Agent Skills

mnki-mcp (Agent Trust)

Verified MCP proxy: checks every tools/call against delegated authority and policy before the server runs it, with an evidence list per decision. Observe mode first, then enforce; approvals on a phone.

Install

Install and configure the MCP from https://github.com/MNKIAgentOS/agent-trust now. Follow the repository's installation instructions, ask me for anything you can't complete yourself, and verify its tools load.
README

Agent Trust

Prove what an autonomous AI agent is authorized to do. An open profile plus a reference implementation for agent identity, principal binding, delegation with attenuation, capability-based authorization, request proof-of-possession, authorization attestations, tamper-evident provenance, single-use permits, cross-organization revocation and declared effect paths — carried on JWS, OAuth/OIDC, SPIFFE/WIMSE, AuthZEN, OpenID Federation, MCP and A2A. No new cryptography, no new protocol.

No consequential agent action should be accepted because a process is running or a token is valid. It should be accepted because the action is attributable, authorized, constrained, current and verifiable.

PackageWhat it is
packages/verifierThe pure core: parsing, delegation chain + attenuation, policy engine, request proof, delegation credentials, attestations, the 12-step evidence pipeline. Deterministic, dependency-free, WebCrypto only.
packages/sdk-tsmnki-sdk — TypeScript SDK: agent identity (keys, signed requests), guard() for any tool call, verify, delegate, attest, request grants from an access broker, offline verification against an organization's JWKS; framework adapters as subpaths.
packages/climnki-cli — mnki demo · init · identity · verify · inspect · delegate · attest · access · scan · protect · conformance (agenttrust is an alias).
packages/mcpmnki-mcp — a local MCP proxy that verifies every tools/call before it reaches the server (mnki protect installs it).
python/pip install mnki — Python SDK (zero dependencies; mnki[signing] for Agent-Proof).
go/Go verifier (same vectors, no dependencies) and at-verify, the self-hosted verifier that serves /v1/verify from an exported organization snapshot.
spec/Agent Trust Profile v0.2, the interoperability positioning, the Internet-Draft (draft-mnki-agent-trust-profile-00) and the standards plan.
conformance/Executable vectors for certification levels 1–3 (LEVELS.md) — the cross-language contract; the TypeScript, Go and Python runners pass them all.
npx mnki-cli demo      # the 15-second story, no account: a €47,000 refund denied, €420 allowed
npx mnki-cli scan      # find the MCP servers and API keys agents can use on this machine
npm install mnki-sdk   # guard() any tool call
pip install mnki               # same in Python

Develop against the open verifier and SDKs for free; govern fleets with the hosted control plane at mnki.com — see COMMERCIAL.md for the boundary and TRADEMARK.md for name and badge use. Releases carry npm/PyPI provenance, SBOMs and cosign-signed checksums (SECURITY.md).

Apache-2.0.

Search skills and MCP servers

Search across 31,816 skills and MCPs