Mmcp.market

PHION Agent Trust Infrastructure

by phion.systems·systems.phion/evidence-engine·v1.31.1

69 agent services: verified data, enrichment, Index Feed and PHION Execute via x402.

C60/100grade C
What users say
No reviews yet
Be the first
Safety scan
C60/100

full report

Adoption
New

Little public usage data yet

Reviews

Write one

Nobody has reviewed PHION Agent Trust Infrastructure yet.

If you have run it, two minutes of your experience saves the next person an afternoon.

Tools (75, 8 write)

write = sends, deletes, buys or posts
  • abandoned_tool_detectorFree

    Require stale success plus multiple independent failed probes before classifying likely abandonment; 0.003 USDC.

  • agent_budget_guardFree

    Enforce per-call, task, session and period budgets; 0.002 USDC.

  • agent_reputation_evidenceFree

    Evidence-bounded agent reputation assessment with confidence, coverage, provenance limitations and a signed receipt; 0.005 USDC.

  • agent_task_handoff_receiptFree

    Sign a bounded agent-task handoff; 0.003 USDC.

  • attestFree

    x402 paid signed JSON attestation; 0.001 USDC on Base.

  • company_enrichment_evidenceFree

    Company enrichment from domain, profile, ticker or name with provider attribution and signed evidence; 0.005 USDC.

  • concurrency_guardFree

    Fail closed unless capacity counter is fresh and the request carries a lease plus idempotency binding; 0.002 USDC.

  • conflict_resolutionFree

    Resolve or abstain; every candidate must bind source, value hash, observation time and bounded confidence; 0.003 USDC.

  • contact_enrichment_evidenceFree

    Business-contact enrichment from strong identifiers with explicit identity limitations and a signed receipt; 0.007 USDC.

  • context_provenance_labelerFree

    Hash and label context integrity, confidentiality and source; 0.002 USDC.

  • counterparty_risk_preflightFree

    Deterministic counterparty policy preflight using supplied reputation evidence and transaction limits; 0.003 USDC.

  • data_egress_preflightFree

    Inspect outbound agent data and destination before transmission; 0.002 USDC.

  • data_freshness_certificateFree

    Certify freshness only when timestamp is bound to source URI and a 64-hex content hash; 0.002 USDC.

  • delegation_scope_guardFree

    Least-privilege guard for agent-to-agent delegation scope, destinations, budget and expiry; 0.003 USDC.

  • delivery_evidenceFree

    Bind successful delivery to transaction, request and matching 64-hex expected/observed content hashes without echoing content; 0.003 USDC.

  • dependency_provenance_assessmentFree

    Fail closed on empty dependency sets or absent registry policy; distinguish digest declarations from verified provenance; 0.003 USDC.

  • document_to_verified_jsonFree

    Public text, HTML, JSON or XML normalized to source-backed JSON; no OCR; 0.010 USDC.

  • domain_ownership_evidenceFree

    Require a fresh domain-bound DNS-01/HTTP-01 challenge and separate control from legal ownership; 0.003 USDC.

  • duplicate_charge_detectorwrite actionFree

    Detect repeated transaction hashes, payment identifiers and idempotent intents; 0.003 USDC.

  • entity_enrichment_evidenceFree

    Source-bounded entity field coverage with explicit missing facts; 0.008 USDC.

  • fetch_evidenceFree

    Independently fetch bounded public evidence with redirect/DNS/connected-address SSRF checks, hashes and injection screening; 0.004 USDC.

  • human_approval_policyFree

    Classify an action as automatic, approval-required or denied; 0.002 USDC.

  • idempotency_replay_guardFree

    Detect safe replays and conflicting idempotency-key reuse; 0.002 USDC.

  • index_feedwrite actionFree

    Canonical catalog snapshot or digest-based delta with exact HTTP/MCP records, PHION Execute templates and signed evidence; 0.005 USDC.

  • inspect_agentFree

    Pre-payment agent inspection across x402, A2A, ERC-8004, OpenAPI and MCP; failed inspections are not charged; 0.009 USDC.

