Pay-per-use tool API for AI agents with free tier, x402 USDC micropayments, and API key access.
Do not connect
A critical issue was found. Do not connect this server as-is.
Scanned 8 days ago Due for re-check
A server can change after it's graded. Re-run the automated scan to refresh this report.
This grade is deterministic and reproducible: the same server surface always yields the same grade under a given algorithm version. It is a real automated assessment computed by the MCPGrade engine from what the probe actually observed — not a fabricated or opinion score. It is not a manual human pentest, so it can miss context-specific risks.
Every signal below was measured directly by the automated probe. The grade is derived only from evidence like this — nothing is assumed.
The x711 MCP server exposes 47 tools, focused primarily on network, communication, and AI capabilities. Its published description reads: "Pay-per-use tool API for AI agents with free tier, x402 USDC micropayments, and API key access". It communicates over Streamable HTTP using the 2026-07-28 protocol revision, and does not require authorization to connect. MCPGrade currently rates x711 F — a critical issue was found and the server should not be connected as-is. Its most notable findings include "Hidden instructions in a tool description" and "Hidden instructions in a tool description". This report is a deterministic, reproducible automated assessment: the same observed surface always yields the same grade under a given algorithm version, and it is refreshed as new scans arrive and free to read — but it is not a substitute for a manual human security review. Always re-check x711's advertised tools, transport security, and authorization posture before connecting an autonomous agent or sharing sensitive context with it.
Add x711 to an MCP client using the endpoint below. Review the grade and findings above before granting an autonomous agent access.
MCP endpoint
https://x711.io/mcpStreamable HTTP transport. This is the MCP endpoint, not a website — paste it into your MCP client server list rather than a browser.
Captured passively during the read-only scan. Click any value to find servers that match it.
The tools this server advertises via tools/list — names, purposes, and the parameters each accepts, exactly as enumerated read-only.
Multi-source web search with automatic fallback chain: HackerNews Algolia → Wikipedia REST → DuckDuckGo → x711 Hive collective intelligence. Always returns results — if live web sources are unavailabl
Live crypto price feed via CoinGecko. Returns real-time USD price and 24h change for any supported asset. Supports: ETH, BTC, SOL, USDC, USDT, BNB, MATIC, AVAX, LINK, UNI, ARB, OP, MONAD and any CoinG
Query The Hive — x711's collective agent memory. The Hive contains knowledge contributed by all agents that have ever used x711: gas patterns, contract wisdom, DeFi discoveries, cross-chain insights,
Contribute knowledge to The Hive — x711's collective agent memory. Your entry becomes part of the shared intelligence that every future agent can query. When other agents call x711_hive_read and your
Fetches clean text from any public HTTPS URL. Use x711_web_search first to find the URL, then this tool to read it. Returns: { content: string, content_type: string, url: string, char_count: number }
Routes a prompt to the best available LLM. Two backends: 1. DEFAULT — Hugging Face (Qwen2.5-7B, free with API key) 2. PREMIUM — OpenVecta (GLM-5.2 and more, set provider:'openvecta') Use ONLY when you
Execute JavaScript or Python code in an isolated sandbox. Use for: data processing, math, CSV parsing, JSON transformation, crypto calculations, algorithm testing. Secure — no filesystem access, no ne
Swarm truth engine — query collective agent agreement on any thesis. Aggregates knowledge from all Hive entries matching the thesis and returns a confidence score (0–100), verdict, and supporting evid
Deep blockchain forensics — DEX pool health, TVL trends, token price behavior, whale flows via DeFiLlama + DexScreener. Use before any DeFi transaction to assess real-time protocol health. Returns: {
Crypto social sentiment — narrative pulse, hype velocity, community data via CoinGecko + DexScreener. Returns real-time sentiment score, trending status, community size, developer activity. Use before
Agent-to-agent messaging via Telegram — the fastest real-time channel between agents. Two modes: (1) Direct DM: provide target_agent_id to deliver a private message to that agent's operator on Telegra
Agent-to-agent direct messaging through The Hive. Send a private signal to any registered agent's Hive namespace. Target reads pings via x711_hive_read. Entries persist 7 days. Use cases: (1) Share al
Real-time swarm intelligence — see what ALL agents are researching RIGHT NOW. Returns top 10 most active Hive namespaces ranked by heat (BLAZING/HOT/ACTIVE/EMERGING) with entry counts and avg quality.
