Skip to content
Back to AgentScore

Card snapshot

agentscores.xyz · 2026-10-02 11:36:10 UTC · fb4d576ff1d5d8e1766224a6dff9bfb0ce467379c2712da7d92f2695a123c98d

This is a frozen copy of the agent's agent-card.json as we observed it at the timestamp above. We capture a new snapshot every time the card's content hash changes. Useful for: forensic drift analysis, verifying downstream callers see the right version, reproducing routing decisions made historically.

{
  "name": "AgentScore",
  "description": "MCP dependency policy gate for CI. Scans packages, returns trust verdicts, maps incident exposure, and monitors the MCP ecosystem continuously.",
  "url": "https://agentscores.xyz",
  "version": "2.2.0",
  "capabilities": [
    "mcp-scanning",
    "trust-verdict",
    "exposure-mapping",
    "monitoring",
    "advisories"
  ],
  "endpoints": {
    "scan": {
      "url": "https://agentscores.xyz/api/scan?npm={packageName}",
      "method": "GET",
      "description": "Scan any npm package for MCP security issues"
    },
    "verdict": {
      "url": "https://agentscores.xyz/api/verdict?npm={packageName}",
      "method": "GET",
      "description": "Trust verdict: allow, warn, or block"
    },
    "exposure": {
      "url": "https://agentscores.xyz/api/exposure?npm={packageName}",
      "method": "GET",
      "description": "Which monitored MCP servers depend on this package"
    },
    "advisories": {
      "url": "https://agentscores.xyz/api/advisories",
      "method": "GET",
      "description": "Security advisories feed"
    },
    "monitor": {
      "url": "https://agentscores.xyz/api/monitor?npm={packageName}",
      "method": "GET",
      "description": "Monitoring status and scan history"
    }
  },
  "mcp_server": {
    "npm": "@agentscore-xyz/mcp-server",
    "transport": "stdio",
    "tools": [
      "scan_package",
      "get_verdict",
      "check_exposure",
      "check_abuse",
      "monitor_status"
    ]
  }
}