← Back to search
io.github.LembaGang/headless-oracle

io.github.LembaGang/headless-oracle

Ed25519-signed market open/close receipts for NYSE, NASDAQ, LSE, JPX, Euronext, HKEX, and SGX.

Status
Degraded
Score
74.5
Transport
streamable-http
Tools
5

Production readiness

Verdict
Needs remediation
Current validation evidence shows operational or discovery gaps that should be fixed first.
Critical alerts
0
Production verdicts degrade quickly when critical alerts are active.

Evidence confidence

Confidence score
60.0
Based on 20 recent validations, 26 captured checks, and validation age of 596.8 hours.
Live checks captured
26
More direct checks increase trust in the current verdict.
Validation age
596.8h
Lower age means fresher evidence.

Recommended for

Claude Desktop
Claude Desktop is marked compatible with score 83.
Smithery
Smithery is marked compatible with score 80.
Generic Streamable HTTP
Generic Streamable HTTP is marked compatible with score 100.

Client readiness verdicts

Ready for ChatGPT custom connector
Partial
Dynamic client registration materially improves connector setup.; Transport compliance should be in good shape.; OAuth interoperability should be strong.
Confidence: medium (60.0)
Evidence provenance
Winner: live_validation
Supporting sources: live_validation, history, server_card
Disagreements: none
  • initializeOK
  • tools_listOK
  • transport_compliance_probeError
  • step_up_auth_probeWarning
  • connector_replay_probeOK — Frozen tool snapshots must survive refresh.
  • request_association_probeMissing — Roots, sampling, and elicitation should stay request-scoped.
Ready for Claude remote MCP
Ready
Transport behavior should match Claude-compatible HTTP expectations.
Confidence: medium (60.0)
Evidence provenance
Winner: live_validation
Supporting sources: live_validation, history, server_card
Disagreements: none
  • initializeOK
  • tools_listOK
  • transport_compliance_probeError
Unsafe for write actions
No
Current write surface is bounded enough for cautious review.
Confidence: medium (60.0)
Evidence provenance
Winner: live_validation
Supporting sources: live_validation, history
Disagreements: none
  • action_safety_probeOK
Snapshot churn risk
Low
No material tool-surface churn detected in the latest comparison.
Confidence: medium (60.0)
Evidence provenance
Winner: history
Supporting sources: history, live_validation
Disagreements: none
  • tool_snapshot_probeOK
  • connector_replay_probeOK

Why not ready by client

ChatGPT custom connector
Partial
Remediation checklist
  • No explicit blockers recorded.
Claude remote MCP
Ready
Remediation checklist
  • No explicit blockers recorded.
Write-safe publishing
Ready
Remediation checklist
  • No explicit blockers recorded.

Verdict traces

Production verdict
Needs remediation
Current validation evidence shows operational or discovery gaps that should be fixed first.
Confidence: medium (60.0)
Winning source: live_validation
Triggering alerts
  • validation_stale • medium • Validation evidence is stale
  • server_degraded • medium • Latest validation is degraded
Client verdict trace table
VerdictStatusChecksWinning sourceConflicts
openai_connectors Partial initialize, tools_list, transport_compliance_probe, step_up_auth_probe, connector_replay_probe, request_association_probe live_validation none
claude_desktop Ready initialize, tools_list, transport_compliance_probe live_validation none
unsafe_for_write_actions No action_safety_probe live_validation none
snapshot_churn_risk Low tool_snapshot_probe, connector_replay_probe history none

Publishability policy profiles

ChatGPT custom connector publishability
Caution
Dynamic client registration materially improves connector setup.; Transport compliance should be in good shape.; OAuth interoperability should be strong.
  • Search Fetch Only: Yes
  • Write Actions Present: No
  • Oauth Configured: Yes
  • Admin Refresh Required: No
  • Safe For Company Knowledge: Yes
  • Safe For Messages Api Remote Mcp: No
Claude remote MCP publishability
Ready
Transport behavior should match Claude-compatible HTTP expectations.
  • Search Fetch Only: Yes
  • Write Actions Present: No
  • Oauth Configured: Yes
  • Admin Refresh Required: No
  • Safe For Company Knowledge: Yes
  • Safe For Messages Api Remote Mcp: No

Compatibility fixtures

ChatGPT custom connector fixture
Degraded
Dynamic client registration materially improves connector setup.; Transport compliance should be in good shape.; OAuth interoperability should be strong.
  • remote_http_endpoint: Passes
  • oauth_discovery: Passes
  • frozen_tool_snapshot_refresh: Passes
  • request_association: Passes
Anthropic remote MCP fixture
Degraded
Transport behavior should match Claude-compatible HTTP expectations.
  • remote_transport: Passes
  • tool_discovery: Passes
  • auth_connect: Passes
  • safe_write_review: Passes

Authenticated validation sessions

Latest profile
remote_mcp
Authenticated session used
Public score isolation
Preview endpoint
/v1/verify
CI preview endpoint
/v1/ci/preview

Public server reputation

Validation success 7d
n/a
Validation success 30d
0.0
Mean time to recover
n/a
Breaking diffs 30d
1
Registry drift frequency 30d
0
Snapshot changes 30d
1

Incident & change feed

TimestampEventDetails
Apr 09, 2026 09:07:02 AM UTC Latest validation: degraded Score 74.5 with status degraded.
Apr 09, 2026 01:06:24 AM UTC Score changed Score delta -1.0 versus the previous run.
Apr 08, 2026 05:05:52 PM UTC Score changed Score delta +1.0 versus the previous run.

Capabilities

Use-case taxonomy
development search communication productivity

Security posture

Tools analyzed
5
High-risk tools
0
Destructive tools
0
Exec tools
0
Egress tools
0
Secret tools
1
Bulk-access tools
0
Risk distribution
low:1, medium:4

Tool capability & risk inventory

ToolCapabilitiesRiskFindingsNotes
get_market_status read write network Medium none No explicit safeguard hints detected.
get_market_schedule read write secrets Medium secret material access No explicit safeguard hints detected.
list_exchanges read network filesystem Medium none No explicit safeguard hints detected.
verify_receipt read Low none Safeguards hinted in metadata.
get_payment_options read network filesystem Medium none Safeguards hinted in metadata.

Write-action governance

Governance status
OK
Safe to publish
Auth boundary
oauth_or_auth_required
Blast radius
Low
High-risk tools
0
Confirmation signals
verify_receipt
Safeguard count
2

Status detail: No unsafe write-action governance gaps detected on the latest validation.

ToolRiskFlagsSafeguards
No high-risk tools were detected on the latest run.

Action-controls diff

Snapshot changed
no
Disabled-by-default candidates
none
Manual review candidates
none
New actions
ActionRiskFlags
No newly added actions.
Changed actions
ActionChange typesRisk
No materially changed actions.

Why this score?

Access & Protocol
32.42/44
Connectivity, auth, and transport expectations for common clients.
Interface Quality
35/56
How well the tool/resource interface communicates and behaves under automation.
Security Posture
29/36
How safely the exposed tool surface handles destructive actions, egress, execution, secrets, and risky inputs.
Reliability & Trust
23/24
Operational stability, consistency, and trustworthiness over time.
Discovery & Governance
21.5/28
How well the server is documented, listed, and governed in public registries.
Adoption & Market
5/8
Adoption clues and public evidence that the server is intended for external use.

Algorithmic score breakdown

Auth Operability
2/4
Measures whether auth discovery and protected access behave predictably for clients.
Error Contract Quality
0/4
Grades machine-readable error structure, status alignment, and remediation hints.
Rate-Limit Semantics
2/4
Checks whether quota/throttle responses are deterministic and automation-friendly.
Schema Completeness
2/4
Completeness of tool descriptions, parameter docs, examples, and schema shape.
Backward Compatibility
4/4
Stability score across tool schema/name drift relative to prior validations.
SLO Health
3/4
Availability, latency, and burst-failure profile across recent validation history.
Security Hygiene
3/4
HTTPS posture, endpoint hygiene, and response-surface hardening checks.
Task Success
4/4
Can an agent reliably initialize, enumerate tools, and execute core MCP flows?
Trust Confidence
4/4
Confidence-adjusted reliability score that penalizes low evidence volume.
Abuse/Noise Resilience
4/4
How well the server preserves core behavior in the presence of noisy traffic patterns.
Prompt Contract
2/4
Quality of prompt metadata, argument shape, and prompt discoverability for clients.
Resource Contract
2/4
How completely resources and resource templates describe URIs, types, and usage shape.
Discovery Metadata
4/4
Homepage, docs, icon, repository, support, and license coverage for directory consumers.
Registry Consistency
2/4
Agreement between stored registry metadata, live server-card data, and current validation output.
Installability
4/4
How cleanly a real client can connect, initialize, enumerate tools, and proceed through auth.
Session Semantics
4/4
Determinism and state behavior across repeated MCP calls, including sticky-session surprises.
Tool Surface Design
3/4
Naming clarity, schema ergonomics, and parameter complexity across the tool surface.
Result Shape Stability
3/4
Stability of declared output schemas across validations, with penalties for drift or missing shapes.
OAuth Interop
2.4/4
Depth and client compatibility of OAuth/OIDC metadata beyond the minimal protected-resource check.
Recovery Semantics
0/4
Whether failures include actionable machine-readable next steps such as retry or upgrade guidance.
Maintenance Signal
3/4
Versioning, update recency, and historical validation cadence that indicate active stewardship.
Adoption Signal
2/4
Directory presence and distribution clues that suggest the server is intended for external use.
Freshness Confidence
4/4
Confidence that recent validations are current enough and dense enough to trust operationally.
Transport Fidelity
4/4
Whether declared transport metadata matches the observed endpoint behavior and response formats.
Spec Recency
4/4
How close the server’s claimed MCP protocol version is to the latest known public revision.
Session Resume
3/4
Whether Streamable HTTP session identifiers and resumed requests behave cleanly for real clients.
Step-Up Auth
3/4
Whether OAuth metadata and WWW-Authenticate challenges support granular, incremental consent instead of broad upfront scopes.
Transport Compliance
0/4
Checks session headers, protocol-version enforcement, session teardown, and expired-session behavior.
Utility Coverage
2/4
Signals support for completions, pagination, and task-oriented utility surfaces that larger clients increasingly expect.
Advanced Capability Coverage
3/4
Coverage of newer MCP surfaces like roots, sampling, elicitation, structured output, and related metadata.
Connector Publishability
3/4
How ready the server looks for client catalogs and managed connector programs.
Tool Snapshot Churn
4/4
Stability of the tool surface across recent validations, including add/remove and output-shape drift.
Connector Replay
4/4
Whether a previously published frozen connector snapshot would remain backward compatible after the latest tool refresh.
Request Association
3/4
Whether roots, sampling, and elicitation appear tied to active client requests instead of arriving unsolicited on idle sessions.
Interactive Flow Safety
4/4
Whether prompts and docs steer users toward safe auth flows instead of pasting secrets directly.
Action Safety
3/4
Risk-weighted view of destructive, exec, egress, and confirmation semantics across the tool surface.
Official Registry Presence
4/4
Whether the server appears directly or indirectly in the official MCP registry.
Provenance Divergence
4/4
How closely official registry metadata, the live server card, and public repo/package signals agree with each other.
Safety Transparency
2/4
Clarity of docs, auth disclosure, support links, and other trust signals visible to integrators.
Tool Capability Clarity
4/4
How clearly the tool surface communicates whether each action reads, writes, deletes, executes, or exports data.
Destructive Operation Safety
3/4
Penalizes delete/revoke/destroy style tools unless auth and safeguards reduce blast radius.
Egress / SSRF Resilience
3/4
Assesses arbitrary URL fetch, crawl, webhook, and remote-request exposure on the tool surface.
Execution / Sandbox Safety
4/4
Evaluates shell, code, script, and command-execution exposure and whether that surface appears contained.
Data Exfiltration Resilience
3/4
Assesses export, dump, backup, and bulk-read behavior against the surrounding auth and safeguard signals.
Least Privilege Scope
3/4
Rewards scoped auth metadata and penalizes broad or missing scopes around privileged tools.
Secret Handling Hygiene
3/4
Assesses secret-bearing tools, token leakage risk, and whether the public surface avoids obvious secret exposure.
Supply Chain Signal
2.5/4
Public metadata signal for repository, changelog, license, versioning, and recency that supports supply-chain trust.
Input Sanitization Safety
3/4
Penalizes risky freeform string inputs when schemas do not constrain URLs, code, paths, queries, or templates.
Tool Namespace Clarity
4/4
Measures naming uniqueness and ambiguity across the tool namespace to reduce collision and confusion risk.