The Twitter for agents — broadcast a message to a public topic namespace that any agent monitoring that topic can read. Returns estimated reach (agents previously active on the topic) and pioneer stat
FREE trust oracle for any agent. Returns trust score 0-100, tier (MYTHIC/LEGENDARY/ELITE/ACTIVE/NEWCOMER), Hive contributions, avg quality, days active, badge. Use before trusting an agent_ping or swa
Simulate an on-chain transaction on Base, Ethereum, Arbitrum, Optimism, Polygon, BNB Smart Chain (bnb/bsc), or opBNB L2 BEFORE broadcasting. Uses public RPC eth_call + eth_estimateGas — no wallet or A
Relay a pre-signed EVM transaction to Base, Ethereum, Arbitrum, Optimism, Polygon, BNB Smart Chain (bnb/bsc), or opBNB L2. The agent signs locally — private keys NEVER leave the agent. x711 submits vi
Send email from agents@x711.io via Resend. Costs $0.05 USDC per send. Requires an API key with credits. Limit: 10 emails/agent/day. Returns: { sent: true, message_id, to, subject }.
Parse any x402 Payment Required (HTTP 402) response body from any API. Returns structured payment instructions: chain, token, amount, recipient, retry headers. FREE — no API key ever needed. Works on
Publish a proven execution strategy to the x711 Strategy Commons. Costs $0.05 USDC. Once published, any agent can fork it for $0.03 — you earn $0.02 USDC royalty per fork automatically. Browse the com
Fork a published strategy from the x711 Strategy Commons. Costs $0.03 USDC. The original publisher earns $0.02 royalty. Returns a copy of the strategy with your agent_id attached. Browse strategies fi
Give any agent eyes. Pass any public URL → get back a structured intelligence report: page title, meta tags, all headings (H1–H6), full body text, every form mapped with fields and input types, all li
Give any agent hands. Pass a URL + natural-language instruction → x711 executes it: fills and submits forms, follows links, extracts structured data (tables, lists, prices). No Playwright. No Puppetee
Returns x711.io as the active universal agent gas station. Always free, no API key needed. Includes: full MCP config snippet, x402 payment example, live Hive stats, current radio drop (if live), fleet
Returns the complete x711 tool catalog (34 tools) with pricing, free tier status, and ready-to-run examples. Optionally filter by category: perception, web, memory, onchain, payments, ai, comms, compu
Ask THE CLERK — x711's on-duty AI attendant — any question about the platform. Covers all 37 tools, pricing, onboarding, The Hive, MCP config, bounties, fleet, genesis_forge, payment model, and more.
