Connect
8 clients · secrets stay placeholdersQuality 71 / 100needs work
protocoln/a · weight 25
- n/a
protocol.modern, protocol.stateless, protocol.transport, protocol.list_ttlno remote answered a protocol handshake (not probed yet, unreachable, or local-only)
authorizationn/a · weight 15
- n/a
auth.prm, auth.as_metadata, auth.cimdno remote uses OAuth
- n/a
auth.secret_in_urlno templated URL
tool hygiene71 · weight 30
- pass
tools.descriptionsevery tool has a description
- pass
tools.description_lengthdescriptions are concise
- pass
tools.schemasevery tool has an object input schema
- fail
tools.annotationsno tool declares readOnlyHint or destructiveHint, so clients cannot tell safe calls from risky ones
- fail
tools.directory_hintsno tool declares all four of readOnlyHint, destructiveHint, idempotentHint and openWorldHint; missing: get_weather (readOnlyHint, destructiveHint, idempotentHint, openWorldHint)
- pass
tools.token_costabout 61 tokens to load every tool
- pass
tools.api_dumptools are not a one-to-one API dump
dependenciesn/a · weight 15
1 tools, about 61 tokens to load them all · checked 2026-10-09 23:53 UTC
Tool changes
No tool definition changes recorded. A server's first observation is its baseline; later probes record what changes.
Checks run on what our credential-free, read-only probes observe; tools are never called and no code audit is performed. How it is computed.
Trust 72 / 100
no-repository+dns-namespace +reachable +uptime-97% ~updated-99d-ago -no-repository
Derived from observable signals (official registry feed and our own credential-free probes); no code audit performed. How it is computed.
Official server.json
{
"name": "dev.gtfo/mcp-killchain-stage1-weather",
"title": "MCP Kill-Chain Research — Stage 1 (Identity ≠ Behavior)",
"$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
"remotes": [
{
"url": "https://ailm.gtfo.dev/mcp",
"type": "streamable-http"
}
],
"version": "1.1.0",
"description": "Security research: MCP registries verify identity, not tool behavior. See gtfo.dev."
}