ai.kontato/kontato
Give your AI agents a real WhatsApp number to send and receive messages.
Block For Production
trustsnap_708ede86902c39f8.- Utility Coverage
- Trust Confidence
- Tool Surface Design
- Make tools/list succeed unauthenticated when possible, or document the auth flow in the server card.
- Fix the failing checks first, then revalidate to confirm the recovery path.
- Compare tool enumeration outputs between runs and remove non-deterministic behavior.
- No segmented attention signals observed in the current window.
Dispute this assessment
If any published claim about this server -- its score, a risk flag, a capability classification, or its taxonomy -- is factually wrong, tell us what evidence shows and we will review it. This does not require claiming or verifying ownership of the server first.
Verify responds to disputes within 5 business days and resolves them within 15.
Dispute history
No disputes filed for this server.
Risk
Security posture
Tool capability & risk inventory
No tool inventory available from the latest validation run.
Write-action governance
Status detail: No write-action governance evidence is available yet.
| Tool | Risk | Flags | Safeguards |
|---|---|---|---|
| No high-risk tools were detected on the latest run. | |||
Action-controls diff
Need at least two validation runs before diffing action controls.
Critical alerts
Compatibility
Client compatibility verdicts
Client compatibility only means the server shape can work with a client. Production trust decision and write-action publishing are evaluated separately so a client-compatible server can still be blocked for production.
Evidence provenance
initialize• OKtools_list• Errortransport_compliance_probe• Warningstep_up_auth_probe• Missingconnector_replay_probe• Missing — Frozen tool snapshots must survive refresh.request_association_probe• Missing — Roots, sampling, and elicitation should stay request-scoped.
Evidence provenance
initialize• OKtools_list• Errortransport_compliance_probe• Warning
Evidence provenance
action_safety_probe• Not_Assessed
Evidence provenance
tool_snapshot_probe• Missingconnector_replay_probe• Missing
Client compatibility gate details
Remediation checklist
OpenAI connectors expect OAuth for remote server auth.Dynamic client registration materially improves connector setup.tools/list must succeed.OAuth interoperability should be strong.The tool surface is not limited to search/fetch-style read tools.OAuth is not configured, so this client cannot authenticate without additional setup.
Remediation checklist
tools/list must succeed.A useful Claude integration needs at least one exposed tool.The tool surface is not limited to search/fetch-style read tools.OAuth is not configured, so this client cannot authenticate without additional setup.Not yet safe for company-knowledge use: requires a search/fetch-only surface with no write actions present.Not yet safe for the Messages API remote MCP path: requires OAuth, a compatible connector profile, and no pending connector-refresh risk.
Remediation checklist
- No explicit blockers recorded.
Verdict traces
server_failing• critical • Latest validation is failingtools_list_regressed• critical • tools/list regressedauth_mode_changed• high • Auth mode changed
Client verdict trace table
| Verdict | Status | Checks | Winning source | Conflicts |
|---|---|---|---|---|
openai_connectors |
Partially client-compatible | initialize, tools_list, transport_compliance_probe, step_up_auth_probe, connector_replay_probe, request_association_probe | live_validation | none |
claude_desktop |
Partially client-compatible | initialize, tools_list, transport_compliance_probe | live_validation | none |
unsafe_for_write_actions |
Publishing allowed | action_safety_probe | live_validation | none |
snapshot_churn_risk |
Low | tool_snapshot_probe, connector_replay_probe | history | none |
Publishability policy profiles
- Search Fetch Only: No
- Write Actions Present: No
- Oauth Configured: No
- Admin Refresh Required: No
- Safe For Company Knowledge: No
- Safe For Messages Api Remote Mcp: No
- Search Fetch Only: No
- Write Actions Present: No
- Oauth Configured: No
- Admin Refresh Required: No
- Safe For Company Knowledge: No
- Safe For Messages Api Remote Mcp: No
Compatibility fixtures
- remote_http_endpoint: Passes
- oauth_discovery: Degraded
- frozen_tool_snapshot_refresh: Passes
- request_association: Passes
- remote_transport: Passes
- tool_discovery: Likely to fail
- auth_connect: Passes
- safe_write_review: Passes
Recommended for
No recommendation profile is available yet.
