io.github.kadopi/aegis-ai

AegisAI

Paid pre-execution risk verification for AI agents over MCP and x402.

0.6.0
Version
remote
Transport
17
Tools

Security review

Review passed

Reviewed 19h ago.

  • tools: 17 tools scanned
  • metadata: scanned

No findings.

Tools (17)

  • get_aegis_capabilities

    Returns machine-readable discovery links and x402 testnet payment information. This tool is free and does not perform risk verification.

  • evaluate_agent_commerce_policy

    Deterministically pre-evaluates a public-price sale without sending, paying, settling, or changing stored state. Signed Basic and Pro public terms may be allowed; verified-payer velocity is reserved atomically after facilitator verification and before settlement.

  • list_monitor_alerts

    Lists structured alerts belonging only to the authenticated monitor account. This tool never sends notifications or performs wallet actions.

  • get_monitor_alert

    Returns one structured alert and its bounded evidence for the authenticated monitor account.

  • update_monitor_alert_status

    Idempotently updates only the case status and note for an alert owned by the authenticated monitor account. It never changes notification state or performs wallet actions.

  • list_monitor_subscriptions

    Lists account-scoped Base Sepolia monitor subscriptions without changing monitoring or payment state.

  • get_monitor_subscription

    Returns one account-owned subscription and its current policy and scan state.

  • register_monitor_subscription

    Registers a Base Sepolia wallet and validated policy in stopped state. Payment and operator approval are still required before activation.

  • update_monitor_subscription

    Idempotently updates label or policy. It never activates monitoring, pays, or changes networks.

  • stop_monitor_subscription

    Idempotently disables monitoring for one account-owned subscription without deleting its audit history.

  • register_monitor_a2a_endpoint

    Registers an account-scoped endpoint in pending-verification state. Registration never contacts the endpoint and delivery remains disabled.

  • list_monitor_a2a_endpoints

    Lists the authenticated account's A2A notification endpoints and delivery-disabled state.

  • create_monitor_a2a_endpoint_challenge

    Creates a one-time 15-minute challenge for a pending endpoint. It does not contact or verify the endpoint and never enables delivery.

  • create_monitor_a2a_dns_txt_challenge

    Creates a one-time DNS TXT ownership challenge without contacting the customer endpoint. Verification and delivery remain disabled.

  • verify_monitor_a2a_dns_txt_challenge

    Checks only Cloudflare's fixed DNS resolver when DNS verification is enabled. It never contacts the customer endpoint and never enables delivery.

  • stop_monitor_a2a_endpoint

    Idempotently stops an account-owned endpoint and cancels only its unsent deliveries.

  • verify_risk

    Runs paid AegisAI risk verification and never runs verification for free. An x402-aware MCP client can pay and retry this tool automatically; unpaid calls return the canonical payment challenge.