Every change Wellknown observed on this MCP server, newest first, with what it was before and what it became. Tool-surface changes carry the definition diff. Nothing here is edited after the fact.
Changed the definition of "check_conformance"
⟨68 unchanged words⟩ comes back as not measured rather than guessed.SetItallow_tool_callistruemeasuredonlywhenfortheaownerserverhasyoupublishedcontrol./.well-known/mcp-conduct.json with allow_tool_call true.
{"additionalProperties":false,"properties":{"allow_tool_call":{"description":"Consent to executingKeptonefortoolcompatibility.onSincethe2026-10-08checkedanserver,assertiontwice,alonewithcallsemptynoarguments.tool:Onlyconsentsetisthisprovenfor
⟨74 unchanged words⟩ the detail.","type":"object"},"consent_assertion_ignored":{"description":"Present when the request set allow_tool_call true without proven consent: the assertion was recorded and no tool was called.","type":"object"},"consent_basis":{"description":"On what basis a ⟨324 unchanged words⟩
Certificate changed, valid to 2027-01-05
Changed the definition of "check_conformance", "get_conditions", "is_verified" and 3 more
{"additionalProperties":true,"properties":{"conditionsabsence_vs_failure":{"description":"Condition 06, disclosed and never a verdict: whether the server's tools can tell a failed lookup from an empty one.","type":["arrayobject"},"canonicalization":{"description":"Condition 07, disclosed and never a verdict: whether the declared tool surface canonicalizes under RFC 8785.","type":"object"]},"checked_at":{"description":"When the measurement started, ISO 8601 UTC.","type":"string"},"checks":{"description":"One entry per condition, each with whether it was measured, whether it passed, and the detail.","type":"object"},"consent_basis":{"description":"On what basis a tool call was or was not made.","type":"string"},"consent_lookup":{"description":"Present when no proven consent was found: the consent file that was read, the result, and how to consent.","type":"object"},"consent_source":{"description":"Where the consent came from: operator_list, well_known, requester or none.","type":"string"},"coordinate_derivation":{"description":"How the measured tool and instant were derived, or that the legacy rule applied.","type":"object"},"does_not_establish":{"description":"What this verdict does not establish, as sentences.","type":"array"},"
Added "preflight_agent" (5 tools before, 6 now)
Before delegating: check an A2A agent's card, who pays it, and its register reading — Call this before handing work to an A2A agent you have not used before. Fetches the agent's public card (https://<agent>/.well-known/agent-card.json, one request), reports whether it declares the A2A Conduct Extension, who it says pays it (the compensation declaration, as declared and not verified), whether the card carries a signature, the endpoints it asks to be measured on, and this register's stored reading for each (verified is true only when the latest scheduled measurement passed; null otherwise, never false), plus where to file your own witness walk. Measures nothing new and returns c…
Unknown → Live
Listed separately from horizon-shield-construction-renovation-estimate. Checks before this date are on that record.
