← Back to search Server uses network capabilities via: urllib Server uses filesystem capabilities via: open(), os Server uses shell capabilities via: subprocess Server uses env_vars capabilities via: os.environ
io.github.CSOAI-ORG/firmware-attestation-mcp
Firmware Attestation MCP — hardware trust layer for sovereign AI. Scan firmware, check
C
73.2 / 100
Versions
1.0.0latestfirst seen Jun 30, 2026
Tools 5
scan_firmware annotations: none low
Collect read-only firmware/boot trust evidence (Secure Boot, TPM, SIP, BIOS, HPA). JSON.
check_ant_signatures annotations: none low
Match host evidence to NSA-ANT-class persistence preconditions + defense for each. Reports indicators, never a clean bill of health.
attest_firmware annotations: none low
HMAC-signed firmware attestation: evidence + indicator count, signed + timestamped. Verifiable at proofof.ai/api/verify.
operator str
gate_inference annotations: none low
Trust gate: ALLOW only if firmware indicators <= max_indicators. Use BEFORE high-stakes inference. Default 0 (block if any precondition present).
max_indicators int
list_threat_model annotations: none low
The documented NSA-ANT-class attack surface this MCP defends against.
Permissions 4
network medium filesystem low shell high env_vars low Scan Findings 30
info
Tool: scan_firmware
low
Tool 'scan_firmware' has no annotations
low
Tool 'check_ant_signatures' has no annotations
low
Tool 'attest_firmware' has no annotations
low
Tool 'gate_inference' has no annotations
low
Tool 'list_threat_model' has no annotations
info
Sandbox failed to start for behavioral verification
medium
Vulnerable dependency: mcp@1.2.0 (GHSA-3qhf-m339-9g5v)
medium
Vulnerable dependency: mcp@1.2.0 (GHSA-9h52-p55h-vw2f)
medium
Vulnerable dependency: mcp@1.2.0 (GHSA-j975-95f5-7wqh)
medium
Vulnerable dependency: mcp@1.2.0 (GHSA-jpw9-pfvf-9f58)
medium
Vulnerable dependency: mcp@1.2.0 (GHSA-vj7q-gjh5-988w)
medium
Vulnerable dependency: mcp@1.2.0 (PYSEC-2026-1616)
medium
Vulnerable dependency: mcp@1.2.0 (PYSEC-2026-1617)
medium
Vulnerable dependency: mcp@1.2.0 (PYSEC-2026-1618)
medium
Vulnerable dependency: mcp@1.2.0 (PYSEC-2026-3482)
medium
Vulnerable dependency: mcp@1.2.0 (PYSEC-2026-3483)
info
pyproject.toml metadata
info
Tool: check_ant_signatures
info
Tool: attest_firmware
info
Tool: gate_inference
info
Tool: list_threat_model
info
Required env vars (3)
info
Sandbox failed to start for output poisoning scan
medium
Permission: network access detected
low
Permission: filesystem access detected
high
Permission: shell access detected
low
Permission: env_vars access detected
info
No dependency files found for SBOM generation
medium
No build provenance detected (SLSA L0)