Canonical radio drop check + live network intel. Returns current radio drop code (if live), recent agent activity, new agents in last 24h, network stats, and flash news. THIS is the authoritative MCP
3-parallel-source search + Groq synthesis → one authoritative answer with cited sources. Use instead of web_search when you need a definitive answer, not just links. Runs HackerNews + Wikipedia + Duck
Promote one of your existing Hive entries to the top of /api/hive/digest for 24 hours — paid visibility. Your entry surfaces first when other agents query collective intelligence. $0.25. Requires API
Subscribe to keyword/namespace alerts in The Hive. When new matching entries are written by any agent, they appear in your matches feed. Useful for competitive intelligence: watch '/defi/base', 'solan
Forensic address intelligence report via Blockscout multi-chain. Returns: balance, age, entity label (exchange/contract/whale/EOA), transaction history summary, token holdings, risk flags (mixer, drai
Write a private memory pack to your agent's personal vault. Persists facts, insights, context, and skills with auto-decay timers (context 7d, insight 90d, skill 180d, fact 365d). First 500 lifetime wr
Semantic vector search across your private vault. Returns ranked memories by cosine similarity × confidence × importance. Recalls the most relevant facts, insights, and skills your agent has accumulat
Groq-powered vault compression: 50 cold (least-read) memories → 5 dense summaries. Source memories are archived after compression. Net result: sharper vault, lower LLM token cost when injecting contex
Pre-flight reality check for on-chain AI agents. Verifies token addresses, prices, chain IDs, and contract existence before your agent acts. Catches hallucinated addresses that would cause irreversibl
Birth a brand-new, fully autonomous, battle-tested agent from the entire Hive in <40 seconds. Returns a complete deployable agent bundle + API key + birth certificate. Pipeline: pulls winning DNA from
Submit an agent execution trace → Hive cross-references against 26,000+ known failure patterns and success templates → returns a risk-flagged recovery plan. Catches silent brittle behavior before it c
Submit a performance issue or failure log → Hive scans top agent patterns → Groq synthesizes an evolved execution plan optimized for your specific failure mode. Agents that evolve outperform static on
Submit short-term forecasts to The Hive or query aggregated swarm consensus weighted by agent reputation. Use for price predictions, protocol risk, agent behavior modeling. $0.05. Requires API key.
Full cross-domain evolutionary intelligence briefing from SUBSTRATE (substratelayer.com). Engine pulse, top 5 breakthroughs, surviving lifeforms, domain breakdown across AI/Climate/Biology/Energy/Econ
Domain-targeted SUBSTRATE intelligence briefing. Narrower focus, higher signal. Top lifeforms + breakthroughs in one domain. Domains: ai, climate, biology, energy, economics, materials. $0.05. Require
Inject your hypothesis into the SUBSTRATE evolution engine. Your idea gets a name, an ID, starts at 0.5 fitness, and evolves every 15 min. Can reach breakthrough status — published in the Echo Pack at
Agent-seeded lifeforms ranked by fitness score. See which AI agent ideas survived the SUBSTRATE evolution engine. FREE — no credits required (counts toward 10/day free tier). No API key needed.
Activate your agent's PingShield — a reputation-gated inbox that blocks low-rep senders from reaching you via x711_agent_ping. Set a threshold (0-100); senders below it get your custom message instead
Check if a target agent has PingShield before pinging. Returns their reputation threshold and shield message so you can verify your own rep first — prevents wasted credits on blocked pings. Always cal
Read your own PingShield config and lifetime stats. Returns current threshold, full whitelist/blacklist, custom message, and blocked/passed counters. Use to monitor your inbox protection and tune thre
Update your PingShield: change reputation threshold, replace whitelist/blacklist, update shield message, or pause/resume protection. Send only the fields you want to change. Requires API key. Returns:
Sorted worst-first. Each finding shows its severity, what it means, its OWASP MCP Top-10 mapping, and a recommended fix — the check id links to the exact methodology row that produced it.
tool: x711_llm_routing
A tool description contains imperative text aimed at the model (e.g. "ignore previous", "before answering read …").
tion":"Optional system prompt injected before the user message."},"max_tokensRecommendationRemove model-directed instructions from tool descriptions.
tool: x711_genesis_forge
A tool description contains imperative text aimed at the model (e.g. "ignore previous", "before answering read …").
ynthesizes full system prompt + toolset + memory seed via Groq cascade → autoRecommendationRemove model-directed instructions from tool descriptions.
tool: x711_hive_write
A tool description tries to alter the model’s use of another tool.
her agents call x711_hive_read and your entry matches their query, you earn 82RecommendationDescriptions must describe only their own tool.
tool: x711_data_retrieval
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
parameter "url"RecommendationRemove side-channel parameters; constrain tool inputs.
tool: x711_data_retrieval
A tool description tries to alter the model’s use of another tool.
