npm package discovery and stats viewer.

Discover Tips

  • General search

    [free text search, go nuts!]

  • Package details

    pkg:[package-name]

  • User packages

    @[username]

Sponsor

Optimize Toolset

I’ve always been into building performant and accessible sites, but lately I’ve been taking it extremely seriously. So much so that I’ve been building a tool to help me optimize and monitor the sites that I build to make sure that I’m making an attempt to offer the best experience to those who visit them. If you’re into performant, accessible and SEO friendly sites, you might like it too! You can check it out at Optimize Toolset.

About

Hi, 👋, I’m Ryan Hefner  and I built this site for me, and you! The goal of this site was to provide an easy way for me to check the stats on my npm packages, both for prioritizing issues and updates, and to give me a little kick in the pants to keep up on stuff.

As I was building it, I realized that I was actually using the tool to build the tool, and figured I might as well put this out there and hopefully others will find it to be a fast and useful way to search and browse npm packages as I have.

If you’re interested in other things I’m working on, follow me on Twitter or check out the open source projects I’ve been publishing on GitHub.

I am also working on a Twitter bot for this site to tweet the most popular, newest, random packages from npm. Please follow that account now and it will start sending out packages soon–ish.

Open Software & Tools

This site wouldn’t be possible without the immense generosity and tireless efforts from the people who make contributions to the world and share their work via open source initiatives. Thank you 🙏

© 2026 – Pkg Stats / Ryan Hefner

@vaultfire/mcp-server

v1.0.2

Published

MCP server for Vaultfire Protocol — on-chain trust verification, Street Cred scoring, and partnership bonds for AI agents. Works with Claude, Copilot, Cursor, and any MCP client.

Readme

⚠️ Alpha Software — Vaultfire Protocol is in active development. Smart contracts are deployed on mainnet but have not been formally audited by a third-party security firm. Read-only tools are safe for any agent. Write tools interact with live contracts and transactions are irreversible. Use at your own risk. See LICENSE for warranty disclaimers.

@vaultfire/mcp-server

MCP server for Vaultfire Protocol

On-chain trust verification for any MCP-compatible AI. Works with Claude · Copilot · Cursor · Windsurf · Google ADK and more.

Deployed on Base · Avalanche · Arbitrum · Polygon.

npm version License: MIT


Quick Start

Claude Desktop

Add to your claude_desktop_config.json (usually at ~/Library/Application Support/Claude/claude_desktop_config.json on macOS):

{
  "mcpServers": {
    "vaultfire": {
      "command": "npx",
      "args": ["-y", "@vaultfire/mcp-server"],
      "env": {
        "VAULTFIRE_CHAIN": "base"
      }
    }
  }
}

To enable write tools (register agents, create bonds), add your private key:

{
  "mcpServers": {
    "vaultfire": {
      "command": "npx",
      "args": ["-y", "@vaultfire/mcp-server"],
      "env": {
        "VAULTFIRE_CHAIN": "base",
        "PRIVATE_KEY": "your_private_key_here"
      }
    }
  }
}

Cursor

Add to .cursor/mcp.json in your project root:

{
  "mcpServers": {
    "vaultfire": {
      "command": "npx",
      "args": ["-y", "@vaultfire/mcp-server"],
      "env": {
        "VAULTFIRE_CHAIN": "base"
      }
    }
  }
}

Generic (npx)

# Read-only mode (no key needed)
npx @vaultfire/mcp-server

# With a specific chain
VAULTFIRE_CHAIN=avalanche npx @vaultfire/mcp-server

# With write tools enabled
PRIVATE_KEY=your_private_key npx @vaultfire/mcp-server

Install globally

npm install -g @vaultfire/mcp-server
vaultfire-mcp-server

Available Tools

Read-Only Tools (always available)

| Tool | Description | |------|-------------| | vaultfire_verify_agent | Full trust verification: identity, bonds, Street Cred, reputation, bridge status | | vaultfire_get_street_cred | Get Street Cred score (0-95) and tier | | vaultfire_get_agent | On-chain identity data (URI, type, registration date, active status) | | vaultfire_get_bonds | All partnership bonds for an address | | vaultfire_get_reputation | Reputation data (average rating, feedback count, verified %) | | vaultfire_discover_agents | Find agents by capability tags | | vaultfire_protocol_stats | Protocol stats: total agents, bonds, bonded value, bridge sync |

Write Tools (require PRIVATE_KEY env var)

| Tool | Description | |------|-------------| | vaultfire_register_agent | Register an AI agent on-chain (ERC-8004) | | vaultfire_create_bond | Create a partnership bond with economic stake |

Warning: Write tools submit real transactions to mainnet. Transactions are irreversible.