Evidence
Current trust snapshot
trustsnap_708ede86902c39f8Canonical machine links
Evidence confidence
Latest validation evidence
Failures
oauth_authorization_serverno authorization serveroauth_protected_resourceClient error '404 Not Found' for url 'https://api.kontato.ai/.well-known/oauth-protected-resource' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404openid_configurationno authorization serverserver_cardClient error '404 Not Found' for url 'https://api.kontato.ai/.well-known/mcp/server-card.json' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404tools_listClient error '400 Bad Request' for url 'https://api.kontato.ai/mcp' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/400
Checks
| Check | Status | Latency | Evidence |
|---|---|---|---|
action_safety_probe |
Not_Assessed | n/a | No write-action risk evidence recorded. |
advanced_capabilities_probe |
Missing | n/a | No advanced MCP capability signals detected. |
connector_publishability_probe |
Error | n/a | Publishability blockers: tools list, action safety, server card, tool surface. |
connector_replay_probe |
Missing | n/a | No connector replay evidence recorded. |
determinism_probe |
Missing | n/a | tools list unavailable |
initialize |
OK | 35.3 ms | Protocol 2025-03-26 |
interactive_flow_probe |
Missing | n/a | Check completed |
oauth_authorization_server |
Missing | n/a | no authorization server |
oauth_protected_resource |
Error | 40.4 ms | Client error '404 Not Found' for url 'https://api.kontato.ai/.well-known/oauth-protected-resource' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404 |
official_registry_probe |
OK | n/a | Check completed |
openid_configuration |
Missing | n/a | no authorization server |
probe_noise_resilience |
OK | 35.1 ms | Fetched https://api.kontato.ai/robots.txt |
prompt_get |
Missing | n/a | not advertised |
prompts_list |
Missing | 37.0 ms | Client error '400 Bad Request' for url 'https://api.kontato.ai/mcp' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/400 |
protocol_version_probe |
Warning | n/a | Claims 2025-03-26; 2 release(s) behind 2025-11-25. |
provenance_divergence_probe |
Not_Assessed | n/a | Check completed |
request_association_probe |
Missing | n/a | No request-association capabilities were advertised. |
resource_read |
Missing | n/a | not advertised |
resources_list |
Missing | 38.0 ms | Client error '400 Bad Request' for url 'https://api.kontato.ai/mcp' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/400 |
schema_divergence_probe |
Missing | n/a | no server card tools |
server_card |
Error | 34.6 ms | Client error '404 Not Found' for url 'https://api.kontato.ai/.well-known/mcp/server-card.json' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404 |
session_resume_probe |
OK | 14.8 ms | 9 tool(s) exposed |
step_up_auth_probe |
Missing | n/a | No OAuth or incremental-scope signals detected. |
tool_snapshot_probe |
Missing | n/a | no tools |
tools_list |
Error | 43.2 ms | Client error '400 Bad Request' for url 'https://api.kontato.ai/mcp' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/400 |
transport_compliance_probe |
Warning | 17.5 ms | Issues: missing protocol header (bad protocol=400, DELETE=200, expired session=404). |
utility_coverage_probe |
Missing | 12.9 ms | No completions evidence; no pagination evidence; tasks missing. |
Raw evidence view
Show raw JSON evidence
{
"checks": {
"action_safety_probe": {
"details": {
"auth_present": false,
"confirmation_signals": [],
"reason": "empty_observation_set",
"safeguard_count": 0,
"summary": {
"annotation_conflict_tools": 0,
"bulk_access_tools": 0,
"capability_distribution": {},
"declared_non_read_only_tools": 0,
"destructive_tools": 0,
"egress_tools": 0,
"exec_tools": 0,
"high_risk_tools": 0,
"risk_distribution": {
"critical": 0,
"high": 0,
"low": 0,
"medium": 0
},
"secret_tools": 0,
"tool_count": 0
}
},
"latency_ms": null,
"status": "not_assessed"
},
"advanced_capabilities_probe": {
"details": {
"capabilities": {
"completions": false,
"elicitation": false,
"prompts": false,
"resource_links": false,
"resources": false,
"roots": false,
"sampling": false,
"structured_outputs": false
},
"enabled": [],
"enabled_count": 0,
"initialize_capability_keys": [
"tools"
]
},
"latency_ms": null,
"status": "missing"
},
"connector_publishability_probe": {
"details": {
"blockers": [
"tools_list",
"action_safety",
"server_card",
"tool_surface"
],
"criteria": {
"action_safety": false,
"auth_flow": true,
"connector_replay": true,
"initialize": true,
"protocol_version": true,
"remote_transport": true,
"request_association": true,
"server_card": false,
"session_resume": true,
"step_up_auth": true,
"tool_surface": false,
"tools_list": false,
"transport_compliance": true
},
"high_risk_tools": 0,
"tool_count": 0,
"transport": "streamable-http"
},
"latency_ms": null,
"status": "error"
},
"connector_replay_probe": {
"details": {
"reason": "no_tools"
},
"latency_ms": null,
"status": "missing"
},
"determinism_probe": {
"details": {
"reason": "tools_list_unavailable"
},
"latency_ms": null,
"status": "missing"
},
"initialize": {
"details": {
"headers": {
"content-type": "text/event-stream",
"mcp-session-id": "eb92451b-6a07-4c3e-b25c-bc9e4c65f61c"
