85trust / 100

Mnemom — Trust Ratings for AI Agents

by mnemom.ai in Security & trust

MCP serverPassing, checked 4 h ago

Trust infrastructure for AI agents: read a verifiable Trust Rating, claim an identity, earn a badge.

https://api.mnemom.ai/mcp?profile=directory

Last 30 days

All checks passedSome failedAll failedNot checked
Uptime
100%
Response time
508 ms typical, 508 ms slowest 5%
Last check
4 h ago
Next check
in 1 h

How to call it

Add it to any MCP client that supports remote servers.

{
  "mcpServers": {
    "mnemom-trust-ratings-for-ai-agents": {
      "type": "http",
      "url": "https://api.mnemom.ai/mcp?profile=directory"
    }
  }
}

15 tools

  • claim_agent

    Claim a verifiable identity — bind an agent to your organization so its trust and accountability record is provably yours. Requires the agent's possession proof (`hash_proof`). Re-claiming an agent you already own keeps its original claim date but files it under the organization

  • get_agent

    Look up an agent's public identity and trust state by ID — the accountable record other agents and humans can rely on.

  • get_reputation

    Look up an AI agent's published Trust Rating — Mnemom's portable reliability signal for autonomous software, computed from the agent's own verified activity record. Returns the rating plus the technical factors behind it. Free, public, read-only: ratings are public by default, un

  • get_reputation_badge

    Get an embeddable Trust Rating badge for an agent — returns the badge image URL plus ready-to-paste Markdown and HTML snippets for a README or agent card.

  • get_started

    Zero-auth, no-args orientation: who Mnemom is, the surface map, how to authenticate and what it unlocks, and the tools to try right now (scan_trust and the reputation lookups).

  • list_agents

    List the agents your account owns, with pagination (`limit`, `offset`). Read-only.

  • preview_compose_alignment_by_agent

    Dry-run an alignment card: shows the card that would result after merging with the platform, organization and team policies above it, plus any conflicts. Nothing is saved.

  • preview_compose_protection_by_agent

    Dry-run a protection card: shows the card that would result after merging with the platform, organization and team policies above it, plus any conflicts. Nothing is saved, and no publish grant is needed.

  • put_alignment_by_agent

    Publish or replace an agent's alignment card: its governance modes, the principal it acts for, its declared values, the actions it may take on its own, and its audit policy. The server merges the card with the platform, organization and team policies above it and stores the resul

  • put_protection_by_agent

    Publish or replace an agent's protection card (screening mode, thresholds, trusted sources, protected assets). When connected by OAuth sign-in (e.g. ChatGPT), each publish first needs a one-time grant from the same signed-in account: open https://www.mnemom.ai/authorize-protectio

  • report_recipe_fn_fp

    Submit a false-positive / false-negative correction for one of Mnemom's automated detection rules (a 'recipe') — technical feedback that improves detection accuracy, like filing a bug report against a spam filter.

  • scan_trust

    Scan a website's agent-trust-readiness and return a signed scorecard (Trust, plus an Access axis on newer rubrics). Zero-auth. Results are CACHED for up to 24h — check `cached` and `scannedAt` on the result; pass `fresh: true` to force a re-scan (rate-limited). Proxies to the SSR

  • search_reputation_directory

    Resolve an agent name or id-prefix to a real agent_id over the PUBLIC reputation directory (only agents whose reputation visibility is public). Zero-auth. The arriving-agent entry point: discover a concrete agent_id, then call get_reputation / verify_reputation on it.

  • verify_reputation

    Attest an agent's Trust Rating — returns a Merkle-root + hash-chain attestation (hash_chain_valid) proving the rating derives from an unbroken, append-only checkpoint chain, plus a pointer to the signed integrity certificate. This is a chain-integrity attestation, NOT an in-band

  • verify_scan

    Verify a website scan scorecard's Ed25519 signature IN-BAND (verify, don't trust). Pass a `scan` (a scorecard from scan_trust) or a `url` to re-scan; returns {verified, key_id, canonicalization} checked against the public key at mnemom://iitr/jwks. Zero-auth. Spec + rubric: https

Security scan

  • No findings. We scan names, descriptions and tool definitions for hidden instructions and other prompt-injection patterns.

Recent checks

WhenResultHTTPTime
4 h agoPassed200508 ms