CrawlCheck
Server Details
Verification layer for the agentic web: a signed answer about any site before an agent acts.
- Status
- Healthy
- Last Tested
- Transport
- Streamable HTTP · MCP 2025-11-25
- URL
- Repository
- emmanuelorta/crawlcheck-core
- GitHub Stars
- 0
TDQS
Score is being calculated.
Available Tools
23 toolscorpus_stateRead-onlyIdempotentInspect
Coverage of CrawlCheck's public dataset: how many distinct domains have been measured and how they split by platform, rendering, size, language and kind, with the strata that are still under-sampled.
| Name | Required | Description | Default |
|---|---|---|---|
No parameters | |||
crawler_pathRead-onlyIdempotentInspect
Where each crawler's path into a domain dies, as an observed data flow: edge decision, robots.txt as a file, robots.txt rules, then the page, JSON-LD, sitemap, llms.txt and entitymap.json it reached. Give agent (e.g. ClaudeBot, GPTBot, googlebot) for one identity's path and a one-line answer; omit it for every identity plus the stores and breaks. Uses the latest record on file, or scans first when there is none (fresh=true forces a scan). The answer-engine output is drawn but never measured.
| Name | Required | Description | Default |
|---|---|---|---|
| agent | No | Identity id or label, e.g. claudebot, GPTBot, Googlebot | |
| fresh | No | Scan now instead of using the record on file | |
| domain | Yes |
draft_llmsRead-onlyIdempotentInspect
Draft an llms.txt from the domain's own homepage and up to 25 declared pages, using their titles and descriptions. A draft for the owner to cut down, not a publication.
| Name | Required | Description | Default |
|---|---|---|---|
| domain | Yes |
explain_findingRead-onlyIdempotentInspect
Why CrawlCheck decided a finding: the rule and its revision, the exact fetches it compared (identity, status, bytes, sha256), when the condition held on the site, and a Merkle proof that the decision is inside the signed manifest. Give id (a d1: decision or f1: finding id from a report) or domain for its top finding. Other findings, and lookups by code, need a licence for that domain (send it in x-crawlcheck-key).
| Name | Required | Description | Default |
|---|---|---|---|
| id | No | d1: decision id, f1: finding id, or report id | |
| code | No | Finding code (licence only) | |
| path | No | ||
| domain | No | Bare domain; alone it explains the top finding |
fix_entitymapRead-onlyIdempotentInspect
A starter entitymap.json built from the domain's latest scan record: name, phone, coordinates and declared service areas as entities with SERVES relations. Fields the page never stated are marked TODO, never guessed. Needs a prior scan.
| Name | Required | Description | Default |
|---|---|---|---|
| domain | Yes |
fix_machine_chainRead-onlyIdempotentInspect
A fix plan for MACHINE_CHAIN_HEAVY: the files a crawler reads before the page and the 404s absent agent files return, then measured reductions (llms.txt to an index, a sitemap index, robots.txt comments and duplicate groups, minified JSON, short 404s) with the chain size after each and the step at which the detector stops firing.
| Name | Required | Description | Default |
|---|---|---|---|
| id | No | Report id | |
| domain | No | Uses the latest scan on file |
fix_mostly_codeRead-onlyIdempotentInspect
A fix plan for PAGE_IS_MOSTLY_CODE: the homepage's measured bytes by category, the largest blocks with what to do with each, ordered steps with the text ratio after each, and the step at which the detector would stop firing - or, when moving code cannot clear it, how much markup to cut or text to add. Give domain (fetched now) or id (a stored scan).
| Name | Required | Description | Default |
|---|---|---|---|
| id | No | Report id: plan from the stored scan instead of fetching | |
| domain | No |
fix_robotsRead-onlyIdempotentInspect
The domain's served robots.txt, corrected: * group rules copied into named groups that lacked them (shadowing), a Sitemap line added when missing, a minimal replacement when the served file was HTML. Every change is listed at the top; nothing else is touched.
| Name | Required | Description | Default |
|---|---|---|---|
| domain | Yes |
fix_stale_cacheRead-onlyIdempotentInspect
A fix plan for STALE_CACHE_SERVED: the homepage fetched now, its Age, the cache layers that name themselves in the headers in purge order (innermost first), the HTML lifetime each response declares, a fresh-read comparison, and whether a purge clears the finding and keeps it cleared.