Compatibility profiles

OpenAI Connectors
66.7
partial
Dynamic client registration materially improves connector setup.; Transport compliance should be in good shape.; OAuth interoperability should be strong.
Connector URL: https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp
# Complete OAuth in the client when prompted.
# Server: io.github.LembaGang/headless-oracle
Claude Desktop
83.3
compatible
Transport behavior should match Claude-compatible HTTP expectations.
{
  "mcpServers": {
    "headless-oracle": {
      "command": "npx",
      "args": ["mcp-remote", "https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp"]
    }
  }
}
Smithery
80.0
compatible
Machine-readable failure semantics should be present.
smithery mcp add "https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp"
Generic Streamable HTTP
100.0
compatible
No major blockers detected.
curl -sS https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp -H 'content-type: application/json' -d '{"jsonrpc":"2.0","id":1,"method":"initialize","params":{"protocolVersion":"2025-03-26","capabilities":{},"clientInfo":{"name":"mcp-verify","version":"0.1.0"}}}'

Actionable remediation

SeverityRemediationWhy it mattersRecommended action
High Align session and protocol behavior with Streamable HTTP expectations Clients increasingly rely on MCP-Protocol-Version, session teardown, and expired-session semantics. Align MCP-Protocol-Version, MCP-Session-Id, DELETE teardown, and expired-session handling with the transport spec.
Playbook
  • Return `Mcp-Session-Id` and `Mcp-Protocol-Version` headers consistently on streamable HTTP responses.
  • Honor `DELETE` session teardown and return `404` when a deleted session is reused.
  • Reject invalid protocol-version headers with `400 Bad Request`.
High Associate roots, sampling, and elicitation with active client requests Modern MCP guidance expects roots, sampling, and elicitation traffic to be tied to an active client request instead of arriving unsolicited on idle sessions. Inspect the latest validation evidence and resolve the client-visible regression.
Playbook
  • Inspect the latest validation evidence.
  • Resolve the highest-severity client-facing gap first.
  • Revalidate and confirm the score and verdict improve.
High Publish OAuth authorization-server metadata Clients need authorization-server metadata to discover issuer, endpoints, and DCR support. Publish /.well-known/oauth-authorization-server from your issuer and include registration_endpoint when supported.
Playbook
  • Publish `/.well-known/oauth-authorization-server` from the issuer.
  • Add `registration_endpoint` if DCR is supported.
  • Verify issuer, authorization, token, and jwks metadata are all reachable.
Medium Adopt a current MCP protocol revision Older protocol revisions reduce compatibility with newer clients and registry programs. Inspect the latest validation evidence and resolve the client-visible regression.
Playbook
  • Inspect the latest validation evidence.
  • Resolve the highest-severity client-facing gap first.
  • Revalidate and confirm the score and verdict improve.
Medium Close connector-publishing gaps Connector catalogs care about protocol recency, session behavior, auth clarity, and tool-surface stability. Inspect the latest validation evidence and resolve the client-visible regression.
Playbook
  • Inspect the latest validation evidence.
  • Resolve the highest-severity client-facing gap first.
  • Revalidate and confirm the score and verdict improve.
Medium Document minimal scopes and return cleaner auth challenges Modern clients expect granular scopes and step-up auth signals such as WWW-Authenticate scope hints. Return granular scopes and WWW-Authenticate challenge hints instead of forcing overly broad auth upfront.
Playbook
  • Advertise the narrowest viable scopes in OAuth metadata.
  • Return `WWW-Authenticate` challenges with scope or insufficient-scope hints when additional consent is needed.
  • Revalidate with both public discovery and auth-required flows.
Medium Publish OpenID configuration OIDC metadata improves token validation and client compatibility. Expose /.well-known/openid-configuration with issuer, jwks_uri, and supported grants.
Playbook
  • Inspect the latest validation evidence.
  • Resolve the highest-severity client-facing gap first.
  • Revalidate and confirm the score and verdict improve.
Medium Respond to latest validation is degraded The server is reachable but at least one important behavior regressed. Resolve the regressed checks and review the latest validation diff.
Playbook
  • Inspect the latest validation evidence.
  • Resolve the highest-severity client-facing gap first.
  • Revalidate and confirm the score and verdict improve.
Medium Respond to validation evidence is stale Latest validation is 596.8 hours old. Trigger a fresh validation run or increase scheduler priority for this server.
Playbook
  • Queue a new validation run now.
  • Inspect whether the scheduler priority should be raised for this server.
  • Do not rely on stale evidence for production decisions.
Medium Support resumable HTTP sessions cleanly Modern MCP clients increasingly expect resumable session behavior on streamable HTTP transports. Inspect the latest validation evidence and resolve the client-visible regression.
Playbook
  • Inspect the latest validation evidence.
  • Resolve the highest-severity client-facing gap first.
  • Revalidate and confirm the score and verdict improve.
Low Expose modern utility surfaces like completions, pagination, or tasks Utility coverage improves interoperability with larger clients and long-lived agent workflows. Expose completions, pagination, and task metadata where supported so larger clients can plan and resume work safely.
Playbook
  • Advertise `completions`, pagination cursors, and `tasks` only when they are actually supported.
  • Return `nextCursor` on large list operations when pagination is available.
  • Document task support and whether it requires step-up auth.
Low Publish newer MCP capability signals Roots, sampling, elicitation, structured outputs, and related metadata improve client understanding and ranking. Inspect the latest validation evidence and resolve the client-visible regression.
Playbook
  • Inspect the latest validation evidence.
  • Resolve the highest-severity client-facing gap first.
  • Revalidate and confirm the score and verdict improve.

Point loss breakdown

ComponentCurrentPoints missing
Transport Compliance 0/4 -4.0
Recovery Semantics 0/4 -4.0
Error Contract 0/4 -4.0
Utility Coverage 2/4 -2.0
Schema Completeness 2/4 -2.0
Safety Transparency 2/4 -2.0
Resource Contract 2/4 -2.0
Registry Consistency 2/4 -2.0
Rate Limit Semantics 2/4 -2.0
Prompt Contract 2/4 -2.0
Auth Operability 2/4 -2.0
Adoption Signal 2/4 -2.0

Validation diff

Score delta
0
Summary changed
no
Tool delta
0
Prompt delta
0
Auth mode changed
no
Write surface expanded
no
Protocol regressed
no
Registry drift changed
no

Regressed checks: none

Improved checks: none

ComponentPreviousLatestDelta
No component deltas between the latest two runs.

Tool snapshot diff & changelog

Snapshot changed
no
Added tools
none
Removed tools
none
Required-argument changes
ToolAdded required argsRemoved required args
No required-argument changes detected.
Output-schema drift
ToolPrevious propertiesLatest properties
No output-schema drift detected.

Connector replay

Status
OK
Backward compatible
Would break after refresh
Added tools
none
Removed tools
none
Additive output changes
none
Required-argument replay breaks
ToolAdded required argsRemoved required args
No required-argument replay breaks detected.
Output-schema replay breaks
ToolRemoved propertiesAdded properties
No output-schema replay breaks detected.

