MCPLow riskUnclaimed

aga-mcp-server

Verifiable decision records for AI agents: signed receipts for calls to its own governed tools.

attestedintelligenceattestedintelligence/aga-mcp-serverUpdated Sep 26, 2026

server.json

{
  "$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
  "name": "io.github.attestedintelligence/aga-mcp-server",
  "description": "Verifiable decision records for AI agents: signed receipts for calls to its own governed tools.",
  "repository": {
    "url": "https://github.com/attestedintelligence/aga-mcp-server",
    "source": "github",
    "id": "1262439522"
  },
  "version": "3.6.2",
  "websiteUrl": "https://attestedintelligence.com",
  "packages": [
    {
      "registryType": "npm",
      "identifier": "@attested-intelligence/aga-mcp-server",
      "version": "3.6.2",
      "transport": {
        "type": "stdio"
      },
      "environmentVariables": [
        {
          "description": "Ed25519 seed, 64 hex characters, that signs this server's evidence-bundle receipts and checkpoint, so gateway_public_key (get_server_info) is the same after a restart and can be pinned. Set in your MCP client's configuration, the seed sits inside the governed client's trust domain. Receipts are kept in memory only; save a generate_evidence_bundle result before the server stops. Unset or invalid: a new key each start, warned on stderr. When set, even to an invalid value, AGA_GATEWAY_KEY_FILE is not read.",
          "format": "string",
          "isSecret": true,
          "name": "AGA_GATEWAY_KEY"
        },
        {
          "description": "Path to a file holding the 64-hex Ed25519 seed; read only when AGA_GATEWAY_KEY is unset or empty, with the same effect. A stdio server started by your MCP client runs as the client's OS user, so the file sits inside the governed client's trust domain. Missing, unreadable or invalid: a new key each start, warned on stderr.",
          "format": "filepath",
          "name": "AGA_GATEWAY_KEY_FILE"
        }
      ]
    }
  ]
}

Permissions

DeclaredDetected
Runs code—node
Installs—npm:@attested-intelligence/aga-mcp-server@3.6.2
Runs install scripts—None
NetworkNoneNone
Needs credentialsAGA_GATEWAY_KEYAGA_GATEWAY_KEY
Outside the workspace—None
Agent tools—None

Checks

Low risk · Nothing worth a warning was found.

Not reviewed by a person · Checked by rules; the model review is not switched on yet.

Versions

  1. #13.6.2latestOct 7, 2026