},
"http_status": 200,
"payload": {
"id": 1,
"jsonrpc": "2.0",
"result": {
"capabilities": {
"tools": {
"listChanged": true
}
},
"protocolVersion": "2025-03-26",
"serverInfo": {
"name": "kontato",
"version": "1.0.0"
}
}
},
"url": "https://api.kontato.ai/mcp"
},
"latency_ms": 35.28,
"status": "ok"
},
"interactive_flow_probe": {
"details": {
"oauth_supported": false,
"prompt_available": false,
"risk_hits": [],
"safe_hits": []
},
"latency_ms": null,
"status": "missing"
},
"oauth_authorization_server": {
"details": {
"reason": "no_authorization_server"
},
"latency_ms": null,
"status": "missing"
},
"oauth_protected_resource": {
"details": {
"error": "Client error '404 Not Found' for url 'https://api.kontato.ai/.well-known/oauth-protected-resource'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404",
"url": "https://api.kontato.ai/.well-known/oauth-protected-resource"
},
"latency_ms": 40.36,
"status": "error"
},
"official_registry_probe": {
"details": {
"direct_match": true,
"official_peer_count": 1,
"registry_identifier": "ai.kontato/kontato",
"registry_source": "official_registry"
},
"latency_ms": null,
"status": "ok"
},
"openid_configuration": {
"details": {
"reason": "no_authorization_server"
},
"latency_ms": null,
"status": "missing"
},
"probe_noise_resilience": {
"details": {
"headers": {
"content-type": "text/plain; charset=UTF-8"
},
"http_status": 404,
"url": "https://api.kontato.ai/robots.txt",
"validation_disallowed": false
},
"latency_ms": 35.12,
"status": "ok"
},
"prompt_get": {
"details": {
"reason": "not_advertised"
},
"latency_ms": null,
"status": "missing"
},
"prompts_list": {
"details": {
"error": "Client error '400 Bad Request' for url 'https://api.kontato.ai/mcp'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/400",
"headers": {
"content-type": "application/json"
},
"http_status": 400,
"payload": {},
"reason": "not_advertised",
"url": "https://api.kontato.ai/mcp"
},
"latency_ms": 36.98,
"status": "missing"
},
"protocol_version_probe": {
"details": {
"claimed_version": "2025-03-26",
"lag_days": 244,
"latest_known_version": "2025-11-25",
"releases_behind": 2,
"validator_protocol_version": "2025-03-26"
},
"latency_ms": null,
"status": "warning"
},
"provenance_divergence_probe": {
"details": {
"compared_fields": [
"title",
"version",
"homepage",
"repository"
],
"direct_official_match": true,
"drift_fields": [],
"metadata_document_count": 2,
"readable_sources": [
"registry"
],
"registry_homepage": null,
"registry_repository": null,
"registry_title": null,
"registry_version": null,
"server_card_homepage": null,
"server_card_repository": null,
"server_card_title": null,
"server_card_version": null
},
"latency_ms": null,
"status": "not_assessed"
},
"request_association_probe": {
"details": {
"reason": "no_request_association_capabilities_advertised"
},
"latency_ms": null,
"status": "missing"
},
"resource_read": {
"details": {
"reason": "not_advertised"
},
"latency_ms": null,
"status": "missing"
},
"resources_list": {
"details": {
"error": "Client error '400 Bad Request' for url 'https://api.kontato.ai/mcp'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/400",
"headers": {
"content-type": "application/json"
},
"http_status": 400,
"payload": {},
"reason": "not_advertised",
"url": "https://api.kontato.ai/mcp"
},
"latency_ms": 38.0,
"status": "missing"
},
"schema_divergence_probe": {
"details": {
"compared_dimensions": [
"tool_membership",
"parameter_names",
"required_parameters",
"parameter_types",
"output_schema_presence"
],
"compared_tool_count": 0,
"reason": "no_server_card_tools"
},
"latency_ms": null,
"status": "missing"
},
"server_card": {
"details": {
"error": "Client error '404 Not Found' for url 'https://api.kontato.ai/.well-known/mcp/server-card.json'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404",
"url": "https://api.kontato.ai/.well-known/mcp/server-card.json"
},
"latency_ms": 34.63,
"status": "error"
},
"session_resume_probe": {
"details": {
"headers": {
"content-type": "text/event-stream",
"mcp-session-id": "eb92451b-6a07-4c3e-b25c-bc9e4c65f61c"
},
"http_status": 200,
"payload": {
"id": 301,
"jsonrpc": "2.0",
"result": {
"tools": [
{
"annotations": {
"destructiveHint": false,
"openWorldHint": true,
"readOnlyHint": false,
"title": "Activate Kontato account (create or reuse)"
},
"description": "ATIVA a conta Kontato do telefone informado \u2014 cria apenas se ainda nao existir; se ja existe, reutiliza a MESMA conta (e normal e esperado chamar com conta existente: funciona como login). IDEMPOTENTE POR TELEFONE: se ja existe conta para o owner_phone, devolve a MESMA conta \u2014 entao e seguro chamar de novo em qualquer sessao ou depois de um restart (o usuario nunca precisa lidar com api_key). Se a resposta vier com verification_required=false (numero ja verificado antes), NAO peca OTP: chame `send` direto. Informe owner_phone (formato internacional so digitos, ex: 5511999998888) para habilitar o caso seguro de self-notification: o agente entrega no WhatsApp do proprio dono. Retorna o whatsapp_bridge_number (numero generico do Kontato que envia, nunca o numero pessoal do dono).",
"execution": {
"taskSupport": "forbidden"
},
"inputSchema": {
