{
 "server": "ai.borealhost/mcp",
 "url": "https://borealhost.ai/mcp/",
 "verdict": "high-severity findings present",
 "current_tool_count": 144,
 "tools_ever_seen": 144,
 "drift_events": 38,
 "findings_by_severity": {
  "high": 50,
  "low": 2
 },
 "last_probe": {
  "status": "OK",
  "n_tools": 144,
  "ran_at": "2026-08-13T06:17:15.836Z"
 },
 "current_tools": [
  "add_cron",
  "add_domain_dns",
  "add_firewall_rule",
  "add_redirect",
  "add_ssh_key",
  "add_subdomain",
  "adopt_compute_instance",
  "attach_compute_volume",
  "cache_flush",
  "cache_status",
  "cache_toggle",
  "cancel_scheduled_snapshot",
  "claim_api_key",
  "cloudflare_proxy_status",
  "cloudflare_purge_cache",
  "cloudflare_set_proxy",
  "complete_checkout",
  "container_action",
  "create_alert_rule",
  "create_api_key",
  "create_b2_snapshot",
  "create_backup",
  "create_checkout",
  "create_compute_volume",
  "create_directory",
  "create_ftp_account",
  "create_mailbox",
  "create_snapshot",
  "create_support_ticket",
  "create_webhook",
  "database_search_replace",
  "decommission",
  "delete_account",
  "delete_alert_rule",
  "delete_backup",
  "delete_compute_volume",
  "delete_cron",
  "delete_domain_dns",
  "delete_file",
  "delete_mailbox",
  "delete_redirect",
  "delete_snapshot",
  "delete_webhook",
  "detach_compute_volume",
  "domain_detail",
  "domain_settings",
  "enable_smtp_relay",
  "enable_wildcard",
  "execute_query",
  "get_app_status",
  "get_backup_retention",
  "get_billing_portal",
  "get_checkout_status",
  "get_compute_instance",
  "get_compute_volume",
  "get_database_info",
  "get_email_status",
  "get_logs",
  "get_metrics",
  "get_resource_snapshot",
  "get_site_status",
  "get_smtp_relay",
  "get_snapshot_usage",
  "get_ssh_info",
  "get_stack_info",
  "get_support_ticket",
  "get_webmail_url",
  "install_app",
  "launch_compute_instance",
  "link_domain",
  "list_alert_rules",
  "list_api_keys",
  "list_apps",
  "list_backups",
  "list_compute_images",
  "list_compute_instances",
  "list_compute_types",
  "list_compute_volumes",
  "list_cron",
  "list_databases",
  "list_db_users",
  "list_domain_dns",
  "list_domains",
  "list_files",
  "list_firewall_rules",
  "list_ftp_accounts",
  "list_modules",
  "list_php_versions",
  "list_plans",
  "list_plugins",
  "list_redirects",
  "list_snapshots",
  "list_subdomains",
  "list_subscriptions",
  "list_support_tickets",
  "list_tables",
  "list_themes",
  "list_webhooks",
  "manage_db_user",
  "manage_dns",
  "manage_plugin",
  "manage_theme",
  "optimize_database",
  "read_file",
  "reboot_compute_instance",
  "register",
  "register_domain",
  "remove_firewall_rule",
  "remove_ftp_account",
  "reply_support_ticket",
  "request_api_key",
  "reset_mailbox_password",
  "restore_backup",
  "revoke_api_key",
  "revoke_smtp_relay",
  "rollback_snapshot",
  "rotate_key",
  "run_malware_scan",
  "scale",
  "schedule_snapshot",
  "search_domain",
  "set_api_key",
  "set_backup_retention",
  "set_domain_usage",
  "set_force_https",
  "setup_email",
  "snapshot_compute_volume",
  "ssl_info",
  "ssl_renew",
  "start_compute_instance",
  "stop_compute_instance",
  "switch_php",
  "terminate_compute_instance",
  "test_webhook",
  "toggle_module",
  "transfer_out_domain",
  "update_account",
  "update_checkout",
  "upload_file",
  "upload_ssl_cert",
  "whoami",
  "wp_check_updates",
  "wp_update_all",
  "write_file"
 ],
 "drift": [
  {
   "tool": "register",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "set_api_key",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "whoami",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "request_api_key",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "claim_api_key",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "list_plans",
   "kind": "added",
   "severity": "info",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_checkout",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "update_checkout",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "complete_checkout",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_checkout_status",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_site_status",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "manage_dns",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "install_app",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_app_status",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "list_apps",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "list_snapshots",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_snapshot",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_b2_snapshot",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "delete_snapshot",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "rollback_snapshot",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_snapshot_usage",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "schedule_snapshot",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "cancel_scheduled_snapshot",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "list_backups",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_backup",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "restore_backup",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_metrics",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "scale",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "decommission",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "update_account",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "delete_account",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "list_subscriptions",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_billing_portal",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "rotate_key",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_api_key",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "list_api_keys",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "revoke_api_key",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_ssh_info",
   "kind": "added",
   "severity": "high",
   "detected_at": "2026-08-13T06:17:15.836Z"
  }
 ],
 "findings": [
  {
   "tool": "register",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "Register a new agent account and get an API key. No authentication needed. The returned API key grants read+wri",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "set_api_key",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "name",
   "evidence": "set_api_key",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "set_api_key",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'register'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "whoami",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "Check the current API key's account info, scopes, and site count. Requires: BOREALHOST_AP",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "request_api_key",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "name",
   "evidence": "request_api_key",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "request_api_key",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'claim_api_key'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "claim_api_key",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "name",
   "evidence": "claim_api_key",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "claim_api_key",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'request_api_key'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_checkout",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'list_plans'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "update_checkout",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'create_checkout'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "complete_checkout",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "us() until status becomes \"completed\". The API key appears in the first poll after payment (shown once, then clea",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "complete_checkout",
   "detector": "url_in_description",
   "severity": "low",
   "field": "description",
