Server data from the Official MCP Registry
Verifiable agent-to-agent task handoff with signed provenance chain. Initiating agent signs the ...
Verifiable agent-to-agent task handoff with signed provenance chain. Initiating agent signs the ...
This MCP server provides agent-to-agent handoff with cryptographic signing for compliance use cases. However, several security concerns limit its score: hardcoded cryptographic key fallback in development mode, unauthenticated free-tier access without proper rate limiting, in-memory-only state storage with no persistence, API key passed as plaintext parameter in tools, and reliance on external attestation APIs without proper error handling or validation. While the core signing logic is sound, operational security and credential handling need improvement. Supply chain analysis found 3 known vulnerabilities in dependencies (0 critical, 3 high severity). Package verification found 1 issue (1 critical, 0 high severity).
5 files analyzed · 15 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Unverified package source
We couldn't verify that the installable package matches the reviewed source code. Proceed with caution.
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-csoai-org-agent-handoff-certified-mcp": {
"args": [
"agent-handoff-certified-mcp"
],
"command": "uvx"
}
}
}From the project's GitHub README.
Verifiable agent-to-agent handoffs with cryptographic chain
When agent A delegates to agent B (cross-process, cross-network, cross-org), both ends sign. verify_chain reconstructs + validates the full trace. Non-repudiation for multi-agent workflows.
By MEOK AI Labs.
pip install agent-handoff-certified-mcp
initiate_handoffaccept_handoffverify_chainlist_handoffssign_handoff_chain_attestation{
"mcpServers": {
"agenthandoffcertified": { "command": "agent-handoff-certified-mcp" }
}
}
The EU AI Act (Aug 2026), DORA (live), ISO 42001, and OWASP LLM01 Top-10 all demand runtime controls for agent systems — not just deployment-time audits. This MCP is that runtime control layer, emitting cryptographically signed evidence your auditor accepts.
agent-policy-enforcement-mcp — per-pair IAMagent-handoff-certified-mcp — signed delegation chainagent-prompt-injection-firewall-mcp — prompt injection WAFagent-rate-limiter-mcp — fleet-wide quotaagent-audit-logger-mcp — hash-chained signed loga2a-governance-bridge-mcp — map A2A to compliance frameworksmeok-attestation-verify — independent cert verifierMIT — MEOK AI Labs, 2026.
Be the first to review this server!
by Modelcontextprotocol · Developer Tools
Read, search, and manipulate Git repositories programmatically
by Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
by mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.
by Microsoft · Content & Media
Convert files (PDF, Word, Excel, images, audio) to Markdown for LLM consumption
by mcp-marketplace · Developer Tools
Scaffold, build, and publish TypeScript MCP servers to npm — conversationally
by mcp-marketplace · Finance
Free stock data and market news for any MCP-compatible AI assistant.