| Name | Required | Description | Default |
|---|---|---|---|
| id | No | Report id; the page is still fetched now, because cache state is live | |
| domain | No |
list_verified_capabilitiesRead-onlyIdempotentInspect
What a domain declares agents can do (OpenAPI operations, MCP tools, A2A skills, API catalog entries), each classed by safety (read_only_public up to financial), and which ones CrawlCheck actually called and confirmed - plus every mismatch between declaration and behaviour. Only read-only public actions are ever called; everything else says why it was not. From the latest scan on file.
| Name | Required | Description | Default |
|---|---|---|---|
| domain | Yes | ||
| verified_only | No | Return only the capabilities that were confirmed |
machine_recordRead-onlyIdempotentInspect
The unified machine record for one observation: subject, grade, findings (the top one in full without a licence), capabilities with verification, and the evidence roots, manifest and verifier links that let anyone check it offline. Give id (report, d1:, f1: or manifest sha256) or domain for the latest.
| Name | Required | Description | Default |
|---|---|---|---|
| id | No | ||
| domain | No |
mcp_serversRead-onlyIdempotentInspect
Which remote MCP servers the official MCP Registry lists on a domain, and what each endpoint actually answered when CrawlCheck sent the MCP handshake (initialized, auth_required, unreachable, tool count, tool-list drift). Use before selecting an MCP tool from that domain.
| Name | Required | Description | Default |
|---|---|---|---|
| domain | Yes | Bare domain or host, e.g. example.com |
preflightRead-onlyIdempotentInspect
Call BEFORE reading, citing, connecting to or transacting with a domain. Returns a signed decision: allow, warn, require_confirmation, block or unsupported, with every step that led there and the resolve answer it was made from. Pass your crawler token as agent so robots.txt is checked for you. A policy can only make the decision stricter. Do not proceed on block; ask the user on require_confirmation.
| Name | Required | Description | Default |
|---|---|---|---|
| agent | No | Your crawler user-agent token, e.g. GPTBot | |
| action | No | What you are about to do (default read) | |
| domain | Yes | Bare domain, e.g. example.com | |
| policy | No | max_age_hours, on_warn (warn|require_confirmation|block), require_entity, human_approval[], allow[], deny[] | |
| template | No | safe_citation, safe_data_retrieval, safe_api_connect, safe_mcp_tool, safe_commerce, safe_oauth or support_escalation |
public_countsRead-onlyIdempotentInspect
The figures CrawlCheck quotes about itself, read from the source: sites_measured, domains_in_corpus, crawler_visits (a rolling window), sections, sections_scored, findings_published, guides_published, with an at timestamp.
| Name | Required | Description | Default |
|---|---|---|---|
No parameters | |||
registry_lookupRead-onlyIdempotentInspect
Whether a domain is in CrawlCheck's registry and what it serves: llms.txt, agents.md, a media kit at /.well-known/media-kit.json, a reciprocity-tested entity graph, an AI access policy that names crawlers, and agent-callable surfaces. With no domain, returns the shelf counts across every measured site. A row exists because a fetch produced it; nothing here is self-reported and no payment moves a shelf.
| Name | Required | Description | Default |
|---|---|---|---|
| shelf | No | Filter the list to one shelf: llms, agents, mediakit, entity, aipolicy, agentapi | |
| domain | No | A bare domain. Omit for the corpus-wide shelf counts. |
resolve_domainRead-onlyIdempotentInspect
Call before fetching from, citing or acting on a domain. Returns one signed answer: crawler policy as declared (robots.txt per crawler), what each crawler identity was actually served, machine files, declared capabilities with their safety/policy class and whether any was verified, entity reciprocity, and open findings. Each section is declared, observed or not_measured with its time; there is no overall score. An unknown domain returns not_measured (never a guess) and is queued for measurement.
| Name | Required | Description | Default |
|---|---|---|---|
| domain | Yes | Bare domain, e.g. example.com |
resolve_robotsRead-onlyIdempotentInspect
Resolve every named answer engine, search index and training crawler against a domain's robots.txt the way a crawler does: most-specific group only, longest match, allow wins a tie. Shows when a Disallow under * does not apply to an agent with its own group.