Transport compliance drilldown

Probe status
Error
Transport
streamable-http
Session header
no
Protocol header
no
Bad protocol response
200
DELETE teardown
n/a
Expired session retry
n/a
Last-Event-ID visible
no

Issues: missing_session_id, missing_protocol_header, bad_protocol_not_rejected

Request association

Status
Missing
Advertised capabilities
none
Observed idle methods
none
Violating methods
none
Probe HTTP status
n/a
Issues
none

Utility coverage

Probe status
Missing
Completions
not detected
Completion probe target: none
Pagination
not detected
No nextCursor evidence.
Tasks
Missing
Advertised: no

Benchmark tasks

Benchmark taskStatusEvidence
Discover tools Passes
  • initializeOK
  • tools_listOK
Read-only fetch flow Degraded
  • resource_readMissing
  • read_only_tool_surfaceOK
OAuth-required connect Passes
  • oauth_protected_resourceOK
  • step_up_auth_probeWarning
Safe write flow with confirmation Passes
  • action_safety_probeOK

Registry & provenance divergence

Probe status
OK
Direct official match
yes
Drift fields
none
FieldRegistryLive server card
Titlen/aHeadless Oracle
Versionn/av5.0
Homepagen/ahttps://headlessoracle.com

Active alerts

Aliases & registry graph

IdentifierSourceCanonicalScore
io.github.LembaGang/headless-oracle official_registry yes 74.45

Alias consolidation

Canonical identifier
io.github.LembaGang/headless-oracle
Duplicate aliases
0
Registry sources
official_registry
Homepages
none
Source disagreements
FieldWhat differsObserved values
No source disagreements detected.

Install snippets

Openai Connectors
Connector URL: https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp
# Complete OAuth in the client when prompted.
# Server: io.github.LembaGang/headless-oracle
Claude Desktop
{
  "mcpServers": {
    "headless-oracle": {
      "command": "npx",
      "args": ["mcp-remote", "https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp"]
    }
  }
}
Smithery
smithery mcp add "https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp"
Generic Http
curl -sS https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp -H 'content-type: application/json' -d '{"jsonrpc":"2.0","id":1,"method":"initialize","params":{"protocolVersion":"2025-03-26","capabilities":{},"clientInfo":{"name":"mcp-verify","version":"0.1.0"}}}'

Agent access & tool surface

Live server tools
get_market_status get_market_schedule list_exchanges verify_receipt get_payment_options
Observed from the latest live validation against https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp. This is the target server surface, not Verify's own inspection tools.
Live capability counts
5 tools • 0 prompts • 0 resources
Counts come from the latest tools/list, prompts/list, and resources/list checks.
Inspect with Verify
search_servers recommend_servers get_server_report compare_servers
Use Verify itself to search, recommend, compare, and fetch the full report for io.github.LembaGang/headless-oracle.
Direct machine links

Claims & monitoring

Server ownership

No verified maintainer claim recorded.

Watch subscriptions
0
Teams: none

Alert routing

Active watches
0
Generic webhooks
0
Slack routes
0
Teams routes
0
Email routes
0
WatchTeamChannelsMinimum severity
No active watch destinations.

Maintainer analytics

Validation Run Count
20
Average Latency Ms
1745.13
Healthy Run Ratio Recent
0.0
Registry Presence Count
1
Active Alert Count
2
Watcher Count
0
Verified Claim
False
Taxonomy Tags
development, search, communication, productivity
Score Trend
74.45, 74.45, 75.47, 74.45, 74.45, 74.45, 74.96, 74.96, 74.96, 74.96
Remediation Count
12
High Risk Tool Count
0
Destructive Tool Count
0
Exec Tool Count
0

Maintainer response quality

Score
16.67
Verified claim
Support contact
Changelog present
Incident notes present
Tool changes documented
Annotation history
Annotation count
0

Maintainer annotations

No maintainer annotations have been recorded yet.

Maintainer rebuttals & expected behavior

No maintainer rebuttals or expected-behavior overrides are recorded yet.

Latest validation evidence

Latest summary
Degraded
Validation profile
remote_mcp
Started
Apr 09, 2026 09:07:01 AM UTC
Latency
1446.0 ms

Failures

Checks

CheckStatusLatencyEvidence
action_safety_probe OK n/a No high-risk write, destructive, or exec tools detected.
advanced_capabilities_probe Warning n/a Only 2 capability signal(s): prompts, resources.
connector_publishability_probe Warning n/a Publishability blockers: transport compliance.
connector_replay_probe OK n/a Backward compatible with no breaking tool-surface changes.
determinism_probe OK 206.9 ms Check completed
initialize OK 93.1 ms Protocol 2024-11-05
interactive_flow_probe OK n/a Check completed
oauth_authorization_server Error 82.8 ms Expecting value: line 1 column 1 (char 0)
oauth_protected_resource OK 30.4 ms 1 authorization server(s)
official_registry_probe OK n/a Check completed
openid_configuration Error 45.8 ms Expecting value: line 1 column 1 (char 0)
probe_noise_resilience OK 24.7 ms Fetched https://headlessoracle.mmsebenzi-oracle.workers.dev/robots.txt
prompt_get Missing n/a not advertised
prompts_list OK 41.9 ms 0 prompt(s) exposed
protocol_version_probe Warning n/a Claims 2024-11-05; 3 release(s) behind 2025-11-25.
provenance_divergence_probe OK n/a Check completed
request_association_probe Missing n/a No request-association capabilities were advertised.
resource_read Missing n/a not advertised
resources_list OK 39.2 ms 0 resource item(s) exposed
server_card OK 124.3 ms ampersend, authentication, conformance_vectors, coverage
session_resume_probe Warning n/a no session id
step_up_auth_probe Warning n/a Oauth detected.
tool_snapshot_probe OK n/a Check completed
tools_list OK 255.1 ms 5 tool(s) exposed
transport_compliance_probe Error 203.2 ms Issues: missing session id, missing protocol header, bad protocol not rejected (bad protocol=200).
utility_coverage_probe Missing 33.2 ms No completions evidence; no pagination evidence; tasks missing.

