{"$schema":"https://wellknown.network/schemas/agent-record-v1.json","schemaVersion":"1","id":"ag_yfznucbpemw7","handle":"incidentoracle","url":"https://wellknown.network/agents/incidentoracle","links":{"self":"https://wellknown.network/agents/incidentoracle/record.json","html":"https://wellknown.network/agents/incidentoracle","markdown":"https://wellknown.network/agents/incidentoracle/record.md","api":"https://wellknown.network/api/v1/agents/incidentoracle","status":"https://wellknown.network/api/v1/agents/incidentoracle/status","claim":"https://wellknown.network/agents/incidentoracle/claim","claimApi":"https://wellknown.network/api/v1/claims","claimDescriptor":"https://wellknown.network/agents/incidentoracle/claim.json","badge":"https://wellknown.network/agents/incidentoracle/badge.svg","openapi":"https://wellknown.network/openapi.json","history":"https://wellknown.network/api/v1/agents/incidentoracle/history","tools":"https://wellknown.network/api/v1/agents/incidentoracle/tools"},"ard":{"identifier":"urn:air:tooloracle.io:server:incidentoracle","type":"application/mcp-server-card+json"},"kind":"mcp_server","declared":{"name":"incidentoracle","summary":"IncidentOracle - 12-tool incident management MCP: triage, BaFin DORA reporting, RCA.","description":"IncidentOracle - 12-tool incident management MCP: triage, BaFin DORA reporting, RCA.","publisher":{"name":"io.tooloracle","url":null},"homepage":null,"repository":"https://github.com/ToolOracle/incidentoracle","version":"1.0.0","license":null,"protocols":["mcp"],"tags":[],"pricing":null,"endpoints":[{"url":"https://tooloracle.io/incident/mcp","type":"mcp_streamable_http","auth":null,"probeable":true}],"skills":null,"tools":null,"extra":{"updatedAt":"2026-05-07T19:27:12.617465Z","publishedAt":"2026-05-07T19:27:12.617465Z","registryName":"io.tooloracle/incidentoracle"},"attribution":{"kind":"mcp_registry","name":"mcp_registry","repoUrl":"mcp_registry","summary":"mcp_registry","version":"mcp_registry","description":"mcp_registry","publisherName":"mcp_registry"}},"derived":{"capabilities":[{"slug":"analytics.reporting","name":"Reporting & Dashboards","confidence":1,"provenance":"derived"},{"slug":"communication.notifications","name":"Notifications","confidence":0.583,"provenance":"derived"},{"slug":"ai.prompting","name":"Prompt Management","confidence":0.525,"provenance":"derived"},{"slug":"automation.workflows","name":"Workflow Automation","confidence":0.51,"provenance":"derived"}],"categories":["ai","analytics","automation","communication"],"language":"pt"},"observed":{"status":"live","statusReason":"Responded 3h ago.","lastOkAt":"2026-10-10T13:25:05.336Z","lastProbedAt":"2026-10-10T13:25:05.336Z","statusComputedAt":"2026-10-10T13:26:42.419Z","reliability30d":{"probes":112,"successRate":1,"p50Ms":40,"basis":"service","measures":{"availability":"availability","latency":"response time","tools":"tool surface observed","summary":"Checks reached the service itself."},"checks":{"total":110,"ok":110,"authBoundaryOk":0,"serviceOk":110,"note":"Counted from the observation rows for the window, checks of the server only (HTTP, A2A card, MCP initialize). ok = authBoundaryOk + serviceOk. `probes` is the sum of daily rollups and includes registry checks, so it can differ from `total`."}},"latestObservations":[{"at":"2026-10-10T13:25:05.336Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":25,"error":null,"detail":{"tools":[{"name":"log_incident","description":"Log a new ICT-related incident. First step in the DORA incident management process (Art. 17)."},{"name":"classify_incident","description":"Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR."},{"name":"major_incident_check","description":"Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment."},{"name":"initial_notification","description":"Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection."},{"name":"intermediate_report","description":"Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved."},{"name":"final_report","description":"Generate the 1-month final report with root cause analysis and lessons learned."},{"name":"deadline_tracker","description":"Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming."},{"name":"reclassify","description":"Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification."},{"name":"incident_stats","description":"Dashboard: total/open/major incidents, overdue deadlines, by severity/status."},{"name":"cyber_threat_notify","description":"Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template."},{"name":"incident_log","description":"Full incident register with filters (status, classification, severity, search)."},{"name":"health_check","description":"Server status."}],"toolCount":12,"toolsHash":"d9e820998b3ada379011dfc20d9ed435cdbd5d67089bde3985a282e3f83f3699","serverName":"IncidentOracle","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2025-03-26"}},{"at":"2026-10-10T07:25:06.182Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":38,"error":null,"detail":{"tools":[{"name":"log_incident","description":"Log a new ICT-related incident. First step in the DORA incident management process (Art. 17)."},{"name":"classify_incident","description":"Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR."},{"name":"major_incident_check","description":"Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment."},{"name":"initial_notification","description":"Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection."},{"name":"intermediate_report","description":"Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved."},{"name":"final_report","description":"Generate the 1-month final report with root cause analysis and lessons learned."},{"name":"deadline_tracker","description":"Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming."