Server definition
- Hash
- sha256:a16cd9867702c2107124566034b48ccbaf4b9b947d311a003f70b63ffe52d6fc
- What it is
- What a remote MCP server returned when asked what it offers: 3 tools
The blob, as servednamed by its sha256
{
"instructions": "Scores the privilege a Chrome MV3 extension takes from its manifest. Pass a manifest.json to analyze_manifest, ask about one permission with explain_permission, or diff two permission sets with compare_permission_sets to see whether an update will force user re-consent. Pure static analysis, no network calls, nothing is stored.",
"tools": [
{
"description": "Static privilege analysis of a Chrome MV3 manifest.json. Returns a 0-100 risk score, the permissions and host patterns that drive it, dangerous permission combinations, and MV3 policy problems (remote code, unsafe-eval, <all_urls> web_accessible_resources). Content-script matches are counted as host access even when host_permissions is empty.",
"inputSchema": {
"properties": {
"manifest": {
"description": "The manifest.json content, as a JSON object or a JSON string."
}
},
"required": [
"manifest"
],
"type": "object"
},
"name": "analyze_manifest",
"outputSchema": null
},
{
"description": "Compares the permissions and host patterns of two versions of an extension. Reports the score delta, what was added or removed, and whether the change widens the install-time warning set, which makes Chrome disable the extension for existing users until they re-accept.",
"inputSchema": {
"properties": {
"after": {
"description": "API permissions in the new version.",
"items": {
"type": "string"
},
"type": "array"
},
"after_hosts": {
"description": "host_permissions in the new version.",
"items": {
"type": "string"
},
"type": "array"
},
"before": {
"description": "API permissions in the current published version.",
"items": {
"type": "string"
},
"type": "array"
},
"before_hosts": {
"description": "host_permissions in the current published version.",
"items": {
"type": "string"
},
"type": "array"
}
},
"required": [
"before",
"after"
],
"type": "object"
},
"name": "compare_permission_sets",
"outputSchema": null
},
{
"description": "Returns the privilege weight (0-10) for a single Chrome extension permission or host pattern, what it actually grants, whether it triggers an install-time warning, and the narrower alternative if one exists.",
"inputSchema": {
"properties": {
"permission": {
"description": "A permission name such as cookies, or a host pattern such as <all_urls>.",
"type": "string"
}
},
"required": [
"permission"
],
"type": "object"
},
"name": "explain_permission",
"outputSchema": null
}
]
}Verify it yourself
curl -s https://api.teppi.xyz/v1/evidence/sha256:a16cd9867702c2107124566034b48ccbaf4b9b947d311a003f70b63ffe52d6fc | sha256sum