Raw evidence view

Show raw JSON evidence
{
  "checks": {
    "action_safety_probe": {
      "details": {
        "auth_present": true,
        "confirmation_signals": [
          "verify_receipt"
        ],
        "safeguard_count": 2,
        "summary": {
          "bulk_access_tools": 0,
          "capability_distribution": {
            "filesystem": 2,
            "network": 3,
            "read": 5,
            "secrets": 1,
            "write": 2
          },
          "destructive_tools": 0,
          "egress_tools": 0,
          "exec_tools": 0,
          "high_risk_tools": 0,
          "risk_distribution": {
            "critical": 0,
            "high": 0,
            "low": 1,
            "medium": 4
          },
          "secret_tools": 1,
          "tool_count": 5
        }
      },
      "latency_ms": null,
      "status": "ok"
    },
    "advanced_capabilities_probe": {
      "details": {
        "capabilities": {
          "completions": false,
          "elicitation": false,
          "prompts": true,
          "resource_links": false,
          "resources": true,
          "roots": false,
          "sampling": false,
          "structured_outputs": false
        },
        "enabled": [
          "prompts",
          "resources"
        ],
        "enabled_count": 2,
        "initialize_capability_keys": [
          "prompts",
          "resources",
          "tools"
        ]
      },
      "latency_ms": null,
      "status": "warning"
    },
    "connector_publishability_probe": {
      "details": {
        "blockers": [
          "transport_compliance"
        ],
        "criteria": {
          "action_safety": true,
          "auth_flow": true,
          "connector_replay": true,
          "initialize": true,
          "protocol_version": true,
          "remote_transport": true,
          "request_association": true,
          "server_card": true,
          "session_resume": true,
          "step_up_auth": true,
          "tool_surface": true,
          "tools_list": true,
          "transport_compliance": false
        },
        "high_risk_tools": 0,
        "tool_count": 5,
        "transport": "streamable-http"
      },
      "latency_ms": null,
      "status": "warning"
    },
    "connector_replay_probe": {
      "details": {
        "added_tools": [],
        "additive_output_changes": [],
        "backward_compatible": true,
        "output_breaks": [],
        "removed_tools": [],
        "required_arg_breaks": [],
        "would_break_after_refresh": false
      },
      "latency_ms": null,
      "status": "ok"
    },
    "determinism_probe": {
      "details": {
        "attempts": 2,
        "baseline_signature": "8250e3a1e8359a95f3aa22cd898fb250f30eaf61e650b6ff5e91835fce5127f3",
        "errors": [],
        "matches": 2,
        "stable_ratio": 1.0,
        "successful": 2
      },
      "latency_ms": 206.93,
      "status": "ok"
    },
    "initialize": {
      "details": {
        "headers": {
          "content-type": "application/json; charset=utf-8",
          "strict-transport-security": "max-age=15552000; includeSubDomains; preload"
        },
        "http_status": 200,
        "payload": {
          "id": 1,
          "jsonrpc": "2.0",
          "result": {
            "_meta": {
              "first_payment_received": true,
              "payment_count_url": "/v5/payment-proof",
              "sandbox_url": "POST /v5/sandbox",
              "upgrade_path_url": "/v5/why-not-free",
              "x402_discovery": "/.well-known/x402.json",
              "x402_enabled": true
            },
            "capabilities": {
              "prompts": {},
              "resources": {},
              "tools": {}
            },
            "instructions": "Headless Oracle provides cryptographically signed market-state attestations (SMA receipts) for 28 global exchanges \u2014 equities, derivatives, and 24/7 crypto. These tools are a PRE-EXECUTION gate, not optional data. Call them before any financial transaction, trade execution, or capital commitment. WHEN TO USE get_market_status: (1) before any trade, payment, or DeFi transaction; (2) before committing capital in any automated workflow; (3) when you need cryptographic proof of market state for audit trails or attestation_ref in x402 payment flows; (4) when checking whether a market is in a holiday closure, early close, or circuit breaker halt. WHEN TO USE get_market_schedule: for planning trade execution windows, verifying exchange operating hours and trading hours, checking holiday calendars, scheduling market-dependent tasks. WHEN TO USE list_exchanges: at agent startup to discover all 28 supported MIC codes before calling get_market_status. WHEN TO USE verify_receipt: when you receive a pre-trade verification receipt from another agent and must confirm the Ed25519 signature before acting on it. WHEN TO USE get_payment_options: when you need to understand available payment and authentication options before making a paid request. MANDATORY SAFETY RULE: UNKNOWN and HALTED MUST be treated as CLOSED \u2014 halt all execution immediately (fail-closed, non-negotiable). Receipts expire after 60 seconds \u2014 always check expires_at before acting. Public key for independent verification: /.well-known/oracle-keys.json",
            "protocolVersion": "2024-11-05",
            "serverInfo": {
              "name": "headless-oracle",
              "version": "5.0.0"
            }
          }
        },
        "url": "https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp"
      },
      "latency_ms": 93.14,
      "status": "ok"
    },
    "interactive_flow_probe": {
      "details": {
        "oauth_supported": true,
        "prompt_available": false,
        "risk_hits": [],
        "safe_hits": [
          "oauth"
        ]
      },
      "latency_ms": null,
      "status": "ok"
    },
    "oauth_authorization_server": {
      "details": {
        "error": "Expecting value: line 1 column 1 (char 0)",
        "url": "https://headlessoracle.com/oauth/.well-known/oauth-authorization-server"
      },
      "latency_ms": 82.76,
      "status": "error"
    },
    "oauth_protected_resource": {
      "details": {
        "headers": {
          "content-type": "application/json; charset=utf-8",
          "strict-transport-security": "max-age=15552000; includeSubDomains; preload",
          "x-ratelimit-limit": "500",
          "x-ratelimit-remaining": "500",
          "x-ratelimit-reset": "2026-04-10T00:00:00.000Z"
        },
        "http_status": 200,
        "payload": {
          "authorization_servers": [
            "https://headlessoracle.com/oauth"
          ],
          "bearer_methods_supported": [
            "header"
          ],
          "resource": "https://headlessoracle.com",
          "resource_documentation": "https://headlessoracle.com/docs",
          "resource_signing_alg_values_supported": [
            "EdDSA"
          ],
          "scopes_supported": [
            "oracle:read"
          ]
        },
        "url": "https://headlessoracle.mmsebenzi-oracle.workers.dev/.well-known/oauth-protected-resource"
      },
      "latency_ms": 30.35,
      "status": "ok"
    },
    "official_registry_probe": {
      "details": {
        "direct_match": true,
        "official_peer_count": 1,
        "registry_identifier": "io.github.LembaGang/headless-oracle",
        "registry_source": "official_registry"
      },
      "latency_ms": null,
      "status": "ok"
    },
    "openid_configuration": {
      "details": {
        "error": "Expecting value: line 1 column 1 (char 0)",
        "url": "https://headlessoracle.com/oauth/.well-known/openid-configuration"
      },
      "latency_ms": 45.84,
      "status": "error"
    },
    "probe_noise_resilience": {
      "details": {
        "headers": {
          "content-type": "text/plain",
          "strict-transport-security": "max-age=15552000; includeSubDomains; preload"
        },
        "http_status": 200,
        "url": "https://headlessoracle.mmsebenzi-oracle.workers.dev/robots.txt"
      },
      "latency_ms": 24.66,
      "status": "ok"
    },
    "prompt_get": {
      "details": {
        "reason": "not_advertised"
      },
      "latency_ms": null,
      "status": "missing"
    },
    "prompts_list": {
      "details": {
        "headers": {
          "content-type": "application/json; charset=utf-8",
          "strict-transport-security": "max-age=15552000; includeSubDomains; preload"
        },
        "http_status": 200,
        "payload": {
          "id": 3,
          "jsonrpc": "2.0",
          "result": {
            "prompts": []
          }
        },
        "url": "https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp"
      },
      "latency_ms": 41.93,
      "status": "ok"
    },
    "protocol_version_probe": {
      "details": {
        "claimed_version": "2024-11-05",
        "lag_days": 385,
        "latest_known_version": "2025-11-25",
        "releases_behind": 3,
        "validator_protocol_version": "2025-03-26"
      },
      "latency_ms": null,
      "status": "warning"
    },
    "provenance_divergence_probe": {
      "details": {
        "direct_official_match": true,
        "drift_fields": [],
        "metadata_document_count": 2,
        "registry_homepage": null,
        "registry_repository": null,
        "registry_title": null,
        "registry_version": null,
        "server_card_homepage": "https://headlessoracle.com",
        "server_card_repository": null,
        "server_card_title": "Headless Oracle",
        "server_card_version": "v5.0"
      },
      "latency_ms": null,
      "status": "ok"
    },
    "request_association_probe": {
      "details": {
        "reason": "no_request_association_capabilities_advertised"
      },
      "latency_ms": null,
      "status": "missing"
    },
    "resource_read": {
      "details": {
        "reason": "not_advertised"
      },
      "latency_ms": null,
      "status": "missing"
    },
    "resources_list": {
      "details": {
        "headers": {
          "content-type": "application/json; charset=utf-8",
          "strict-transport-security": "max-age=15552000; includeSubDomains; preload"
        },
        "http_status": 200,
        "payload": {
          "id": 5,
          "jsonrpc": "2.0",
          "result": {
            "resources": []
          }
        },
        "url": "https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp"
      },
      "latency_ms": 39.24,
      "status": "ok"
    },
    "server_card": {
      "details": {
        "headers": {
          "content-type": "application/json; charset=utf-8",
          "strict-transport-security": "max-age=15552000; includeSubDomains; preload",
          "x-ratelimit-limit": "500",
          "x-ratelimit-remaining": "500",
          "x-ratelimit-reset": "2026-04-10T00:00:00.000Z"
        },
        "http_status": 200,
        "payload": {
          "ampersend": "https://app.ampersend.ai/agents/headless-oracle",
          "authentication": [
            "bearer",
            "apiKey",
            "x402"
          ],
          "conformance_vectors": "https://api.headlessoracle.com/v5/conformance-vectors",
          "coverage": {
            "exchanges": 28,
            "halt_detection": {
              "active": [
                "XNYS",
                "XNAS"
              ],
              "note": "Real-time intraday halt detection (Polygon.io + Alpaca fallback) covers XNYS and XNAS only. All other exchanges use schedule-based status: calendar hours and holidays are correct, but unscheduled intraday circuit breaker halts are not detected. Every signed receipt carries a halt_detection field (\"active\" | \"schedule_only\") so agents know which applies.",
              "schedule_only": [
                "XLON",
                "XJPX",
                "XPAR",
                "XHKG",
                "XSES",
                "XASX",
                "XBOM",
                "XNSE",
                "XSHG",
                "XSHE",
                "XKRX",
                "XJSE",
                "XBSP",
                "XSWX",
                "XMIL",
                "XIST",
                "XSAU",
                "XDFM",
                "XNZE",
                "XHEL",
                "XSTO"
              ]
            },
            "mic_codes": [
              "XNYS",
              "XNAS",
              "XLON",
              "XJPX",
              "XPAR",
              "XHKG",
              "XSES",
              "XASX",
              "XBOM",
              "XNSE",
              "XSHG",
              "XSHE",
              "XKRX",
              "XJSE",
              "XBSP",
              "XSWX",
              "XMIL",
              "XIST",
              "XSAU",
              "XDFM",
              "XNZE",
              "XHEL",
              "XSTO",
              "XCBT",
              "XNYM",
              "XCBO",
              "XCOI",
              "XBIN"
            ]
          },
          "description": "Cryptographically signed market-state attestations for pre-trade verification and pre-execution gating. Ed25519 signatures, fail-closed architecture, 28 global exchanges (equities, derivatives, 24/7 crypto). Use as a pre-trade check before any financial execution or capital commitment. UNKNOWN and HALTED MUST be treated as CLOSED. Receipts include attestation_ref for x402 payment flows and audit trails.",
          "discovery_url": "https://headlessoracle.com/.well-known/mcp/server-card.json",
          "docs": "https://headlessoracle.com/docs",
          "dst_aware": true,
          "erc8004": "8453:38413",
          "fail_closed": true,
          "homepage": "https://headlessoracle.com",
