{"uid":"cap_Od76-TL_-StHGq4vbqLvR","slug":"mcp-manifest-firewall-0a0baf42","name":"MCP Manifest Firewall","description":"Inspect an MCP tool manifest before installation or trust, including collisions, missing schemas and instruction injection","url":"https://phion.systems/v1/paid/trust/mcp-manifest-firewall","method":"POST","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema"},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.002","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.002/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.002","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.002","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_j5YKs6B81TQkj8J4OP_ZV","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.002","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Inspects an MCP tool manifest for security and quality issues including tool name collisions, missing schemas, and prompt injection attacks before installation or trust","exampleAgentPrompt":"Before I install this MCP server, can you run its manifest through the MCP Manifest Firewall to check for tool name collisions, missing schemas, or any prompt injection attempts hidden in the tool descriptions?","exampleUseCases":[{"title":"Pre-installation security audit","prompt":"I found an MCP server on GitHub that adds browser automation tools — before I add it to my agent setup, can you inspect its manifest for prompt injection, name collisions with my existing tools, and any missing input schemas?"},{"title":"Third-party MCP server vetting","prompt":"Our team wants to use this third-party MCP tool manifest from an external vendor — can you run it through the MCP Manifest Firewall and tell me if there are any trust or safety issues we should know about?"},{"title":"Detecting malicious tool instructions","prompt":"I'm worried this MCP manifest might have instruction injection hidden in the tool descriptions — can you analyze it and flag any suspicious instructions that could hijack my agent's behavior?"}],"resultDescription":"A structured security report covering detected tool name collisions with existing tools, identification of tool definitions missing input/output schemas, flagged prompt or instruction injection patterns found in tool descriptions or metadata, and an overall trust assessment indicating whether the manifest is safe to install.","failureModes":["Malformed or unparseable manifest JSON returns a parse error","Empty manifest or missing tool definitions may return an incomplete analysis","Highly obfuscated injection attempts may not be detected","Rate limits or payment failures result in 402 or 429 responses","Very large manifests may timeout or hit size limits"],"whenToPreferThis":"Choose this endpoint when you need to vet an MCP tool manifest before installation or granting trust to an MCP server — especially when the manifest comes from an untrusted third party, a public repository, or an unknown vendor. It is purpose-built for MCP protocol security screening, covering the three most critical attack surfaces: collision attacks, schema gaps, and instruction injection, making it more specific than general-purpose schema validators or static analysis tools.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T06:49:53.677Z","isFirstParty":false}