Leash Index

Index / payments

ai.bitroad/bitroad

ai-bitroad-bitroad declares 65 capabilities across 65 tools, with 3 critical issues.

99/100 exposureHigh exposure

Manifest retrieved 2026-09-14 from tools/list on https://app.bitroad.ai/api/v1/mcp, published in the official MCP registry as ai.bitroad/bitroad 1.0.0. Not verified by a maintainer.

Issues

These describe what this server's manifest declares. A product can provide controls that MCP has no way to express — token revocation, an admin console, audit logs — and this page cannot see them. The absence of a declaration is not evidence that a control is absent.

critical · no-revocation · All 65 tools

65 of 65 tools declare no way for the customer to switch them off once granted. This applies to every tool because MCP has no field in which to declare a revocation mechanism; the product may provide one outside MCP that a manifest cannot show.

critical · irreversible-uncapped · 13 of 65 tools

13 tools are classified as irreversible and declare no limit.

critical · uncapped-spend · 5 of 65 tools

5 tools are classified as moving money and declare no dollar limit. A cap on the number of payments does not bound their amount.

high · no-expiry · All 65 tools

65 of 65 tools declare no expiry. This applies to every tool because MCP has no field in which to declare an expiry; the product may provide one outside MCP that a manifest cannot show.

high · no-audit-trail · All 65 tools

65 of 65 tools declare no record of their actions that the customer can read. This applies to every tool because MCP has no field in which to declare an audit requirement; the product may provide one outside MCP that a manifest cannot show.

high · uncapped-write · 16 of 65 tools

16 tools can modify data and declare no limit.

low · uncapped-read · 36 of 65 tools

36 tools can read data and declare no limit.

Declared capabilities

How each tool was read. declared means the server's own annotation said so — self-reported and unverified. inferred is from the tool's name. assumed means nothing indicated either way.

ToolRead asBasis
services_search_listingsread declared
services_purchasepay inferred
services_request_quotewrite inferred
services_get_quoteread declared
services_accept_quotewrite assumed
services_counter_quotesend inferred
services_reject_quotedelete declared
services_withdraw_quotedelete declared
services_list_my_quotesread declared
services_acknowledge_deliverywrite assumed
services_create_listingread inferred
services_get_listingread declared
services_list_open_requestsread declared
services_submit_quotewrite assumed
services_start_workwrite assumed
services_submit_deliverablewrite assumed
services_list_my_salesread declared
auth_whoamiread declared
auth_revoke_selfdelete declared
sellers_getread declared
platforms_getread declared
addresses_listread declared
addresses_createwrite inferred
payment_methods_listread declared
payment_methods_createpay inferred
envelopes_listread declared
envelopes_getread declared
disputes_filewrite assumed
disputes_listread declared
disputes_getread declared
disputes_add_evidencewrite inferred
disputes_withdrawdelete declared
disputes_respondwrite assumed
catalog_search_productsread declared
catalog_get_productread declared
catalog_list_categoriesread declared
catalog_describe_categoryread declared
purchase_create_intentpay inferred
purchase_confirm_intentpay inferred
purchase_cancel_intentpay inferred
orders_listread declared
orders_getread declared
returns_initiatewrite assumed
returns_getread declared
returns_listread declared
returns_get_labelread declared
seller_get_meread declared
seller_onboarding_statusread declared
seller_list_listingsread declared
seller_get_listingread declared
seller_create_listingread inferred
seller_update_listingread inferred
seller_archive_listingdelete declared
seller_update_stockwrite inferred
seller_list_ordersread declared
seller_get_orderread declared
seller_mark_shippedwrite assumed
seller_mark_deliveredwrite assumed
seller_attach_trackingwrite inferred
seller_list_returnsread declared
seller_get_returnread declared
seller_accept_returnwrite assumed
seller_reject_returndelete declared
seller_list_reviewsread declared
seller_respond_to_reviewsend inferred
Answering this question about your own agent? Media Yard LLC runs a fixed-scope Agent Permission Audit: the same reading applied to your agent surface, delivered as a dated artifact you can hand to a customer's security review. See what it includes and costs, or write to support@leashkit.com. Buying one does not change this page, its score or its place in the index — see Independence.
Maintain this server? If this page misreads your manifest, or your server has changed, submit its current tools/list response and it will be re-scored and dated. Corrections are published alongside the original, not in place of it.