io.github.ypratap11/dokimo-mcp

dokimo-mcp

Verify AI-agent revenue: recompute a Merkle proof and check it against an on-chain anchor.

0.1.0
Version
remote
Transport
3
Tools

Security review

Review passed

Reviewed 1d ago.

  • tools: 3 tools scanned
  • metadata: scanned

No findings.

Tools (3)

  • recompute_merkle_root

    Trustlessly recompute a dokimo-merkle-v1 root — LOCAL, no network, no trust. Hash ``leaf`` in the leaf domain (H(0x00 ‖ leaf)) and replay ``proof_path`` — a list of ``[sibling_hash, side]`` where side is "L" or "R" — hashing internal nodes as H(0x01 ‖ left ‖ right). Compare the returned root to the ``root`` in an evidence package yourself; if it differs, the package was tampered with. Returns ``{recomputed_root, merkle_scheme, steps}``.

  • verify_evidence_package

    Fully verify a Dokimo evidence package against the LIVE on-chain anchor. Sends the package to Dokimo's public A2A endpoint, which recomputes the Merkle proof AND checks the compound commitment (root + rule version) against the anchor on Base. ``package`` must contain: ``leaf`` (str), ``root`` (str), ``proof_path`` (list of [sibling_hash, "L"|"R"]), and ``rule_version_commitment`` (str); ``close_id`` is optional/echoed. Returns the verdict: ``{verified, checks:{recompute, onchain_anchor, rule_version_bound}, ...}``. ``verified`` is true only if the proof recomputes AND the commitment is anchored on-chain.

  • dokimo_agent_card

    Fetch Dokimo's public A2A agent card — the discovery document describing what it can verify (skills, endpoints, supported A2A versions).