Prove end users to agents and apps: login-links, OIDC clients, and API keys over remote MCP
Copy the AI prompt to install this server into Claude Code, Cursor, or another agent — or use 1-click editor setup below.
One-click editor setup isn’t available for this listing yet — we don’t have a confirmed install command, and we’d rather show nothing than point your editor at the wrong package or host. Follow the project’s own setup instructions, linked above.
Prove end users to agents and apps.
CorroborateMe gives agents and apps company API keys and human login-links with multi-channel notify so they can prove who the end user is - plus OIDC client registration, integration secrets, and budget-aware billing. REST is first-class; MCP is optional.
Live endpoint: https://corroborateme.com/mcp
This repository is the public catalog and schema stub for directory crawlers. It is not the hosted server. Point MCP clients at the live URL above with a CorroborateMe API key (
aa_...) or use MCP OAuth (PRM at /.well-known/oauth-protected-resource). Running the TypeScript in this repo does not authenticate users or store secrets.
Agent guide: see AGENTS.md for discovery URLs, auth, and MCP connect snippets.
POST https://corroborateme.com/api/agents/bootstrap with optional { "company_name": "...", "contact_email": "agent@example.com" } -> bootstrap token (no outbound mail).POST https://corroborateme.com/api/billing/machine-pay with Authorization: Bearer <bootstrapToken> and optional { "sku": "pro_prepaid_30d" }.GET /api/config for amounts) -> response includes secret (aa_...) when unlock succeeds.See llms.txt and llms-full.txt. Legal: Terms · Privacy.
aa_.Never commit a real key. Use the aa_... placeholder in configs.
Transport is Streamable HTTP. Authenticate with either:
Authorization: Bearer aa_... (API key from console or bootstrap + machine-pay), orhttps://corroborateme.com/mcpThis repo includes a Cursor plugin manifest and root mcp.json for one-click install from the Cursor Marketplace.
aa_... from bootstrap + machine-pay or the console).The plugin points at https://corroborateme.com/mcp with Authorization: Bearer ${CORROBORATE_ME_API_KEY}. Never commit a real key.
Submit the public repo at cursor.com/marketplace/publish when ready.
User or project MCP config:
Discovery manifests on the product host:
Schemas in src/server.ts match the hosted server.
| Tool | What it does |
|---|---|
agent_bootstrap | Start humanless company onboarding (bootstrap token flow) |
budget_get | Remaining quotas for the authenticated company |
billing_checkout | Create Stripe Checkout URL for human Pro |
billing_machine_pay | Agent prepaid unlock via Stripe MPP (sku optional) |
billing_portal | Stripe Customer Portal URL |
keys_create | Mint a new aa_ API key (shown once) |
oauth_client_create | Register an OIDC relying-party client (RP logout enabled; optional post-logout URIs) |
integration_upsert | Store encrypted integration secret (Google/Apple/etc.) |
integration_list | List integrations (prefixes only, no secrets) |
create_login_link | Mint one-time human login URL with notify methods |
get_login_status | Poll login-link session status |
retry_login_webhook | Retry signed webhook delivery after a failed notify |
webhook_allowlist_add | Allowlist a callback URL prefix |
agent_bootstrap) and unlock prepaid Pro (billing_machine_pay) when needed.keys_create if you need a durable aa_... secret.webhook_allowlist_add), then create_login_link for human proof.get_login_status (or wait for webhook / redirect / postMessage).Prefer live docs and llms-full.txt for recipes that may change.
aa_... or MCP OAuth access token)GET /api/config - do not hardcode dollars as eternal truth (at time of writing: Pro $5.99/mo, agent prepaid Pro $5.99 per 30 days)The CorroborateMe product (Worker, billing, IdP) is closed source. This catalog is MIT-licensed so directories can list tools and install snippets.
Registry name: com.cnrcode/corroborateme (domain namespace via cnrcode.com).
Ensure https://cnrcode.com/.well-known/mcp-registry-auth is deployed.
Set GitHub repo secret MCP_PRIVATE_KEY (the existing cnrcode.com Ed25519 private key hex; never commit it).
Push a version tag so GitHub Actions publishes server.json to the official MCP Registry:
Directories that ingest the official registry (PulseMCP, MCPCentral, MCPFind, Glama connectors) pick the entry up from there. Other directories (Glama server listing, Smithery, mcpservers.org, mcp.directory, MCP Market, McpMux) are submitted by maintainers only. See docs/directory-listings.md.
This repo includes a stdio catalog stub (src/main.ts) so directories can build a container, start the process, and introspect the 13 tool definitions. It does not implement auth or billing - clients still connect to the hosted endpoint above.
Local verify:
MIT - catalog, documentation, and schema stub only.
No reviews yet — be the first to share how this listing worked for you.
Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.
[](https://allmcps.com/mcp/corroborateme)<a href="https://allmcps.com/mcp/corroborateme"><img src="https://allmcps.com/api/badge/corroborateme?style=directory" alt="CorroborateMe on AllMCPs" /></a>