},{"name":"reclassify","description":"Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification."},{"name":"incident_stats","description":"Dashboard: total/open/major incidents, overdue deadlines, by severity/status."},{"name":"cyber_threat_notify","description":"Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template."},{"name":"incident_log","description":"Full incident register with filters (status, classification, severity, search)."},{"name":"health_check","description":"Server status."}],"toolCount":12,"toolsHash":"d9e820998b3ada379011dfc20d9ed435cdbd5d67089bde3985a282e3f83f3699","serverName":"IncidentOracle","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2025-03-26"}},{"at":"2026-10-10T01:25:34.590Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":45,"error":null,"detail":{"tools":[{"name":"log_incident","description":"Log a new ICT-related incident. First step in the DORA incident management process (Art. 17)."},{"name":"classify_incident","description":"Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR."},{"name":"major_incident_check","description":"Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment."},{"name":"initial_notification","description":"Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection."},{"name":"intermediate_report","description":"Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved."},{"name":"final_report","description":"Generate the 1-month final report with root cause analysis and lessons learned."},{"name":"deadline_tracker","description":"Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming."},{"name":"reclassify","description":"Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification."},{"name":"incident_stats","description":"Dashboard: total/open/major incidents, overdue deadlines, by severity/status."},{"name":"cyber_threat_notify","description":"Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template."},{"name":"incident_log","description":"Full incident register with filters (status, classification, severity, search)."},{"name":"health_check","description":"Server status."}],"toolCount":12,"toolsHash":"d9e820998b3ada379011dfc20d9ed435cdbd5d67089bde3985a282e3f83f3699","serverName":"IncidentOracle","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2025-03-26"}},{"at":"2026-10-09T19:25:43.437Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":45,"error":null,"detail":{"tools":[{"name":"log_incident","description":"Log a new ICT-related incident. First step in the DORA incident management process (Art. 17)."},{"name":"classify_incident","description":"Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR."},{"name":"major_incident_check","description":"Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment."},{"name":"initial_notification","description":"Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection."},{"name":"intermediate_report","description":"Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved."},{"name":"final_report","description":"Generate the 1-month final report with root cause analysis and lessons learned."},{"name":"deadline_tracker","description":"Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming."},{"name":"reclassify","description":"Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification."},{"name":"incident_stats","description":"Dashboard: total/open/major incidents, overdue deadlines, by severity/status."},{"name":"cyber_threat_notify","description":"Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template."},{"name":"incident_log","description":"Full incident register with filters (status, classification, severity, search)."},{"name":"health_check","description":"Server status."}],"toolCount":12,"toolsHash":"d9e820998b3ada379011dfc20d9ed435cdbd5d67089bde3985a282e3f83f3699","serverName":"IncidentOracle","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2025-03-26"}},{"at":"2026-10-09T12:29:22.632Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":53,"error":null,"detail":{"tools":[{"name":"log_incident","description":"Log a new ICT-related incident. First step in the DORA incident management process (Art. 17)."},{"name":"classify_incident","description":"Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR."},{"name":"major_incident_check","description":"Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment."},{"name":"initial_notification","description":"Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection."},{"name":"intermediate_report","description":"Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved."},{"name":"final_report","description":"Generate the 1-month final report with root cause analysis and lessons learned."},{"name":"deadline_tracker","description":"Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming."},{"name":"reclassify","description":"Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification."},{"name":"incident_stats","description":"Dashboard: total/open/major incidents, overdue deadlines, by severity/status."},{"name":"cyber_threat_notify","description":"Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template."},{"name":"incident_log","description":"Full incident register with filters (status, classification, severity, search)."},{"name":"health_check","description":"Server status."}],"toolCount":12,"toolsHash":"d9e820998b3ada379011dfc20d9ed435cdbd5d67089bde3985a282e3f83f3699","serverName":"IncidentOracle","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2025-03-26"}},{"at":"2026-10-09T05:26:26.463Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":14,"error":null,"detail":{"tools":[{"name":"log_incident","description":"Log a new ICT-related incident. First step in the DORA incident management process (Art. 17)."