Showing the latest 6 events. The API returns up to 500 and filters by kind: ?kind=tool_surface_changed
⟨72 unchanged words⟩ better and mean less.","properties":{"also_measured_no_verdict":{"description":"Measurements that are disclosed and never change a verdict.","type":"object"},"conditions":{"description":"The measured conditions, keyed by condition id, each with what is measured and how.","type":["arrayobject"},"consent":{"description":"When this gate calls a tool on a checked server, and what counts as the owner's consent.","type":"string"},"establishes_and_does_not_establish":{"description":"What a verdict establishes and what it does not, as two lists.","type":"object"]},"not_verifiedgate":{"description":"Name of this gate.","type":["arraystring"},"gate_commit":{"description":"Git commit of the deployed gate, or a sentence saying the deployment did not pin one.","type":"string"},"instant_coordinate":{"description":"How the time of a scheduled measurement and the measured tool are derived rather than chosen.","type":"object"},"lookup":{"description":"How to read the register for one endpoint before connecting (GET /register/lookup).","type":"object"},"number_safety":{"description":"How numbers in a verdict are kept recomputable across JSON implementations.","type":"object"},"operator":{"description":"Who operates this gate.","type":"string"]},"reachability":{"description":"How an answer from the server is told apart from a failure to reach it (pending versus held).","type":"string"},"record_bytes":{"description":"Where the exact bytes that record_sha256 hashes are served, and since when.","type":"object"},"red_team":{"description":"The adversarial test suite this gate is run against, with its scores by version.","type":"string"},"self_applied":{"description":"Statement that this gate is measured under its own conditions.","type":"string"},"tiers":{"description":"The status words a verdict can carry and what each one means.","type":["arrayobject"},"version":{"description":"Version of the gate code that produced this document.","type":"string"},"well_known_consent":{"description":"The consent file an origin can publish, its path and its fields.","type":"object"]},"what_this_does_not_verify":{"description":"What a verdict from this gate never supports, as sentences.","type":"array"},"what_this_verifies":{"description":"The claims a verdict from this gate supports, as sentences.","type":"array"}},"type":"object"}
⟨87 unchanged words⟩ from 'measured and passing'.","properties":{"absence_vs_failure":{"description":"Measured endpoints only: condition 06 from the latest measurement, disclosed and never a verdict.","type":["object","null"]},"conditions":{"description":"Per condition: true passed, false did not pass, null not measured. null as a whole when nothing was measured.","type":["object","null"]},"endpoint":{"description":"The endpoint you asked about, echoed.","type":"string"},"gate":{"description":"Name of this gate.","type":"string"},"gate_commit":{"description":"Git commit of the deployed gate, or a sentence saying the deployment did not pin one.","type":"string"},"history_url":{"description":"URL of the stored measurements for this endpoint.","type":"string"},"how_to_appear":{"description":"Absent endpoint only: how anyone can add it to the register.","type":["string","null"]},"measured_at":{"description":"Time of the latest stored measurement, or null when there is none.","type":["string","null"]},"measurements":{"description":"Measured endpoints only: how many measurements are stored.","type":"integer"},"not_an_endorsement":{"description":"What a verified reading does not claim.","type":"string"},"on_register":{"description":"true = the endpoint has a row here. false = the register was read and it has none.","type":"boolean"},"reason":{"description":"One sentence saying why state has the value it has.","type":"string"},"recompute_note":{"description":"How to recompute record_sha256 from record_url, or why it cannot be recomputed.","type":"string"},"recompute_url":{"description":"Where to fetch what record_sha256 can be checked against: record_url when it exists, otherwise the history.","type":"string"},"record_sha256":{"description" ⟨15 unchanged words⟩ "type":["string","null"]},"record_url":{"description":"URL of the exact bytes that record_sha256 hashes, or null for a verdict stored before those bytes were kept.","type":["string","null"]},"state":{"description":"verified = passed all ⟨74 unchanged words⟩ failure.","type":["boolean","null"]},"verified_meaning":{"description":"What verified true and null mean.","type":"string"}},"type":"object"}
Returns one record (not a list). Look up what this register already holds about ⟨78 unchanged words⟩