"$schema": "http://json-schema.org/draft-07/schema#",
"properties": {
"email": {
"description": "E-mail do dono (opcional).",
"type": "string"
},
"owner_phone": {
"description": "Numero WhatsApp do dono, so digitos, como texto ou numero (ex: 5511999998888). Vira o destino default das self-notifications.",
"type": "string"
}
},
"type": "object"
},
"name": "provision",
"title": "Activate Kontato account (create or reuse)"
},
{
"annotations": {
"destructiveHint": false,
"openWorldHint": true,
"readOnlyHint": false,
"title": "Verify owner number (OTP)"
},
"description": "Confirma o numero do dono com o codigo OTP de 6 digitos que chegou no WhatsApp dele apos o `provision`. OBRIGATORIO antes de enviar/agendar: ate verificar, `send`/`reply`/`schedule` retornam 403 owner_not_verified. Se o codigo expirou ou errou demais, chame de novo apos pedir um novo (resend) ao operador.",
"execution": {
"taskSupport": "forbidden"
},
"inputSchema": {
"$schema": "http://json-schema.org/draft-07/schema#",
"properties": {
"code": {
"description": "Codigo de 6 digitos recebido no WhatsApp do dono (texto ou numero).",
"type": "string"
},
"owner_phone": {
"description": "Numero do dono (so digitos, como texto ou numero). Passe para reativar a conta se a sessao MCP for nova (clientes stateless).",
"type": "string"
}
},
"required": [
"code"
],
"type": "object"
},
"name": "verify_number",
"title": "Verify owner number (OTP)"
},
{
"annotations": {
"destructiveHint": false,
"openWorldHint": true,
"readOnlyHint": false,
"title": "Schedule a recurring delivery"
},
"description": "Registra uma entrega recorrente ou unica no scheduler do Kontato. No horario, o Kontato roda o `prompt` como um agente completo (com web/Exa) e entrega no WhatsApp do dono. USE ISTO para \"todo dia me manda X\": voce nao precisa ficar online nem prometer trabalho futuro \u2014 o scheduler dispara sozinho. O `prompt` deve ser autossuficiente (ex: \"Busque as principais noticias do mercado financeiro de hoje e entregue um resumo curto\").",
"execution": {
"taskSupport": "forbidden"
},
"inputSchema": {
"$schema": "http://json-schema.org/draft-07/schema#",
"properties": {
"owner_phone": {
"description": "Numero do dono (so digitos, como texto ou numero). Passe para reativar a conta se a sessao MCP for nova (clientes stateless).",
"type": "string"
},
"prompt": {
"description": "O que entregar quando disparar. Autossuficiente.",
"type": "string"
},
"schedule_type": {
"description": "cron=recorrente em horarios; interval=a cada N ms; once=uma vez.",
"enum": [
"cron",
"interval",
"once"
],
"type": "string"
},
"schedule_value": {
"description": "cron: \"0 8 * * *\" (todo dia 8h, fuso BRT) | interval: ms como \"3600000\" | once: horario local \"2026-06-20T15:30:00\" (sem Z).",
"type": "string"
}
},
"required": [
"prompt",
"schedule_type",
"schedule_value"
],
"type": "object"
},
"name": "schedule",
"title": "Schedule a recurring delivery"
},
{
"annotations": {
"openWorldHint": true,
"readOnlyHint": true,
"title": "List schedules"
},
"description": "Lista as entregas agendadas (recorrentes/unicas) desta conta, com proximo disparo.",
"execution": {
"taskSupport": "forbidden"
},
"inputSchema": {
"$schema": "http://json-schema.org/draft-07/schema#",
"properties": {
"owner_phone": {
"description": "Numero do dono (so digitos, como texto ou numero). Passe para reativar a conta se a sessao MCP for nova (clientes stateless).",
"type": "string"
}
},
"type": "object"
},
"name": "list_schedules",
"title": "List schedules"
},
{
"annotations": {
"destructiveHint": true,
"openWorldHint": true,
"readOnlyHint": false,
"title": "Cancel a schedule"
},
"description": "Cancela uma entrega agendada pelo seu schedule_id (obtido em `list_schedules` ou `schedule`).",
"execution": {
"taskSupport": "forbidden"
},
"inputSchema": {
"$schema": "http://json-schema.org/draft-07/schema#",
"properties": {
"owner_phone": {
"description": "Numero do dono (so digitos, como texto ou numero). Passe para reativar a conta se a sessao MCP for nova (clientes stateless).",
"type": "string"
},
"schedule_id": {
"description": "ID do schedule a cancelar.",
"type": "string"
}
},
"required": [
"schedule_id"
],
"type": "object"
},
"name": "cancel_schedule",
"title": "Cancel a schedule"
},
{
"annotations": {
"destructiveHint": false,
"openWorldHint": true,
"readOnlyHint": false,
"title": "Send WhatsApp message"
},
"description": "Envia uma mensagem de WhatsApp pelo numero-ponte do Kontato. CASO SEGURO: se OMITIR \"to\", entrega no WhatsApp do PROPRIO DONO (self-notification). REGRA TURN-BASED: voce nao executa trabalho no futuro; se pedirem algo recorrente (\"todo dia me manda X\"), faca a entrega de HOJE agora e oriente a registrar um schedule, nunca prometa entrega futura.",
"execution": {
"taskSupport": "forbidden"
},
"inputSchema": {
"$schema": "http://json-schema.org/draft-07/schema#",
"properties": {
"message": {
"description": "Texto da mensagem (obrigatorio quando NAO usar template).",
"type": "string"
},
"owner_phone": {
"description": "Numero do DONO da conta (so digitos, como texto ou numero). Passe SEMPRE que souber: reativa a conta automaticamente quando a sessao MCP e nova (clientes stateless como o conector do claude.ai).",
