mcp server
Hermes Plant — Agent Commerce Assurance
Preflight, approve, and prove consequential agent actions with signed evidence and x402 tools.
Description as published by the maintainer. Source
- version 2.0.2
- active
active — Registry entry last updated 2026-07-28.
What this server can do
25 functions, named and described by the server itself. Parameter names are shown because they say more about what a function does than its name usually does.
action_safety_quick_gate(cwd, repo, actor, payer, apiKey, branch, intent, channel, command, campaign, diffStat, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)- AI agent action safety quick gate ($0.01 over x402 or free-tier quota). Deterministically scores a consequential action and returns the exact next call: proceed, request full DestructGuard evidence, or run the complete Action Safety workflow. Required: command.
action_safety_run(cwd, repo, actor, payer, apiKey, branch, intent, channel, command, campaign, diffStat, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)- Complete AI agent action safety workflow ($0.25 over x402 or free-tier quota): DestructGuard evidence, conditional ReviewQueue triage for high or critical risk, an honest decision, signed receipt, and 30-day status record. Triage does not imply human approval. Required: command.
assurance_attest(payer, apiKey, intent, policy, channel, outcome, subject, campaign, protocol, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)- Assurance Attest (x402-paid, $0.05): bind one x402 payment intent or MCP tool call to a canonical HMAC-signed record (binding hash, policy verdict, findings, optional settlement outcome). Loop it after every payment or tool call to build a tamper-evident audit trail a third party can check at the free verify endpoint. Required: protocol, subject, intent.
assurance_verify(record, integrity)- Verify a Hermes-signed assurance record for free: recomputes the canonical hash (hermes-stable-json-v1 + SHA-256) and HMAC signature server-side and reports recordHashValid / signatureValid. Use it to audit attestations produced by assurance_attest without trusting the agent that produced them. Required: record, integrity.
bond_analyze(payer, price, yield, apiKey, channel, periods, campaign, xPayment, actorType, faceValue, frequency, principal, synthetic, annualRate, couponRate, termMonths, paymentSignature, paymentIdentifier)- BondLens (x402-paid, $0.25): deterministic fixed-income and loan analytics. Bond mode solves price<->yield-to-maturity, duration, and convexity; loan mode (send principal+annualRate+termMonths) returns an amortization schedule.
cashflowlens_analyze(dcf, nav, payer, apiKey, channel, campaign, xPayment, actorType, cashflows, synthetic, discountRate, periodsPerYear, paymentSignature, paymentIdentifier)- CashflowLens (x402-paid, $0.20): deterministic NPV, IRR, XIRR, DCF valuation, MOIC/DPI/TVPI, and payback period from a cashflow series. Use for valuation and return analysis instead of letting the model estimate. Required: cashflows.
dealanalyzer_analyze(dcf, payer, apiKey, channel, returns, campaign, xPayment, actorType, synthetic, waterfall, paymentSignature, paymentIdentifier)- DealAnalyzer (x402-paid, $2.00): the flagship. Deterministic full deal underwrite in a single call — DCF valuation (EV, equity value, implied share price), fund returns (IRR/MOIC), and the LP/GP distribution waterfall, plus sensitivity. Combines what CashflowLens + WaterfallLens do, cross-checked. Required: dcf.
emailguard_validate(name, email, payer, apiKey, domain, channel, campaign, xPayment, actorType, mxPresent, synthetic, paymentSignature, paymentIdentifier)- EmailGuard (x402-paid, $0.02): deterministic email/contact quality scorer — validity, deliverability score, disposable/role/free classification, typo suggestion. Pure function, no DNS. Required: email.
emailguard_validate_batch(payer, apiKey, channel, records, campaign, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)- Validate up to 20 emails in one tool call — one deterministic verdict per record (validity, deliverability score, disposable/role/free classification, typo suggestion, canonical normalization). Pass your free apiKey (250 records/mo, no wallet — https://hermesplant.com/pricing) and each record serves from quota. Results preserve input order; the batch stops at the first 402 (quota exhausted) and marks the rest skipped so you can upgrade and resume. Required: records.
evidence_verify(payer, apiKey, policy, channel, subject, campaign, xPayment, actorType, artifacts, synthetic, paymentSignature, paymentIdentifier)- Evidence Verification (x402-paid, $0.05): verify an agent-commerce evidence bundle before trusting a paid result — x402 challenge/receipt/policy-decision/service-response artifacts, endpoint and price binding, freshness, hashes, synthetic-proof leakage. Returns verified / needs_review / rejected / insufficient_evidence with per-rule evidence. Required: artifacts.
freetier_status(apiKey)- Check a free API key's remaining monthly quota, reset date, and upgrade path. Pass your hp_free_ key as apiKey. No key yet? POST an email to https://hermesplant.com/api/keys/free (250 calls/mo, no wallet). Required: apiKey.
get_checkout_policies- Return legal policy URLs required before checkout
get_product(slug)- Get a single product by slug Required: slug.
