stevejford/shiply-mcp
stevejford/shiply-mcp stevejford/shiply-mcp](https://glama.ai/mcp/servers/stevejford/shiply-mcp) 📇 ☁️ - Agent-first web host: publish a static site or edge function to the web in one call (no account), then manage updates, custom domains, SSL, env vars, databases, and email. Hosted remote MCP at https://shiply.now/mcp.
Executive verdict
trustsnap_82a31d75b409a415- Machine trust evaluator activity
- Possible agent/script activity
- profile / compare inspection
Current trust snapshot
trustsnap_82a31d75b409a415Canonical machine links
Own this MCP?
Claim ownership, prove control with a GitHub, DNS, HTTP, MCP metadata, or email-domain challenge, revalidate now, publish a badge, configure monitoring, and unlock a verified server profile.
POST /v1/servers/awesome-stevejford/shiply-mcp/revalidateBadge embed
[](https://verify.sentinelsignal.io/servers/awesome-stevejford/shiply-mcp)
MCP TrustOps
TrustOps turns this report into operational controls: freshness SLAs, authenticated validation, semantic benchmarks, policy exports, alert subscriptions, badges, cost/compliance metadata, and runtime routing. Fresh trusted index decisions stay separate from long-tail inventory so stale scores do not masquerade as current evidence.
/v1/decideAlert subscription types
MCP Runtime hosting
Verify Hosted MCP turns a trusted server report into a managed remote MCP endpoint with GitHub deployment provenance, sandbox policy, encrypted secrets, release history, rollback, and audit/usage events.
/hosted/{namespace}/{name}/mcp| Deployment | Status | Endpoint | Release |
|---|---|---|---|
| No hosted runtime deployments yet. | |||
Production readiness class
Evidence confidence
Recommended for
Client compatibility verdicts
Client compatibility only means the server shape can work with a client. Production trust decision and write-action publishing are evaluated separately so a client-compatible server can still be blocked for production.
Evidence provenance
initialize• OKtools_list• OKtransport_compliance_probe• Warningstep_up_auth_probe• OKconnector_replay_probe• Missing — Frozen tool snapshots must survive refresh.request_association_probe• Missing — Roots, sampling, and elicitation should stay request-scoped.
Evidence provenance
initialize• OKtools_list• OKtransport_compliance_probe• Warning
Evidence provenance
action_safety_probe• Warning
Evidence provenance
tool_snapshot_probe• Missingconnector_replay_probe• Missing
Why compatibility is limited by client
Remediation checklist
search fetch only is not yet satisfiedadmin refresh required is not yet satisfiedsafe for company knowledge is not yet satisfiedsafe for messages api remote mcp is not yet satisfiedTransport compliance issues should be resolved before wider client rollout.
Remediation checklist
search fetch only is not yet satisfiedadmin refresh required is not yet satisfiedsafe for company knowledge is not yet satisfiedsafe for messages api remote mcp is not yet satisfiedTransport compliance issues should be resolved before wider client rollout.
Remediation checklist
- No explicit blockers recorded.
Verdict traces
- No active alert triggers.
Client verdict trace table
| Verdict | Status | Checks | Winning source | Conflicts |
|---|---|---|---|---|
openai_connectors |
Client-compatible | initialize, tools_list, transport_compliance_probe, step_up_auth_probe, connector_replay_probe, request_association_probe | live_validation | none |
claude_desktop |
Client-compatible | initialize, tools_list, transport_compliance_probe | live_validation | none |
unsafe_for_write_actions |
Publishing allowed | action_safety_probe | live_validation | none |
snapshot_churn_risk |
Low | tool_snapshot_probe, connector_replay_probe | history | none |
Publishability policy profiles
- Search Fetch Only: No
- Write Actions Present: Yes
- Oauth Configured: Yes
- Admin Refresh Required: No
- Safe For Company Knowledge: No
- Safe For Messages Api Remote Mcp: No
- Search Fetch Only: No
- Write Actions Present: Yes
- Oauth Configured: Yes
- Admin Refresh Required: No
- Safe For Company Knowledge: No
- Safe For Messages Api Remote Mcp: No
Compatibility fixtures
- remote_http_endpoint: Passes
- oauth_discovery: Passes
- frozen_tool_snapshot_refresh: Passes
- request_association: Passes
- remote_transport: Passes
- tool_discovery: Passes
- auth_connect: Passes
- safe_write_review: Passes
Authenticated validation sessions
Public validation is free. Authenticated validation is paid and proves scoped behavior, write-action safeguards, and authenticated tool execution.