"type": "string"
},
"template_name": {
"description": "Nome de template APROVADO da Meta (ex: kontato_ativacao). Use APENAS para partida fria pontual ou janela de 24h fechada \u2014 o padrao do produto e o destinatario iniciar a conversa. Template atravessa a janela.",
"type": "string"
},
"template_variables": {
"description": "Variaveis posicionais do template ({{1}}, {{2}}...), em ordem.",
"items": {
"type": "string"
},
"type": "array"
},
"to": {
"description": "Destino so com digitos, como texto ou numero. OMITA para enviar ao proprio dono (recomendado).",
"type": "string"
}
},
"type": "object"
},
"name": "send",
"title": "Send WhatsApp message"
},
{
"annotations": {
"destructiveHint": false,
"openWorldHint": true,
"readOnlyHint": false,
"title": "Reply to a WhatsApp contact"
},
"description": "Responde a um numero especifico que mandou mensagem para o numero-ponte. Igual a `send`, mas \"to\" e OBRIGATORIO. Responder a quem te escreveu (reply-ratio alto) e mais seguro que cold outbound.",
"execution": {
"taskSupport": "forbidden"
},
"inputSchema": {
"$schema": "http://json-schema.org/draft-07/schema#",
"properties": {
"message": {
"description": "Texto da resposta.",
"type": "string"
},
"owner_phone": {
"description": "Numero do dono (so digitos, como texto ou numero). Passe para reativar a conta se a sessao MCP for nova (clientes stateless).",
"type": "string"
},
"to": {
"description": "Destino so com digitos, como texto ou numero (ex: 5511999998888).",
"type": "string"
}
},
"required": [
"to",
"message"
],
"type": "object"
},
"name": "reply",
"title": "Reply to a WhatsApp contact"
},
{
"annotations": {
"openWorldHint": true,
"readOnlyHint": true,
"title": "List message history"
},
"description": "Lista o historico de mensagens do numero-ponte (recebidas e enviadas), mais recentes primeiro. Use para decidir a quem responder com `reply`.",
"execution": {
"taskSupport": "forbidden"
},
"inputSchema": {
"$schema": "http://json-schema.org/draft-07/schema#",
"properties": {
"limit": {
"description": "Maximo de mensagens (1 a 100).",
"maximum": 100,
"minimum": 1,
"type": "integer"
},
"owner_phone": {
"description": "Numero do dono (so digitos, como texto ou numero). Passe para reativar a conta se a sessao MCP for nova (clientes stateless).",
"type": "string"
},
"since": {
"description": "Timestamp ISO 8601; retorna apenas mensagens posteriores.",
"type": "string"
}
},
"type": "object"
},
"name": "list_messages",
"title": "List message history"
},
{
"annotations": {
"openWorldHint": true,
"readOnlyHint": true,
"title": "Account status & schedules"
},
"description": "Mostra o estado da conta Kontato: ativa ou nao, numero-ponte, e os schedules (rotinas) ja registrados. Use para honrar a regra turn-based: antes de dizer que algo sera entregue \"todo dia\", confirme aqui se existe um schedule ativo.",
"execution": {
"taskSupport": "forbidden"
},
"inputSchema": {
"$schema": "http://json-schema.org/draft-07/schema#",
"properties": {
"owner_phone": {
"description": "Numero do dono (so digitos, como texto ou numero). Passe para reativar a conta se a sessao MCP for nova (clientes stateless).",
"type": "string"
}
},
"type": "object"
},
"name": "status",
"title": "Account status & schedules"
}
]
}
},
"requested_protocol_version": "2025-03-26",
"resumed": true,
"session_id_present": true,
"transport": "streamable-http",
"url": "https://api.kontato.ai/mcp"
},
"latency_ms": 14.75,
"status": "ok"
},
"step_up_auth_probe": {
"details": {
"auth_required_checks": [],
"broad_scopes": [],
"challenge_headers": [],
"minimal_scope_documented": false,
"oauth_present": false,
"scope_specificity_ratio": 0.0,
"step_up_signals": [],
"supported_scopes": []
},
"latency_ms": null,
"status": "missing"
},
"tool_snapshot_probe": {
"details": {
"reason": "no_tools"
},
"latency_ms": null,
"status": "missing"
},
"tools_list": {
"details": {
"error": "Client error '400 Bad Request' for url 'https://api.kontato.ai/mcp'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/400",
"headers": {
"content-type": "application/json"
},
"http_status": 400,
"payload": {},
"url": "https://api.kontato.ai/mcp"
},
"latency_ms": 43.2,
"status": "error"
},
"transport_compliance_probe": {
"details": {
"bad_protocol_error": null,
"bad_protocol_headers": {
"content-type": "application/json"
},
"bad_protocol_payload": {
"error": {
"code": -32000,
"message": "Bad Request: Unsupported protocol version: 1999-99-99 (supported versions: 2025-11-25, 2025-06-18, 2025-03-26, 2024-11-05, 2024-10-07)"
},
"id": null,
"jsonrpc": "2.0"
},
"bad_protocol_status_code": 400,
"delete_error": null,
"delete_status_code": 200,
"expired_session_error": null,
"expired_session_status_code": 404,
"issues": [
"missing_protocol_header"
],
"last_event_id_visible": false,
"protocol_header_present": false,
"requested_protocol_version": "2025-03-26",
"session_id_present": true,
"transport": "streamable-http"
},
"latency_ms": 17.54,
"status": "warning"
},
"utility_coverage_probe": {
"details": {
"completions": {
"advertised": false,
"live_probe": "not_executed",
"sample_target": null
},
"initialize_capability_keys": [
"tools"
],
"pagination": {
"metadata_signal": false,
"next_cursor_methods": [],