   "evidence": "https://borealhost.ai/pay/<id",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "complete_checkout",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'get_checkout_status'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_checkout_status",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "eing provisioned - \"completed\": Site ready — API key included (shown once, then cleared) - \"canceled\": Checkout was a",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_checkout_status",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'complete_checkout'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_site_status",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "resources, domains, and modules. Requires: API key with read scope. Args: slug: Site identifier (the slug chos",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "manage_dns",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "or delete DNS records for a site. Requires: API key with write scope. Args: slug: Site identifier action: \"",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "install_app",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "ll get_app_status() for progress. Requires: API key with write scope. VPS or Cloud plan only. Args: slug: Site",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "install_app",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'get_app_status'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_app_status",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "install_app() to track progress. Requires: API key with read scope. Args: slug: Site identifier app_id: Ap",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_app_status",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'install_app'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "list_apps",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "List installed apps on a site. Requires: API key with read scope. Args: slug: Site identifier Returns:",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "list_snapshots",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "d scheduled snapshots for a site. Requires: API key with read scope. Args: slug: Site identifier Returns:",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_snapshot",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "isk and count against disk quota. Requires: API key with write scope. Args: slug: Site identifier descripti",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_snapshot",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'list_snapshots'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_b2_snapshot",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "d\". Only available for VPS plans. Requires: API key with write scope. Args: slug: Site identifier descripti",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_b2_snapshot",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'list_snapshots'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "delete_snapshot",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "Delete a snapshot (local or B2). Requires: API key with write scope. Args: slug: Site identifier snapshot_",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "rollback_snapshot",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "laced with the snapshot contents. Requires: API key with admin scope. Args: slug: Site identifier snapshot_",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_snapshot_usage",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "usage and quota info for a site. Requires: API key with read scope. Args: slug: Site identifier Returns:",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "schedule_snapshot",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "a snapshot for future execution. Requires: API key with write scope. Max 3 pending schedules per site. Args: s",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "cancel_scheduled_snapshot",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "Cancel a scheduled snapshot. Requires: API key with write scope. Args: slug: Site identifier schedule_",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "list_backups",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "or a site (automatic and manual). Requires: API key with read scope. Args: slug: Site identifier Returns:",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_backup",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "l list_backups() to check status. Requires: API key with write scope. Args: slug: Site identifier Returns:",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_backup",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'list_backups'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "restore_backup",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "ously — may take several minutes. Requires: API key with admin scope. Args: slug: Site identifier backup_id",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_metrics",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "d performance metrics for a site. Requires: API key with read scope. Args: slug: Site identifier days: Numb",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "scale",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "ting plan (upgrade or downgrade). Requires: API key with admin scope. Best practice: create a snapshot before downgr",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "scale",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'list_plans'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "decommission",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "snapshot before decommissioning. Requires: API key with admin scope. Args: slug: Site identifier Returns:",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "update_account",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "e fields (email, language, name). Requires: API key with write scope. Only provided (non-empty) fields are updated.",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "delete_account",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "All sites will be decommissioned. Requires: API key with admin scope. Returns: {\"success\": true, \"message\": \"Ac",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "delete_account",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'decommission'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "list_subscriptions",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": ", pricing, status, and site slug. Requires: API key with read scope. Returns: [{\"id\": \"uuid\", \"plan_slug\": \"sit",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_billing_portal",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "the human can open in a browser. Requires: API key with read scope. Args: flow: Optional. Set to \"payment_meth",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_billing_portal",
   "detector": "url_in_description",
   "severity": "low",
   "field": "description",
   "evidence": "https://billing.stripe.com/p/session/...",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "rotate_key",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "Atomically rotate an API key. Old key is immediately invalidated. Creates a new key with the",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "create_api_key",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "name",
   "evidence": "create_api_key",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "list_api_keys",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "name",
   "evidence": "list_api_keys",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "revoke_api_key",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "name",
   "evidence": "revoke_api_key",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "revoke_api_key",
   "detector": "cross_tool_reference",
   "severity": "high",
   "field": "description",
   "evidence": "references sibling tool 'list_api_keys'",
   "seen_at": "2026-08-13T06:17:15.836Z"
  },
  {
   "tool": "get_ssh_info",
   "detector": "secret_material_reference",
   "severity": "high",
   "field": "description",
   "evidence": "cated plans (not shared hosting). Requires: API key with read scope. Args: slug: Site identifier Returns:",
   "seen_at": "2026-08-13T06:17:15.836Z"
  }
 ],
 "probes": [
  {
   "status": "OK",
   "n_tools": 144,
   "ran_at": "2026-08-13T06:17:15.836Z"
  }
 ]
}