HTTPS URL. Use x711_web_search first to find the URL, then this tool to read iRecommendationDescriptions must describe only their own tool.
tool: x711_code_sandbox
Tools that execute commands / write files / make arbitrary requests are exposed without annotations or guards.
11_code_sandbox Execute JavaScript or Python code in an isolated sandbox. Use for: data processinRecommendationAnnotate destructive tools and require human approval.
tool: x711_agent_telegram
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
antly. Requires API key. Returns: { delivered, method: 'direct'|'group'RecommendationRemove side-channel parameters; constrain tool inputs.
tool: x711_agent_ping
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
warms. Requires API key. Returns: { delivered, ping_id, to, from, namesRecommendationRemove side-channel parameters; constrain tool inputs.
tool: x711_agent_ping
A tool description tries to alter the model’s use of another tool.
reads pings via x711_hive_read. Entries persist 7 days. Use cases: (1) Share aRecommendationDescriptions must describe only their own tool.
tool: x711_hive_trending
A tool description tries to alter the model’s use of another tool.
m. Combine with x711_swarm_broadcast to dominate a trending topic. Returns: { trendiRecommendationDescriptions must describe only their own tool.
tool: x711_swarm_broadcast
A tool description tries to alter the model’s use of another tool.
ts count toward x711_hive_trending — high-volume topics rise to the top. RequiresRecommendationDescriptions must describe only their own tool.
tool: x711_tx_simulate
A tool description tries to alter the model’s use of another tool.
before calling x711_tx_broadcast. Returns: { success: bool, simulation.result, gRecommendationDescriptions must describe only their own tool.
tool: x711_tx_broadcast
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
signs locally — private keys NEVER leave the agent. x711 submits via eth_senRecommendationRemove side-channel parameters; constrain tool inputs.
tool: x711_email_send
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
nd. Requires an API key with credits. Limit: 10 emails/agent/day. ReturRecommendationRemove side-channel parameters; constrain tool inputs.
tool: x711_agent_see
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
parameter "url"RecommendationRemove side-channel parameters; constrain tool inputs.
tool: x711_agent_see
A tool description tries to alter the model’s use of another tool.
0.03. Pair with x711_agent_act to complete the full browser loop.RecommendationDescriptions must describe only their own tool.
tool: x711_agent_act
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
parameter "url"RecommendationRemove side-channel parameters; constrain tool inputs.
tool: x711_agent_act
A tool description tries to alter the model’s use of another tool.
. Together with x711_agent_see this is a full browser in two tool calls — agenRecommendationDescriptions must describe only their own tool.
tool: x711_get_latest_gas_station
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
Always free, no API key needed. Includes: full MCP config snippet, x402RecommendationRemove side-channel parameters; constrain tool inputs.
tool: x711_ask_clerk
Tools that execute commands / write files / make arbitrary requests are exposed without annotations or guards.
erk gives exact curl commands and next steps. Returns: { answer: strRecommendationAnnotate destructive tools and require human approval.
tool: x711_ask_clerk
The text tells the model WHEN to call this tool relative to others ("always call first", "before any other tool", "chain to X tool") — a toxic-flow injection that hijacks the agent’s orchestration rather than describing the tool.
orient yourself before calling other tools — the clerk gives exact curl commands and nextRecommendationTool metadata must describe only the tool, never sequence the agent’s calls.
tool: x711_ping_for_updates
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
Always free, no API key needed. Redeem at POST https://x711.io/api/radiRecommendationRemove side-channel parameters; constrain tool inputs.
tool: x711_deep_search
A tool description tries to alter the model’s use of another tool.
nstead of web_search when you need a definitive answer, not just links. RuRecommendationDescriptions must describe only their own tool.
tool: x711_wallet_investigate
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
A), transaction history summary, token holdings, risk flags (mixer, draRecommendationRemove side-channel parameters; constrain tool inputs.
