Free in-browser PDF e-signature tool accessible via MCP without file uploads.
Do not connect
The assessed surface is high-risk. Remediate the findings before connecting.
Scanned 7 days ago Due for re-check
A server can change after it's graded. Re-run the automated scan to refresh this report.
This grade is deterministic and reproducible: the same server surface always yields the same grade under a given algorithm version. It is a real automated assessment computed by the MCPGrade engine from what the probe actually observed — not a fabricated or opinion score. It is not a manual human pentest, so it can miss context-specific risks.
Every signal below was measured directly by the automated probe. The grade is derived only from evidence like this — nothing is assumed.
The free-sign MCP server exposes 5 tools, focused primarily on general-purpose capabilities. Its published description reads: "Free in-browser PDF e-signature tool accessible via MCP without file uploads". It communicates over Streamable HTTP using the 2026-07-28 protocol revision, and does not require authorization to connect. MCPGrade currently rates free-sign D+ — the assessed surface is high-risk and should be remediated before use. Its most notable findings include "Cross-tool shadowing" and "No authorization on a public remote server". This report is a deterministic, reproducible automated assessment: the same observed surface always yields the same grade under a given algorithm version, and it is refreshed as new scans arrive and free to read — but it is not a substitute for a manual human security review. Always re-check free-sign's advertised tools, transport security, and authorization posture before connecting an autonomous agent or sharing sensitive context with it.
Add free-sign to an MCP client using the endpoint below. Review the grade and findings above before granting an autonomous agent access.
MCP endpoint
https://free-sign.com/mcpStreamable HTTP transport. This is the MCP endpoint, not a website — paste it into your MCP client server list rather than a browser.
Captured passively during the read-only scan. Click any value to find servers that match it.
The tools this server advertises via tools/list — names, purposes, and the parameters each accepts, exactly as enumerated read-only.
Create a FreeSign envelope from a PDF SHA-256 hash. Do not send PDF bytes. The created envelope is NOT yet session-bound — the browser that opens the returned signing_url generates an ECDSA P-256 keyp
Find FreeSign receipts matching a local document SHA-256 hash.
Return the envelope record (including final_pdf_sha256, final_signature_base64url, final_payload_json), per-signer signing receipts, and OpenTimestamps anchor metadata. Evidence only, never PDF bytes.
Return the .ots proof (base64) for a given OpenTimestamps anchor on an envelope. Use the official `ots-cli` to verify offline against Bitcoin block headers. Each seal has two anchors: `kind: "byterang
Sorted worst-first. Each finding shows its severity, what it means, its OWASP MCP Top-10 mapping, and a recommended fix — the check id links to the exact methodology row that produced it.
tool: verify_audit_chain
A tool description tries to alter the model’s use of another tool.
hain.valid`.RecommendationDescriptions must describe only their own tool.
The server accepts tool enumeration (and likely invocation) with no authentication.
RecommendationRequire OAuth 2.1 authorization for any server exposing non-public tools.
tool: create_signing_envelope
The server advertises open-world / broadly-scoped capabilities.
no annotations on write-capable tool "create_signing_envelope"RecommendationScope tools to the minimum needed.
tool: get_ots_proof
The server advertises open-world / broadly-scoped capabilities.
no annotations on write-capable tool "get_ots_proof"RecommendationScope tools to the minimum needed.
AWS's official fully managed remote server that provides real-time access to comprehensive AWS documentation, API references, troubleshooting guides, and architectural guidance across multiple knowledge sources including What's New posts, Builder Center content, blog posts, and Well-Architected frameworks for building applications, managing infrastructure, and learning AWS services through natural language queries.
Search live events, conference weeks, host cities, venues, and artist tour schedules.
Live verifiable on-chain data for the $BOBAI token on BNB Chain.
Identity certification, public registry, reputation scoring, and x402 micropayments for AI agents built on Base and Solana.
Search 11M+ products across SG, SEA, and US. Agent-native catalog for AI shopping agents.
Real-time and historical market data for forex, stocks, crypto, indices, and metals via the TickDB API.
Return an envelope's append-only audit-event hash chain together with a server-computed integrity verdict: every event_hash is recomputed from its canonical material, and the prev_event_hash linkage a