/v1/verify/v1/ci/previewPublic server reputation
Incident & change feed
| Timestamp | Event | Details |
|---|---|---|
| Jul 31, 2026 05:22:22 AM UTC | Latest validation: healthy | Score 73.3 with status healthy. |
Capabilities
- OAuth:
- DCR/CIMD:
- Prompts:
- Homepage: https://github.com/stevejford/shiply-mcp
- Docs: https://github.com/stevejford/shiply-mcp
- Support: https://github.com/stevejford/shiply-mcp
- Icon: none
- Remote endpoint: https://shiply.now/mcp
- Server card: none
Security posture
Agent Commerce & Payment Readiness - Beta
Beta assessment. Verify separates commerce-adjacent context from observed payment execution. Usage, billing, pricing, card, wallet, or meter terms alone do not make a server payment-capable. This is not a certification of safety, compliance, or fraud prevention.
Warnings
No commerce-specific warnings generated.
Evidence
| Field | Value | Source | Matched terms | Confidence |
|---|---|---|---|---|
| commerce_signal | strong | tool_schema | capture, order, purchase, refund, subscription, limit, limits, amount | high |
| refund_policy_present | yes | tool_schema | refund | medium |
| payment_rails | Stripe | tool_schema | stripe | medium |
Recommended operator fixes
- Separate quote/cart tools from charge/settlement tools.
- Require explicit user confirmation for payment execution.
- Return amount, currency, merchant, and receipt identifiers.
- Publish pricing and refund/cancellation policy.
- Add operator identity metadata.
- Add spending policy support or mandate constraints.
Tool capability & risk inventory
| Tool | Capabilities | Risk | Findings | Notes |
|---|---|---|---|---|
publish_site |
read write network filesystem secrets | High | arbitrary network egress secret material access filesystem mutation | No explicit safeguard hints detected. |
site_status |
read network | Medium | arbitrary network egress freeform input surface | No explicit safeguard hints detected. |
verify_site |
read network | Medium | arbitrary network egress freeform input surface | Safeguards hinted in metadata. |
list_sites |
read filesystem | Low | none | No explicit safeguard hints detected. |
get_site |
read write | Medium | none | No explicit safeguard hints detected. |
delete_site |
write delete filesystem admin | High | destructive operation filesystem mutation admin mutation | Safeguards hinted in metadata. |
rollback_site |
read write | Medium | none | No explicit safeguard hints detected. |
list_versions |
read write filesystem | Medium | filesystem mutation | No explicit safeguard hints detected. |
pull_site |
write filesystem | Medium | filesystem mutation | No explicit safeguard hints detected. |
set_handle |
read write network filesystem | Medium | filesystem mutation | No explicit safeguard hints detected. |
duplicate_site |
write filesystem | Medium | filesystem mutation | No explicit safeguard hints detected. |
promote_site |
read write | Medium | none | No explicit safeguard hints detected. |
set_link |
read write delete network filesystem | High | destructive operation arbitrary network egress filesystem mutation | No explicit safeguard hints detected. |
set_site_access |
read write network secrets | High | arbitrary network egress secret material access freeform input surface | Safeguards hinted in metadata. |
get_site_access |
read write admin secrets | Medium | secret material access admin mutation | Safeguards hinted in metadata. |
export_account |
filesystem admin secrets export | High | bulk data access secret material access | No explicit safeguard hints detected. |
whoami |
other | Low | none | No explicit safeguard hints detected. |
get_account_status |
read write network | Medium | none | No explicit safeguard hints detected. |
list_drives |
read filesystem admin | Medium | none | No explicit safeguard hints detected. |
create_drive |
read write filesystem | Medium | filesystem mutation | No explicit safeguard hints detected. |
drive_list_files |
read filesystem | Low | none | No explicit safeguard hints detected. |
drive_put_file |
write filesystem | Medium | freeform input surface filesystem mutation | No explicit safeguard hints detected. |
drive_delete_file |
write delete filesystem | High | destructive operation freeform input surface filesystem mutation | No explicit safeguard hints detected. |
publish_from_drive |
filesystem export | Medium | bulk data access | No explicit safeguard hints detected. |
set_profile |
read write network filesystem admin | Medium | filesystem mutation admin mutation | No explicit safeguard hints detected. |
feature_site |
write delete network | High | destructive operation arbitrary network egress | No explicit safeguard hints detected. |
set_variable |