          "key_request": "https://headlessoracle.com/v5/keys/request",
          "mcp_endpoint": "https://headlessoracle.com/mcp",
          "mpas_spec": "https://github.com/LembaGang/mpas-spec",
          "mpas_version": "1.0",
          "name": "Headless Oracle",
          "openapi": "https://headlessoracle.com/openapi.json",
          "protocol": "2024-11-05",
          "protocols": [
            "MCP-2024-11-05",
            "A2A",
            "x402",
            "OAuth2"
          ],
          "quickstart_url": "https://headlessoracle.com/docs/quickstart",
          "reliability": {
            "p95_latency_ms": 200,
            "uptime_sla": "99.9%"
          },
          "skill_url": "https://headlessoracle.com/skill.md",
          "sma_note": "SMA = Signed Market Attestation (not Simple Moving Average). Receipts are Ed25519-signed, 60-second TTL, fail-closed.",
          "sma_protocol_version": "RFC-001-draft",
          "tools": [
            "get_market_status",
            "get_market_schedule",
            "list_exchanges",
            "verify_receipt"
          ],
          "transports": [
            "http",
            "sse"
          ],
          "verification": {
            "algorithm": "Ed25519",
            "key_endpoint": "https://api.headlessoracle.com/v5/keys"
          },
          "version": "v5.0",
          "x402": {
            "amount": "1000",
            "asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
            "currency": "USDC",
            "discovery": "https://headlessoracle.com/.well-known/x402.json",
            "network": "eip155:8453",
            "payable": true,
            "payment_endpoint": "https://headlessoracle.com/v5/status",
            "scheme": "exact"
          }
        },
        "url": "https://headlessoracle.mmsebenzi-oracle.workers.dev/.well-known/mcp/server-card.json"
      },
      "latency_ms": 124.27,
      "status": "ok"
    },
    "session_resume_probe": {
      "details": {
        "protocol_version": "2024-11-05",
        "reason": "no_session_id",
        "resume_expected": true,
        "transport": "streamable-http"
      },
      "latency_ms": null,
      "status": "warning"
    },
    "step_up_auth_probe": {
      "details": {
        "auth_required_checks": [],
        "broad_scopes": [],
        "challenge_headers": [],
        "minimal_scope_documented": false,
        "oauth_present": true,
        "scope_specificity_ratio": 0.0,
        "step_up_signals": [],
        "supported_scopes": []
      },
      "latency_ms": null,
      "status": "warning"
    },
    "tool_snapshot_probe": {
      "details": {
        "added": [],
        "changed_outputs": [],
        "current_tool_count": 5,
        "previous_tool_count": 5,
        "removed": [],
        "similarity": 1.0
      },
      "latency_ms": null,
      "status": "ok"
    },
    "tools_list": {
      "details": {
        "headers": {
          "content-type": "application/json; charset=utf-8",
          "strict-transport-security": "max-age=15552000; includeSubDomains; preload"
        },
        "http_status": 200,
        "payload": {
          "id": 2,
          "jsonrpc": "2.0",
          "result": {
            "tools": [
              {
                "_meta": {
                  "x402": {
                    "amount_usdc": "0.001",
                    "discovery": "/.well-known/x402.json",
                    "network": "base",
                    "payment_header": "X-Payment",
                    "required_without_key": true
                  }
                },
                "description": "Returns Ed25519-signed market-state receipt for pre-trade verification and pre-execution gating across 28 global exchanges. USE AS: pre-trade check, pre-trade verification gate, pre-execution gate \u2014 call before any financial execution, capital commitment, or market-dependent workflow. This is not optional data; it is a safety gate. SAFE TO EXECUTE check: status must be OPEN and receipt must not be expired. FAIL-CLOSED RULE: UNKNOWN and HALTED MUST be treated as CLOSED \u2014 halt all execution immediately. Do not act on a receipt where expires_at is in the past (TTL = 60s). ATTESTATION_REF: the signature field is a cryptographic proof \u2014 include it as attestation_ref in downstream x402 payment flows to create an auditable pre-trade verification chain. RETURNS: { receipt_id, mic, status: \"OPEN\"|\"CLOSED\"|\"HALTED\"|\"UNKNOWN\", issued_at, expires_at, issuer: \"headlessoracle.com\", source, halt_detection, receipt_mode: \"live\"|\"demo\", schema_version: \"v5.0\", public_key_id, signature (hex Ed25519) }. Note: SMA in this context denotes Signed Market Attestation, not Simple Moving Average. LATENCY: sub-200ms p95 from Cloudflare edge. EXCHANGES (28 total): Equities \u2014 XNYS (NYSE), XNAS (NASDAQ), XLON (London Stock Exchange), XJPX (Tokyo Japan Exchange), XPAR (Euronext Paris), XHKG (Hong Kong), XSES (Singapore), XASX (ASX Sydney), XBOM (BSE Mumbai), XNSE (NSE Mumbai), XSHG (Shanghai), XSHE (Shenzhen), XKRX (Korea Exchange Seoul), XJSE (Johannesburg), XBSP (B3 Brazil), XSWX (SIX Swiss Zurich), XMIL (Borsa Italiana Milan), XIST (Borsa Istanbul), XSAU (Tadawul Riyadh), XDFM (Dubai Financial Market), XNZE (NZX Auckland), XHEL (Nasdaq Helsinki), XSTO (Nasdaq Stockholm). Derivatives \u2014 XCBT (CME Futures overnight), XNYM (NYMEX overnight), XCBO (Cboe Options). Crypto 24/7 \u2014 XCOI (Coinbase), XBIN (Binance).",
                "inputSchema": {
                  "additionalProperties": false,
                  "properties": {
                    "mic": {
                      "description": "ISO 10383 Market Identifier Code. Required. Examples: XNYS=NYSE, XNAS=NASDAQ, XLON=London, XJPX=Tokyo, XCBT=CME Futures, XCOI=Coinbase (24/7), XBIN=Binance (24/7). Call list_exchanges to discover all 28 supported codes.",
                      "enum": [
                        "XNYS",
                        "XNAS",
                        "XLON",
                        "XJPX",
                        "XPAR",
                        "XHKG",
                        "XSES",
                        "XASX",
                        "XBOM",
                        "XNSE",
                        "XSHG",
                        "XSHE",
                        "XKRX",
                        "XJSE",
                        "XBSP",
                        "XSWX",
                        "XMIL",
                        "XIST",
                        "XSAU",
                        "XDFM",
                        "XNZE",
                        "XHEL",
                        "XSTO",
                        "XCBT",
                        "XNYM",
                        "XCBO",
                        "XCOI",
                        "XBIN"
                      ],
                      "type": "string"
                    }
                  },
                  "type": "object"
                },
                "name": "get_market_status"
              },
              {
                "description": "Returns holiday-aware trading session schedule with next open/close UTC timestamps for any of 28 exchanges. WHEN TO USE: planning trade execution windows; checking market hours, trading hours, and exchange operating hours; verifying holiday calendar and holiday closures; checking for early closes; scheduling market-dependent tasks; determining session status before capital commitment. Includes lunch break windows (session status): Tokyo XJPX (11:30\u201312:30 JST), Hong Kong XHKG (12:00\u201313:00 HKT), Shanghai XSHG and Shenzhen XSHE (11:30\u201313:00 CST). Covers Middle Eastern markets (XSAU/XDFM: Fri\u2013Sat weekend, Sunday is a trading day) and 24/7 crypto (XCOI/XBIN: always open). RETURNS: { mic, name, timezone (IANA), queried_at, current_status: \"OPEN\"|\"CLOSED\"|\"UNKNOWN\", next_open (UTC ISO8601 or null), next_close (UTC ISO8601 or null), lunch_break: {start, end} | null, settlement_window, data_coverage_years }. NOT cryptographically signed \u2014 does not reflect real-time circuit breaker halts or KV overrides. For authoritative signed status use get_market_status. LATENCY: sub-100ms p95 (pure schedule computation, no signing).",
                "inputSchema": {
                  "additionalProperties": false,
                  "properties": {
                    "mic": {
                      "description": "ISO 10383 Market Identifier Code. Defaults to XNYS (NYSE). Call list_exchanges to see all 28 supported codes.",
                      "enum": [
                        "XNYS",
                        "XNAS",
                        "XLON",
                        "XJPX",
                        "XPAR",
                        "XHKG",
                        "XSES",
                        "XASX",
                        "XBOM",
                        "XNSE",
                        "XSHG",
                        "XSHE",
                        "XKRX",
                        "XJSE",
                        "XBSP",
                        "XSWX",
                        "XMIL",
                        "XIST",
                        "XSAU",
                        "XDFM",
                        "XNZE",
                        "XHEL",
                        "XSTO",
                        "XCBT",
                        "XNYM",
                        "XCBO",
                        "XCOI",
                        "XBIN"
                      ],
                      "type": "string"
                    }
                  },
                  "type": "object"
                },
                "name": "get_market_schedule"
              },
              {
                "description": "Returns directory of all 28 exchanges supported by Headless Oracle: MIC codes, exchange names, IANA timezones, market hours metadata, and mic_type (iso|convention). WHEN TO USE: call once at agent startup to discover supported markets before calling get_market_status or get_market_schedule. Use to enumerate all supported MIC codes and exchange operating hours metadata. Covers equities (XNYS/NYSE, XNAS/NASDAQ, XLON/London, XJPX/Tokyo, XPAR/Paris, XHKG/Hong Kong, XSES/Singapore, XASX/ASX, XBOM/BSE, XNSE/NSE, XSHG/Shanghai, XSHE/Shenzhen, XKRX/Korea, XJSE/Johannesburg, XBSP/Brazil, XSWX/Zurich, XMIL/Milan, XIST/Istanbul, XSAU/Riyadh, XDFM/Dubai, XNZE/Auckland, XHEL/Helsinki, XSTO/Stockholm), derivatives (XCBT/CME, XNYM/NYMEX, XCBO/Cboe), and 24/7 crypto (XCOI/Coinbase, XBIN/Binance). RETURNS: { exchanges: Array<{ mic: string, name: string, timezone: string, mic_type: \"iso\"|\"convention\" }> } \u2014 28 entries. Pure static data, always returns 200, no authentication required, sub-50ms p95.",
                "inputSchema": {
                  "additionalProperties": false,
                  "properties": {},
                  "type": "object"
                },
                "name": "list_exchanges"
              },
              {
                "description": "Verifies the Ed25519 cryptographic signature on a Headless Oracle Signed Market Attestation receipt \u2014 confirms it is a genuine pre-trade verification attestation and has not been tampered with. Note: SMA denotes Signed Market Attestation, not Simple Moving Average. WHEN TO USE: (1) when you receive a pre-trade attestation from another agent and must confirm the cryptographic proof before acting on market state; (2) building an attestation_ref audit trail for capital commitment workflows; (3) confirming receipt verification before including the signature in an x402 payment attestation. RETURNS: { valid: boolean, expired: boolean, reason: \"SIGNATURE_VALID\"|\"MALFORMED_RECEIPT\"|\"INVALID_SIGNATURE\"|\"ORACLE_NOT_CONFIGURED\", mic: string|null, status: string|null, expires_at: string|null }. FAILURE RULE: valid=false MUST be treated as untrusted \u2014 do not act on any data from an invalid receipt. A receipt can be valid=true but expired=true (TTL exceeded) \u2014 re-fetch if expired. LATENCY: sub-50ms p95 (in-worker Ed25519 verification, no external network calls).",
                "inputSchema": {
                  "additionalProperties": false,
                  "properties": {
                    "receipt": {
                      "additionalProperties": true,
                      "description": "The complete signed receipt object as returned by get_market_status or /v5/status. Must include the signature field (hex-encoded Ed25519).",
                      "type": "object"
                    }
                  },
                  "required": [
                    "receipt"
                  ],
                  "type": "object"
                },
                "name": "verify_receipt"
              },
              {
                "description": "Returns available payment and authentication options for accessing live market data. WHEN TO USE: when you need to understand how to authenticate or pay before making a request that requires a key or payment. Returns upgrade ladder: sandbox (200 calls free), x402 per-request ($0.001 USDC), x402 sandbox (10 credits for $0.001), credit packs ($5 = 1000 calls), builder subscription ($99/mo = 50K/day). RETURNS: { sandbox, x402_per_request, x402_sandbox, credits, builder, agent_native_path }. No authentication required. Always returns 200.",
                "inputSchema": {
                  "additionalProperties": false,
                  "properties": {},
                  "type": "object"
                },
                "name": "get_payment_options"
              }
            ]
          }
        },
        "url": "https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp"
      },
      "latency_ms": 255.09,