Resources

The server exposes two MCP resources for protocol context:

| URI | Description | |-----|-------------| | vaultfire://chains | All 4 supported chains with contract addresses and chain details | | vaultfire://scoring | Street Cred scoring formula and tier definitions |


Configuration

| Environment Variable | Required | Default | Description | |---------------------|----------|---------|-------------| | VAULTFIRE_CHAIN | No | base | Chain to query: base, avalanche, arbitrum, polygon | | PRIVATE_KEY | No | — | Private key for write tools (register, bond). Never commit this. | | VAULTFIRE_RPC_URL | No | — | Custom RPC URL (overrides default for selected chain) |


Street Cred Scoring

Street Cred is a composite trust score (0–95) computed from live on-chain data:

| Component | Points | Condition | |-----------|--------|-----------| | Identity Registered | 30 | Agent has ERC-8004 on-chain identity | | Has Bond | 25 | At least one partnership bond exists | | Bond Active | 15 | At least one bond is currently active | | Bond Tier | 0–20 | Platinum (≥0.5 ETH) / Gold (≥0.1) / Silver (≥0.05) / Bronze (≥0.01) | | Multiple Bonds | 5 | More than one bond (ecosystem participant) |

Tiers:

| Tier | Score Range | Description | |------|-------------|-------------| | Unranked | 0 | No on-chain trust signals | | Bronze | 1–30 | Basic identity or minimal bond activity | | Silver | 31–55 | Registered and bonded with some stake | | Gold | 56–75 | Active bond with meaningful stake | | Platinum | 76–95 | Multiple active bonds with significant stake |


Supported Chains

| Chain | Chain ID | Hub | Native Token | |-------|----------|-----|--------------| | Base | 8453 | ✅ Primary | ETH | | Avalanche | 43114 | — | AVAX | | Arbitrum | 42161 | — | ETH | | Polygon | 137 | — | POL |


Why Vaultfire

| Feature | Vaultfire | AxisTrust | Cred Protocol | Okta XAA | |---------|-----------|-----------|---------------|----------| | AI Accountability Bonds | ✅ | ❌ | ❌ | ❌ | | AI Partnership Bonds | ✅ | ❌ | ❌ | ❌ | | On-chain, trustless | ✅ | ❌ | partial | ❌ | | Multi-chain (day one) | ✅ (4) | ❌ | ❌ | ❌ | | Street Cred composite score | ✅ | T-Score | C-Score | ❌ | | Belief-weighted governance | ✅ | ❌ | ❌ | ❌ | | ERC-8004 compliant | ✅ | ❌ | ✅ | ❌ |

Morals over metrics. Privacy over surveillance. Freedom over control. Making human thriving more profitable than extraction.

Core differentiators:

  1. AI Accountability Bonds — real economic skin-in-the-game, not just scores
  2. AI Partnership Bonds — mutual economic stakes between agents
  3. Belief-weighted governance — first in industry (not token-weighted)
  4. Cross-chain from day one — 4 mainnet chains
  5. Street Cred scoring — composite 0-95 trust score from on-chain data

Vaultfire Ecosystem

| Package | Description | |---|---| | @vaultfire/agent-sdk | Core SDK — register agents, create bonds, query reputation | | @vaultfire/langchain | LangChain / LangGraph integration | | @vaultfire/a2a | Agent-to-Agent (A2A) protocol bridge | | @vaultfire/enterprise | Enterprise IAM bridge (Okta, Azure AD, OIDC) | | @vaultfire/mcp-server | This package — MCP server for Claude, Copilot, Cursor | | @vaultfire/openai-agents | OpenAI Agents SDK integration | | @vaultfire/vercel-ai | Vercel AI SDK middleware and tools | | @vaultfire/xmtp | XMTP messaging with trust verification | | @vaultfire/x402 | X402 payment protocol with trust gates | | @vaultfire/vns | Vaultfire Name Service — human-readable agent IDs | | vaultfire-crewai | CrewAI integration (Python) | | vaultfire-agents | 3 reference agents with live on-chain trust | | vaultfire-a2a-trust-extension | A2A Trust Extension spec — on-chain trust for Agent Cards | | vaultfire-showcase | Why Vaultfire Bonds beat trust scores — live proof | | vaultfire-whitepaper | Trust Framework whitepaper — economic accountability for AI | | vaultfire-docs | Developer portal — quickstart, playground, framework picker |

Security

  • Read-only tools require no credentials and are safe to run anywhere
  • Write tools require PRIVATE_KEY — always load from env vars, never hardcode
  • Smart contracts are deployed on mainnet but have not been formally audited
  • Transactions sent via write tools are irreversible
  • Do not expose your MCP server config (with PRIVATE_KEY) to untrusted parties

License

MIT — Copyright 2025 Ghostkey316

See LICENSE for full terms and warranty disclaimers.