  • inter_agent_policy_evaluatorFree

    Require policy identity, subject, action, lifetime and valid decisions; compute the restrictive cap and shared actions; 0.003 USDC.

  • interrupted_task_recoveryFree

    Resume only when task/checkpoint identity, sequence, deadline, attempt budget, idempotency and side effects are explicit; 0.003 USDC.

  • journey_verifyFree

    Verify hash continuity, timestamps and ordered intent→quote→payment→delivery lifecycle; 0.010 USDC.

  • live_data_freshnessFree

    Evaluate live source observation against explicit maximum age; 0.002 USDC.

  • mandate_reserveFree

    Atomic spending reservation with cumulative cap and conflict-safe idempotency; 0.004 USDC.

  • manifest_version_diffFree

    Recursive manifest diff that requires explicit versions and flags sensitive changes without a version advance; 0.002 USDC.

  • market_data_snapshotFree

    Timestamped public market-data snapshot with provenance; 0.005 USDC.

  • mcp_manifest_firewallFree

    Inspect an MCP manifest before installation or trust; 0.002 USDC.

  • mcp_server_identity_evidenceFree

    Bind MCP domain, endpoint, manifest, key and version; 0.003 USDC.

  • memory_write_guardwrite actionFree

    Screen persistent memory writes for poisoning, unsafe instructions and missing provenance; 0.002 USDC.

  • multi_source_fact_bundleFree

    Independent source observations with agreement made explicit; 0.005 USDC.

  • oauth_token_audience_guardwrite actionFree

    Validate declared OAuth audience and issuer; never send raw tokens; 0.002 USDC.

  • onchain_evidenceFree

    Public explorer or RPC response evidence with immutable hashes; 0.004 USDC.

  • payment_diagnoseFree

    Free diagnosis of the exact payment-funnel stage and machine-readable recovery actions for any PHION service.

  • payment_preflightFree

    Fail-closed x402 v2 firewall for network, asset, recipient, amount, scheme, resource host and expiry; 0.002 USDC.

  • payment_receipt_reconcilerFree

    Compare canonical and common x402 payment/receipt aliases, settlement state and coverage; 0.003 USDC.

  • payment_route_selectorFree

    Reject impossible x402 routes, rank safe eligible routes by policy and return the exact next payment action; read-only, deterministic, 0.002 USDC.

  • person_enrichment_evidenceFree

    Person enrichment from strong identifiers with provider attribution, likelihood, limitations and a signed receipt; 0.006 USDC.

  • phion_executewrite actionFree

    Universal PHION execution gateway: enforce a budget and persistent idempotency, execute one selected PHION service, evaluate acceptance criteria, and return a signed completion envelope. No gateway surcharge; the selected service price applies.

  • portable_observability_auditFree

    Validate event identity, timestamps, hash chain and W3C-compatible lowercase nonzero trace/span identifiers; 0.004 USDC.

  • preflightFree

    Free URL safety and reachability check.

  • purpose_bound_consentFree

    Fail-closed consent bound to ID, subject, recipient, purpose, scope, issue/expiry and checked revocation state; 0.003 USDC.

  • redirect_callback_validatorFree

    Validate HTTPS callbacks and redirect host allowlists; 0.002 USDC.

  • resource_cycle_guardFree

    Require per-step identity, token and cost counters; detect repeated nodes/edges and enforce all three hard caps; 0.002 USDC.

  • retention_deletion_receiptFree

    Separate requested, operator-completed and evidence-verified retention/deletion states using content and evidence hashes; 0.003 USDC.

  • rwa_asset_due_diligenceFree

    Fail-closed issuer, contract, jurisdiction, custody and documentation coverage with independently fetched evidence; 0.019 USDC.

  • rwa_compliancewrite actionFree

    Fail-closed RWA transfer decision requiring explicit jurisdiction, KYC, allowlist, limit and transfer-window checks; 0.012 USDC.

  • rwa_corporate_actionsFree

    Detect and sign material RWA changes in NAV, income, maturity, redemption or freeze state; 0.012 USDC.

  • rwa_nav_reserveFree

    Compare declared NAV and reserve ratios with structured observed facts plus independently fetched evidence; returns discrepancies in basis points and fails closed on incomplete evidence; 0.015 USDC.

