# ScopeBlind/verify-mcp [Health: Active]

**Category:** 🔒 Security  
**Repository:** https://github.com/ScopeBlind/verify-mcp  
**GitHub Stars:** 5  
**npm Downloads (last month):** 326  
**Views:** 1  
**Installs:** 0  
**Upvotes:** 0  
**Directory Page:** https://allmcps.com/mcp/scopeblind-verify-mcp

## Description
Offline verification of signed artifacts -- receipts, manifests, audit bundles. Ed25519 + JCS. No accounts, no API calls. Apache-2.0.

## Tools
Capabilities this server exposes over MCP:

- **self_test** — Runs packaged sample verification.
- **verify_receipt** — Inputs:
- **verify_bundle** — Inputs:
- **explain_artifact** — Inputs:

## Claude Desktop Quick Installation
Install path detected from listing signals. Uses `npx` (confidence: high):

```json
"mcpServers": {
  "verify-mcp": {
    "command": "npx",
    "args": ["-y","@scopeblind/verify-mcp"]
  }
}
```

## Documentation & README

# @scopeblind/verify-mcp

MCP server for offline verification of ScopeBlind and Veritas Acta artifacts.

It is deliberately narrow:
- verify a single signed receipt or artifact
- verify an audit bundle offline
- explain a signed artifact in normalized form
- run a packaged self-test so clients can prove the verifier works

This is the registry-worthy MCP surface for the verification lane. It is not a gateway, not a builder, and not a hosted verification service.

## Install

```bash
npm install -g @scopeblind/verify-mcp
```

## Claude Desktop / MCP config

```json
{
  "mcpServers": {
    "scopeblind-verify": {
      "command": "npx",
      "args": ["-y", "@scopeblind/verify-mcp"]
    }
  }
}
```

## Tools

### `self_test`
Runs packaged sample verification.

Returns:
- sample receipt valid / invalid
- sample bundle valid / invalid
- total receipts in the sample bundle

### `verify_receipt`
Inputs:
- `artifact_json` or `path`
- optional `public_key_hex`

Returns:
- valid / invalid
- type
- format
- issuer
- kid
- canonical hash

### `verify_bundle`
Inputs:
- `bundle_json` or `path`

Returns:
- valid / invalid
- total receipts
- passed
- failed

### `explain_artifact`
Inputs:
- `artifact_json` or `path`

Returns a normalized summary of:
- type
- format
- issuer
- kid
- issued_at / timestamp
- payload keys

## Notes

- No ScopeBlind servers are contacted.
- This server verifies local JSON artifacts only.
- `protect-mcp` remains the local policy gateway.
- `@scopeblind/passport` remains the local pack builder.
- `@scopeblind/red-team` remains the local benchmark runner.

## License

Apache 2.0 (see LICENSE).

