ai-verificate-mcp declares 5 capabilities across 5 tools, with 1 critical issue.
9/100 exposureLow exposure
Manifest retrieved 2026-09-14 from tools/list on https://mcp.verificate.ai/mcp, published in the official MCP registry as ai.verificate/mcp 1.8.7. Not verified by a maintainer.
Issues
These describe what this server's manifest declares. A product can provide controls that MCP has no
way to express — token revocation, an admin console, audit logs — and this page cannot see them. The absence of a
declaration is not evidence that a control is absent.
critical · no-revocation · All 5 tools
5 of 5 tools declare no way for the customer to switch them off once granted. This applies to every tool because MCP has no field in which to declare a revocation mechanism; the product may provide one outside MCP that a manifest cannot show.
high · no-expiry · All 5 tools
5 of 5 tools declare no expiry. This applies to every tool because MCP has no field in which to declare an expiry; the product may provide one outside MCP that a manifest cannot show.
high · no-audit-trail · All 5 tools
5 of 5 tools declare no record of their actions that the customer can read. This applies to every tool because MCP has no field in which to declare an audit requirement; the product may provide one outside MCP that a manifest cannot show.
low · uncapped-read · All 5 tools
5 tools can read data and declare no limit.
Declared capabilities
How each tool was read. declared means the server's own annotation said so — self-reported and
unverified. inferred is from the tool's name. assumed means nothing indicated either way.
Tool
Read as
Basis
validate_artifact
read
inferred
validate_ai_output
read
declared
validate_plan
read
declared
analyze_code
read
declared
generate_code
read
declared
Answering this question about your own agent? Media Yard LLC runs a
fixed-scope Agent Permission Audit: the same reading applied to your agent surface, delivered as a dated
artifact you can hand to a customer's security review. See what it includes and costs, or write to
support@leashkit.com.
Buying one does not change this page, its score or its place in the index — see Independence.
Maintain this server? If this page misreads your manifest, or your server has changed,
submit its current tools/list response and it will be re-scored and dated.
Corrections are published alongside the original, not in place of it.