AgentStack
Browse Sign in
Browse Why AgentStack Sell Docs
Sign in
MCP verified MIT Self-run

Examples

mcp-scopeblind-examples · by ScopeBlind

Complete examples for ScopeBlind: signed receipts, Cedar policies, and offline verification for AI agent tool calls.

No reviews yet
0 installs
18 views
0.0% view→install

Install

$ agentstack add mcp-scopeblind-examples

✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.

Security review

✓ Passed

No issues found. Passed automated security review. · v0.1.0 How review works →

  • Prompt-injection patterns
  • Secret / credential exfiltration
  • Dangerous shell & filesystem operations
  • Untrusted network calls
  • Known-malicious package signatures

What it can access

  • Network access No
  • Filesystem access No
  • Shell / process execution No
  • Environment & secrets No
  • Dynamic code execution No

From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.

View the full security report →

Verified badge

Passed review? Show it. Paste this badge into your README, it links to the public security report.

AgentStack Verified badge Links to your public security report.
[![AgentStack Verified](https://agentstack.voostack.com/badges/verified.svg)](https://agentstack.voostack.com/security/report/mcp-scopeblind-examples)

Reliability & compatibility

Security review passed
0 installs to date
no reviews yet
3mo ago

Declared compatibility

Claude CodeClaude DesktopCursorWindsurf

Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.

Preview Execution monitoring

We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.

How agent discovery & health will work →
Are you the author of Examples? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claim

About

[](https://opensource.org/licenses/MIT) [](https://datatracker.ietf.org/doc/draft-farley-acta-signed-receipts/)

ScopeBlind Examples

Complete examples showing how to add signed, independently verifiable audit trails to AI agent tool calls, including cybersecurity use cases for vulnerability disclosure.

Each example uses protect-mcp to wrap MCP tool servers with Cedar policies and Ed25519-signed receipts. Every tool call produces a cryptographic receipt that can be verified offline by anyone -- without contacting the original issuer.

Examples

| Example | Description | Time | |---------|-------------|------| | [claude-code-hooks](./claude-code-hooks/) | Add protect-mcp as Claude Code hooks. Every tool call gets a signed receipt and Cedar policy check. | ~2 min | | [express-api-gateway](./express-api-gateway/) | Wrap an Express-based MCP server with JSON policies and rate limiting. | ~5 min | | [mcp-server-signing](./mcp-server-signing/) | Cedar WASM policy engine with per-tool authorization and full audit bundles. | ~10 min | | [takt-workflow-receipts](./takt-workflow-receipts/) | Add signed receipts to TAKT multi-step workflows. Level 1 external integration. | ~5 min | | [security-vulnerability-disclosure](./security-vulnerability-disclosure/) | Receipt-signed vulnerability disclosure lifecycle with Cedar governance policies. For AI security agents. | ~10 min |

Prerequisites

  • Node.js 20+
  • npm 9+

No ScopeBlind account required. All examples run locally.

How verification works

Every tool call through protect-mcp produces a signed receipt containing:

  1. Decision -- whether the call was allowed, denied, or logged (shadow mode)
  2. Policy hash -- SHA-256 of the Cedar or JSON policy that produced the decision
  3. Timestamp -- when the decision was made
  4. Tool context -- tool name, truncated input hash, trust tier
  5. Ed25519 signature -- signs all of the above

Receipts are appended to .protect-mcp-receipts.jsonl (one JSON object per line). Anyone can verify them offline using:

npx @veritasacta/verify .protect-mcp-receipts.jsonl

This checks every signature without contacting any server. The verifier is issuer-blind -- it validates cryptographic integrity without knowing or trusting the original signer.

Links

Ecosystem

Source & license

This open-source MCP server is cataloged on AgentStack and links to its original source — we do not rehost the code.

Install and usage instructions live in the source repository linked above.

Reviews

No reviews yet, be the first.

Versions

  • v0.1.0 Imported from the upstream source.