write network admin | Medium | admin mutation | No explicit safeguard hints detected. |
list_variables |
read | Low | none | Safeguards hinted in metadata. |
delete_variable |
write delete | Medium | destructive operation | No explicit safeguard hints detected. |
attach_variable |
write exec network | Medium | command execution | No explicit safeguard hints detected. |
detach_variable |
other | Low | none | No explicit safeguard hints detected. |
list_site_variables |
read | Low | none | No explicit safeguard hints detected. |
list_databases |
read write exec | Medium | command execution | No explicit safeguard hints detected. |
create_database |
write | Medium | none | No explicit safeguard hints detected. |
delete_database |
read write delete admin | Medium | destructive operation admin mutation | Safeguards hinted in metadata. |
attach_database |
read write | Medium | none | No explicit safeguard hints detected. |
data_list_collections |
read | Low | none | No explicit safeguard hints detected. |
data_query |
read export | Medium | bulk data access | No explicit safeguard hints detected. |
data_insert |
read network | Medium | none | No explicit safeguard hints detected. |
data_export_collection |
write export | Medium | bulk data access | No explicit safeguard hints detected. |
add_domain |
network admin | Medium | arbitrary network egress | No explicit safeguard hints detected. |
add_custom_domain |
network admin | Medium | arbitrary network egress freeform input surface | No explicit safeguard hints detected. |
add_subdomain |
network | Medium | arbitrary network egress freeform input surface | No explicit safeguard hints detected. |
set_primary_subdomain |
read write network filesystem | High | arbitrary network egress freeform input surface filesystem mutation | No explicit safeguard hints detected. |
list_custom_domains |
read | Low | none | No explicit safeguard hints detected. |
connect_provider |
network admin | Medium | arbitrary network egress freeform input surface | No explicit safeguard hints detected. |
sync_dns |
write network | Medium | arbitrary network egress freeform input surface | No explicit safeguard hints detected. |
check_custom_domain |
read network | Medium | arbitrary network egress freeform input surface | Safeguards hinted in metadata. |
remove_custom_domain |
write delete network | High | destructive operation arbitrary network egress freeform input surface | No explicit safeguard hints detected. |
list_domains |
read | Low | none | No explicit safeguard hints detected. |
check_domain |
read network | Medium | arbitrary network egress | No explicit safeguard hints detected. |
remove_domain |
read write delete | Medium | destructive operation | No explicit safeguard hints detected. |
get_analytics |
read | Low | none | No explicit safeguard hints detected. |
create_test |
read write network | Medium | none | Safeguards hinted in metadata. |
list_tests |
read | Low | none | Safeguards hinted in metadata. |
get_test_status |
read write | Medium | none | Safeguards hinted in metadata. |
send_broadcast |
write | Medium | none | Safeguards hinted in metadata. |
resend_confirmation |
write | Medium | none | Safeguards hinted in metadata. |
verify_claim |
read network filesystem admin secrets | Medium | arbitrary network egress secret material access | Safeguards hinted in metadata. |
list_inbox |
read write admin export | Medium | bulk data access admin mutation | Safeguards hinted in metadata. |
read_thread |
read | Low | none | No explicit safeguard hints detected. |
summarize_thread |
read | Low | none | No explicit safeguard hints detected. |
reply_to_thread |
read write | Medium | none | No explicit safeguard hints detected. |
mark_thread_read |
read | Low | none | No explicit safeguard hints detected. |
archive_thread |
read write export | Medium | bulk data access | No explicit safeguard hints detected. |
unarchive_thread |
read export | Medium | bulk data access | No explicit safeguard hints detected. |
forward_thread |
read | Low | none | No explicit safeguard hints detected. |
list_test_inbox_addresses |
read | Low | none | No explicit safeguard hints detected. |
list_unsubscribes |
read network export | Medium | bulk data access | No explicit safeguard hints detected. |
list_suppressions |
read write admin | Medium | admin mutation | No explicit safeguard hints detected. |
add_suppression |
read admin | Medium | none | Safeguards hinted in metadata. |
remove_suppression |
read write delete | Medium | destructive operation | No explicit safeguard hints detected. |
list_complaints |
read write | Medium | none | No explicit safeguard hints detected. |
list_projects |