},{"name":"classify_incident","description":"Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR."},{"name":"major_incident_check","description":"Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment."},{"name":"initial_notification","description":"Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection."},{"name":"intermediate_report","description":"Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved."},{"name":"final_report","description":"Generate the 1-month final report with root cause analysis and lessons learned."},{"name":"deadline_tracker","description":"Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming."},{"name":"reclassify","description":"Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification."},{"name":"incident_stats","description":"Dashboard: total/open/major incidents, overdue deadlines, by severity/status."},{"name":"cyber_threat_notify","description":"Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template."},{"name":"incident_log","description":"Full incident register with filters (status, classification, severity, search)."},{"name":"health_check","description":"Server status."}],"toolCount":12,"toolsHash":"d9e820998b3ada379011dfc20d9ed435cdbd5d67089bde3985a282e3f83f3699","serverName":"IncidentOracle","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2025-03-26"}},{"at":"2026-10-08T23:21:50.589Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":14,"error":null,"detail":{"tools":[{"name":"log_incident","description":"Log a new ICT-related incident. First step in the DORA incident management process (Art. 17)."},{"name":"classify_incident","description":"Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR."},{"name":"major_incident_check","description":"Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment."},{"name":"initial_notification","description":"Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection."},{"name":"intermediate_report","description":"Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved."},{"name":"final_report","description":"Generate the 1-month final report with root cause analysis and lessons learned."},{"name":"deadline_tracker","description":"Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming."},{"name":"reclassify","description":"Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification."},{"name":"incident_stats","description":"Dashboard: total/open/major incidents, overdue deadlines, by severity/status."},{"name":"cyber_threat_notify","description":"Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template."},{"name":"incident_log","description":"Full incident register with filters (status, classification, severity, search)."},{"name":"health_check","description":"Server status."}],"toolCount":12,"toolsHash":"d9e820998b3ada379011dfc20d9ed435cdbd5d67089bde3985a282e3f83f3699","serverName":"IncidentOracle","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2025-03-26"}},{"at":"2026-10-08T16:27:40.641Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":17,"error":null,"detail":{"tools":[{"name":"log_incident","description":"Log a new ICT-related incident. First step in the DORA incident management process (Art. 17)."},{"name":"classify_incident","description":"Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR."},{"name":"major_incident_check","description":"Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment."},{"name":"initial_notification","description":"Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection."},{"name":"intermediate_report","description":"Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved."},{"name":"final_report","description":"Generate the 1-month final report with root cause analysis and lessons learned."},{"name":"deadline_tracker","description":"Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming."},{"name":"reclassify","description":"Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification."},{"name":"incident_stats","description":"Dashboard: total/open/major incidents, overdue deadlines, by severity/status."},{"name":"cyber_threat_notify","description":"Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template."},{"name":"incident_log","description":"Full incident register with filters (status, classification, severity, search)."},{"name":"health_check","description":"Server status."}],"toolCount":12,"toolsHash":"d9e820998b3ada379011dfc20d9ed435cdbd5d67089bde3985a282e3f83f3699","serverName":"IncidentOracle","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2025-03-26"}},{"at":"2026-10-08T09:23:47.746Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":47,"error":null,"detail":{"tools":[{"name":"log_incident","description":"Log a new ICT-related incident. First step in the DORA incident management process (Art. 17)."},{"name":"classify_incident","description":"Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR."},{"name":"major_incident_check","description":"Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment."},{"name":"initial_notification","description":"Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection."},{"name":"intermediate_report","description":"Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved."},{"name":"final_report","description":"Generate the 1-month final report with root cause analysis and lessons learned."},{"name":"deadline_tracker","description":"Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming."},{"name":"reclassify","description":"Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification."},{"name":"incident_stats","description":"Dashboard: total/open/major incidents, overdue deadlines, by severity/status."},{"name":"cyber_threat_notify","description":"Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template."},{"name":"incident_log","description":"Full incident register with filters (status, classification, severity, search)."