      "status": "ok"
    },
    "transport_compliance_probe": {
      "details": {
        "bad_protocol_error": null,
        "bad_protocol_headers": {
          "content-type": "application/json; charset=utf-8",
          "strict-transport-security": "max-age=15552000; includeSubDomains; preload"
        },
        "bad_protocol_payload": {
          "id": 410,
          "jsonrpc": "2.0",
          "result": {
            "tools": [
              {
                "_meta": {
                  "x402": {
                    "amount_usdc": "0.001",
                    "discovery": "/.well-known/x402.json",
                    "network": "base",
                    "payment_header": "X-Payment",
                    "required_without_key": true
                  }
                },
                "description": "Returns Ed25519-signed market-state receipt for pre-trade verification and pre-execution gating across 28 global exchanges. USE AS: pre-trade check, pre-trade verification gate, pre-execution gate \u2014 call before any financial execution, capital commitment, or market-dependent workflow. This is not optional data; it is a safety gate. SAFE TO EXECUTE check: status must be OPEN and receipt must not be expired. FAIL-CLOSED RULE: UNKNOWN and HALTED MUST be treated as CLOSED \u2014 halt all execution immediately. Do not act on a receipt where expires_at is in the past (TTL = 60s). ATTESTATION_REF: the signature field is a cryptographic proof \u2014 include it as attestation_ref in downstream x402 payment flows to create an auditable pre-trade verification chain. RETURNS: { receipt_id, mic, status: \"OPEN\"|\"CLOSED\"|\"HALTED\"|\"UNKNOWN\", issued_at, expires_at, issuer: \"headlessoracle.com\", source, halt_detection, receipt_mode: \"live\"|\"demo\", schema_version: \"v5.0\", public_key_id, signature (hex Ed25519) }. Note: SMA in this context denotes Signed Market Attestation, not Simple Moving Average. LATENCY: sub-200ms p95 from Cloudflare edge. EXCHANGES (28 total): Equities \u2014 XNYS (NYSE), XNAS (NASDAQ), XLON (London Stock Exchange), XJPX (Tokyo Japan Exchange), XPAR (Euronext Paris), XHKG (Hong Kong), XSES (Singapore), XASX (ASX Sydney), XBOM (BSE Mumbai), XNSE (NSE Mumbai), XSHG (Shanghai), XSHE (Shenzhen), XKRX (Korea Exchange Seoul), XJSE (Johannesburg), XBSP (B3 Brazil), XSWX (SIX Swiss Zurich), XMIL (Borsa Italiana Milan), XIST (Borsa Istanbul), XSAU (Tadawul Riyadh), XDFM (Dubai Financial Market), XNZE (NZX Auckland), XHEL (Nasdaq Helsinki), XSTO (Nasdaq Stockholm). Derivatives \u2014 XCBT (CME Futures overnight), XNYM (NYMEX overnight), XCBO (Cboe Options). Crypto 24/7 \u2014 XCOI (Coinbase), XBIN (Binance).",
                "inputSchema": {
                  "additionalProperties": false,
                  "properties": {
                    "mic": {
                      "description": "ISO 10383 Market Identifier Code. Required. Examples: XNYS=NYSE, XNAS=NASDAQ, XLON=London, XJPX=Tokyo, XCBT=CME Futures, XCOI=Coinbase (24/7), XBIN=Binance (24/7). Call list_exchanges to discover all 28 supported codes.",
                      "enum": [
                        "XNYS",
                        "XNAS",
                        "XLON",
                        "XJPX",
                        "XPAR",
                        "XHKG",
                        "XSES",
                        "XASX",
                        "XBOM",
                        "XNSE",
                        "XSHG",
                        "XSHE",
                        "XKRX",
                        "XJSE",
                        "XBSP",
                        "XSWX",
                        "XMIL",
                        "XIST",
                        "XSAU",
                        "XDFM",
                        "XNZE",
                        "XHEL",
                        "XSTO",
                        "XCBT",
                        "XNYM",
                        "XCBO",
                        "XCOI",
                        "XBIN"
                      ],
                      "type": "string"
                    }
                  },
                  "type": "object"
                },
                "name": "get_market_status"
              },
              {
                "description": "Returns holiday-aware trading session schedule with next open/close UTC timestamps for any of 28 exchanges. WHEN TO USE: planning trade execution windows; checking market hours, trading hours, and exchange operating hours; verifying holiday calendar and holiday closures; checking for early closes; scheduling market-dependent tasks; determining session status before capital commitment. Includes lunch break windows (session status): Tokyo XJPX (11:30\u201312:30 JST), Hong Kong XHKG (12:00\u201313:00 HKT), Shanghai XSHG and Shenzhen XSHE (11:30\u201313:00 CST). Covers Middle Eastern markets (XSAU/XDFM: Fri\u2013Sat weekend, Sunday is a trading day) and 24/7 crypto (XCOI/XBIN: always open). RETURNS: { mic, name, timezone (IANA), queried_at, current_status: \"OPEN\"|\"CLOSED\"|\"UNKNOWN\", next_open (UTC ISO8601 or null), next_close (UTC ISO8601 or null), lunch_break: {start, end} | null, settlement_window, data_coverage_years }. NOT cryptographically signed \u2014 does not reflect real-time circuit breaker halts or KV overrides. For authoritative signed status use get_market_status. LATENCY: sub-100ms p95 (pure schedule computation, no signing).",
                "inputSchema": {
                  "additionalProperties": false,
                  "properties": {
                    "mic": {
                      "description": "ISO 10383 Market Identifier Code. Defaults to XNYS (NYSE). Call list_exchanges to see all 28 supported codes.",
                      "enum": [
                        "XNYS",
                        "XNAS",
                        "XLON",
                        "XJPX",
                        "XPAR",
                        "XHKG",
                        "XSES",
                        "XASX",
                        "XBOM",
                        "XNSE",
                        "XSHG",
                        "XSHE",
                        "XKRX",
                        "XJSE",
                        "XBSP",
                        "XSWX",
                        "XMIL",
                        "XIST",
                        "XSAU",
                        "XDFM",
                        "XNZE",
                        "XHEL",
                        "XSTO",
                        "XCBT",
                        "XNYM",
                        "XCBO",
                        "XCOI",
                        "XBIN"
                      ],
                      "type": "string"
                    }
                  },
                  "type": "object"
                },
                "name": "get_market_schedule"
              },
              {
                "description": "Returns directory of all 28 exchanges supported by Headless Oracle: MIC codes, exchange names, IANA timezones, market hours metadata, and mic_type (iso|convention). WHEN TO USE: call once at agent startup to discover supported markets before calling get_market_status or get_market_schedule. Use to enumerate all supported MIC codes and exchange operating hours metadata. Covers equities (XNYS/NYSE, XNAS/NASDAQ, XLON/London, XJPX/Tokyo, XPAR/Paris, XHKG/Hong Kong, XSES/Singapore, XASX/ASX, XBOM/BSE, XNSE/NSE, XSHG/Shanghai, XSHE/Shenzhen, XKRX/Korea, XJSE/Johannesburg, XBSP/Brazil, XSWX/Zurich, XMIL/Milan, XIST/Istanbul, XSAU/Riyadh, XDFM/Dubai, XNZE/Auckland, XHEL/Helsinki, XSTO/Stockholm), derivatives (XCBT/CME, XNYM/NYMEX, XCBO/Cboe), and 24/7 crypto (XCOI/Coinbase, XBIN/Binance). RETURNS: { exchanges: Array<{ mic: string, name: string, timezone: string, mic_type: \"iso\"|\"convention\" }> } \u2014 28 entries. Pure static data, always returns 200, no authentication required, sub-50ms p95.",
                "inputSchema": {
                  "additionalProperties": false,
                  "properties": {},
                  "type": "object"
                },
                "name": "list_exchanges"
              },
              {
                "description": "Verifies the Ed25519 cryptographic signature on a Headless Oracle Signed Market Attestation receipt \u2014 confirms it is a genuine pre-trade verification attestation and has not been tampered with. Note: SMA denotes Signed Market Attestation, not Simple Moving Average. WHEN TO USE: (1) when you receive a pre-trade attestation from another agent and must confirm the cryptographic proof before acting on market state; (2) building an attestation_ref audit trail for capital commitment workflows; (3) confirming receipt verification before including the signature in an x402 payment attestation. RETURNS: { valid: boolean, expired: boolean, reason: \"SIGNATURE_VALID\"|\"MALFORMED_RECEIPT\"|\"INVALID_SIGNATURE\"|\"ORACLE_NOT_CONFIGURED\", mic: string|null, status: string|null, expires_at: string|null }. FAILURE RULE: valid=false MUST be treated as untrusted \u2014 do not act on any data from an invalid receipt. A receipt can be valid=true but expired=true (TTL exceeded) \u2014 re-fetch if expired. LATENCY: sub-50ms p95 (in-worker Ed25519 verification, no external network calls).",
                "inputSchema": {
                  "additionalProperties": false,
                  "properties": {
                    "receipt": {
                      "additionalProperties": true,
                      "description": "The complete signed receipt object as returned by get_market_status or /v5/status. Must include the signature field (hex-encoded Ed25519).",
                      "type": "object"
                    }
                  },
                  "required": [
                    "receipt"
                  ],
                  "type": "object"
                },
                "name": "verify_receipt"
              },
              {
                "description": "Returns available payment and authentication options for accessing live market data. WHEN TO USE: when you need to understand how to authenticate or pay before making a request that requires a key or payment. Returns upgrade ladder: sandbox (200 calls free), x402 per-request ($0.001 USDC), x402 sandbox (10 credits for $0.001), credit packs ($5 = 1000 calls), builder subscription ($99/mo = 50K/day). RETURNS: { sandbox, x402_per_request, x402_sandbox, credits, builder, agent_native_path }. No authentication required. Always returns 200.",
                "inputSchema": {
                  "additionalProperties": false,
                  "properties": {},
                  "type": "object"
                },
                "name": "get_payment_options"
              }
            ]
          }
        },
        "bad_protocol_status_code": 200,
        "delete_error": null,
        "delete_status_code": null,
        "expired_session_error": null,
        "expired_session_status_code": null,
        "issues": [
          "missing_session_id",
          "missing_protocol_header",
          "bad_protocol_not_rejected"
        ],
        "last_event_id_visible": false,
        "protocol_header_present": false,
        "requested_protocol_version": "2024-11-05",
        "session_id_present": false,
        "transport": "streamable-http"
      },
      "latency_ms": 203.25,
      "status": "error"
    },
    "utility_coverage_probe": {
      "details": {
        "completions": {
          "advertised": false,
          "live_probe": "not_executed",
          "sample_target": null
        },
        "initialize_capability_keys": [
          "prompts",
          "resources",
          "tools"
        ],
        "pagination": {
          "metadata_signal": false,
          "next_cursor_methods": [],
          "supported": false
        },
        "tasks": {
          "advertised": false,
          "http_status": 200,
          "probe_status": "missing"
        }
      },
      "latency_ms": 33.21,
      "status": "missing"
    }
  },
  "failures": {
    "oauth_authorization_server": {
      "error": "Expecting value: line 1 column 1 (char 0)",
      "url": "https://headlessoracle.com/oauth/.well-known/oauth-authorization-server"
    },
    "openid_configuration": {
      "error": "Expecting value: line 1 column 1 (char 0)",
      "url": "https://headlessoracle.com/oauth/.well-known/openid-configuration"
    },
    "transport_compliance_probe": {
      "bad_protocol_error": null,
      "bad_protocol_headers": {
        "content-type": "application/json; charset=utf-8",
        "strict-transport-security": "max-age=15552000; includeSubDomains; preload"
      },
      "bad_protocol_payload": {
        "id": 410,
        "jsonrpc": "2.0",
        "result": {
          "tools": [
            {
              "_meta": {
                "x402": {
                  "amount_usdc": "0.001",
                  "discovery": "/.well-known/x402.json",
                  "network": "base",
                  "payment_header": "X-Payment",
                  "required_without_key": true
                }
              },