"supported": false
},
"tasks": {
"advertised": false,
"http_status": 400,
"probe_status": "missing"
}
},
"latency_ms": 12.93,
"status": "missing"
}
},
"failures": {
"oauth_authorization_server": {
"reason": "no_authorization_server"
},
"oauth_protected_resource": {
"error": "Client error '404 Not Found' for url 'https://api.kontato.ai/.well-known/oauth-protected-resource'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404",
"url": "https://api.kontato.ai/.well-known/oauth-protected-resource"
},
"openid_configuration": {
"reason": "no_authorization_server"
},
"server_card": {
"error": "Client error '404 Not Found' for url 'https://api.kontato.ai/.well-known/mcp/server-card.json'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404",
"url": "https://api.kontato.ai/.well-known/mcp/server-card.json"
},
"tools_list": {
"error": "Client error '400 Bad Request' for url 'https://api.kontato.ai/mcp'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/400",
"headers": {
"content-type": "application/json"
},
"http_status": 400,
"payload": {},
"url": "https://api.kontato.ai/mcp"
}
},
"remote_url": "https://api.kontato.ai/mcp",
"server_card_payload": null,
"server_identifier": "ai.kontato/kontato"
}
Known versions
1.0.0
Validation history
| Timestamp | Status | Score | Latency | Tools |
|---|---|---|---|---|
| Aug 06, 2026 07:19:02 AM UTC | Failing | 3.6 | 356.6 ms | 0 |
| Aug 06, 2026 07:19:01 AM UTC | Failing | 3.6 | 369.3 ms | 0 |
| Aug 06, 2026 07:19:01 AM UTC | Failing | 3.6 | 454.6 ms | 0 |
| Aug 05, 2026 11:18:30 PM UTC | Failing | 6.8 | 421.6 ms | 0 |
| Aug 05, 2026 07:18:06 PM UTC | Failing | 14.3 | 500.3 ms | 0 |
| Aug 03, 2026 10:30:52 AM UTC | Failing | 22.4 | 567.5 ms | 0 |
| Aug 02, 2026 06:32:49 PM UTC | Failing | 22.2 | 388.8 ms | 0 |
| Aug 02, 2026 03:59:47 AM UTC | Failing | 22.0 | 538.5 ms | 0 |
Validation timeline
| Validated | Summary | Score | Protocol | Auth mode | Tools | High-risk tools | Changes |
|---|---|---|---|---|---|---|---|
| Aug 06, 2026 07:19:02 AM UTC | Failing | 3.6 | 2025-03-26 | public | 0 | 0 | auth_mode_changed |
| Aug 06, 2026 07:19:01 AM UTC | Failing | 3.6 | unknown | unknown | 0 | 0 | none |
| Aug 06, 2026 07:19:01 AM UTC | Failing | 3.6 | unknown | unknown | 0 | 0 | none |
| Aug 05, 2026 11:18:30 PM UTC | Failing | 6.8 | unknown | unknown | 0 | 0 | none |
| Aug 05, 2026 07:18:06 PM UTC | Failing | 14.3 | unknown | unknown | 0 | 0 | none |
| Aug 03, 2026 10:30:52 AM UTC | Failing | 22.4 | unknown | unknown | 0 | 0 | none |
| Aug 02, 2026 06:32:49 PM UTC | Failing | 22.2 | unknown | unknown | 0 | 0 | none |
| Aug 02, 2026 03:59:47 AM UTC | Failing | 22.0 | unknown | unknown | 0 | 0 | none |
| Aug 01, 2026 01:10:28 PM UTC | Failing | 21.9 | unknown | unknown | 0 | 0 | none |
| Jul 31, 2026 09:55:31 PM UTC | Failing | 21.9 | unknown | unknown | 0 | 0 | none |
Recent validation runs
| Started | Status | Summary | Latency | Checks |
|---|---|---|---|---|
| Aug 06, 2026 07:19:01 AM UTC | Completed | Failing | 356.6 ms | action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, schema_divergence_probe, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe |
| Aug 06, 2026 07:19:01 AM UTC | Completed | Failing | 369.3 ms | |
| Aug 06, 2026 07:19:00 AM UTC | Completed | Failing | 454.6 ms | |
| Aug 05, 2026 11:18:30 PM UTC | Completed | Failing | 421.6 ms | |
| Aug 05, 2026 07:18:05 PM UTC | Completed | Failing | 500.3 ms | |
| Aug 03, 2026 10:30:51 AM UTC | Completed | Failing | 567.5 ms | |
| Aug 02, 2026 06:32:48 PM UTC | Completed | Failing | 388.8 ms | |
| Aug 02, 2026 03:59:46 AM UTC | Completed | Failing | 538.5 ms | |
| Aug 01, 2026 01:10:28 PM UTC | Completed | Failing | 424.0 ms | |
| Jul 31, 2026 09:55:31 PM UTC | Completed | Failing | 477.5 ms | |
Public server reputation
Incident & change feed
| Timestamp | Event | Details |
|---|---|---|
| Aug 05, 2026 11:01:11 AM UTC | Score corrected (post-1.0.503 remediation, R1 zero-anchoring) | Prior: 22.38. Corrected: 14.46. |
| Aug 06, 2026 07:19:02 AM UTC | Latest validation: failing | Score 6.1 with status failing. |
| Aug 06, 2026 07:19:02 AM UTC | Auth mode changed | Auth mode moved from unknown to public. |
| Aug 06, 2026 07:19:01 AM UTC | Score changed | Score delta -3.1 versus the previous run. |
Capabilities
- OAuth:
- DCR/CIMD:
- Prompts:
- Homepage: https://kontato.ai
- Docs: none
- Support: none
- Icon: none
- Remote endpoint: https://api.kontato.ai/mcp
- Server card: none
Benchmark tasks
| Benchmark task | Status | Evidence |
|---|---|---|
| Discover tools | Likely to fail |
|
| Read-only fetch flow | Likely to fail |
|
| OAuth-required connect | Degraded |
|
| Safe write flow with confirmation | Degraded |
|
Utility coverage
Transport compliance drilldown
Issues: missing_protocol_header
Request association
Connector replay
Required-argument replay breaks
| Tool | Added required args | Removed required args |
|---|---|---|
| No required-argument replay breaks detected. | ||
Output-schema replay breaks
| Tool | Removed properties | Added properties |
|---|---|---|
| No output-schema replay breaks detected. | ||
Tool snapshot diff & changelog
Need at least two validation runs before building a tool changelog.