},{"name":"health_check","description":"Server status."}],"toolCount":12,"toolsHash":"d9e820998b3ada379011dfc20d9ed435cdbd5d67089bde3985a282e3f83f3699","serverName":"IncidentOracle","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2025-03-26"}},{"at":"2026-10-08T03:25:13.378Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":16,"error":null,"detail":{"tools":[{"name":"log_incident","description":"Log a new ICT-related incident. First step in the DORA incident management process (Art. 17)."},{"name":"classify_incident","description":"Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR."},{"name":"major_incident_check","description":"Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment."},{"name":"initial_notification","description":"Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection."},{"name":"intermediate_report","description":"Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved."},{"name":"final_report","description":"Generate the 1-month final report with root cause analysis and lessons learned."},{"name":"deadline_tracker","description":"Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming."},{"name":"reclassify","description":"Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification."},{"name":"incident_stats","description":"Dashboard: total/open/major incidents, overdue deadlines, by severity/status."},{"name":"cyber_threat_notify","description":"Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template."},{"name":"incident_log","description":"Full incident register with filters (status, classification, severity, search)."},{"name":"health_check","description":"Server status."}],"toolCount":12,"toolsHash":"d9e820998b3ada379011dfc20d9ed435cdbd5d67089bde3985a282e3f83f3699","serverName":"IncidentOracle","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2025-03-26"}}],"tools":[{"name":"log_incident","description":"Log a new ICT-related incident. First step in the DORA incident management process (Art. 17)."},{"name":"classify_incident","description":"Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR."},{"name":"major_incident_check","description":"Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment."},{"name":"initial_notification","description":"Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection."},{"name":"intermediate_report","description":"Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved."},{"name":"final_report","description":"Generate the 1-month final report with root cause analysis and lessons learned."},{"name":"deadline_tracker","description":"Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming."},{"name":"reclassify","description":"Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification."},{"name":"incident_stats","description":"Dashboard: total/open/major incidents, overdue deadlines, by severity/status."},{"name":"cyber_threat_notify","description":"Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template."},{"name":"incident_log","description":"Full incident register with filters (status, classification, severity, search)."},{"name":"health_check","description":"Server status."}],"package":null,"toolSurface":{"id":"ts_ndm6akt6sy73","endpointId":"ep_m8hhubr4x2qp","hash":"d9e820998b3ada379011dfc20d9ed435cdbd5d67089bde3985a282e3f83f3699","toolCount":12,"serverName":"IncidentOracle","serverVersion":"1.0.0","protocolVersion":"2025-03-26","firstSeenAt":"2026-09-12T15:26:03.387Z","lastSeenAt":"2026-10-10T13:25:05.336Z","observations":104,"toolNames":["log_incident","classify_incident","major_incident_check","initial_notification","intermediate_report","final_report","deadline_tracker","reclassify","incident_stats","cyber_threat_notify","incident_log","health_check"],"distinctSurfaces":1},"endpointFacts":[{"id":"ep_m8hhubr4x2qp","url":"https://tooloracle.io/incident/mcp","type":"mcp_streamable_http","factsCheckedAt":"2026-10-09T19:25:43.446Z","auth":{"observedAt":"2026-10-09T19:25:43.513Z","authRequired":false,"scheme":null,"resourceMetadata":{"url":"https://tooloracle.io/.well-known/oauth-protected-resource/incident/mcp","resource":"https://tooloracle.io","authorizationServers":["https://feedoracle.io"],"scopesSupported":["mcp:read","mcp:tools:read","mcp:oracles:read","mcp:compliance:read"]},"authorizationServer":{"url":"https://feedoracle.io/.well-known/oauth-authorization-server","issuer":"https://feedoracle.io","grantTypesSupported":["authorization_code","refresh_token","client_credentials"],"codeChallengeMethodsSupported":["S256"],"tokenEndpointAuthMethodsSupported":["client_secret_post","client_secret_basic"],"dynamicClientRegistration":true,"dpopSigningAlgValuesSupported":[],"clientIdMetadataDocumentSupported":null},"conformance":{"dpop":false,"rfc8414":true,"rfc9728":true,"pkceS256":true,"clientIdMetadataDocument":false,"dynamicClientRegistration":true}},"tls":{"observedAt":"2026-10-09T19:25:43.542Z","protocol":"TLSv1.3","chainValid":true,"chainError":null,"hostMatches":true,"subject":"tooloracle.io","issuer":{"commonName":"YE2","organization":"Let's Encrypt"},"validFrom":"2026-09-13T20:45:51.000Z","validTo":"2026-12-12T20:45:50.000Z","daysToExpiry":63,"sanCount":3,"fingerprint256":"60:E9:1E:8E:38:10:DD:A6:16:AC:06:BC:56:FA:6B:1B:FF:2E:47:94:2D:23:CE:02:D8:79:AE:A7:21:B0:21:74"}}]},"verification":{"claimed":false,"claimedAt":null,"proofs":[]},"provenance":{"sources":[{"source":"mcp_registry","key":"io.tooloracle/incidentoracle","url":"https://registry.modelcontextprotocol.io/v0/servers/io.tooloracle%2Fincidentoracle","firstSeenAt":"2026-09-07T07:22:36.270Z","fetchedAt":"2026-10-08T17:21:44.098Z","normalizedAt":"2026-10-08T17:21:44.098Z"}]},"firstSeenAt":"2026-09-07T07:22:36.270Z","updatedAt":"2026-10-10T13:27:33.019Z"}