mcpbeat Sign in

PHION Agent Trust Infrastructure MCP Server

answering

PHION Agent Trust Infrastructure is answering right now. Last checked 4 min ago. It exposes 75 tools.

69 agent services: verified data, enrichment, Index Feed and PHION Execute via x402.

Uptime history 8 days of history
8 days agonow
100.0%
Uptime 24h
92 of 92 checks
75
Tools
read from the server
636 ms
Response time
average over 24h
open, no key
Access
streamable-http

What changed 188

Every tool that appeared, vanished or quietly changed what it asks for. Recorded since 12 September 2026. No other catalogue keeps this.

16 Sep a tool changed version4 times that day
16 Sep 3 tools appeared company_enrichment_evidence, contact_enrichment_evidence, person_enrichment_evidence
15 Sep 11 tools appeared document_to_verified_json, entity_enrichment_evidence, index_feed and 8 more
15 Sep a tool changed version4 times that day
15 Sep a tool changed the parameters it asks for try_service
14 Sep a tool changed version4 times that day
14 Sep a tool appeared phion_execute
13 Sep 31 tool descriptions were rewritten46 times that day abandoned_tool_detector, concurrency_guard, conflict_resolution and 28 more
13 Sep 25 tools changed the parameters they ask for44 times that day abandoned_tool_detector, concurrency_guard, conflict_resolution and 22 more
13 Sep 41 tools appeared abandoned_tool_detector, agent_budget_guard, agent_reputation_evidence and 38 more
and 72 more, back to 12 September 2026

Nothing serious here today

Today is the operative word: we check PHION Agent Trust Infrastructure every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.

Three servers free · no card

Connect this server

Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 4 min ago.

run in your terminal
claude mcp add evidence-engine --transport http https://phion.systems/mcp
~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "evidence-engine": {
      "url": "https://phion.systems/mcp"
    }
  }
}
~/.codex/config.toml
[mcp_servers.evidence-engine]
url = "https://phion.systems/mcp"
.cursor/mcp.json
{
  "mcpServers": {
    "evidence-engine": {
      "url": "https://phion.systems/mcp"
    }
  }
}
.vscode/mcp.json
{
  "mcpServers": {
    "evidence-engine": {
      "url": "https://phion.systems/mcp"
    }
  }
}

Available tools 75

Read directly from the server with tools/list, grouped by what they act on. If a tool disappears, we record the date.

