mcp server
cabal-hunter
Solana pre-trade safety for AI agents: cabal, bundle, dump, deployer & honeypot in one verdict.
Description as published by the maintainer. Source
- version 1.2.0
- active
active — Most recent push to the repository was 2026-08-01.
What this server can do
1 function, named and described by the server itself. Parameter names are shown because they say more about what a function does than its name usually does.
check_cabal_risk(mintAddress, pairCreatedAt)- Pre-trade safety check for any Solana token mint: is a buyer about to be someone's exit liquidity? Every flag links to its on-chain evidence tx. Layers, ordered by STRENGTH OF EVIDENCE (not marketing): 1. HOLDER CONCENTRATION — what share one wallet actually controls (`top_holder_pct`). A single wallet that can crater the price is the most basic rug vector, and it needs no coordination at all. IMPORTANT: we count only REAL wallets. LP pools, locked/vesting supply and other program-owned accounts are excluded and labelled, never scored as a whale — and supply comes from getTokenSupply, not an estimate. Tools that skip this report a locked-supply token as '65% one wallet'. Our numbers reconcile with GMGN's circulating top-10. 2. SAME-BLOCK BUNDLES — holders whose token accounts were created in the EXACT same block: a Jito-bundled multi-wallet launch. `time_sync: true`. 3. COORDINATED DUMP — ≥2 holders each selling ≥25% of their bag in the same block: a cabal exiting in real time. `coordinated_exit: true`, sold_pct. 4. HONEYPOT / AUTHORITY TRAPS (Solana-native) — live freeze authority, un-revoked mint authority, Token-2022 transfer-fee / transfer-hook / permanent-delegate traps. Answers: CAN you actually sell this token? 5. DEV TRACK RECORD — the creator resolved on-chain plus their full launch history WITH the peak market cap each past token hit, so a dead-count can't hide a pump-and-dump. reputation (SERIAL_RUGGER / DEAD_ON_ARRIVAL / MIXED / PROVEN) + best_peak_usd, pump_and_dumps count; paid tier adds launches[] (peak_mcap_usd, now_mcap_usd, drawdown, status per launch). 'Ran to $728k, now dust' = this dev has dumped six figures on holders before. Still CAPPED: peak history is evidence, never softens the score. 6. FUNDING-CLUSTER TRACE — top holders walked back to a shared funding wallet. A real capability, listed last on purpose: on our own sample it produced no verified detections once infrastructure (curve PDAs, token accounts) was correctly excluded. Treat it as supporting evidence. Returns risk (CLEAN|MEDIUM|HIGH), cabal_score 0–100, top_holder_pct, cluster breakdown with evidence_txs[], holder map, deployer verdict, honeypot_risk, plus wallets_checked / scan_complete / degraded so YOUR agent can apply its own risk tolerance instead of inheriting ours. If we cannot verify something, we say so (`degraded: true`) rather than returning a confident 'clean'. COST: first 250 scans/month FREE — no signup, no API key. After that $0.001 USDC per scan. Every scan is a live on-chain trace, not cached data. Two ways to pay, no signup or card: (1) $9/month UNLIMITED (fair use, 50k/mo) — best for 24/7 bots; or prepaid pay-as-you-go at $0.001/scan (any amount) — POST the tx to /api/buy-key, then send header X-API-Key; or (2) per-call via x402 (X-Payment-Signature header). Full terms: GET /api/info. Typical response time: <100ms for pre-indexed tokens (most graduated pump.fun mints are already cached). A token we have never seen runs the full live on-chain trace and takes 15-20s — set your client timeout to at least 30s or you will abandon a scan that was about to succeed. Required: mintAddress.
Last successful function declaration observed on . Source: https://api.cabal-hunter.com/mcp. We list what the server declared; we do not call any of these functions.
Endpoint status observed on . Source: https://api.cabal-hunter.com/mcp.
