{"protocolVersion": "0.3.0", "name": "MCP Server Security Scan", "description": "MCP Server Security Scan: probes an MCP server (JSON-RPC initialize + tools/list) and applies a deterministic rule engine over its tools — embedded secrets, dangerous shell/exec/filesystem capabilities, prompt-injection surface, hidden unicode, permissive input schemas, and auth/TLS/CORS headers — returning a security_score + findings[]. The trust layer for the agent economy. Zero-LLM, Ed25519-signed. 0.05 USDC via x402 on Base. SYNTHORA.", "url": "https://mcpscan.hergertsynthora.com/service", "preferredTransport": "HTTP+JSON", "additionalInterfaces": [{"url": "https://mcpscan.hergertsynthora.com/service", "transport": "HTTP+JSON"}, {"url": "https://mcpscan.hergertsynthora.com/a2a", "transport": "JSONRPC"}], "version": "1.0.0", "provider": {"organization": "HERGERT SYNTHORA", "url": "https://hergertsynthora.com"}, "capabilities": {"streaming": false, "pushNotifications": false, "stateTransitionHistory": false}, "defaultInputModes": ["application/json"], "defaultOutputModes": ["application/json"], "skills": [{"id": "mcp_scan", "name": "mcp scan", "description": "MCP Server Security Scan: probes an MCP server (JSON-RPC initialize + tools/list) and applies a deterministic rule engine over its tools — embedded secrets, dangerous shell/exec/filesystem capabilities, prompt-injection surface, hidden unicode, permissive input schemas, and auth/TLS/CORS headers — returning a security_score + findings[]. The trust layer for the agent economy. Zero-LLM, Ed25519-signed. 0.05 USDC via x402 on Base. SYNTHORA.", "tags": ["mcp", "scan", "x402", "synthora", "m2m", "a2a"], "examples": ["{\"manifest\": {\"name\": \"demo-mcp\", \"version\": \"1.0.0\", \"tools\": [{\"name\": \"search\", \"description\": \"web search\"}, {\"name\": \"fetch\", \"description\": \"http fetch\"}]}}"], "inputModes": ["application/json"], "outputModes": ["application/json"], "inputSchema": {"type": "object", "properties": {"url": {"type": "string", "description": "MCP server URL (Streamable-HTTP endpoint)"}, "manifest": {"type": "object", "description": "Or paste the MCP manifest (serverInfo + tools) directly"}}}}], "securitySchemes": {"x402": {"type": "http", "scheme": "x402", "description": "HTTP 402 micropayment. 4000 atomic USDC on eip155:8453."}}, "security": [{"x402": []}], "x402": {"network": "eip155:8453", "asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913", "amount": "4000", "payTo": "0x10800a5a5B9d72251566EC651E862A8b4B427dE0", "resource": "https://mcpscan.hergertsynthora.com/service"}, "mcp": {"endpoint": "https://mcpscan.hergertsynthora.com/mcp", "transport": "http-jsonrpc"}}