rwa
rwa_asset_due_diligence
Fail-closed issuer, contract, jurisdiction, custody and documentation coverage with independently fetched evidence; 0.019 USDC.
rwa_compliance
Fail-closed RWA transfer decision requiring explicit jurisdiction, KYC, allowlist, limit and transfer-window checks; 0.012 USDC.
rwa_corporate_actions
Detect and sign material RWA changes in NAV, income, maturity, redemption or freeze state; 0.012 USDC.
rwa_nav_reserve
Compare declared NAV and reserve ratios with structured observed facts plus independently fetched evidence; returns discrepancies in basis points and fails closed on incomplete evidence; 0.015 USDC.
rwa_sanctions_screening_evidence
Evidence-based literal subject screening against observed official US/EU sanctions sources; 0.015 USDC. Not legal clearance or wallet attribution.
rwa_transaction_assurance
Verify an RWA asset, payment, delivery and transfer restrictions; 0.020 USDC.
payment
payment_diagnose
Free diagnosis of the exact payment-funnel stage and machine-readable recovery actions for any PHION service.
payment_preflight
Fail-closed x402 v2 firewall for network, asset, recipient, amount, scheme, resource host and expiry; 0.002 USDC.
payment_receipt_reconciler
Compare canonical and common x402 payment/receipt aliases, settlement state and coverage; 0.003 USDC.
payment_route_selector
Reject impossible x402 routes, rank safe eligible routes by policy and return the exact next payment action; read-only, deterministic, 0.002 USDC.
agent
agent_budget_guard
Enforce per-call, task, session and period budgets; 0.002 USDC.
agent_reputation_evidence
Evidence-bounded agent reputation assessment with confidence, coverage, provenance limitations and a signed receipt; 0.005 USDC.
agent_task_handoff_receipt
Sign a bounded agent-task handoff; 0.003 USDC.
tool
tool_call_policy_guard
Bind a proposed tool call to declared intent and execution policy; 0.002 USDC.
tool_capability_drift_monitor
Detect tool capability or manifest drift; 0.002 USDC.
tool_output_firewall
Inspect untrusted MCP/tool output before it enters agent context or triggers an action; 0.002 USDC.
data
data_egress_preflight
Inspect outbound agent data and destination before transmission; 0.002 USDC.
data_freshness_certificate
Certify freshness only when timestamp is bound to source URI and a 64-hex content hash; 0.002 USDC.
mcp
mcp_manifest_firewall
Inspect an MCP manifest before installation or trust; 0.002 USDC.
mcp_server_identity_evidence
Bind MCP domain, endpoint, manifest, key and version; 0.003 USDC.
schema
schema_normalize
Safe alias normalization that refuses ambiguous canonical/alias collisions and never changes payment values; 0.001 USDC.
schema_normalize_free
Free, rate-limited payload validation and safe key normalization before payment. Payment-critical values are never changed.
transaction
transaction_assurance
End-to-end settlement, timestamp, delivery-hash and deterministic acceptance assurance; 0.015 USDC.
transaction_recovery
Failure classification and non-repeating recovery plan with validated attempt history; 0.010 USDC.
verified
verified_news_monitor
Literal query evidence across bounded public news sources; 0.006 USDC.
verified_web_extract
Bounded public web extraction with source, timestamp and hashes; 0.003 USDC.
abandoned
abandoned_tool_detector
Require stale success plus multiple independent failed probes before classifying likely abandonment; 0.003 USDC.
attest
attest
x402 paid signed JSON attestation; 0.001 USDC on Base.
company
company_enrichment_evidence
Company enrichment from domain, profile, ticker or name with provider attribution and signed evidence; 0.005 USDC.
concurrency
concurrency_guard
Fail closed unless capacity counter is fresh and the request carries a lease plus idempotency binding; 0.002 USDC.
conflict
conflict_resolution
Resolve or abstain; every candidate must bind source, value hash, observation time and bounded confidence; 0.003 USDC.
contact
contact_enrichment_evidence
Business-contact enrichment from strong identifiers with explicit identity limitations and a signed receipt; 0.007 USDC.
context
context_provenance_labeler
Hash and label context integrity, confidentiality and source; 0.002 USDC.
counterparty
counterparty_risk_preflight
Deterministic counterparty policy preflight using supplied reputation evidence and transaction limits; 0.003 USDC.
delegation
delegation_scope_guard
Least-privilege guard for agent-to-agent delegation scope, destinations, budget and expiry; 0.003 USDC.
delivery
delivery_evidence
Bind successful delivery to transaction, request and matching 64-hex expected/observed content hashes without echoing content; 0.003 USDC.
dependency
dependency_provenance_assessment
Fail closed on empty dependency sets or absent registry policy; distinguish digest declarations from verified provenance; 0.003 USDC.
document
document_to_verified_json
Public text, HTML, JSON or XML normalized to source-backed JSON; no OCR; 0.010 USDC.
domain
domain_ownership_evidence
Require a fresh domain-bound DNS-01/HTTP-01 challenge and separate control from legal ownership; 0.003 USDC.
duplicate
duplicate_charge_detector
Detect repeated transaction hashes, payment identifiers and idempotent intents; 0.003 USDC.
entity
entity_enrichment_evidence
Source-bounded entity field coverage with explicit missing facts; 0.008 USDC.
evidence
fetch_evidence
Independently fetch bounded public evidence with redirect/DNS/connected-address SSRF checks, hashes and injection screening; 0.004 USDC.
human
human_approval_policy
Classify an action as automatic, approval-required or denied; 0.002 USDC.
idempotency
idempotency_replay_guard
Detect safe replays and conflicting idempotency-key reuse; 0.002 USDC.
index
index_feed
Canonical catalog snapshot or digest-based delta with exact HTTP/MCP records, PHION Execute templates and signed evidence; 0.005 USDC.
inspect
inspect_agent
Pre-payment agent inspection across x402, A2A, ERC-8004, OpenAPI and MCP; failed inspections are not charged; 0.009 USDC.
inter
inter_agent_policy_evaluator
Require policy identity, subject, action, lifetime and valid decisions; compute the restrictive cap and shared actions; 0.003 USDC.
interrupted
interrupted_task_recovery
Resume only when task/checkpoint identity, sequence, deadline, attempt budget, idempotency and side effects are explicit; 0.003 USDC.
journey
journey_verify
Verify hash continuity, timestamps and ordered intent→quote→payment→delivery lifecycle; 0.010 USDC.
live
live_data_freshness
Evaluate live source observation against explicit maximum age; 0.002 USDC.
mandate
mandate_reserve
Atomic spending reservation with cumulative cap and conflict-safe idempotency; 0.004 USDC.
manifest
manifest_version_diff
Recursive manifest diff that requires explicit versions and flags sensitive changes without a version advance; 0.002 USDC.
market
market_data_snapshot
Timestamped public market-data snapshot with provenance; 0.005 USDC.
memory
memory_write_guard
Screen persistent memory writes for poisoning, unsafe instructions and missing provenance; 0.002 USDC.
multi
multi_source_fact_bundle
Independent source observations with agreement made explicit; 0.005 USDC.
oauth
oauth_token_audience_guard
Validate declared OAuth audience and issuer; never send raw tokens; 0.002 USDC.
onchain
onchain_evidence
Public explorer or RPC response evidence with immutable hashes; 0.004 USDC.
person
person_enrichment_evidence
Person enrichment from strong identifiers with provider attribution, likelihood, limitations and a signed receipt; 0.006 USDC.
phion
phion_execute
Universal PHION execution gateway: enforce a budget and persistent idempotency, execute one selected PHION service, evaluate acceptance criteria, and return a signed completion envelope. No gateway surcharge; the selected service price applies.
portable
portable_observability_audit
Validate event identity, timestamps, hash chain and W3C-compatible lowercase nonzero trace/span identifiers; 0.004 USDC.
preflight
preflight
Free URL safety and reachability check.
purpose
purpose_bound_consent
Fail-closed consent bound to ID, subject, recipient, purpose, scope, issue/expiry and checked revocation state; 0.003 USDC.
redirect
redirect_callback_validator
Validate HTTPS callbacks and redirect host allowlists; 0.002 USDC.
resource
resource_cycle_guard
Require per-step identity, token and cost counters; detect repeated nodes/edges and enforce all three hard caps; 0.002 USDC.
retention
retention_deletion_receipt
Separate requested, operator-completed and evidence-verified retention/deletion states using content and evidence hashes; 0.003 USDC.
secret
secret_redaction_preflight
Detect and redact common secret indicators before transmission; 0.002 USDC.
service
service_sla_attestation
Sign availability and latency calculations from bounded samples; 0.004 USDC.
signed
signed_result_comparator
Compare agent results and sign agreement or conflict; 0.003 USDC.
social
social_source_evidence
Attributable public social-source observations with identity limitations; 0.006 USDC.
source
source_backed_search
Literal search over supplied public sources with citations and hashes; 0.004 USDC.
subscription
subscription_spend_guard
Bind one recurring charge to approval, merchant, due time and per-charge/period budgets; 0.003 USDC.
try
try_service
Free representative preview, exact price and upgrade instructions for any PHION paid service; no wallet required.
verify
verify
Free verification of a PHION signed receipt.
webhook
webhook_verifier
Fail-closed RFC 9421-style webhook preflight requiring trusted key, algorithm, nonce, freshness, replay status and signature coverage of method, target and content; 0.003 USDC.
x402
x402_quote_comparator
Validate x402 v2 fields and compare only quotes sharing asset and decimals; 0.002 USDC.

