dokimo-mcp
Verify AI-agent revenue: recompute a Merkle proof and check it against an on-chain anchor.
- 0.1.0
- Version
- remote
- Transport
- 3
- Tools
Security review
Review passedReviewed 1d ago.
- tools: 3 tools scanned
- metadata: scanned
No findings.
Tools (3)
recompute_merkle_root
Trustlessly recompute a dokimo-merkle-v1 root — LOCAL, no network, no trust. Hash ``leaf`` in the leaf domain (H(0x00 ‖ leaf)) and replay ``proof_path`` — a list of ``[sibling_hash, side]`` where side is "L" or "R" — hashing internal nodes as H(0x01 ‖ left ‖ right). Compare the returned root to the ``root`` in an evidence package yourself; if it differs, the package was tampered with. Returns ``{recomputed_root, merkle_scheme, steps}``.
verify_evidence_package
Fully verify a Dokimo evidence package against the LIVE on-chain anchor. Sends the package to Dokimo's public A2A endpoint, which recomputes the Merkle proof AND checks the compound commitment (root + rule version) against the anchor on Base. ``package`` must contain: ``leaf`` (str), ``root`` (str), ``proof_path`` (list of [sibling_hash, "L"|"R"]), and ``rule_version_commitment`` (str); ``close_id`` is optional/echoed. Returns the verdict: ``{verified, checks:{recompute, onchain_anchor, rule_version_bound}, ...}``. ``verified`` is true only if the proof recomputes AND the commitment is anchored on-chain.
dokimo_agent_card
Fetch Dokimo's public A2A agent card — the discovery document describing what it can verify (skills, endpoints, supported A2A versions).