Mnemom — Trust Ratings for AI Agents MCP server
online · 100% uptimeTrust infrastructure for AI agents: read a verifiable Trust Rating, claim an identity, earn a badge.
1 stars
Reviews
Write oneNobody has reviewed Mnemom — Trust Ratings for AI Agents yet.
If you have run it, two minutes of your experience saves the next person an afternoon.
Mnemom — Trust Ratings for AI Agents tools (15, 3 write)
write = sends, deletes, buys or postsclaim_agentFreeClaim a verifiable identity — bind an agent to your organization so its trust and accountability record is provably yours. No human in the loop.
get_agentFreeLook up an agent's public identity and trust state by ID — the accountable record other agents and humans can rely on.
get_reputationFreeLook up an AI agent's published Trust Rating — Mnemom's portable reliability signal for autonomous software, computed from the agent's own verified activity record. Returns the rating plus the technical factors behind it. Free, public, read-only: every registered agent's rating is published by standard (the `visibility` field is the reputation-publication axis, distinct from identity-record visibility).
get_reputation_badgeFreeGet an embeddable Trust Rating badge for an agent — returns the badge image URL plus ready-to-paste Markdown and HTML snippets for a README or agent card.
get_startedFreeZero-auth, no-args orientation: who Mnemom is, the surface map, how to authenticate and what it unlocks, and the value tools to try right now (headlining scan_trust + the reputation reads).
list_agentsFreeList your agents — List all agents owned by the authenticated user. Supports pagination.
preview_compose_alignment_by_agentFreePreview composed alignment (dry run) — Composes the cascade against a hypothetical body at the agent layer and returns conflicts + the composed view. No DB writes. Used by the dashboard editor for live conflict markers.
preview_compose_protection_by_agentFreePreview composed protection (dry run) — Composes the cascade against a hypothetical body at the agent layer and returns conflicts + the composed view. No DB writes. Used by the dashboard editor for live conflict markers.
put_alignment_by_agentwrite actionFreePublish or replace the alignment manifest — Accepts YAML (`text/yaml`, `application/yaml`) or JSON. Body is the full `UnifiedAlignmentCard`; server-side composition merges it across the platform → org → team → agent cascade and writes the canonical composed card. Requires `Idempotency-Key`. Honor...
put_protection_by_agentwrite actionFreePublish or replace the protection manifest — Accepts YAML (`text/yaml`, `application/yaml`) or JSON. Body is the full `UnifiedProtectionCard`; server-side composition merges it across the platform → org → team → agent cascade and writes the canonical composed card. Requires `Idempotency-Key`. Hon...
report_recipe_fn_fpwrite actionFreeSubmit a false-positive / false-negative correction for one of Mnemom's automated detection rules (a 'recipe') — technical feedback that improves detection accuracy, like filing a bug report against a spam filter.
scan_trustFreeScan a website's agent-trust-readiness and return a signed scorecard (Trust, plus an Access axis on newer rubrics). Zero-auth. Results are CACHED for up to 24h — check `cached` and `scannedAt` on the result; pass `fresh: true` to force a re-scan (rate-limited). Proxies to the SSRF-locked isittrustready scanner; the Ed25519 signature + permalink are preserved verbatim. Rubric + docs: https://www.isittrustready.ai/rubric and https://docs.mnemom.ai/.
search_reputation_directoryFreeResolve an agent name or id-prefix to a real agent_id over the PUBLIC reputation directory (only agents whose reputation visibility is public). Zero-auth. The arriving-agent entry point: discover a concrete agent_id, then call get_reputation / verify_reputation on it.
verify_reputationFreeAttest an agent's Trust Rating — returns a Merkle-root + hash-chain attestation (hash_chain_valid) proving the rating derives from an unbroken, append-only checkpoint chain, plus a pointer to the signed integrity certificate. This is a chain-integrity attestation, NOT an in-band Ed25519 signature check (that parity is verify_scan, for website scorecards).
verify_scanFreeVerify a website scan scorecard's Ed25519 signature IN-BAND (verify, don't trust). Pass a `scan` (a scorecard from scan_trust) or a `url` to re-scan; returns {verified, key_id, canonicalization} checked against the public key at mnemom://iitr/jwks. Zero-auth. Spec + rubric: https://www.isittrustready.ai/rubric and https://docs.mnemom.ai/.