Endpoints

URLTransportStateLatencyChecked
https://phion.systems/mcp streamable-http answering 498 ms 4 min ago

Alternatives to PHION Agent Trust Infrastructure

same job, measured the same way
AgentIndex
by cognivis

Trust scores and on-chain payment receipts for x402 services.

4 tools answering
Veriswarm MCP
by veriswarm

VeriSwarm MCP Server — Trust infrastructure for AI agents via Model Context Protocol

50 installs/wk local only
Service Provider Index
by fugentic

Find verified businesses & service providers by trade and area. Returns structured provider data.

3 tools answering
MolTrust MCP Server
by moltycel

Trust infrastructure for AI agents — DIDs, reputation, verifiable credentials, USDC.

277 installs/wk local only
Report Needs MCP Server
by jarvisonm4

MCP server for AI agents to report infrastructure needs they encounter during task execution

54 installs/wk local only
Fuel Prices
by johnisanerd

Gas and fuel prices by station and area, as structured data via a hosted MCP server.

answering
Subscriptions
by jdhart81

Verified monthly-seat catalog, account attribution, quota, overage, and MRR infrastructure.

10 tools answering
Autonoma Agent Services
by powerliftingdeveloper

Paid agent trust checks, receipt verification, research, data work, and monitoring.

6 tools answering

PHION Agent Trust Infrastructure — questions

Answers built from our own checks of this server.

What can PHION Agent Trust Infrastructure do?
It exposes 75 tools, read directly from the server on our last check. Among them: abandoned_tool_detector, agent_budget_guard, agent_reputation_evidence, agent_task_handoff_receipt, attest, company_enrichment_evidence and 69 more. The full list with descriptions is on this page — we take it from the server itself via tools/list, not from a README. How MCP servers expose tools in the first place →
What is PHION Agent Trust Infrastructure mostly used for?
Its tools cluster around rwa, payment and tool. That is what this server is built to work with — the grouping comes from the actual tool names, not from a category we assigned.
Is PHION Agent Trust Infrastructure working right now?
We send a real MCP handshake every 15 minutes. Over the last 24 hours 92 of 92 checks got a reply (100.0%), average response time 636 ms. The bar chart above shows every period we have measured.
How do I connect PHION Agent Trust Infrastructure?
Copy the ready config from this page — we generate it for Claude Code, Claude Desktop, Codex, Cursor and VS Code, each with the file path that client actually reads. It is a remote server, so there is nothing to install — the client connects to the address.
Does PHION Agent Trust Infrastructure need an API key?
No. PHION Agent Trust Infrastructure completed a full MCP handshake with us as an anonymous client and listed its tools without asking for anything. All 75 of them are readable on this page. This is what we observed, not what the docs claim.
How fast is PHION Agent Trust Infrastructure?
It answers our handshake in 636 ms on average, which is faster than 19% of all working MCP servers we measure. That is on the slow side — worth knowing if the tool sits inside an interactive loop. The comparison comes from our own checks across the whole registry, every 15 minutes.