              "description": "Returns Ed25519-signed market-state receipt for pre-trade verification and pre-execution gating across 28 global exchanges. USE AS: pre-trade check, pre-trade verification gate, pre-execution gate \u2014 call before any financial execution, capital commitment, or market-dependent workflow. This is not optional data; it is a safety gate. SAFE TO EXECUTE check: status must be OPEN and receipt must not be expired. FAIL-CLOSED RULE: UNKNOWN and HALTED MUST be treated as CLOSED \u2014 halt all execution immediately. Do not act on a receipt where expires_at is in the past (TTL = 60s). ATTESTATION_REF: the signature field is a cryptographic proof \u2014 include it as attestation_ref in downstream x402 payment flows to create an auditable pre-trade verification chain. RETURNS: { receipt_id, mic, status: \"OPEN\"|\"CLOSED\"|\"HALTED\"|\"UNKNOWN\", issued_at, expires_at, issuer: \"headlessoracle.com\", source, halt_detection, receipt_mode: \"live\"|\"demo\", schema_version: \"v5.0\", public_key_id, signature (hex Ed25519) }. Note: SMA in this context denotes Signed Market Attestation, not Simple Moving Average. LATENCY: sub-200ms p95 from Cloudflare edge. EXCHANGES (28 total): Equities \u2014 XNYS (NYSE), XNAS (NASDAQ), XLON (London Stock Exchange), XJPX (Tokyo Japan Exchange), XPAR (Euronext Paris), XHKG (Hong Kong), XSES (Singapore), XASX (ASX Sydney), XBOM (BSE Mumbai), XNSE (NSE Mumbai), XSHG (Shanghai), XSHE (Shenzhen), XKRX (Korea Exchange Seoul), XJSE (Johannesburg), XBSP (B3 Brazil), XSWX (SIX Swiss Zurich), XMIL (Borsa Italiana Milan), XIST (Borsa Istanbul), XSAU (Tadawul Riyadh), XDFM (Dubai Financial Market), XNZE (NZX Auckland), XHEL (Nasdaq Helsinki), XSTO (Nasdaq Stockholm). Derivatives \u2014 XCBT (CME Futures overnight), XNYM (NYMEX overnight), XCBO (Cboe Options). Crypto 24/7 \u2014 XCOI (Coinbase), XBIN (Binance).",
              "inputSchema": {
                "additionalProperties": false,
                "properties": {
                  "mic": {
                    "description": "ISO 10383 Market Identifier Code. Required. Examples: XNYS=NYSE, XNAS=NASDAQ, XLON=London, XJPX=Tokyo, XCBT=CME Futures, XCOI=Coinbase (24/7), XBIN=Binance (24/7). Call list_exchanges to discover all 28 supported codes.",
                    "enum": [
                      "XNYS",
                      "XNAS",
                      "XLON",
                      "XJPX",
                      "XPAR",
                      "XHKG",
                      "XSES",
                      "XASX",
                      "XBOM",
                      "XNSE",
                      "XSHG",
                      "XSHE",
                      "XKRX",
                      "XJSE",
                      "XBSP",
                      "XSWX",
                      "XMIL",
                      "XIST",
                      "XSAU",
                      "XDFM",
                      "XNZE",
                      "XHEL",
                      "XSTO",
                      "XCBT",
                      "XNYM",
                      "XCBO",
                      "XCOI",
                      "XBIN"
                    ],
                    "type": "string"
                  }
                },
                "type": "object"
              },
              "name": "get_market_status"
            },
            {
              "description": "Returns holiday-aware trading session schedule with next open/close UTC timestamps for any of 28 exchanges. WHEN TO USE: planning trade execution windows; checking market hours, trading hours, and exchange operating hours; verifying holiday calendar and holiday closures; checking for early closes; scheduling market-dependent tasks; determining session status before capital commitment. Includes lunch break windows (session status): Tokyo XJPX (11:30\u201312:30 JST), Hong Kong XHKG (12:00\u201313:00 HKT), Shanghai XSHG and Shenzhen XSHE (11:30\u201313:00 CST). Covers Middle Eastern markets (XSAU/XDFM: Fri\u2013Sat weekend, Sunday is a trading day) and 24/7 crypto (XCOI/XBIN: always open). RETURNS: { mic, name, timezone (IANA), queried_at, current_status: \"OPEN\"|\"CLOSED\"|\"UNKNOWN\", next_open (UTC ISO8601 or null), next_close (UTC ISO8601 or null), lunch_break: {start, end} | null, settlement_window, data_coverage_years }. NOT cryptographically signed \u2014 does not reflect real-time circuit breaker halts or KV overrides. For authoritative signed status use get_market_status. LATENCY: sub-100ms p95 (pure schedule computation, no signing).",
              "inputSchema": {
                "additionalProperties": false,
                "properties": {
                  "mic": {
                    "description": "ISO 10383 Market Identifier Code. Defaults to XNYS (NYSE). Call list_exchanges to see all 28 supported codes.",
                    "enum": [
                      "XNYS",
                      "XNAS",
                      "XLON",
                      "XJPX",
                      "XPAR",
                      "XHKG",
                      "XSES",
                      "XASX",
                      "XBOM",
                      "XNSE",
                      "XSHG",
                      "XSHE",
                      "XKRX",
                      "XJSE",
                      "XBSP",
                      "XSWX",
                      "XMIL",
                      "XIST",
                      "XSAU",
                      "XDFM",
                      "XNZE",
                      "XHEL",
                      "XSTO",
                      "XCBT",
                      "XNYM",
                      "XCBO",
                      "XCOI",
                      "XBIN"
                    ],
                    "type": "string"
                  }
                },
                "type": "object"
              },
              "name": "get_market_schedule"
            },
            {
              "description": "Returns directory of all 28 exchanges supported by Headless Oracle: MIC codes, exchange names, IANA timezones, market hours metadata, and mic_type (iso|convention). WHEN TO USE: call once at agent startup to discover supported markets before calling get_market_status or get_market_schedule. Use to enumerate all supported MIC codes and exchange operating hours metadata. Covers equities (XNYS/NYSE, XNAS/NASDAQ, XLON/London, XJPX/Tokyo, XPAR/Paris, XHKG/Hong Kong, XSES/Singapore, XASX/ASX, XBOM/BSE, XNSE/NSE, XSHG/Shanghai, XSHE/Shenzhen, XKRX/Korea, XJSE/Johannesburg, XBSP/Brazil, XSWX/Zurich, XMIL/Milan, XIST/Istanbul, XSAU/Riyadh, XDFM/Dubai, XNZE/Auckland, XHEL/Helsinki, XSTO/Stockholm), derivatives (XCBT/CME, XNYM/NYMEX, XCBO/Cboe), and 24/7 crypto (XCOI/Coinbase, XBIN/Binance). RETURNS: { exchanges: Array<{ mic: string, name: string, timezone: string, mic_type: \"iso\"|\"convention\" }> } \u2014 28 entries. Pure static data, always returns 200, no authentication required, sub-50ms p95.",
              "inputSchema": {
                "additionalProperties": false,
                "properties": {},
                "type": "object"
              },
              "name": "list_exchanges"
            },
            {
              "description": "Verifies the Ed25519 cryptographic signature on a Headless Oracle Signed Market Attestation receipt \u2014 confirms it is a genuine pre-trade verification attestation and has not been tampered with. Note: SMA denotes Signed Market Attestation, not Simple Moving Average. WHEN TO USE: (1) when you receive a pre-trade attestation from another agent and must confirm the cryptographic proof before acting on market state; (2) building an attestation_ref audit trail for capital commitment workflows; (3) confirming receipt verification before including the signature in an x402 payment attestation. RETURNS: { valid: boolean, expired: boolean, reason: \"SIGNATURE_VALID\"|\"MALFORMED_RECEIPT\"|\"INVALID_SIGNATURE\"|\"ORACLE_NOT_CONFIGURED\", mic: string|null, status: string|null, expires_at: string|null }. FAILURE RULE: valid=false MUST be treated as untrusted \u2014 do not act on any data from an invalid receipt. A receipt can be valid=true but expired=true (TTL exceeded) \u2014 re-fetch if expired. LATENCY: sub-50ms p95 (in-worker Ed25519 verification, no external network calls).",
              "inputSchema": {
                "additionalProperties": false,
                "properties": {
                  "receipt": {
                    "additionalProperties": true,
                    "description": "The complete signed receipt object as returned by get_market_status or /v5/status. Must include the signature field (hex-encoded Ed25519).",
                    "type": "object"
                  }
                },
                "required": [
                  "receipt"
                ],
                "type": "object"
              },
              "name": "verify_receipt"
            },
            {
              "description": "Returns available payment and authentication options for accessing live market data. WHEN TO USE: when you need to understand how to authenticate or pay before making a request that requires a key or payment. Returns upgrade ladder: sandbox (200 calls free), x402 per-request ($0.001 USDC), x402 sandbox (10 credits for $0.001), credit packs ($5 = 1000 calls), builder subscription ($99/mo = 50K/day). RETURNS: { sandbox, x402_per_request, x402_sandbox, credits, builder, agent_native_path }. No authentication required. Always returns 200.",
              "inputSchema": {
                "additionalProperties": false,
                "properties": {},
                "type": "object"
              },
              "name": "get_payment_options"
            }
          ]
        }
      },
      "bad_protocol_status_code": 200,
      "delete_error": null,
      "delete_status_code": null,
      "expired_session_error": null,
      "expired_session_status_code": null,
      "issues": [
        "missing_session_id",
        "missing_protocol_header",
        "bad_protocol_not_rejected"
      ],
      "last_event_id_visible": false,
      "protocol_header_present": false,
      "requested_protocol_version": "2024-11-05",
      "session_id_present": false,
      "transport": "streamable-http"
    }
  },
  "remote_url": "https://headlessoracle.mmsebenzi-oracle.workers.dev/mcp",
  "server_card_payload": {
    "ampersend": "https://app.ampersend.ai/agents/headless-oracle",
    "authentication": [
      "bearer",
      "apiKey",
      "x402"
    ],
    "conformance_vectors": "https://api.headlessoracle.com/v5/conformance-vectors",
    "coverage": {
      "exchanges": 28,
      "halt_detection": {
        "active": [
          "XNYS",
          "XNAS"
        ],
        "note": "Real-time intraday halt detection (Polygon.io + Alpaca fallback) covers XNYS and XNAS only. All other exchanges use schedule-based status: calendar hours and holidays are correct, but unscheduled intraday circuit breaker halts are not detected. Every signed receipt carries a halt_detection field (\"active\" | \"schedule_only\") so agents know which applies.",
        "schedule_only": [
          "XLON",
          "XJPX",
          "XPAR",
          "XHKG",
          "XSES",
          "XASX",
          "XBOM",
          "XNSE",
          "XSHG",
          "XSHE",
          "XKRX",
          "XJSE",
          "XBSP",
          "XSWX",
          "XMIL",
          "XIST",
          "XSAU",
          "XDFM",
          "XNZE",
          "XHEL",
          "XSTO"
        ]
      },
      "mic_codes": [
        "XNYS",
        "XNAS",
        "XLON",
        "XJPX",
        "XPAR",
        "XHKG",
        "XSES",
        "XASX",
        "XBOM",
        "XNSE",
        "XSHG",
        "XSHE",
        "XKRX",
        "XJSE",
        "XBSP",
        "XSWX",
        "XMIL",
        "XIST",
        "XSAU",
        "XDFM",
        "XNZE",
        "XHEL",
        "XSTO",
        "XCBT",
        "XNYM",
        "XCBO",
        "XCOI",
        "XBIN"
      ]
    },
    "description": "Cryptographically signed market-state attestations for pre-trade verification and pre-execution gating. Ed25519 signatures, fail-closed architecture, 28 global exchanges (equities, derivatives, 24/7 crypto). Use as a pre-trade check before any financial execution or capital commitment. UNKNOWN and HALTED MUST be treated as CLOSED. Receipts include attestation_ref for x402 payment flows and audit trails.",
    "discovery_url": "https://headlessoracle.com/.well-known/mcp/server-card.json",
    "docs": "https://headlessoracle.com/docs",
    "dst_aware": true,
    "erc8004": "8453:38413",
    "fail_closed": true,
    "homepage": "https://headlessoracle.com",
    "key_request": "https://headlessoracle.com/v5/keys/request",
    "mcp_endpoint": "https://headlessoracle.com/mcp",
    "mpas_spec": "https://github.com/LembaGang/mpas-spec",
    "mpas_version": "1.0",
    "name": "Headless Oracle",
    "openapi": "https://headlessoracle.com/openapi.json",
    "protocol": "2024-11-05",
    "protocols": [
      "MCP-2024-11-05",
      "A2A",
      "x402",
      "OAuth2"
    ],
    "quickstart_url": "https://headlessoracle.com/docs/quickstart",
    "reliability": {
      "p95_latency_ms": 200,
      "uptime_sla": "99.9%"
    },
    "skill_url": "https://headlessoracle.com/skill.md",
    "sma_note": "SMA = Signed Market Attestation (not Simple Moving Average). Receipts are Ed25519-signed, 60-second TTL, fail-closed.",
    "sma_protocol_version": "RFC-001-draft",
    "tools": [
      "get_market_status",
      "get_market_schedule",
      "list_exchanges",
      "verify_receipt"
    ],
    "transports": [
      "http",
      "sse"
    ],
    "verification": {
      "algorithm": "Ed25519",
      "key_endpoint": "https://api.headlessoracle.com/v5/keys"
    },
    "version": "v5.0",
    "x402": {
      "amount": "1000",
      "asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
      "currency": "USDC",
      "discovery": "https://headlessoracle.com/.well-known/x402.json",
      "network": "eip155:8453",
      "payable": true,
      "payment_endpoint": "https://headlessoracle.com/v5/status",
      "scheme": "exact"
    }
  },
  "server_identifier": "io.github.LembaGang/headless-oracle"
}