read filesystem admin export | Medium | bulk data access | No explicit safeguard hints detected. |
create_project |
write network admin | Medium | admin mutation | No explicit safeguard hints detected. |
get_project |
read write filesystem admin | Medium | filesystem mutation admin mutation | No explicit safeguard hints detected. |
update_brief |
write admin | Medium | admin mutation | No explicit safeguard hints detected. |
regenerate_brief |
read write exec admin | High | command execution admin mutation | No explicit safeguard hints detected. |
archive_project |
read admin export | Medium | bulk data access | No explicit safeguard hints detected. |
restore_project |
read admin export | Medium | bulk data access | No explicit safeguard hints detected. |
list_project_files |
read write filesystem admin | Medium | filesystem mutation admin mutation | No explicit safeguard hints detected. |
resend_intake_invite |
write network admin | Medium | admin mutation | No explicit safeguard hints detected. |
list_listings |
read | Low | none | No explicit safeguard hints detected. |
create_listing |
read write network | Medium | arbitrary network egress | No explicit safeguard hints detected. |
update_listing |
read write delete network | High | destructive operation arbitrary network egress | No explicit safeguard hints detected. |
delete_listing |
read write delete | Medium | destructive operation | No explicit safeguard hints detected. |
list_my_sales |
read write admin export | Medium | bulk data access admin mutation | No explicit safeguard hints detected. |
list_my_orders |
read admin export | Medium | bulk data access | No explicit safeguard hints detected. |
refund_order |
read network admin | Medium | none | No explicit safeguard hints detected. |
get_connect_status |
read write delete network admin | High | destructive operation admin mutation | No explicit safeguard hints detected. |
list_sending_domains |
read write delete admin | High | destructive operation admin mutation | No explicit safeguard hints detected. |
add_sending_domain |
write network admin | High | arbitrary network egress freeform input surface admin mutation | No explicit safeguard hints detected. |
verify_sending_domain |
read write | Medium | none | No explicit safeguard hints detected. |
remove_sending_domain |
read write delete | Medium | destructive operation | No explicit safeguard hints detected. |
contract_draft |
read write filesystem admin | Medium | filesystem mutation admin mutation | No explicit safeguard hints detected. |
contract_send |
write admin | Medium | admin mutation | No explicit safeguard hints detected. |
contract_amend |
read write network | Medium | arbitrary network egress | Safeguards hinted in metadata. |
contract_pdf |
read filesystem | Low | none | No explicit safeguard hints detected. |
contract_status |
read | Low | none | No explicit safeguard hints detected. |
deploy_function |
exec network admin secrets | High | command execution secret material access | No explicit safeguard hints detected. |
get_function |
read | Low | none | No explicit safeguard hints detected. |
remove_function |
write delete secrets | High | destructive operation secret material access | No explicit safeguard hints detected. |
set_secret |
read write secrets | Medium | secret material access | No explicit safeguard hints detected. |
list_secrets |
read secrets | Medium | secret material access | No explicit safeguard hints detected. |
remove_secret |
write delete network secrets | High | destructive operation secret material access | No explicit safeguard hints detected. |
list_crons |
read exec filesystem | Medium | command execution | No explicit safeguard hints detected. |
set_cron |
read write network filesystem | Medium | filesystem mutation | No explicit safeguard hints detected. |
remove_cron |
write delete network filesystem | High | destructive operation filesystem mutation | No explicit safeguard hints detected. |
get_function_logs |
read write exec network export | High | command execution bulk data access | No explicit safeguard hints detected. |
send_email |
write | Medium | none | No explicit safeguard hints detected. |
list_site_inbox |
read | Low | none | Safeguards hinted in metadata. |
set_mailbox |
write network | Medium | arbitrary network egress | Safeguards hinted in metadata. |
list_mailbox_contacts |
read write | Medium | none | Safeguards hinted in metadata. |
send_mailbox_broadcast |
write | Medium | none | Safeguards hinted in metadata. |
Write-action governance
Status detail: 19 high-risk tool(s), 17 destructive tool(s), 6 exec-capable tool(s); auth boundary is oauth or auth required with 20 safeguard(s) and 18 confirmation signal(s).