{"additionalProperties":true,"description":"Returns one record (not a list): what this register holds for the single endpoint you named. Fields after on_register depend on its value: an absent endpoint carries register_size, how_to_appear and fresh_reading; an endpoint on the register carries the rest.","properties":{"added_at":{"description":"On the register: when the row was added, or null if not recorded.","type":["string","null"]},"alerted_on_change":{"description":"On the register: whether someone asked to be notified when the row changes.","type":"boolean"},"cadence":{"description":"On the register: how often it is re-measured (weekly or daily).","type":"string"},"does_not_mean":{"description":"What this answer must not be read as.","type":"string"},"endpoint":{"description":"The endpoint you asked about, echoed.","type":"string"},"first_measured_at":{"description":"On the register: time of the first stored measurement, or null.","type":["string","objectnull"]},"fresh_reading":{"description":"Absent endpoint only: how to measure it right now.","type":"string"},"full_history_url":{"description":"On the register: URL of the complete history for this endpoint.","type":"string"},"history":{"description":"On the register: the most recent stored measurements, oldest first, at most 20.","type":"array"},"history_truncated":{"description":"On the register: true when history leaves out older measurements.","type":"boolean"},"how_to_appear":{"description":"Absent endpoint only: how anyone can add it to the register.","type":"string"},"last_measured_at":{"description":"On the register: time of the latest stored measurement, or null.","type":["string","null"]},"latest":{"description":"On the register: the latest stored measurement as a summary with its record_sha256, or null if none.","type":["object","null"]},"means":{"description":"What this answer means.","type":["string"},"objectmeasurements"]:{"description":"On the register: how many measurements are stored for this endpoint.","type":"integer"},"on_register":{"description":"true = ⟨49 unchanged words⟩ ,"type":"boolean"},"register_size":{"description":"Absent endpoint only: how many endpoints are on the watchlist.","type":"numberinteger"},"standing":{"description":"On the register: measured, or a sentence saying it is watched and not yet measured.","type":["string"},"nulltier"]:{"description":"On the register: free, paid or self. The verdict is the same for every tier.","type":"string"}},"type":"object"}
before
—after
{"additionalProperties":true,"description":"What the agent's public card declares and what this register holds for the endpoints it names. Counts and pointers, never a score. A card that could not be fetched or read comes back as a tool error (isError), not as this object.","properties":{"agent":{"description":"The agent's https origin.","type":"string"},"card_signature_present":{"description":"Whether the card carries a signature. Presence only; the signature is not verified here.","type":"boolean"},"card_status":{"description":"HTTP status the card URL answered with.","type":["integer","null"]},"card_url":{"description":"The agent card URL that was fetched.","type":"string"},"compensation":{"description":"Who the agent says pays it, as declared and not verified, or null when it says nothing.","type":["object","null"]},"compensation_source":{"description":"Where the compensation declaration was read: extension params or card top-level.","type":["string","null"]},"conduct_record":{"description":"Where the card says its conduct record is published, or null.","type":["string","null"]},"declared_uri":{"description":"The extension URI the card declared, or null.","type":["string","null"]},"does_not_establish":{"description":"What this reading does not establish, as sentences.","type":"array"},"extension_declared":{"description":"true = the card declares the A2A Conduct Extension. false is not a negative verdict.","type":"boolean"},"how_to_file":{"description":"How to walk the agent yourself and file your own record.","type":"string"},"measured_endpoints":{"description":"The https endpoints the card asks to be measured on, at most 5.","type":"array"},"ok":{"description":"Always true in this object: the card was fetched and read.","type":"boolean"},"register":{"description":"This register's stored reading for each of those endpoints: state, verified (true or null, never false), record_sha256.","type":"array"},"schema":{"description":"Format name of this object: gate-preflight-v1.","type":"string"},"witness_intake":{"description":"Where the card says witness records can be filed, or null.","type":["string","null"]}},"type":"object"}{"additionalProperties":true,"properties":{"expected_sha256":{"description":"The record_sha256 found in the record you passed, echoed as given (a string in any verdict this gate issued). Absent when the record had none.","type":["string","number","boolean","object","array"]},"method":{"description":"The arithmetic used, so you can repeat it without this gate.","type":"string"},"note":{"description":"What a match or a mismatch does and does not prove.","type":"string"},"reason":{"description":"Present instead of the hashes when the input could not be checked: not an object, or no record_sha256.","type":"string"},"recomputed_sha256":{"description":"SHA-256 this call computed from the record. Absent when there was nothing to compare it with.","type":"string"},"verified":{"description":"true = the verdict ⟨8 unchanged words⟩ not altered after issue. false = it wasaltered.altered, or it carries no record_sha256. This is a finding about the record, not an error.","type":["boolean","null"]}},"type":"object"}