ZBS Index What actually exists in applied AI, with the source next to it

mcp server

Hermes Plant — Agent Commerce Assurance

Preflight, approve, and prove consequential agent actions with signed evidence and x402 tools.

Description as published by the maintainer. Source

  • version 2.0.2
  • active

active — Registry entry last updated 2026-07-28.

What this server can do

25 functions, named and described by the server itself. Parameter names are shown because they say more about what a function does than its name usually does.

action_safety_quick_gate(cwd, repo, actor, payer, apiKey, branch, intent, channel, command, campaign, diffStat, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)
AI agent action safety quick gate ($0.01 over x402 or free-tier quota). Deterministically scores a consequential action and returns the exact next call: proceed, request full DestructGuard evidence, or run the complete Action Safety workflow. Required: command.
action_safety_run(cwd, repo, actor, payer, apiKey, branch, intent, channel, command, campaign, diffStat, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)
Complete AI agent action safety workflow ($0.25 over x402 or free-tier quota): DestructGuard evidence, conditional ReviewQueue triage for high or critical risk, an honest decision, signed receipt, and 30-day status record. Triage does not imply human approval. Required: command.
assurance_attest(payer, apiKey, intent, policy, channel, outcome, subject, campaign, protocol, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)
Assurance Attest (x402-paid, $0.05): bind one x402 payment intent or MCP tool call to a canonical HMAC-signed record (binding hash, policy verdict, findings, optional settlement outcome). Loop it after every payment or tool call to build a tamper-evident audit trail a third party can check at the free verify endpoint. Required: protocol, subject, intent.
assurance_verify(record, integrity)
Verify a Hermes-signed assurance record for free: recomputes the canonical hash (hermes-stable-json-v1 + SHA-256) and HMAC signature server-side and reports recordHashValid / signatureValid. Use it to audit attestations produced by assurance_attest without trusting the agent that produced them. Required: record, integrity.
bond_analyze(payer, price, yield, apiKey, channel, periods, campaign, xPayment, actorType, faceValue, frequency, principal, synthetic, annualRate, couponRate, termMonths, paymentSignature, paymentIdentifier)
BondLens (x402-paid, $0.25): deterministic fixed-income and loan analytics. Bond mode solves price<->yield-to-maturity, duration, and convexity; loan mode (send principal+annualRate+termMonths) returns an amortization schedule.
cashflowlens_analyze(dcf, nav, payer, apiKey, channel, campaign, xPayment, actorType, cashflows, synthetic, discountRate, periodsPerYear, paymentSignature, paymentIdentifier)
CashflowLens (x402-paid, $0.20): deterministic NPV, IRR, XIRR, DCF valuation, MOIC/DPI/TVPI, and payback period from a cashflow series. Use for valuation and return analysis instead of letting the model estimate. Required: cashflows.
dealanalyzer_analyze(dcf, payer, apiKey, channel, returns, campaign, xPayment, actorType, synthetic, waterfall, paymentSignature, paymentIdentifier)
DealAnalyzer (x402-paid, $2.00): the flagship. Deterministic full deal underwrite in a single call — DCF valuation (EV, equity value, implied share price), fund returns (IRR/MOIC), and the LP/GP distribution waterfall, plus sensitivity. Combines what CashflowLens + WaterfallLens do, cross-checked. Required: dcf.
emailguard_validate(name, email, payer, apiKey, domain, channel, campaign, xPayment, actorType, mxPresent, synthetic, paymentSignature, paymentIdentifier)
EmailGuard (x402-paid, $0.02): deterministic email/contact quality scorer — validity, deliverability score, disposable/role/free classification, typo suggestion. Pure function, no DNS. Required: email.
emailguard_validate_batch(payer, apiKey, channel, records, campaign, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)
Validate up to 20 emails in one tool call — one deterministic verdict per record (validity, deliverability score, disposable/role/free classification, typo suggestion, canonical normalization). Pass your free apiKey (250 records/mo, no wallet — https://hermesplant.com/pricing) and each record serves from quota. Results preserve input order; the batch stops at the first 402 (quota exhausted) and marks the rest skipped so you can upgrade and resume. Required: records.
evidence_verify(payer, apiKey, policy, channel, subject, campaign, xPayment, actorType, artifacts, synthetic, paymentSignature, paymentIdentifier)
Evidence Verification (x402-paid, $0.05): verify an agent-commerce evidence bundle before trusting a paid result — x402 challenge/receipt/policy-decision/service-response artifacts, endpoint and price binding, freshness, hashes, synthetic-proof leakage. Returns verified / needs_review / rejected / insufficient_evidence with per-rule evidence. Required: artifacts.
freetier_status(apiKey)
Check a free API key's remaining monthly quota, reset date, and upgrade path. Pass your hp_free_ key as apiKey. No key yet? POST an email to https://hermesplant.com/api/keys/free (250 calls/mo, no wallet). Required: apiKey.
get_checkout_policies
Return legal policy URLs required before checkout
get_product(slug)
Get a single product by slug Required: slug.
get_x402_manifest
Return the live x402 manifest with paid endpoint prices, Bazaar metadata, and buyer policy checks
list_products
List active products from the Hermes Plant catalog
mcp_risk_score(payer, tools, apiKey, server, channel, campaign, xPayment, actorType, authModel, synthetic, priorTools, paymentSignature, paymentIdentifier)
MCP Server Risk Analyzer (x402-paid, $0.05): score an MCP server manifest for security risk before install — destructive tools, over-broad scopes, weak auth, egress — with per-tool findings and fixes. Required: tools.
options_price(spot, payer, apiKey, strike, channel, campaign, xPayment, actorType, synthetic, optionType, volatility, riskFreeRate, timeToExpiry, dividendYield, paymentSignature, paymentIdentifier)
OptionLens (x402-paid, $0.30): deterministic Black-Scholes price and full Greeks (delta, gamma, vega, theta, rho) for European calls/puts, with dividend yield, intrinsic/time value, and moneyness. Required: spot, strike, timeToExpiry, volatility.
payment_policy_decide(tags, asset, payTo, payer, apiKey, method, scheme, channel, network, campaign, xPayment, actorType, synthetic, amountUnits, buyerPolicy, resourceUrl, serviceRisk, facilitatorUrl, paymentSignature, maxTimeoutSeconds, paymentIdentifier)
Payment Policy Decision (x402-paid, $0.05): deterministic allow / deny / needs_review before your agent signs an x402 payment — checks resource binding, amount vs expected price, network, payTo, facilitator, replay readiness, PII leakage, and buyer spend limits, with evidence-backed findings. Loop it over every payment; pair with assurance_attest for a signed record. Required: resourceUrl.
portfolioguard_score(payer, apiKey, channel, campaign, holdings, xPayment, actorType, synthetic, riskFreeRate, periodReturns, paymentSignature, paymentIdentifier)
PortfolioGuard (x402-paid, $0.15): deterministic portfolio risk scoring from holdings — volatility, Sharpe, max drawdown, concentration (HHI), diversification, plus per-rule findings. Required: holdings.
purchase_with_x402(slug, email, payer, apiKey, channel, campaign, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)
Purchase a one-time product via x402 (returns 402 challenge or fulfillment JSON). Call get_x402_manifest first, verify method/path/network/amount/payTo, then sign and retry with PAYMENT-SIGNATURE. Required: slug.
score_destructguard_command(cwd, repo, actor, payer, apiKey, intent, channel, command, campaign, diffStat, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)
Score a command/action with the x402-paid DestructGuard service. Call get_x402_manifest first, verify the DestructGuard price and buyer policy, then retry the 402 challenge with an x402 payment signature. Required: command.
start_checkout(slug)
Start a Stripe checkout session for a product slug Required: slug.
submit_reviewqueue_request(repo, actor, payer, apiKey, branch, reason, channel, command, campaign, diffStat, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)
Submit a command/action to the x402-paid ReviewQueue agent service. Call get_x402_manifest first, verify the ReviewQueue price and buyer policy, then retry the 402 challenge with an x402 payment signature. Required: command.
walletguard_score(payer, apiKey, labels, wallet, channel, campaign, xPayment, actorType, exposures, synthetic, transfers, sanctionsHits, fundingSources, paymentSignature, paymentIdentifier)
WalletGuard (x402-paid, $0.10): deterministic wallet AML/compliance risk scorer. From caller-provided context (sanctions, exposures, labels, fund sources) returns a 0-100 risk score, level, and evidence-backed findings. Required: wallet.
waterfall_distribute(payer, years, apiKey, channel, campaign, xPayment, actorType, synthetic, compounding, distributable, preferredRate, carryPercentage, paymentSignature, catchUpPercentage, paymentIdentifier, contributedCapital, preferredReturnAmount)
WaterfallLens (x402-paid, $0.30): deterministic LP/GP distribution waterfall (return of capital, preferred, GP catch-up, carried-interest split) with the exact split, per-tier breakdown, LP MOIC, and effective carry %. Required: contributedCapital, distributable.