| Tool | Risk | Flags | Safeguards |
|---|---|---|---|
publish_site |
High | arbitrary network egress secret material access filesystem mutation | no |
delete_site |
High | destructive operation filesystem mutation admin mutation | yes |
set_link |
High | destructive operation arbitrary network egress filesystem mutation | no |
set_site_access |
High | arbitrary network egress secret material access freeform input surface | yes |
export_account |
High | bulk data access secret material access | no |
drive_delete_file |
High | destructive operation freeform input surface filesystem mutation | no |
feature_site |
High | destructive operation arbitrary network egress | no |
set_primary_subdomain |
High | arbitrary network egress freeform input surface filesystem mutation | no |
remove_custom_domain |
High | destructive operation arbitrary network egress freeform input surface | no |
regenerate_brief |
High | command execution admin mutation | no |
update_listing |
High | destructive operation arbitrary network egress | no |
get_connect_status |
High | destructive operation admin mutation | no |
list_sending_domains |
High | destructive operation admin mutation | no |
add_sending_domain |
High | arbitrary network egress freeform input surface admin mutation | no |
deploy_function |
High | command execution secret material access | no |
remove_function |
High | destructive operation secret material access | no |
remove_secret |
High | destructive operation secret material access | no |
remove_cron |
High | destructive operation filesystem mutation | no |
get_function_logs |
High | command execution bulk data access | no |
Action-controls diff
New actions
| Action | Risk | Flags |
|---|---|---|
| No newly added actions. | ||
Changed actions
| Action | Change types | Risk |
|---|---|---|
| No materially changed actions. | ||
Why this score?
Algorithmic score breakdown
Compatibility profiles
Connector URL: https://shiply.now/mcp # Complete OAuth in the client when prompted. # Server: awesome-stevejford/shiply-mcp
{
"mcpServers": {
"shiply-mcp": {
"command": "npx",
"args": ["mcp-remote", "https://shiply.now/mcp"]
}
}
}
smithery mcp add "https://shiply.now/mcp"
curl -sS https://shiply.now/mcp -H 'content-type: application/json' -d '{"jsonrpc":"2.0","id":1,"method":"initialize","params":{"protocolVersion":"2025-03-26","capabilities":{},"clientInfo":{"name":"mcp-verify","version":"0.1.0"}}}'
Actionable remediation
| Severity | Remediation | Why it matters | Recommended action |
|---|---|---|---|
| High | Add confirmation and dry-run semantics for risky actions | High-risk write, delete, exec, or egress tools should communicate safeguards clearly. | Inspect the latest validation evidence and resolve the client-visible regression.Playbook
|
| High | Align session and protocol behavior with Streamable HTTP expectations | Clients increasingly rely on MCP-Protocol-Version, session teardown, and expired-session semantics. | Align MCP-Protocol-Version, MCP-Session-Id, DELETE teardown, and expired-session handling with the transport spec.Playbook
|
| High | Associate roots, sampling, and elicitation with active client requests | Modern MCP guidance expects roots, sampling, and elicitation traffic to be tied to an active client request instead of arriving unsolicited on idle sessions. | Inspect the latest validation evidence and resolve the client-visible regression.Playbook
|
| High | Keep connector refreshes backward compatible | Managed connector clients freeze tool snapshots, so removed tools, new required args, and breaking output changes can break published integrations after refresh. | Inspect the latest validation evidence and resolve the client-visible regression.Playbook
|
| High | Publish a complete server card | Missing or incomplete server-card metadata weakens discovery, documentation, and trust signals. | Serve /.well-known/mcp/server-card.json and include tools, prompts/resources, homepage, and support links.Playbook
|
| Medium | Adopt a current MCP protocol revision | Older protocol revisions reduce compatibility with newer clients and registry programs. | Inspect the latest validation evidence and resolve the client-visible regression.Playbook
