Leash Index

Index / payments

TunnelMind Data API

ai-tunnelmind-data declares 93 capabilities across 93 tools, with 2 critical issues.

97/100 exposureHigh exposure

Manifest retrieved 2026-09-14 from tools/list on https://mcp-data.tunnelmind.ai/mcp, published in the official MCP registry as ai.tunnelmind/data 1.0.1. Not verified by a maintainer.

Issues

These describe what this server's manifest declares. A product can provide controls that MCP has no way to express — token revocation, an admin console, audit logs — and this page cannot see them. The absence of a declaration is not evidence that a control is absent.

critical · no-revocation · All 93 tools

93 of 93 tools declare no way for the customer to switch them off once granted. This applies to every tool because MCP has no field in which to declare a revocation mechanism; the product may provide one outside MCP that a manifest cannot show.

critical · irreversible-uncapped · 4 of 93 tools

4 tools are classified as irreversible and declare no limit.

high · no-expiry · All 93 tools

93 of 93 tools declare no expiry. This applies to every tool because MCP has no field in which to declare an expiry; the product may provide one outside MCP that a manifest cannot show.

high · no-audit-trail · All 93 tools

93 of 93 tools declare no record of their actions that the customer can read. This applies to every tool because MCP has no field in which to declare an audit requirement; the product may provide one outside MCP that a manifest cannot show.

high · uncapped-write · 28 of 93 tools

28 tools can modify data and declare no limit.

low · uncapped-read · 61 of 93 tools

61 tools can read data and declare no limit.

Declared capabilities

How each tool was read. declared means the server's own annotation said so — self-reported and unverified. inferred is from the tool's name. assumed means nothing indicated either way.

ToolRead asBasis
health_checkread inferred
get_domainread inferred
list_domainsread inferred
get_entityread inferred
list_entitiesread inferred
searchread inferred
intel_httpwrite inferred
intel_stackread inferred
intel_robotsread inferred
intel_agentwrite assumed
intel_injectread inferred
intel_optoutread inferred
get_receiptread inferred
verify_receiptread inferred
create_free_keywrite inferred
get_api_keyread inferred
revoke_api_keydelete inferred
get_taskread inferred
cancel_taskdelete inferred
stream_taskwrite assumed
audit_exportread inferred
generate_receiptread inferred
sigil_verify_ads_txtread inferred
sigil_verify_ads_txt_batchread inferred
tractionwrite assumed
snapshot_manifestwrite assumed
snapshot_datawrite inferred
snapshot_diffwrite assumed
status_historyread inferred
get_self_viewread inferred
agent_registries_lookupread inferred
verify_agentread inferred
verify_agent_signatureread inferred
create_subscriptionwrite inferred
list_subscriptionsread inferred
get_subscriptionread inferred
delete_subscriptiondelete inferred
receipt_log_sthwrite assumed
receipt_log_inclusion_proofwrite assumed
receipt_log_consistency_proofwrite assumed
receipt_lookupread inferred
attributes_lookupread inferred
tracker_verifyread inferred
sigil_verify_domainread inferred
sigil_verify_ip_typeread inferred
sigil_verify_adscertread inferred
sigil_verify_app_bundleread inferred
cross_lens_verifyread inferred
cross_lens_lookupread inferred
verdict_lookupread inferred
preflight_should_i_actwrite assumed
explain_verdictwrite assumed
profile_entitywrite assumed
signal_tracker_densityread inferred
signal_dark_pool_riskread inferred
signal_halo_scorewrite assumed
signal_team_signalwrite assumed
sigil_verify_supply_pathread inferred
sigil_verify_tokenread inferred
sigil_verify_supply_chainread inferred
sigil_traversewrite assumed
get_statsread inferred
get_website_historyread inferred
get_freshnessread inferred
ghostroute_checkwrite assumed
ghostroute_verifyread inferred
ghostroute_asn_lookupread inferred
ghostroute_ai_lookupread inferred
ghostroute_ct_witnessread inferred
ghostroute_ct_proofsread inferred
ghostroute_ct_alertsread inferred
get_bgp_eventsread inferred
sigil_ads_txt_historyread inferred
sigil_score_weightsread inferred
sigil_score_entityread inferred
sigil_score_batchwrite assumed
sigil_atap_register_aitwrite assumed
sigil_atap_witnesswrite assumed
sigil_atap_roll_blockwrite assumed
sigil_atap_ait_statusread inferred
sigil_receipt_generatewrite assumed
compliance_profileread inferred
compliance_configurewrite inferred
compliance_ledgerread inferred
compliance_exportwrite assumed
compliance_verifyread inferred
get_analyst_configread inferred
check_receipt_revokedread inferred
scan_injectionwrite assumed
scan_mcpwrite assumed
submit_feedbackdelete inferred
get_feedbackread inferred
x402_echoread inferred
Answering this question about your own agent? Media Yard LLC runs a fixed-scope Agent Permission Audit: the same reading applied to your agent surface, delivered as a dated artifact you can hand to a customer's security review. See what it includes and costs, or write to support@leashkit.com. Buying one does not change this page, its score or its place in the index — see Independence.
Maintain this server? If this page misreads your manifest, or your server has changed, submit its current tools/list response and it will be re-scored and dated. Corrections are published alongside the original, not in place of it.