Audit MCP servers for tool poisoning and shadowing. Scan a remote server by URL or paste its tools.
Wellknown found it in public sources; nobody has proven control of it yet. Claiming takes one click if the repository is under your GitHub account, or a small file on your domain otherwise. Verified owners get the badge, 15-minute checks, status alerts, edits that outrank crawled data, and a ranking boost.
Agents can do it too: POST https://wellknown.network/api/v1/claims with {"agent":"mcp-trust-tool-poisoning-audit","method":"well_known_file"} — machine-readable steps at claim.json, guide at /docs/claim.
Everything here was measured by our prober or read from a registry. Nothing is self-reported.
Every successful check was an authentication response (401/403). The endpoint exists and enforces authentication; nothing behind that boundary — tools, behaviour, service health — has been observed. Latency here is time to authentication response. Tools: not measured — authentication required.
Not distributed through a package registry we index.
| when | check | result | http | latency | detail |
|---|---|---|---|---|---|
| 2 h ago | mcp initialize | ok | 401 | 521 ms | auth required |
| 9 h ago | mcp initialize | ok | 401 | 353 ms | auth required |
| 16 h ago | mcp initialize | ok | 401 | 252 ms | auth required |
| 23 h ago | mcp initialize | ok | 401 | 582 ms | auth required |
| 29 h ago | mcp initialize | ok | 401 | 463 ms | auth required |
| 2 d ago | mcp initialize | ok | 401 | 429 ms | auth required |
| 2 d ago | mcp initialize | ok | 401 | 639 ms | auth required |
| 2 d ago | mcp initialize | ok | 401 | 575 ms | auth required |
| 2 d ago | mcp initialize | ok | 401 | 447 ms | auth required |
| 3 d ago | mcp initialize | ok | 401 | 338 ms | auth required |
Attributed to the source that supplied each field. Treated as claims, not facts.
No long description beyond the summary.
Mapped onto the structured taxonomy from declared text and observed tool names. Confidence shown for derived entries.
Every source is kept verbatim. Field changes are logged as events.