Validation diff
Regressed checks: action_safety_probe, connector_publishability_probe, oauth_protected_resource, provenance_divergence_probe, server_card, tools_list
Improved checks: initialize, official_registry_probe, probe_noise_resilience, session_resume_probe
Newly assessed dimensions: none
No longer assessed dimensions: none
| Component | Previous | Latest | Delta |
|---|---|---|---|
| No component deltas between the latest two runs. | |||
Registry & provenance divergence
| Field | Registry | Live server card |
|---|---|---|
| Title | n/a | n/a |
| Version | n/a | n/a |
| Homepage | n/a | n/a |
Active alerts
- Latest validation is failing (critical)
Core MCP flows did not validate successfully on the latest run. - tools/list regressed (critical)
Tool discovery became less reliable on the latest run. - Auth mode changed (high)
Auth mode changed from unknown to public.
Aliases & registry graph
| Identifier | Source | Canonical | Score |
|---|---|---|---|
ai.kontato/kontato |
official_registry | yes | 3.6 |
Alias consolidation
Source disagreements
| Field | What differs | Observed values |
|---|---|---|
| No source disagreements detected. | ||
Fix it
Why this score?
Algorithmic score breakdown
Actionable remediation
| Severity | Remediation | Why it matters | Recommended action |
|---|---|---|---|
| Critical | Ensure tools/list succeeds consistently | Tools discovery is the minimum viable contract for most MCP clients and directories. | Make tools/list succeed unauthenticated when possible, or document the auth flow in the server card.Playbook
|
| Critical | Respond to latest validation is failing | Core MCP flows did not validate successfully on the latest run. | Fix the failing checks first, then revalidate to confirm the recovery path.Playbook
|
| Critical | Respond to tools/list regressed | Tool discovery became less reliable on the latest run. | Compare tool enumeration outputs between runs and remove non-deterministic behavior. |
| High | Add confirmation and dry-run semantics for risky actions | High-risk write, delete, exec, or egress tools should communicate safeguards clearly. | Add an explicit confirm/dry-run parameter or two-step confirmation flow to write, delete, exec, and egress-capable tools before they can make destructive changes.Playbook
|
| High | Align session and protocol behavior with Streamable HTTP expectations | Clients increasingly rely on MCP-Protocol-Version, session teardown, and expired-session semantics. | Align MCP-Protocol-Version, MCP-Session-Id, DELETE teardown, and expired-session handling with the transport spec.Playbook
|
| High | Associate roots, sampling, and elicitation with active client requests | Modern MCP guidance expects roots, sampling, and elicitation traffic to be tied to an active client request instead of arriving unsolicited on idle sessions. | Only send roots/list, sampling/createMessage, or elicitation/create requests while handling an active client-initiated request, never on idle sessions.Playbook
|
| High | Expose /.well-known/oauth-protected-resource | Without a protected-resource document, OAuth clients cannot discover auth requirements reliably. | Serve /.well-known/oauth-protected-resource and point it at your authorization server metadata.Playbook
|
| High | Keep connector refreshes backward compatible | Managed connector clients freeze tool snapshots, so removed tools, new required args, and breaking output changes can break published integrations after refresh. | Avoid removing tools, adding new required arguments, or changing outputSchema for tools already published to connector directories without a version bump.Playbook
|
| High | Publish OAuth authorization-server metadata | Clients need authorization-server metadata to discover issuer, endpoints, and DCR support. | Publish /.well-known/oauth-authorization-server from your issuer and include registration_endpoint when supported.Playbook
|
| High | Publish a complete server card | Missing or incomplete server-card metadata weakens discovery, documentation, and trust signals. | Serve /.well-known/mcp/server-card.json and include tools, prompts/resources, homepage, and support links.Playbook
|
| High | Respond to auth mode changed | Auth mode changed from unknown to public. | Document the new auth posture and confirm protected-resource and challenge metadata still match reality. |
| High | Stop asking users to paste secrets directly | Public MCP servers should prefer OAuth or browser-based auth guidance over in-band secret collection. | |
| High | Sync the published server card's tool schemas with the live tool surface | The server card and live tools/list disagree on parameter names, required sets, or types -- clients that trust the published card will construct invalid calls. | Regenerate the published server card from the live tool schemas (or vice versa) so parameter names, required sets, and types match exactly.Playbook
|
| Medium | Adopt a current MCP protocol revision | Older protocol revisions reduce compatibility with newer clients and registry programs. | Advertise a current MCP protocol revision (2025-06-18 or later) in both the initialize response and the MCP-Protocol-Version header.Playbook
|
| Medium | Close connector-publishing gaps | Connector catalogs care about protocol recency, session behavior, auth clarity, and tool-surface stability. | |
