DCL Trust Oracle — AI/LLM Output Audit (x402 MCP)
com.fronesislabs/dcl-trust-oracle
AI/LLM agent output audit MCP: policy eval, tamper-evident chain, AI safety, x402 USDC on Base.
— the operator's own registry description reported
Publisher com.fronesislabs · first seen 2026-08-12 · endpoint https://mcp.fronesislabs.com/mcp
Dependency rating derived
allow — alive & usable · action ● · V n/a
Cluster mid-slow-solo · distinctiveness 0.584 (moderate). Every figure is a percentile or class within the 11,094-server census — see the whole spectrum.
🔏 Signed receipt rr_b84228a07f1634e44c77dee6 · ed25519 · key rs-rcpt-2026-08 — this rating is tamper-evident; an agent gets the full signature from check_server and can verify it against the published key.
● observed · ◐ derived · ○ reported — the verdict synthesizes Q1–Q4; Q5 is context. Methodology →
History observed
Every probe we made, oldest → newest (2 shown, 2026-08-12 → 2026-08-14). Green answered · amber answered-but-walled · red no useful answer. A gap in our cadence is a gap in coverage, not evidence about the server.
changelog (1 events)
| date | type | what changed |
|---|---|---|
| 2026-08-12 | outcome | first probe: ok_tools |
What kind of tools these are derived
Verification only means something relative to a tool's NATURE — an email-sender has no "true answer", a generator has no answer key. Classification evidence: classified from tool names/descriptions/annotations WE OBSERVED. What checking applies to each kind (the full methodology →):
| nature | tools | meaning | what checking applies |
|---|---|---|---|
| action | 14 | changes the world | no true answer exists; we check the CONTRACT (destructive/read-only/idempotent declarations, error legibility) and never fire real actions |
| computational | 3 | deterministic transforms | self-checkable by re-computation and known-answer tests |
| generative | 1 | creates content | no answer key exists; disclosure + stability checks, never truth verdicts |
Tools last seen observed
Harness readiness observed
Can an agent's harness pick this tool and call it correctly? Graded on the three things an agent reads — name, description, typed parameters. Band A — an agent can pick and call these reliably.
| legibility check | tools passing | ok |
|---|---|---|
| name is clear & specific | 18/18 | ✓ |
| has a description | 18/18 | ✓ |
| description is substantive | 18/18 | ✓ |
| parameters are typed | 18/18 | ✓ |
| parameters are described | 18/18 | ✓ |
18 of 18 tools graded · 18 with a captured input schema. RS-008, Tier-1 — no domain knowledge, applies to any tool. “Alive” is not the same as “usable”.
Truth checks observed
Not in the Tier-2 trade lane, or not yet checked. Tier-2 re-derives a server's answers against published primary sources — see truth checks.
Protocol conformance observed
Capabilities: experimental prompts resources tools
Drift observed
No confirmed drift on record. Baseline set 2026-08-14; changes appear here after human review.
raw probe records
| probed (UTC) | outcome | http | ms | protocol |
|---|---|---|---|---|
| 2026-08-14T19:58:08Z | ok_tools | 200 | 401 | 2025-06-18 |
| 2026-08-12T05:33:23Z | ok_tools | 200 | 403 | 2025-06-18 |
Watch or embed this verdict
Operators: put the live verdict in your README — it updates with every census, links back here, and is a dated observation, never a warranty:
[](https://robinsaige.com/s/com.fronesislabs/dcl-trust-oracle)
Depend on it? Subscribe to its change feed — outcome changes and confirmed drift, no account needed. Building on it? The full dossier as JSON — verdict, rating, truth checks, history — stable enough to gate CI on.