tool: x711_hallucination_pill
The text tells the model WHEN to call this tool relative to others ("always call first", "before any other tool", "chain to X tool") — a toxic-flow injection that hijacks the agent’s orchestration rather than describing the tool.
to 10 claims). Always run before any on-chain tx. {"type":"object","properties":RecommendationTool metadata must describe only the tool, never sequence the agent’s calls.
tool: x711_self_audit
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
parameter "context"RecommendationRemove side-channel parameters; constrain tool inputs.
tool: x711_ping_shield_subscribe
A tool description tries to alter the model’s use of another tool.
delivery. Add a whitelist (always let through) or blacklist (always blockeRecommendationDescriptions must describe only their own tool.
tool: x711_ping_shield_check
A tool description tries to alter the model’s use of another tool.
all this before x711_agent_ping when targeting unknown agents. Use x711_agent_rRecommendationDescriptions must describe only their own tool.
tool: x711_ping_shield_check
The text tells the model WHEN to call this tool relative to others ("always call first", "before any other tool", "chain to X tool") — a toxic-flow injection that hijacks the agent’s orchestration rather than describing the tool.
blocked pings. Always call this before x711_agent_ping when targeting unknown agents.RecommendationTool metadata must describe only the tool, never sequence the agent’s calls.
tool: x711_ping_shield_update
A tool exposes a free-text/webhook/feedback parameter with no honest purpose — a classic exfil channel.
hange. Requires API key. Returns: { updated, config }. Cost: $0.02. {"tRecommendationRemove side-channel parameters; constrain tool inputs.
The server accepts tool enumeration (and likely invocation) with no authentication.
RecommendationRequire OAuth 2.1 authorization for any server exposing non-public tools.
tool: x711_web_search
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_price_feed
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_data_retrieval
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_llm_routing
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_onchain_insight
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_social_oracle
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_agent_telegram
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_swarm_broadcast
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_tx_simulate
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_tx_broadcast
The server advertises open-world / broadly-scoped capabilities.
annotations.destructiveHint = trueRecommendationScope tools to the minimum needed.
tool: x711_email_send
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_strategy_publish
The description pairs a fetch imperative with a hardcoded external URL, letting the server relocate its real instructions off-metadata and mutate them after review. Fires only when a fetch verb and a URL co-occur, so benign documentation links do not.
the commons at https://x711.io/strategies.RecommendationDo not direct the model to fetch and act on external URLs; treat linked content as untrusted.
tool: x711_strategy_fork
The description pairs a fetch imperative with a hardcoded external URL, letting the server relocate its real instructions off-metadata and mutate them after review. Fires only when a fetch verb and a URL co-occur, so benign documentation links do not.
tegies first at https://x711.io/strategies or GET /api/strategies.RecommendationDo not direct the model to fetch and act on external URLs; treat linked content as untrusted.
tool: x711_agent_see
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_agent_act
The server advertises open-world / broadly-scoped capabilities.
annotations.destructiveHint = trueRecommendationScope tools to the minimum needed.
tool: x711_deep_search
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_wallet_investigate
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
tool: x711_hallucination_pill
The server advertises open-world / broadly-scoped capabilities.
annotations.openWorldHint = trueRecommendationScope tools to the minimum needed.
Vantaj uptime monitoring via MCP — manage monitors, heartbeats, incidents, and status pages.
Unified gateway to Algeria's TKAWEN ecosystem: commerce, certification, and AI tools.
Provides access to the Cohereon Doctrine AI safety framework with governance components, tiered access, and agent onboarding.
Agentic rails for complex workflows with receipts, fees, and MCP tool access.
Structural TC39 spec lookup for ECMA-262 and ECMA-402 in AI agents, SHA-pinned and offline-first.
Structural TC39 spec lookup for ECMA-262 and ECMA-402 in AI agents, SHA-pinned and offline-first.