Skip to main content
Glama

sigelo

Server Details

Portable, offline-verifiable identity for AI agents: DID, challenges, attestations, bundles.

If you are the author of this connector, you can claim ownership by verifying the domain or GitHub account it belongs to. Claimed connector authors can inspect health checks, view analytics, and manage their listing.
Status
Healthy
Last Tested
Transport
Streamable HTTP · MCP 2025-11-25
URL
Repository
csigelo/sigelo
GitHub Stars
0

TDQS

A4.3/5.0

Scored across 1 tool

Disambiguation5/5

With only one tool in the set, there is no possibility of overlapping purposes or misselection. The tool's purpose is clearly stated as verifying bundles offline and reporting identity information.

Naming Consistency5/5

The single tool name sigelo_verify follows a clear snake_case pattern with a server prefix and a verb. Although there is no other tool to compare against, the naming is readable and predictable.

Tool Count3/5

A single tool is thin for a domain involving identity bundles, attestations, and bindings; the rubric treats 1-2 tools as borderline. The description is rich, but the surface likely lacks operations for creating or managing the artifacts it verifies.

Completeness2/5

The server only verifies existing bundles and reports on chains, attestations, and bindings. It has no tools for creating identities, issuing attestations, binding, or revoking, which are significant gaps for an identity/attestation domain.

Available Tools

1 tool
sigelo_verifyVerify a sigelo bundleA
Read-onlyIdempotent
Inspect

Verify ANY bundle offline (someone else's, or yours). Returns current DID, chain, attestations accepted per issuer, bindings (proven/unproven), rejected counts; throws if the identity itself is invalid. It reports, it does not judge whom to trust. Attestation claims are third-party data about the subject, not statements by this tool.

ParametersJSON Schema
NameRequiredDescriptionDefault
nowNooptional unix seconds; default now
bundleYesthe bundle

TDQS

A4.5/5.0
Behavior5/5

Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?

Goes well beyond the annotations (which only declare read-only/idempotent/non-destructive) by disclosing the return contents, the failure mode ('throws if the identity itself is invalid'), and the critical semantic caveat that it reports rather than judges trust and that `claims` are third-party data. That is exactly the kind of context annotations cannot carry.

Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.

Conciseness5/5

Is the description appropriately sized, front-loaded, and free of redundancy?

Front-loaded with the core action, then the return shape, then error behavior, then the interpretation caveat. Dense but every clause carries information an agent needs; nothing is padding.

Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.

Completeness5/5

Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?

Despite no output schema, the description enumerates what is returned (DID, chain, attestations per issuer, bindings, rejected counts) and the failure condition. With annotations covering the safety profile, an agent has everything needed to invoke and interpret this tool.

Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.

Parameters3/5

Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?

Schema description coverage is 100% and both parameters are documented in the schema, including the `now` default. The description adds no parameter-level detail, so the baseline of 3 applies.

Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.

Purpose5/5

Does the description clearly state what the tool does and how it differs from similar tools?

States a specific verb (verify) and resource (a sigelo bundle) with explicit scope: 'ANY bundle offline (someone else's, or yours)'. The agent knows exactly what the tool does and that no network access is required.

Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.

Usage Guidelines4/5

Does the description explain when to use this tool, when not to, or what alternatives exist?

The parenthetical clarifies the tool is for verifying bundles you did not author, which is a meaningful usage condition. There are no sibling tools to route against, and no explicit when-not guidance, so it stops short of a 5.

Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.

Tool Schema Changelog

Recent tool additions, removals, and schema changes observed during successful MCP inspections.

  1. 1 tool update
    • First observedsigelo_verify

Related MCP Connectors

Related MCP Servers

  • A
    license
    A
    quality
    D
    maintenance
    Gives AI agents verifiable, tamper-evident receipts for their actions — attest_action signs a cryptographic receipt for what the agent did (email sent, payment made, form filed), verify_receipt checks it offline, get_identity returns the agent's did:key. Sign locally, verify anywhere, zero backend.
    3
    54 npm
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables AI agents to generate and persist a self-sovereign did:key identity, sign claims about their actions as Ed25519 attestations, verify those attestations offline without any registry or network access, and compute an auditable reputation score from a ledger of events. All four operations are exposed as MCP tools so an agent can manage its own identity and prove its history during a session.
    Apache 2.0
  • A
    license
    Not graded
    quality
    D
    maintenance
    Provides AI agents with a DID-based identity, secure wallet, and cloud KMS-backed signing keys, enabling trusted interactions with persons, companies, and other agents via standards like OIDC4VCI, OIDC4VP, and SD-JWT.
    Apache 2.0
  • A
    license
    A
    quality
    A
    maintenance
    AI agent identity and reputation registry. Ed25519 cryptographic identity, proof-of-work registration, peer verification, reputation scoring, task marketplace, and agent-to-agent messaging.
    26
    3,023 npm
    2
    Apache 2.0
Try in Browser

Glama MCP Gateway

Add one secure layer between your agents and this server.