| Medium | Document minimal scopes and return cleaner auth challenges | Modern clients expect granular scopes and step-up auth signals such as WWW-Authenticate scope hints. | Return granular scopes and WWW-Authenticate challenge hints instead of forcing overly broad auth upfront.Playbook
|
| Medium | Publish OpenID configuration | OIDC metadata improves token validation and client compatibility. | Expose /.well-known/openid-configuration with issuer, jwks_uri, and supported grants.Playbook
|
| Medium | Raise Adoption & Market score | Adoption clues and public evidence that the server is intended for external use. | Increase external documentation and directory coverage so users can discover and evaluate the server. |
| Medium | Raise Interface Quality score | How well the tool/resource interface communicates and behaves under automation. | Improve schemas, error contracts, and recovery messages so agents can reason about the surface automatically. |
| Medium | Raise Reliability & Trust score | Operational stability, consistency, and trustworthiness over time. | Stabilize behavior over time and reduce failure drift between validation runs. |
| Medium | Raise Security Posture score | How safely the exposed tool surface handles destructive actions, egress, execution, secrets, and risky inputs. | Reduce destructive, egress, exec, secret, and freeform-input risk across the exposed tool surface.Playbook
|
| Medium | Reconcile registry, server-card, and repository metadata | Directory trust falls quickly when official registry fields drift from the live server card or public repo metadata. | |
| Medium | Reduce tool-surface churn | Frequent add/remove or output-shape drift makes published connectors and cached tool snapshots brittle. | Keep tool names, required arguments, and output schemas stable between deploys, and publish a changelog entry when they must change.Playbook
|
| Medium | Repair prompts/list or stop advertising prompts | Prompt metadata should either work live or be removed from the advertised capability set. | Only advertise prompts if prompts/list works and prompt arguments are documented.Playbook
|
| Medium | Repair resources/list or stop advertising resources | Resource metadata should either work live or be removed from the advertised capability set. | Only advertise resources if resources/list works and resources expose stable URIs/types.Playbook
|
| Low | Expose modern utility surfaces like completions, pagination, or tasks | Utility coverage improves interoperability with larger clients and long-lived agent workflows. | Expose completions, pagination, and task metadata where supported so larger clients can plan and resume work safely.Playbook
|
| Low | Publish newer MCP capability signals | Roots, sampling, elicitation, structured outputs, and related metadata improve client understanding and ranking. | Advertise only the advanced capabilities (roots, sampling, elicitation) you have actually implemented end to end in the initialize capabilities object.Playbook
|
Point loss breakdown
| Component | Current | Points missing |
|---|---|---|
| Utility Coverage | 0/4 | -4.0 |
| Trust Confidence | 0/4 | -4.0 |
| Tool Surface Design | 0/4 | -4.0 |
| Tool Snapshot Churn | 0/4 | -4.0 |
| Tool Namespace Clarity | 0/4 | -4.0 |
| Tool Capability Clarity | 0/4 | -4.0 |
| Task Success | 0/4 | -4.0 |
| Step Up Auth | 0/4 | -4.0 |
| SLO Health | 0/4 | -4.0 |
| Schema Completeness | 0/4 | -4.0 |
| Result Shape Stability | 0/4 | -4.0 |
| Resource Contract | 0/4 | -4.0 |
Compatibility profiles
Connector URL: https://api.kontato.ai/mcp # No OAuth metadata detected. # Server: ai.kontato/kontato
{
"mcpServers": {
"kontato": {
"command": "npx",
"args": ["mcp-remote", "https://api.kontato.ai/mcp"]
}
}
}
smithery mcp add "https://api.kontato.ai/mcp"
curl -sS https://api.kontato.ai/mcp -H 'content-type: application/json' -d '{"jsonrpc":"2.0","id":1,"method":"initialize","params":{"protocolVersion":"2025-03-26","capabilities":{},"clientInfo":{"name":"mcp-verify","version":"0.1.0"}}}'
Governance
MCP TrustOps
TrustOps turns this report into operational controls: freshness SLAs, authenticated validation, semantic benchmarks, policy exports, alert subscriptions, badges, cost/compliance metadata, and runtime routing. Fresh trusted index decisions stay separate from long-tail inventory so stale scores do not masquerade as current evidence.
/v1/decideAlert subscription types
MCP Runtime hosting
Verify Hosted MCP turns a trusted server report into a managed remote MCP endpoint with GitHub deployment provenance, sandbox policy, encrypted secrets, release history, rollback, and audit/usage events.
/hosted/{namespace}/{name}/mcp| Deployment | Status | Endpoint | Release |
|---|---|---|---|
| No hosted runtime deployments yet. | |||
Authenticated validation sessions
Public validation is free. Authenticated validation is paid and proves scoped behavior, write-action safeguards, and authenticated tool execution.
/v1/verify/v1/ci/previewInstall snippets
Connector URL: https://api.kontato.ai/mcp # No OAuth metadata detected. # Server: ai.kontato/kontato
{
"mcpServers": {
"kontato": {
"command": "npx",
"args": ["mcp-remote", "https://api.kontato.ai/mcp"]
}
}
}
smithery mcp add "https://api.kontato.ai/mcp"
curl -sS https://api.kontato.ai/mcp -H 'content-type: application/json' -d '{"jsonrpc":"2.0","id":1,"method":"initialize","params":{"protocolVersion":"2025-03-26","capabilities":{},"clientInfo":{"name":"mcp-verify","version":"0.1.0"}}}'
Agent access & tool surface
tools/list, prompts/list, and resources/list checks.ai.kontato/kontato.