Last successful function declaration observed on . Source: https://mcp.hermesplant.com/mcp. We list what the server declared; we do not call any of these functions.

Endpoint status observed on . Source: https://mcp.hermesplant.com/mcp.

Signals

These are separate measurements of different things. They are deliberately not combined into one score, because a popularity number that mixes website traffic with saves and stars cannot be checked or acted on.

Signal Value What it measures Window Observed Source
Latest published version 2.0.2 Latest version string the maintainer published to the registry. as of fetch Model Context Protocol
Registry record last updated 2026-07-28 When the registry record was last updated by its maintainer. point in time Model Context Protocol
First listed in the MCP Registry 2026-07-28 Date this server was first published to the official MCP Registry. Not a usage or quality measure. point in time Model Context Protocol
mcp tools declared 25 tools Number of functions the server itself declared when asked to list them. This is what the server offers an agent, not a measure of how well any of them work. as of probe mcp.hermesplant.com
mcp endpoint status ok The server listed 25 functions when asked. as of probe mcp.hermesplant.com

Where to get it

This record as data

Every field on this page, with its source and observation date, is in the catalog JSON. Fetch the whole kind at once instead of parsing this HTML.

GET /api/v1/entries/mcp_server.json

Sources

  1. Tools declared by the MCP server at https://mcp.hermesplant.com/mcp — mcp.hermesplant.com, observed , trust tier 4.
  2. Official MCP Registry — Model Context Protocol, observed , trust tier 1.