npm · @sequesign/mcp
$npx -y @sequesign/mcp@0.4.1 SEQUESIGN_MODE — Transport: 'direct' (default; sign locally, an independent witness co-signs) or 'managed' (route through the Sequesign broker for a registered identity).
SEQUESIGN_API_KEY · secret — Sequesign write-class API key (from the dashboard). Required for managed mode; in direct mode it authenticates the hosted witness.
SEQUESIGN_AGENT_PRIVATE_KEY · secret — Ed25519 PKCS#8 private-key PEM for the agent. In managed mode, the key registered to your API key. In direct mode, omit to mint an ephemeral key per session.
SEQUESIGN_PACKAGE_DIR — Directory where sealed receipt packages are written. Defaults to a temporary directory.
SEQUESIGN_TEMPLATE_REGISTRY_URL — Base URL of a read-only dynamic template registry (e.g. https://dashboard-api.sequesign.com/v1/registry). When set, direct-mode sessions and the discovery tools resolve templates published there in addition to the bundled ones, falling back to bundled offline. Omit to use only the bundled templates.
SEQUESIGN_TEMPLATE_REGISTRY_TOKEN · secret — Read-only bearer token for an account-scoped template registry (discovery only; never used in verification). Omit for a public registry.