  • rwa_sanctions_screening_evidenceFree

    Evidence-based literal subject screening against observed official US/EU sanctions sources; 0.015 USDC. Not legal clearance or wallet attribution.

  • rwa_transaction_assurancewrite actionFree

    Verify an RWA asset, payment, delivery and transfer restrictions; 0.020 USDC.

  • schema_normalizeFree

    Safe alias normalization that refuses ambiguous canonical/alias collisions and never changes payment values; 0.001 USDC.

  • schema_normalize_freeFree

    Free, rate-limited payload validation and safe key normalization before payment. Payment-critical values are never changed.

  • secret_redaction_preflightFree

    Detect and redact common secret indicators before transmission; 0.002 USDC.

  • service_sla_attestationFree

    Sign availability and latency calculations from bounded samples; 0.004 USDC.

  • signed_result_comparatorFree

    Compare agent results and sign agreement or conflict; 0.003 USDC.

  • social_source_evidenceFree

    Attributable public social-source observations with identity limitations; 0.006 USDC.

  • source_backed_searchFree

    Literal search over supplied public sources with citations and hashes; 0.004 USDC.

  • subscription_spend_guardwrite actionFree

    Bind one recurring charge to approval, merchant, due time and per-charge/period budgets; 0.003 USDC.

  • tool_call_policy_guardFree

    Bind a proposed tool call to declared intent and execution policy; 0.002 USDC.

  • tool_capability_drift_monitorFree

    Detect tool capability or manifest drift; 0.002 USDC.

  • tool_output_firewallFree

    Inspect untrusted MCP/tool output before it enters agent context or triggers an action; 0.002 USDC.

  • transaction_assuranceFree

    End-to-end settlement, timestamp, delivery-hash and deterministic acceptance assurance; 0.015 USDC.

  • transaction_recoveryFree

    Failure classification and non-repeating recovery plan with validated attempt history; 0.010 USDC.

  • try_serviceFree

    Free representative preview, exact price and upgrade instructions for any PHION paid service; no wallet required.

  • verified_news_monitorFree

    Literal query evidence across bounded public news sources; 0.006 USDC.

  • verified_web_extractFree

    Bounded public web extraction with source, timestamp and hashes; 0.003 USDC.

  • verifyFree

    Free verification of a PHION signed receipt.

  • webhook_verifierFree

    Fail-closed RFC 9421-style webhook preflight requiring trusted key, algorithm, nonce, freshness, replay status and signature coverage of method, target and content; 0.003 USDC.

  • x402_quote_comparatorFree

    Validate x402 v2 fields and compare only quotes sharing asset and decimals; 0.002 USDC.

Public scan report

scanner v0.1.3 · 2026-09-19 · same rubric, same numbers if you re-run it

1 high1 low
  • Code scanremote-only server, no package to scann/a
  • Live reliabilityremote reachable in 655ms20/20
  • Tool poisoning75 tool descriptions checked15/15
  • Auth qualityopen endpoint exposes 8 write-action tools with no auth3/15
  • Maintenanceno repository listed3/15
  • Maintainer identityverified namespace with website, no repo4/10

Findings (2)

  • highWrite-action tools reachable without authenticationauth.open-write
  • lowNo source repository listedmaint.no-repo
Overall 60/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON

Install directly

claude mcp add --transport http evidence-engine https://phion.systems/mcp
Add to Cursor

Alternatives to PHION Agent Trust Infrastructure

Same job from other publishers, ranked by rating then adoption.

See all →
  • ha-mcp
    Comprehensive Model Context Protocol server for managing Home Assistant through AI assistants.
    C
  • IWE
    Markdown knowledge base as agent memory. Runs against the notes directory it is started in.
    A
  • fiori-mcp-server
    SAP Fiori - Model Context Protocol (MCP) server
    A
  • mcp-local-rag
    Easy-to-setup local RAG server with minimal configuration
    A
  • mcp-ts-core
    Agent-native TypeScript framework for MCP servers.
    C

More from phion.systems