Public scan report
scanner v0.1.9 · 2026-09-27 · same rubric, same numbers if you re-run it
- –Code scanremote-only server, no package to scann/a
- Live reliabilityremote reachable in 240ms20/20
- Tool poisoning15 tool descriptions checked15/15
- Auth qualityopen endpoint exposes 3 write-action tools with no auth3/15
- Maintenancelast push 0 days ago15/15
- Maintainer identityregistry namespace matches repository owner7/10
Findings (1)
- highWrite-action tools reachable without authentication
auth.open-write
Install Mnemom — Trust Ratings for AI Agents in Claude Code, Cursor or VS Code
claude mcp add --transport http mnemom https://api.mnemom.ai/mcp?profile=directory
What the publisher says
From the Mnemom — Trust Ratings for AI Agents repository's README, as published. We do not edit it. Read it on GitHub
Mnemom — Trust Ratings for AI Agents (MCP server)
Canonical home for the Mnemom Model Context Protocol (MCP) server — trust infrastructure for the agent internet. Look up a verifiable Trust Rating for an AI agent, scan a website's AI-trust-readiness, verify signed scorecards in‑band, claim an agent identity, and publish an alignment card.
This repo is the public, canonical source of truth for the server's connection details and manifest. The server implementation runs on Mnemom's platform; this repo is its metadata + documentation home.
- Website: https://www.mnemom.ai · for agents: https://www.mnemom.ai/for-agents
- Docs: https://docs.mnemom.ai
- Rubric (isittrustready): https://www.isittrustready.ai/rubric
- Official MCP registry: io.github.mnemom/mnemom
- Maintainer: support@mnemom.ai
Connect
Streamable‑HTTP MCP endpoint (curated directory profile, 16 tools):
https://api.mnemom.ai/mcp?profile=directoryThe full manifest is in server.json.
In Claude / ChatGPT / any MCP client
Add a custom connector pointing at the URL above. Reads are anonymous — you can list tools and call the reputation, search, scan, verify, and get‑started tools with no account. Writes (claiming an agent, publishing an alignment card) require authentication.
Authentication
Discovery follows RFC 9728 — an unauthenticated write returns 401 with a WWW‑Authenticate header pointing at the Protected Resource Metadata, so a compliant client can self‑configure:
- Reads: zero‑auth. No key, no login.
- Writes: OAuth 2.0 with Dynamic Client Registration (RFC 7591) + PKCE.
- Protected Resource Metadata: https://api.mnemom.ai/.well-known/oauth-protected-resource/mcp
- Authorization Server Metadata: https://api.mnemom.ai/.well-known/oauth-authorization-server
- An X-Mnemom-Api-Key header is accepted as an alternative to OAuth.
What's in the directory profile
A curated 16‑tool surface, grouped:
searchreputationdirectory, verifyreputation, listagents, getagent (agent risk history is authenticated — see getrisk_history on the full surface)
- Reputation — getreputation, getreputation_badge,
previewcomposealignmentbyagent, putalignmentbyagent, previewcomposeprotectionbyagent, putprotectionbyagent, reportrecipefn_fp
- Website trust scanning — scantrust, verifyscan
- Identity & protection — claimagent, verifyagent_binding,
- Orientation — get_started
The default endpoint (/mcp, no profile) exposes the full power‑user tool surface; ?profile=directory is the curated face used for directory listings.
Verify, don't trust
Scan scorecards are Ed25519‑signed. Verify any scorecard in‑band with the verify_scan tool, or check the signature yourself against the published key:
id, canonicalization rule) so a holder can reconstruct and check the signature.
- Scanner JWKS: mnemom://iitr/jwks (also at the isittrustready surface)
- The scorecard carries a self‑describing verification block (algorithm, key
Links
© Mnemom. The server implementation is operated by Mnemom; this repository is its public manifest and documentation home.
Nothing above is checked by us. What we check is on the safety report.
Mnemom — Trust Ratings for AI Agents: common questions
- Is Mnemom — Trust Ratings for AI Agents MCP server safe?
- Mostly: it is graded B (80/100). Read the Mnemom — Trust Ratings for AI Agents safety report
- How do I install Mnemom — Trust Ratings for AI Agents?
- It runs remotely at api.mnemom.ai. Add it to Claude Code, Cursor, VS Code or Claude Desktop with the snippets above, or call it through the mcp.market gateway without installing anything.
- Does Mnemom — Trust Ratings for AI Agents need an API key?
- Not as far as the registry entry and our scan can tell: no credentials are declared or required.
- Is Mnemom — Trust Ratings for AI Agents maintained?
- The last commit was in the last day (2026-09-26). The latest release is v1.0.2.
- Is Mnemom — Trust Ratings for AI Agents up?
- 100% of our last 28 checks got an answer. We check remote servers about four times a day.