| Name | Required | Description | Default |
|---|---|---|---|
| path | No | Path to test, default / | |
| domain | Yes |
scan_domainInspect
Scan a public domain as several crawler identities and return the graded record: grade, AI-visibility score, per-section scores, findings with evidence, and whether the origin refused CrawlCheck. One scan takes 5-15 seconds.
| Name | Required | Description | Default |
|---|---|---|---|
| domain | Yes | A bare domain such as example.com, or a full URL |
telemetryRead-onlyIdempotentInspect
Verified-crawler traffic observed at crawlcheck.io itself: which named agents arrived, how many claims were confirmed against operator ranges, how many were forged.
| Name | Required | Description | Default |
|---|---|---|---|
No parameters | |||
verify_crawler_logRead-onlyIdempotentInspect
Given raw web-server access-log lines, decide for each line that names a crawler (GPTBot, ClaudeBot, Googlebot, PerplexityBot...) whether the source IP falls inside that operator's published ranges. Returns verified, spoofed, or unverifiable when the operator publishes no ranges.
| Name | Required | Description | Default |
|---|---|---|---|
| lines | Yes | Up to 200 raw log lines, newline separated |
video_channelRead-onlyIdempotentInspect
Every upload on a YouTube channel, read 50 at a time, sorted by views. The upload list is free; the per-check tally needs a Watch licence and is not offered here.
| Name | Required | Description | Default |
|---|---|---|---|
| id | No | Channel id, if no handle | |
| handle | No | @channel handle |
video_checkRead-onlyIdempotentInspect
One YouTube video against the video anchor model: metadata, chapters, captions and storyboard where observed, twelve checks each naming what it reads.
| Name | Required | Description | Default |
|---|---|---|---|
| v | Yes | Video id or URL | |
| fresh | No | Bypass the six-hour cache |
video_siteRead-onlyIdempotentInspect
The site half of video: homepage plus up to 60 sitemap pages read for YouTube embeds, facades and page-builder widgets, VideoObject nodes and their required properties, and - with a handle - how many of the channel's videos the site carries.
| Name | Required | Description | Default |
|---|---|---|---|
| domain | Yes | ||
| handle | No |
Tool Schema Changelog
Recent tool additions, removals, and schema changes observed during successful MCP inspections.
23 tool updates
- First observed
corpus_state - First observed
crawler_path - First observed
draft_llms - First observed
explain_finding - First observed
fix_entitymap - First observed
fix_machine_chain - First observed
fix_mostly_code - First observed
fix_robots - First observed
fix_stale_cache - First observed
list_verified_capabilities - First observed
machine_record - First observed
mcp_servers - First observed
preflight - First observed
public_counts - First observed
registry_lookup - First observed
resolve_domain - First observed
resolve_robots - First observed
scan_domain - First observed
telemetry - First observed
verify_crawler_log - First observed
video_channel - First observed
video_check - First observed
video_site
Related MCP Connectors
Independent, trusted, and verified advisories and routing for agentic workflows on the web.
Attestation infrastructure for the agentic economy: signed, independently verifiable verdicts.
Evidence-backed x402 web verification for AI agents, with auditable decisions for every condition.
Did it really happen? Independent signed receipts for AI agents: page, domain, email, heartbeat.
Related MCP Servers
- AlicenseAqualityBmaintenanceEnables production-grade answer verification for LLM agents by independently re-checking answers with a configurable verifier model, enforcing confidence policies, and producing Ed25519-signed, auditable verification results with optional web search and knowledge-base evidence.3MIT
- AlicenseNot gradedqualityCmaintenanceEnables AI agents to obtain independent, Ed25519-signed receipts confirming real-world facts: whether a page is online, a domain is legitimate, an email address is deliverable, a heartbeat was declared, or a scheduled task actually ran. Each response includes a verifiable cryptographic receipt, so agents can prove to their users that an asserted outcome was observed by a neutral third party rather than self-attested.MIT
- AlicenseNot gradedqualityBmaintenanceEnables AI agents to check trustworthiness before recommending URLs, products, or organizations, with fail-closed pass/fail verdicts and attested-only recommendations.MIT
- FlicenseNot gradedqualityCmaintenanceProvides AI agents with independent, advisory reviews before irreversible actions, returning recomputable, Bitcoin-anchored signed proofs that anyone can verify for free via a public verdict ledger.-
Glama MCP Gateway
Add one secure layer between your agents and this server.