get_x402_manifest- Return the live x402 manifest with paid endpoint prices, Bazaar metadata, and buyer policy checks
list_products- List active products from the Hermes Plant catalog
mcp_risk_score(payer, tools, apiKey, server, channel, campaign, xPayment, actorType, authModel, synthetic, priorTools, paymentSignature, paymentIdentifier)- MCP Server Risk Analyzer (x402-paid, $0.05): score an MCP server manifest for security risk before install — destructive tools, over-broad scopes, weak auth, egress — with per-tool findings and fixes. Required: tools.
options_price(spot, payer, apiKey, strike, channel, campaign, xPayment, actorType, synthetic, optionType, volatility, riskFreeRate, timeToExpiry, dividendYield, paymentSignature, paymentIdentifier)- OptionLens (x402-paid, $0.30): deterministic Black-Scholes price and full Greeks (delta, gamma, vega, theta, rho) for European calls/puts, with dividend yield, intrinsic/time value, and moneyness. Required: spot, strike, timeToExpiry, volatility.
payment_policy_decide(tags, asset, payTo, payer, apiKey, method, scheme, channel, network, campaign, xPayment, actorType, synthetic, amountUnits, buyerPolicy, resourceUrl, serviceRisk, facilitatorUrl, paymentSignature, maxTimeoutSeconds, paymentIdentifier)- Payment Policy Decision (x402-paid, $0.05): deterministic allow / deny / needs_review before your agent signs an x402 payment — checks resource binding, amount vs expected price, network, payTo, facilitator, replay readiness, PII leakage, and buyer spend limits, with evidence-backed findings. Loop it over every payment; pair with assurance_attest for a signed record. Required: resourceUrl.
portfolioguard_score(payer, apiKey, channel, campaign, holdings, xPayment, actorType, synthetic, riskFreeRate, periodReturns, paymentSignature, paymentIdentifier)- PortfolioGuard (x402-paid, $0.15): deterministic portfolio risk scoring from holdings — volatility, Sharpe, max drawdown, concentration (HHI), diversification, plus per-rule findings. Required: holdings.
purchase_with_x402(slug, email, payer, apiKey, channel, campaign, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)- Purchase a one-time product via x402 (returns 402 challenge or fulfillment JSON). Call get_x402_manifest first, verify method/path/network/amount/payTo, then sign and retry with PAYMENT-SIGNATURE. Required: slug.
score_destructguard_command(cwd, repo, actor, payer, apiKey, intent, channel, command, campaign, diffStat, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)- Score a command/action with the x402-paid DestructGuard service. Call get_x402_manifest first, verify the DestructGuard price and buyer policy, then retry the 402 challenge with an x402 payment signature. Required: command.
start_checkout(slug)- Start a Stripe checkout session for a product slug Required: slug.
submit_reviewqueue_request(repo, actor, payer, apiKey, branch, reason, channel, command, campaign, diffStat, xPayment, actorType, synthetic, paymentSignature, paymentIdentifier)- Submit a command/action to the x402-paid ReviewQueue agent service. Call get_x402_manifest first, verify the ReviewQueue price and buyer policy, then retry the 402 challenge with an x402 payment signature. Required: command.
walletguard_score(payer, apiKey, labels, wallet, channel, campaign, xPayment, actorType, exposures, synthetic, transfers, sanctionsHits, fundingSources, paymentSignature, paymentIdentifier)- WalletGuard (x402-paid, $0.10): deterministic wallet AML/compliance risk scorer. From caller-provided context (sanctions, exposures, labels, fund sources) returns a 0-100 risk score, level, and evidence-backed findings. Required: wallet.
waterfall_distribute(payer, years, apiKey, channel, campaign, xPayment, actorType, synthetic, compounding, distributable, preferredRate, carryPercentage, paymentSignature, catchUpPercentage, paymentIdentifier, contributedCapital, preferredReturnAmount)- WaterfallLens (x402-paid, $0.30): deterministic LP/GP distribution waterfall (return of capital, preferred, GP catch-up, carried-interest split) with the exact split, per-tier breakdown, LP MOIC, and effective carry %. Required: contributedCapital, distributable.
Last successful function declaration observed on . Source: https://mcp.hermesplant.com/mcp. We list what the server declared; we do not call any of these functions.
Endpoint status observed on . Source: https://mcp.hermesplant.com/mcp.
Signals
These are separate measurements of different things. They are deliberately not combined into one score, because a popularity number that mixes website traffic with saves and stars cannot be checked or acted on.
| Signal | Value | What it measures | Window | Observed | Source |
|---|---|---|---|---|---|
| Latest published version | 2.0.2 | Latest version string the maintainer published to the registry. | as of fetch | Model Context Protocol | |
| Registry record last updated | 2026-07-28 | When the registry record was last updated by its maintainer. | point in time | Model Context Protocol | |
| First listed in the MCP Registry | 2026-07-28 | Date this server was first published to the official MCP Registry. Not a usage or quality measure. | point in time | Model Context Protocol | |
| mcp tools declared | 25 tools | Number of functions the server itself declared when asked to list them. This is what the server offers an agent, not a measure of how well any of them work. | as of probe | mcp.hermesplant.com | |
| mcp endpoint status | ok | The server listed 25 functions when asked. | as of probe | mcp.hermesplant.com |
Where to get it
This record as data
Every field on this page, with its source and observation date, is in the catalog JSON. Fetch the whole kind at once instead of parsing this HTML.
GET /api/v1/entries/mcp_server.json