|
| Medium | Close connector-publishing gaps | Connector catalogs care about protocol recency, session behavior, auth clarity, and tool-surface stability. | Inspect the latest validation evidence and resolve the client-visible regression.Playbook
|
| Medium | Publish OpenID configuration | OIDC metadata improves token validation and client compatibility. | Expose /.well-known/openid-configuration with issuer, jwks_uri, and supported grants.Playbook
|
| Medium | Reduce tool-surface churn | Frequent add/remove or output-shape drift makes published connectors and cached tool snapshots brittle. | Inspect the latest validation evidence and resolve the client-visible regression.Playbook
|
| Medium | Support resumable HTTP sessions cleanly | Modern MCP clients increasingly expect resumable session behavior on streamable HTTP transports. | Inspect the latest validation evidence and resolve the client-visible regression.Playbook
|
| Low | Expose modern utility surfaces like completions, pagination, or tasks | Utility coverage improves interoperability with larger clients and long-lived agent workflows. | Expose completions, pagination, and task metadata where supported so larger clients can plan and resume work safely.Playbook
|
| Low | Publish or reconcile the server in the official MCP registry | Official registry presence improves discovery confidence and cross-source consistency. | Inspect the latest validation evidence and resolve the client-visible regression.Playbook
|
Point loss breakdown
| Component | Current | Points missing |
|---|---|---|
| Recovery Semantics | 0/4 | -4.0 |
| Error Contract | 0/4 | -4.0 |
| Dependency Supply Chain Signal | 0.5/4 | -3.5 |
| Execution Sandbox Safety | 1.5/4 | -2.5 |
| Trust Confidence | 1.8/4 | -2.2 |
| Utility Coverage | 2/4 | -2.0 |
| Transport Compliance | 2/4 | -2.0 |
| Spec Recency | 2/4 | -2.0 |
| Safety Transparency | 2/4 | -2.0 |
| Rate Limit Semantics | 2/4 | -2.0 |
| Prompt Contract | 2/4 | -2.0 |
| Least Privilege Scope | 2/4 | -2.0 |
Validation diff
Need at least two validation runs before diffing changes.
Tool snapshot diff & changelog
Need at least two validation runs before building a tool changelog.
Connector replay
Required-argument replay breaks
| Tool | Added required args | Removed required args |
|---|---|---|
| No required-argument replay breaks detected. | ||
Output-schema replay breaks
| Tool | Removed properties | Added properties |
|---|---|---|
| No output-schema replay breaks detected. | ||
Transport compliance drilldown
Issues: missing_session_id, missing_protocol_header
Request association
Utility coverage
Benchmark tasks
| Benchmark task | Status | Evidence |
|---|---|---|
| Discover tools | Passes |
|
| Read-only fetch flow | Passes |
|
| OAuth-required connect | Passes |
|
| Safe write flow with confirmation | Degraded |
|
Registry & provenance divergence
| Field | Registry | Live server card |
|---|---|---|
| Title | n/a | n/a |
| Version | n/a | n/a |
| Homepage | n/a | n/a |
Active alerts
No active alerts for the current server state.
Aliases & registry graph
| Identifier | Source | Canonical | Score |
|---|---|---|---|
awesome-stevejford/shiply-mcp |
awesome_mcp_servers | yes | 73.27 |
Alias consolidation
Source disagreements
| Field | What differs | Observed values |
|---|---|---|
| No source disagreements detected. | ||
Install snippets
Connector URL: https://shiply.now/mcp # Complete OAuth in the client when prompted. # Server: awesome-stevejford/shiply-mcp
{
"mcpServers": {
"shiply-mcp": {
"command": "npx",
"args": ["mcp-remote", "https://shiply.now/mcp"]
}
}
}
smithery mcp add "https://shiply.now/mcp"
curl -sS https://shiply.now/mcp -H 'content-type: application/json' -d '{"jsonrpc":"2.0","id":1,"method":"initialize","params":{"protocolVersion":"2025-03-26","capabilities":{},"clientInfo":{"name":"mcp-verify","version":"0.1.0"}}}'
Agent access & tool surface
tools/list, prompts/list, and resources/list checks.awesome-stevejford/shiply-mcp.Claims & monitoring
No verified maintainer claim recorded.