Known versions

Validation history

7 day score delta
+0.0
30 day score delta
+1.5
Recent healthy ratio
0%
Freshness
596.8h
TimestampStatusScoreLatencyTools
Apr 09, 2026 09:07:02 AM UTC Degraded 74.5 1446.0 ms 5
Apr 09, 2026 01:06:24 AM UTC Degraded 74.5 1949.4 ms 5
Apr 08, 2026 05:05:52 PM UTC Degraded 75.5 11869.5 ms 5
Apr 08, 2026 09:04:52 AM UTC Degraded 74.5 1678.2 ms 5
Apr 08, 2026 01:04:38 AM UTC Degraded 74.5 1980.6 ms 5
Apr 07, 2026 05:04:21 PM UTC Degraded 74.5 2042.3 ms 5
Apr 07, 2026 09:03:51 AM UTC Degraded 75.0 1402.3 ms 5
Apr 07, 2026 01:03:16 AM UTC Degraded 75.0 1908.3 ms 5

Validation timeline

ValidatedSummaryScoreProtocolAuth modeToolsHigh-risk toolsChanges
Apr 09, 2026 09:07:02 AM UTC Degraded 74.5 2024-11-05 oauth_supported 5 0 none
Apr 09, 2026 01:06:24 AM UTC Degraded 74.5 2024-11-05 oauth_supported 5 0 none
Apr 08, 2026 05:05:52 PM UTC Degraded 75.5 2024-11-05 oauth_supported 5 0 none
Apr 08, 2026 09:04:52 AM UTC Degraded 74.5 2024-11-05 oauth_supported 5 0 none
Apr 08, 2026 01:04:38 AM UTC Degraded 74.5 2024-11-05 oauth_supported 5 0 none
Apr 07, 2026 05:04:21 PM UTC Degraded 74.5 2024-11-05 oauth_supported 5 0 none
Apr 07, 2026 09:03:51 AM UTC Degraded 75.0 2024-11-05 oauth_supported 5 0 none
Apr 07, 2026 01:03:16 AM UTC Degraded 75.0 2024-11-05 oauth_supported 5 0 none
Apr 06, 2026 05:02:10 PM UTC Degraded 75.0 2024-11-05 oauth_supported 5 0 none
Apr 06, 2026 09:01:23 AM UTC Degraded 75.0 2024-11-05 oauth_supported 5 0 none
Apr 06, 2026 01:01:08 AM UTC Degraded 75.0 2024-11-05 oauth_supported 5 0 none
Apr 05, 2026 04:59:19 PM UTC Degraded 75.0 2024-11-05 oauth_supported 5 0 none

Recent validation runs

StartedStatusSummaryLatencyChecks
Apr 09, 2026 09:07:01 AM UTC Completed Degraded 1446.0 ms action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe
Apr 09, 2026 01:06:22 AM UTC Completed Degraded 1949.4 ms action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe
Apr 08, 2026 05:05:40 PM UTC Completed Degraded 11869.5 ms action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe
Apr 08, 2026 09:04:50 AM UTC Completed Degraded 1678.2 ms action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe
Apr 08, 2026 01:04:36 AM UTC Completed Degraded 1980.6 ms action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe
Apr 07, 2026 05:04:19 PM UTC Completed Degraded 2042.3 ms action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe
Apr 07, 2026 09:03:50 AM UTC Completed Degraded 1402.3 ms action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe
Apr 07, 2026 01:03:14 AM UTC Completed Degraded 1908.3 ms action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe
Apr 06, 2026 05:02:08 PM UTC Completed Degraded 1946.5 ms action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe
Apr 06, 2026 09:01:23 AM UTC Completed Degraded 698.6 ms action_safety_probe, advanced_capabilities_probe, connector_publishability_probe, connector_replay_probe, determinism_probe, initialize, interactive_flow_probe, oauth_authorization_server, oauth_protected_resource, official_registry_probe, openid_configuration, probe_noise_resilience, prompt_get, prompts_list, protocol_version_probe, provenance_divergence_probe, request_association_probe, resource_read, resources_list, server_card, session_resume_probe, step_up_auth_probe, tool_snapshot_probe, tools_list, transport_compliance_probe, utility_coverage_probe