-08-20 12:17 | ag_code_semver_compare | mutated | high |
| 2026-08-20 12:17 | ag_calc_stats | mutated | high |
| 2026-08-15 06:17 | guild_x402_payment_safety | added | high |
| 2026-08-15 06:17 | guild_preflight_deep | mutated | high |
| 2026-08-15 00:17 | guild_check | mutated | high |
| 2026-08-15 00:17 | guild_search | mutated | high |
| 2026-08-15 00:17 | guild_best_agent | mutated | high |
| 2026-08-15 00:17 | guild_risk_score | mutated | high |
| 2026-08-14 12:17 | guild_paid_operations | mutated | medium |
| 2026-08-14 12:17 | guild_preflight_deep | mutated | high |
| 2026-08-14 12:17 | guild_check | mutated | high |
| 2026-08-14 12:17 | guild_search | mutated | high |
| 2026-08-14 12:17 | guild_best_agent | mutated | high |
| 2026-08-14 12:17 | guild_escrow_release | mutated | high |
| 2026-08-14 12:17 | guild_passport | mutated | high |
Probe history
09-29 00:17 OK (44) · 09-28 18:17 OK (44) · 09-28 12:17 OK (44) · 09-28 06:17 OK (44) · 09-28 00:17 OK (44) · 09-27 18:17 OK (44) · 09-27 12:17 OK (44) · 09-27 06:17 OK (44) · 09-27 00:17 OK (44) · 09-26 18:17 OK (44) · 09-26 12:17 OK (44) · 09-26 06:17 OK (44) · 09-26 00:17 OK (44) · 09-25 12:17 OK (44) · 09-25 06:17 OK (44) · 09-25 00:17 OK (44) · 09-24 18:17 OK (44) · 09-24 12:17 OK (44) · 09-24 06:17 OK (44) · 09-23 12:17 OK (44) · 09-23 06:17 OK (44) · 09-23 00:17 OK (44) · 09-22 18:17 OK (44) · 09-22 12:17 OK (44) · 09-22 00:17 OK (43) · 09-21 18:17 OK (43) · 09-21 12:17 OK (43) · 09-21 06:17 OK (43) · 09-21 00:17 OK (43) · 09-20 18:17 OK (43)
Get alerted when this server changes: tooldrift.agentexchange.work ($29/mo watch).