Alert routing
| Watch | Team | Channels | Minimum severity |
|---|---|---|---|
| No active watch destinations. | |||
Maintainer analytics
Maintainer response quality
Maintainer annotations
No maintainer annotations have been recorded yet.
Maintainer rebuttals & expected behavior
No maintainer rebuttals or expected-behavior overrides are recorded yet.
Latest validation evidence
Failures
openid_configurationClient error '404 Not Found' for url 'https://shiply.now/.well-known/openid-configuration' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404server_cardClient error '404 Not Found' for url 'https://shiply.now/.well-known/mcp/server-card.json' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404
Checks
| Check | Status | Latency | Evidence |
|---|---|---|---|
action_safety_probe |
Warning | n/a | 19 high-risk, 17 destructive, 6 exec-capable tool(s); auth present; safeguards=20; confirmation=verify site, delete site, promote site, delete database, +14 more. |
advanced_capabilities_probe |
OK | n/a | 4 capability signal(s): prompts, resource links, resources, structured outputs. |
connector_publishability_probe |
Warning | n/a | Publishability blockers: server card. |
connector_replay_probe |
Missing | n/a | No connector replay evidence recorded. |
determinism_probe |
OK | 1486.0 ms | Check completed |
initialize |
OK | 1815.7 ms | Protocol 2025-03-26 |
interactive_flow_probe |
OK | n/a | Check completed |
oauth_authorization_server |
OK | 53.3 ms | authorization_endpoint, code_challenge_methods_supported, grant_types_supported, issuer |
oauth_protected_resource |
OK | 2152.1 ms | 1 authorization server(s) |
official_registry_probe |
Warning | n/a | Check completed |
openid_configuration |
Error | 96.6 ms | Client error '404 Not Found' for url 'https://shiply.now/.well-known/openid-configuration' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404 |
probe_noise_resilience |
OK | 152.1 ms | Fetched https://shiply.now/robots.txt |
prompt_get |
OK | 2313.5 ms | 1 prompt message(s) returned |
prompts_list |
OK | 1930.8 ms | 2 prompt(s) exposed |
protocol_version_probe |
Warning | n/a | Claims 2025-03-26; 2 release(s) behind 2025-11-25. |
provenance_divergence_probe |
OK | n/a | Check completed |
request_association_probe |
Missing | n/a | No request-association capabilities were advertised. |
resource_read |
OK | 3013.7 ms | 1 resource content item(s) returned |
resources_list |
OK | 1899.5 ms | 3 resource item(s) exposed |
server_card |
Error | 2336.1 ms | Client error '404 Not Found' for url 'https://shiply.now/.well-known/mcp/server-card.json' For more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404 |
session_resume_probe |
Warning | n/a | no session id |
step_up_auth_probe |
OK | n/a | Scopes=mcp. |
tool_snapshot_probe |
Missing | n/a | no historical snapshot |
tools_list |
OK | 1899.0 ms | 114 tool(s) exposed |
transport_compliance_probe |
Warning | 1796.0 ms | Issues: missing session id, missing protocol header (bad protocol=400). |
utility_coverage_probe |
Missing | 2015.0 ms | No completions evidence; no pagination evidence; tasks missing. |
Raw evidence view
Show raw JSON evidence
Large evidence payload summarized to keep this page fast. Full raw evidence remains available from the JSON report.