Signals
These are separate measurements of different things. They are deliberately not combined into one score, because a popularity number that mixes website traffic with saves and stars cannot be checked or acted on.
| Signal | Value | What it measures | Window | Observed | Source |
|---|---|---|---|---|---|
| GitHub stars | 1 | Number of GitHub accounts that bookmarked this repository since it was created. It is a bookmark count, not installs, not active users and not quality. | cumulative, all time | GitHub | |
| Last commit | 2026-08-01 | Date of the most recent push to any branch. This is the strongest cheap indicator of whether the project is still maintained. | point in time | GitHub | |
| Open issues | 0 | Open issues plus open pull requests, as GitHub counts them together. A high number can mean an active project or an abandoned one. | as of fetch | GitHub | |
| Latest published version | 1.2.0 | Latest version string the maintainer published to the registry. | as of fetch | Model Context Protocol | |
| Registry record last updated | 2026-07-07 | When the registry record was last updated by its maintainer. | point in time | Model Context Protocol | |
| License | MIT | Licence GitHub detected in the repository. Detection can be wrong; the LICENSE file is authoritative. | as of fetch | GitHub | |
| First listed in the MCP Registry | 2026-07-07 | Date this server was first published to the official MCP Registry. Not a usage or quality measure. | point in time | Model Context Protocol | |
| repository status | active | The repository exists on GitHub and is not archived. This says nothing about how recently it was worked on. | as of fetch | GitHub | |
| mcp tools declared | 1 tools | Number of functions the server itself declared when asked to list them. This is what the server offers an agent, not a measure of how well any of them work. | as of probe | api.cabal-hunter.com | |
| mcp endpoint status | ok | The server listed 1 function when asked. | as of probe | api.cabal-hunter.com |
Where to get it
Related, by what their authors tagged them
-
io.github.0xSoftBoi/suwappu
— last commit 2026-08-06, shares defi, solana, trading-bot
Cross-chain DEX for AI agents. Swap tokens across 7+ chains.
-
Token Safety & Contract Risk API
— last commit 2026-07-19, shares blockchain, defi, token-safety
Token safety check — honeypot, tax, proxy, blacklist, risk score. GoPlus-powered. x402.
-
Solana Token Intelligence
— last commit 2026-07-05, shares solana, token-safety
Solana token due-diligence: 3-source fused risk verdict incl. LP-lock depth. $0.01 via x402.
-
dev.true402/mcp-server
— last commit 2026-08-05, shares defi, token-safety
Pay-per-call AI + web + on-chain tools over x402 (USDC on Base): LLM, SEO, extract, token safety.
-
pmq (Polymarket CLOB V2)
— last commit 2026-08-03, shares trading-bot
Production-proven Polymarket CLOB V2 trading and data. Fail-closed fills; keys stay local.
-
io.github.gigshow/decker
— last commit 2026-08-08, shares trading-bot
Deterministic market-state engine for trading agents — state, gate, coordinates, with receipts.
-
ai.traderouter/trade-router-mcp
— last commit 2026-04-28, shares defi, elizaos, solana
Non-custodial Solana swap & limit order engine for AI agents.
-
Wealthville
— last commit 2026-07-30, shares defi, elizaos, solana
Solana + EVM liquidity-pool scores: Enter/Hold/Exit verdicts and 0-100 Wealthville Score.
-
io.github.gblinproject/gblin-mcp-server
— last commit 2026-08-03, shares defi, elizaos
Collateral-backed treasury vault for AI agents on Base. Crash Shield defends, JIT pays x402.
-
io.github.enrichgateagent-png/beacon-mcp
— last commit 2026-07-13, shares elizaos
Search 17,900+ open-source AI agents by capability, ranked by GitHub traction. Free, no key.
These share tags the maintainers applied themselves, such as defi, solana, trading-bot, blockchain. Common tags like "mcp" or "ai" are ignored for this: agreeing with six hundred other projects is not a similarity.
This is not a recommendation and not a test result. It is a map of what the authors said their work is about.
How the author describes it
Topics the maintainer set on GitHub: ai-agent, ai-agents, blockchain, cabal-detection, claude, crypto-security, cursor, defi, elizaos, honeypot-detection, mcp, mcp-server, model-context-protocol, rug-detection, solana, solana-bot, token-safety, trading-bot.
This record as data
Every field on this page, with its source and observation date, is in the catalog JSON. Fetch the whole kind at once instead of parsing this HTML.
GET /api/v1/entries/mcp_server.json