Back to Browse

Tersign Js MCP Server

Developer ToolsUse Caution4.8MCP RegistryLocal
Free

Server data from the Official MCP Registry

Counter-signed evidence records for agent commerce: receipts, verification, dispute envelopes.

About

Counter-signed evidence records for agent commerce: receipts, verification, dispute envelopes.

Security Report

4.8
Use Caution4.8High Risk

Tersign is a well-structured MCP server for evidence ledger operations with proper cryptographic signing and chain verification. Authentication is handled via EIP-712 signatures and optional ledger API keys. The codebase shows excellent test coverage with comprehensive security assertions. Minor code quality observations exist around error handling and input validation, but no serious vulnerabilities were identified. Supply chain analysis found 3 known vulnerabilities in dependencies (2 critical, 1 high severity). Package verification found 1 issue.

4 files analyzed · 8 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

HTTP Network Access

Connects to external APIs or services over the internet.

env_vars

Check that this permission is expected for this type of plugin.

File System Read

Reads files on your machine. Normal for tools that analyze or process local data.

File System Write

Writes or modifies files on your machine. Check that this is expected for the tool.

What You'll Need

Set these up before or after installing:

Optional: your own 0x-prefixed signing key. Unset or empty, the server uses the key in the macOS keychain (tersign-signer) or ~/.tersign/signer.key, and generates one there on first run. The key never leaves your machine. If your ledger account has a registered signing key, set that key here: the ledger rejects respondent dispute evidence signed by any other key.Required

Environment variable: TERSIGN_SELLER_KEY

Seller/issuer display nameOptional

Environment variable: TERSIGN_ISSUER_NAME

Seller jurisdiction (e.g. HK)Optional

Environment variable: TERSIGN_ISSUER_JURISDICTION

Seller tax/business-registration id (optional)Optional

Environment variable: TERSIGN_ISSUER_TAX_ID

Ledger base URL (optional). Needed by the dispute tools, and with the API key and seller id by record_refund and chained issue_receipt; record_disclosure defaults to https://tersign.aiOptional

Environment variable: TERSIGN_LEDGER_URL

Ledger seller API key (optional). With TERSIGN_LEDGER_URL and TERSIGN_LEDGER_SELLER_ID it enables record_refund and chained issue_receipt; with TERSIGN_LEDGER_URL it authenticates respondent dispute evidence. record_disclosure needs no API key.Required

Environment variable: TERSIGN_LEDGER_API_KEY

Ledger seller id (optional). With TERSIGN_LEDGER_URL and TERSIGN_LEDGER_API_KEY it enables record_refund and chained issue_receipt.Optional

Environment variable: TERSIGN_LEDGER_SELLER_ID

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "io-github-tersignhq-evidence": {
      "env": {
        "TERSIGN_LEDGER_URL": "your-tersign-ledger-url-here",
        "TERSIGN_SELLER_KEY": "your-tersign-seller-key-here",
        "TERSIGN_ISSUER_NAME": "your-tersign-issuer-name-here",
        "TERSIGN_ISSUER_TAX_ID": "your-tersign-issuer-tax-id-here",
        "TERSIGN_LEDGER_API_KEY": "your-tersign-ledger-api-key-here",
        "TERSIGN_LEDGER_SELLER_ID": "your-tersign-ledger-seller-id-here",
        "TERSIGN_ISSUER_JURISDICTION": "your-tersign-issuer-jurisdiction-here"
      },
      "args": [
        "-y",
        "tersign"
      ],
      "command": "npx"
    }
  }
}

Reviews

No reviews yet

Be the first to review this server!