Agent Economy Index · MCP census · probed 2026-09-29 · JSON

io.github.TotesMagotes/mcp-server-auth

Verdict: 1 tool description(s) carry model-directed, hidden, secret-material or exfiltration patterns. Endpoint https://mcp.expensebot.ai/mcp. Latency 12,894 ms.

Tools (59 fingerprinted)

tooldescription lengthflagsfirst seenlast seen
add_cash_expense8012026-09-292026-09-29
add_income6422026-09-292026-09-29
add_income_from_csv1,0202026-09-292026-09-29
add_income_from_file1,2632026-09-292026-09-29
add_mileage_entry5312026-09-292026-09-29
check_compliance3422026-09-292026-09-29
check_feature2432026-09-292026-09-29
check_tax_deductibility4772026-09-292026-09-29
correct_expenses1,372url_in_description2026-09-292026-09-29
create_client_invoice4072026-09-292026-09-29
create_report1,3582026-09-292026-09-29
export_report2952026-09-292026-09-29
fetch4862026-09-292026-09-29
fix_compliance900url_in_description2026-09-292026-09-29
get_accounting_integration_status7722026-09-292026-09-29
get_accounting_push_status4702026-09-292026-09-29
get_client_advance_balances4962026-09-292026-09-29
get_client_invoice3362026-09-292026-09-29
get_credits_refunds4162026-09-292026-09-29
get_deep_analytics3432026-09-292026-09-29
get_expense_by_id2552026-09-292026-09-29
get_expense_splits4372026-09-292026-09-29
get_income_summary7692026-09-292026-09-29
get_last_receipt_result7572026-09-292026-09-29
get_mileage_summary4652026-09-292026-09-29
get_monthly_books_review4322026-09-292026-09-29
get_per_tag_pnl6192026-09-292026-09-29
get_pnl5262026-09-292026-09-29
get_recent_activity4842026-09-292026-09-29
get_report_details3302026-09-292026-09-29
get_scan_status5212026-09-292026-09-29
get_spending_summary2952026-09-292026-09-29
get_spreadsheet_url3,2092026-09-292026-09-29
get_subscription_audit4242026-09-292026-09-29
get_trip_suggestions7432026-09-292026-09-29
group_expenses2,1222026-09-292026-09-29
list_categories2762026-09-292026-09-29
list_client_invoices4672026-09-292026-09-29
list_income_categories1982026-09-292026-09-29
list_reports3442026-09-292026-09-29
list_tags3442026-09-292026-09-29
mark_client_invoice_paid2982026-09-292026-09-29
parse_expense2242026-09-292026-09-29
prepare_client_invoice4792026-09-292026-09-29
process_gmail_receipts2422026-09-292026-09-29
request_accounting_integration6582026-09-292026-09-29
scan_gmail3602026-09-292026-09-29
scan_gmail_years6222026-09-292026-09-29
search2422026-09-292026-09-29
search_expenses9452026-09-292026-09-29
search_knowledge5442026-09-292026-09-29
send_report_to_accounting1,0662026-09-292026-09-29
share_report4142026-09-292026-09-29
submit_receipt1,510exfiltration2026-09-292026-09-29
trace_document3302026-09-292026-09-29
update_expense942url_in_description2026-09-292026-09-29
whatif_afford4172026-09-292026-09-29
whatif_client5362026-09-292026-09-29
whatif_tax_setaside2972026-09-292026-09-29

Tool changes (0)

whentoolkind
none yet

Probe history

2026-09-29 ok (59 tools)

Depend on this server? Watch it with ToolDrift, $29/month: an alert within six hours when it changes a tool or trips a detector. Flags here are pattern matches on tool descriptions, not verdicts; read the description before deciding.
Run this server? Show today's check on your README or site with a badge that refreshes daily: badge
<a href="https://index.agentexchange.work/mcp-server/io.github.TotesMagotes%2Fmcp-server-auth"><img src="https://index.agentexchange.work/badge/mcp/io.github.TotesMagotes%2Fmcp-server-auth.svg" alt="MCP server check by agentexchange.work"></a>
Claim this server — prove you operate mcp.expensebot.ai and this page gets a "Claimed by the operator" line, the badge gets a CLAIMED prefix, and you get a JSON webhook alert when a daily probe records a tool change or more flagged descriptions than the day before (at most one alert per 6 hours). No account, no email, nothing to install.
  1. Put a text file at https://mcp.expensebot.ai/.well-known/agentexchange-claim.txt whose entire content is exactly io.github.TotesMagotes/mcp-server-auth.
  2. Submit this form. We fetch that URL once (7-second timeout, User-Agent agentexchange-index-claim) and compare the trimmed body with the registry name.

Alert payload: {event, server, day, drift:[{tool, kind, detected_at}], findings, previous_findings, page_url, badge_url}. Public list of claims (names and hosts only): /v1/claims.json.

Run this server? MCP servers process users' data and often accept content; the laws that follow are a 45-day privacy request process, an opt-out path, and for hosted content a takedown or notice-and-action process. Check your site free or get a hosted desk.