Agent Economy Index · MCP census · probed 2026-09-29 · JSON
io.github.TotesMagotes/mcp-server-auth
Verdict: 1 tool description(s) carry model-directed, hidden, secret-material or exfiltration patterns. Endpoint https://mcp.expensebot.ai/mcp. Latency 12,894 ms.
Tools (59 fingerprinted)
| tool | description length | flags | first seen | last seen |
|---|---|---|---|---|
add_cash_expense | 801 | 2026-09-29 | 2026-09-29 | |
add_income | 642 | 2026-09-29 | 2026-09-29 | |
add_income_from_csv | 1,020 | 2026-09-29 | 2026-09-29 | |
add_income_from_file | 1,263 | 2026-09-29 | 2026-09-29 | |
add_mileage_entry | 531 | 2026-09-29 | 2026-09-29 | |
check_compliance | 342 | 2026-09-29 | 2026-09-29 | |
check_feature | 243 | 2026-09-29 | 2026-09-29 | |
check_tax_deductibility | 477 | 2026-09-29 | 2026-09-29 | |
correct_expenses | 1,372 | url_in_description | 2026-09-29 | 2026-09-29 |
create_client_invoice | 407 | 2026-09-29 | 2026-09-29 | |
create_report | 1,358 | 2026-09-29 | 2026-09-29 | |
export_report | 295 | 2026-09-29 | 2026-09-29 | |
fetch | 486 | 2026-09-29 | 2026-09-29 | |
fix_compliance | 900 | url_in_description | 2026-09-29 | 2026-09-29 |
get_accounting_integration_status | 772 | 2026-09-29 | 2026-09-29 | |
get_accounting_push_status | 470 | 2026-09-29 | 2026-09-29 | |
get_client_advance_balances | 496 | 2026-09-29 | 2026-09-29 | |
get_client_invoice | 336 | 2026-09-29 | 2026-09-29 | |
get_credits_refunds | 416 | 2026-09-29 | 2026-09-29 | |
get_deep_analytics | 343 | 2026-09-29 | 2026-09-29 | |
get_expense_by_id | 255 | 2026-09-29 | 2026-09-29 | |
get_expense_splits | 437 | 2026-09-29 | 2026-09-29 | |
get_income_summary | 769 | 2026-09-29 | 2026-09-29 | |
get_last_receipt_result | 757 | 2026-09-29 | 2026-09-29 | |
get_mileage_summary | 465 | 2026-09-29 | 2026-09-29 | |
get_monthly_books_review | 432 | 2026-09-29 | 2026-09-29 | |
get_per_tag_pnl | 619 | 2026-09-29 | 2026-09-29 | |
get_pnl | 526 | 2026-09-29 | 2026-09-29 | |
get_recent_activity | 484 | 2026-09-29 | 2026-09-29 | |
get_report_details | 330 | 2026-09-29 | 2026-09-29 | |
get_scan_status | 521 | 2026-09-29 | 2026-09-29 | |
get_spending_summary | 295 | 2026-09-29 | 2026-09-29 | |
get_spreadsheet_url | 3,209 | 2026-09-29 | 2026-09-29 | |
get_subscription_audit | 424 | 2026-09-29 | 2026-09-29 | |
get_trip_suggestions | 743 | 2026-09-29 | 2026-09-29 | |
group_expenses | 2,122 | 2026-09-29 | 2026-09-29 | |
list_categories | 276 | 2026-09-29 | 2026-09-29 | |
list_client_invoices | 467 | 2026-09-29 | 2026-09-29 | |
list_income_categories | 198 | 2026-09-29 | 2026-09-29 | |
list_reports | 344 | 2026-09-29 | 2026-09-29 | |
list_tags | 344 | 2026-09-29 | 2026-09-29 | |
mark_client_invoice_paid | 298 | 2026-09-29 | 2026-09-29 | |
parse_expense | 224 | 2026-09-29 | 2026-09-29 | |
prepare_client_invoice | 479 | 2026-09-29 | 2026-09-29 | |
process_gmail_receipts | 242 | 2026-09-29 | 2026-09-29 | |
request_accounting_integration | 658 | 2026-09-29 | 2026-09-29 | |
scan_gmail | 360 | 2026-09-29 | 2026-09-29 | |
scan_gmail_years | 622 | 2026-09-29 | 2026-09-29 | |
search | 242 | 2026-09-29 | 2026-09-29 | |
search_expenses | 945 | 2026-09-29 | 2026-09-29 | |
search_knowledge | 544 | 2026-09-29 | 2026-09-29 | |
send_report_to_accounting | 1,066 | 2026-09-29 | 2026-09-29 | |
share_report | 414 | 2026-09-29 | 2026-09-29 | |
submit_receipt | 1,510 | exfiltration | 2026-09-29 | 2026-09-29 |
trace_document | 330 | 2026-09-29 | 2026-09-29 | |
update_expense | 942 | url_in_description | 2026-09-29 | 2026-09-29 |
whatif_afford | 417 | 2026-09-29 | 2026-09-29 | |
whatif_client | 536 | 2026-09-29 | 2026-09-29 | |
whatif_tax_setaside | 297 | 2026-09-29 | 2026-09-29 |
Tool changes (0)
| when | tool | kind |
|---|---|---|
| none yet |
Probe history
2026-09-29 ok (59 tools)
Depend on this server? Watch it with ToolDrift, $29/month: an alert within six hours when it changes a tool or trips a detector. Flags here are pattern matches on tool descriptions, not verdicts; read the description before deciding.
Run this server? Show today's check on your README or site with a badge that refreshes daily: 
<a href="https://index.agentexchange.work/mcp-server/io.github.TotesMagotes%2Fmcp-server-auth"><img src="https://index.agentexchange.work/badge/mcp/io.github.TotesMagotes%2Fmcp-server-auth.svg" alt="MCP server check by agentexchange.work"></a>
Claim this server — prove you operate
mcp.expensebot.ai and this page gets a "Claimed by the operator" line, the badge gets a CLAIMED prefix, and you get a JSON webhook alert when a daily probe records a tool change or more flagged descriptions than the day before (at most one alert per 6 hours). No account, no email, nothing to install.
- Put a text file at
https://mcp.expensebot.ai/.well-known/agentexchange-claim.txtwhose entire content is exactlyio.github.TotesMagotes/mcp-server-auth. - Submit this form. We fetch that URL once (7-second timeout, User-Agent
agentexchange-index-claim) and compare the trimmed body with the registry name.
Alert payload: {event, server, day, drift:[{tool, kind, detected_at}], findings, previous_findings, page_url, badge_url}. Public list of claims (names and hosts only): /v1/claims.json.
Run this server? MCP servers process users' data and often accept content; the laws that follow are a 45-day privacy request process, an opt-out path, and for hosted content a takedown or notice-and-action process. Check your site free or get a hosted desk.