{
"checks": {
"count": 26,
"items": {
"action_safety_probe": {
"auth_present": true,
"safeguard_count": 20,
"status": "warning"
},
"advanced_capabilities_probe": {
"status": "ok"
},
"connector_publishability_probe": {
"status": "warning"
},
"connector_replay_probe": {
"reason": "no_historical_snapshot",
"status": "missing"
},
"determinism_probe": {
"latency_ms": 1486.0,
"status": "ok"
},
"initialize": {
"http_status": 200,
"latency_ms": 1815.72,
"payload_omitted": true,
"status": "ok"
},
"interactive_flow_probe": {
"status": "ok"
},
"oauth_authorization_server": {
"http_status": 200,
"latency_ms": 53.28,
"payload_omitted": true,
"status": "ok"
},
"oauth_protected_resource": {
"http_status": 200,
"latency_ms": 2152.05,
"payload_omitted": true,
"status": "ok"
},
"official_registry_probe": {
"status": "warning"
},
"openid_configuration": {
"latency_ms": 96.63,
"reason": "Client error '404 Not Found' for url 'https://shiply.now/.well-known/openid-configuration'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404",
"status": "error"
},
"probe_noise_resilience": {
"http_status": 200,
"latency_ms": 152.1,
"status": "ok"
},
"prompt_get": {
"http_status": 200,
"latency_ms": 2313.53,
"payload_omitted": true,
"status": "ok"
},
"prompts_list": {
"http_status": 200,
"latency_ms": 1930.77,
"payload_omitted": true,
"status": "ok"
},
"protocol_version_probe": {
"status": "warning"
},
"provenance_divergence_probe": {
"status": "ok"
},
"request_association_probe": {
"reason": "no_request_association_capabilities_advertised",
"status": "missing"
},
"resource_read": {
"http_status": 200,
"latency_ms": 3013.68,
"payload_omitted": true,
"status": "ok"
},
"resources_list": {
"http_status": 200,
"latency_ms": 1899.45,
"payload_omitted": true,
"status": "ok"
},
"server_card": {
"latency_ms": 2336.05,
"reason": "Client error '404 Not Found' for url 'https://shiply.now/.well-known/mcp/server-card.json'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404",
"status": "error"
},
"session_resume_probe": {
"reason": "no_session_id",
"status": "warning"
},
"step_up_auth_probe": {
"status": "ok"
},
"tool_snapshot_probe": {
"reason": "no_historical_snapshot",
"status": "missing"
},
"tools_list": {
"http_status": 200,
"latency_ms": 1899.02,
"payload_omitted": true,
"status": "ok",
"tool_count": 114,
"tool_names_preview": [
"publish_site",
"site_status",
"verify_site",
"list_sites",
"get_site",
"delete_site",
"rollback_site",
"list_versions",
"pull_site",
"set_handle",
"duplicate_site",
"promote_site",
"set_link",
"set_site_access",
"get_site_access",
"export_account",
"whoami",
"get_account_status",
"list_drives",
"create_drive",
"drive_list_files",
"drive_put_file",
"drive_delete_file",
"publish_from_drive",
"set_profile"
]
},
"transport_compliance_probe": {
"latency_ms": 1795.95,
"protocol_header_present": false,
"status": "warning"
},
"utility_coverage_probe": {
"latency_ms": 2014.99,
"status": "missing"
}
},
"omitted_count": 0
},
"failures": {
"count": 2,
"items": {
"openid_configuration": {},
"server_card": {}
},
"omitted_count": 0
},
"message": "Raw evidence is summarized in HTML to keep server detail pages fast. Use the JSON report or evidence API for the full payload.",
"remote_url": "https://shiply.now/mcp",
"server_card": {
"name": null,
"raw_payload_omitted": false,
"version": null
},
"server_identifier": "awesome-stevejford/shiply-mcp",
"truncated": true
}
Known versions
- No versions recorded.
Validation history
| Timestamp | Status | Score | Latency | Tools |
|---|---|---|---|---|
| Jul 31, 2026 05:22:22 AM UTC | Healthy | 73.3 | 24481.2 ms | 114 |
Validation timeline
| Validated | Summary | Score | Protocol | Auth mode | Tools | High-risk tools | Changes |
|---|---|---|---|---|---|---|---|
| Jul 31, 2026 05:22:22 AM UTC | Healthy | 73.3 | 2025-03-26 | oauth_supported | 114 | 19 | none |
Recent validation runs
| Started | Status | Summary | Latency | Checks |
|---|---|---|---|---|
| Jul 31, 2026 05:21:57 AM UTC | Completed | Healthy | 24481.2 ms | action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe |