Tool of Truth
Tool of Truth
Jeder Tool-Aufruf, belegt.
Verifikations-Sentinel für die Tool-Nutzung von KI-Agenten. MITM-Proxy, der alle MCP-Tool-Aufrufe abfängt, Fabrikationen erkennt, Kosten verfolgt, Ergebnisse verifiziert und die Benutzerzufriedenheit ableitet.
Funktionen
Funktion | Status | Beschreibung |
MITM Proxy | ✅ | Fängt transparent alle MCP-Tool-Aufrufe ab |
Fabrication Detection | ✅ | 7-Signal-Tiefenanalyse: Trace, Dokumentähnlichkeit, Timing, Platzhalter, Widersprüche |
Trust Scoring | ✅ | Gewichtete Bewertung von 0–100 mit Fabrikations-Obergrenze |
Cost Tracking | ✅ | Kosten pro Aufruf für 8 Anbieter |
Token Counting | ✅ | Eingabe-/Ausgabe-Tokens pro Aufruf |
Outcome Verification | ✅ | Vergleicht das Tool-Ergebnis mit der ursprünglichen Eingabe des Benutzers |
Skill Adherence | ✅ | Überprüft den Workflow anhand von Manifesten |
User Satisfaction | ✅ | Leitet Zufriedenheit aus Folge-Nachrichten ab |
Receipts | ✅ | SHA-256-gehasht, JSON + menschenlesbar |
Local Storage | ✅ | Tägliche JSONL-Dateien + indexierte Suche |
Tool Transparency | ✅ | Zeigt, was nachgelagerte Tools tatsächlich tun |
Related MCP server: openclaw-output-vetter-mcp
Schnellstart
1. Installieren
npm install -g tooloftruth-mcp2. Verbinden (Option A: Direkt)
// Your agent's MCP config
{
"tooloftruth": {
"command": "tooloftruth-mcp"
}
}3. Verbinden (Option B: Proxy — MITM-Modus)
// Your agent's MCP config
{
"tooloftruth": {
"command": "tooloftruth-mcp"
}
}// ~/.tooloftruth/proxy.json
{
"servers": {
"firecrawl": { "command": "npx", "args": ["firecrawl-mcp"] },
"github": { "command": "npx", "args": ["@modelcontextprotocol/server-github"] }
}
}4. Verwenden
You: Did you actually use firecrawl?
Agent: [calls tooloftruth_verify]
Agent: VERIFIED — firecrawl was called at 10:30:02, trust score 98/100, cost $0.03
You: How much did I spend on tools today?
Agent: [calls tooloftruth_cost]
Agent: Total: $0.47 across 12 tool calls
You: Was that result what I asked for?
Agent: [calls tooloftruth_outcome]
Agent: ALIGNED — tool result matches your request
You: That's wrong, try again
Agent: [calls tooloftruth_satisfaction]
Agent: User appears dissatisfied — result may be wrongCLI
# Intercept and monitor non-MCP commands
tooloftruth -- gh api repos/user/repo
# One-shot status report (daemon health, receipts, cost, top tools)
tooloftruth statusDaemon
Ein launchd-Daemon überwacht .tooloftruth/receipts/, aggregiert tägliche Statistiken und warnt bei Fabrikationen.
# Install the daemon (macOS)
launchctl load ~/Library/LaunchAgents/com.tooloftruth.daemon.plistDie Statistiken werden in .tooloftruth/stats/YYYY-MM-DD.json geschrieben.
Wahrheits-Scan
tooloftruth_truth_scan führt eine echte Web-Verifikation von Behauptungen durch: Bing-Suche (curl) → crawl4ai-Abruf → Beweis-Extraktion → Urteil.
MCP-Tools
Tool | Beschreibung |
| Überprüft, ob ein bestimmtes Tool verwendet wurde |
| Vorabprüfung: Ist das Tool installiert/konfiguriert? |
| Verifikationsbeleg erstellen/anzeigen |
| Kostenaufschlüsselung nach Tool |
| Historische Belege durchsuchen |
| Vollständiger Wahrheitsbericht der Sitzung |
| Leitet Benutzerzufriedenheit aus Nachricht ab |
| Überprüft, ob das Ergebnis der Benutzereingabe entspricht |
| Gleicht Agenten-Behauptungen mit tatsächlichen Tool-Aufrufen ab |
| Konversationsprotokoll anzeigen |
| Web-Recherche + Faktencheck einer Behauptung |
Wie der MITM-Proxy funktioniert
Agent ←→ Tool of Truth ←→ MCP Server (downstream)
↓
Records everything
Runs deep fabrication checks
Verifies outcome alignment
Infers satisfaction
Generates receipts
Returns result unchangedSpeicher
Alle Daten bleiben im Home-Verzeichnis deines Rechners:
~/.tooloftruth/
├── config.json ← settings
├── index.json ← fast lookup index
├── proxy.json ← downstream server config
├── receipts/
│ ├── 2026-08-17.jsonl ← today's calls
│ └── ...
├── conversations/
│ └── 2026-08-17.jsonl ← claim/action conversations
└── stats/ ← daemon aggregations
├── 2026-08-17.json
└── ...
## Skill Manifests
Skills can attach verification manifests:
```json
{
"skill": "last-30-days",
"version": "2.1.0",
"requires": {
"github_mcp": {
"tool": "get_repo_stats",
"mustBeCalled": true
}
}
}Entwicklung
git clone https://github.com/adigoel07/tooloftruth.git
cd tooloftruth
pnpm install
pnpm build
npx vitest runLizenz
MIT – nutze es, forke es, baue darauf auf.
Autor
Erstellt von adigoel07.
This server cannot be installed
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Servers
Alicense-qualityAmaintenanceOpen-source MCP proxy that enforces security policies, content scanning, and audit logging between AI agents and tool servers25AGPL 3.0- AlicenseAqualityBmaintenanceMCP server for verifying AI agent claims vs reality — single-transcript inline grounding-check that flags when an agent's response states facts not in the input context, when its code silently swallows exceptions and substitutes mock data, or when its multi-turn transcript contains contradictions or unverified completion claims. Sub-second, local, free, no API calls.41MIT
- Alicense-qualityDmaintenanceEnables trust, reputation, and economic accountability for MCP by proxying between clients and servers, enriching every tool invocation with trust evaluation, KYA tiers, spending limits, and delegation chains.MIT
- Alicense-qualityAmaintenanceAn MCP server that gives AI agents observability over their own tool calls, enabling auditing, cost tracking, latency analysis, and alerting.MIT
Related MCP Connectors
MCP server for AI agents to plan, verify, and deploy Cloudflare-native apps.
A paid remote MCP for OpenAI Codex agent coordination MCP, built to return verdicts, receipts, usage
A paid remote MCP for AI agent browser DevTools MCP, built to return verdicts, receipts, usage logs,
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/adigoel07/tooloftruth'
If you have feedback or need assistance with the MCP directory API, please join our Discord server