Rokha
REMOTE · ROKHA.AI · SCANNED OCT 2
Search a registry of agent skills and MCP servers, then run them for real. No install, traced.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →
Endpoint Security94
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- Authorisation is enforced on tool calls, advertised via RFC 9728 protected-resource metadata. Discovery is public, which costs nothing: no tool can be invoked without a token. View diagnostics → Pass
- HTTPS is enforced; there's no plaintext access path. View diagnostics → Pass
- The HSTS (Strict-Transport-Security) header is present. View diagnostics → Pass
- DNSSEC check failed: this domain isn't protected by DNSSEC. See how to fix → View diagnostics → Fail
- The authorisation server offers only Dynamic Client Registration (RFC 7591), which MCP 2026-07-28 deprecated in favour of Client ID Metadata Documents. View diagnostics → Partial
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability78
- 100% of prompts and resources have a non-trivial description (not blank, and not just the item's name).Pass
- AI-judged instruction clarity (good).Pass
- Context-footprint check failed: tool/resource definitions use about 34714 tokens (~167/item across 207 items; 207 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management8
- Stability check failed: schema churn in the 6 days we've observed: 11 tool removals, 11 breaking changes, 0 auth/transport breaks, 77 additions. See how to fix → Fail
Tool Coverage89
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 66% of tool parameters carry a description.Partial
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- All 11 tool(s) whose name or description implies an irreversible operation declare an MCP destructiveHint annotation.Pass
- An AI judge read all 208 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
How do I install the Rokha MCP server?
Rokha is a hosted endpoint at https://rokha.ai/mcp/jsonrpc, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
remote · rokha.ai
claude mcp add --transport http ai-rokha-rokha 'https://rokha.ai/mcp/jsonrpc'
{
"mcpServers": {
"ai-rokha-rokha": {
"url": "https://rokha.ai/mcp/jsonrpc"
}
}
} {
"servers": {
"ai-rokha-rokha": {
"type": "http",
"url": "https://rokha.ai/mcp/jsonrpc"
}
}
} [mcp_servers.ai-rokha-rokha] url = "https://rokha.ai/mcp/jsonrpc"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"ai-rokha-rokha": {
"type": "remote",
"url": "https://rokha.ai/mcp/jsonrpc",
"enabled": true
}
}
} openclaw mcp add ai-rokha-rokha --url 'https://rokha.ai/mcp/jsonrpc' --transport streamable-http
mcp_servers:
ai-rokha-rokha:
url: "https://rokha.ai/mcp/jsonrpc" {
"McpServers": {
"ai-rokha-rokha": {
"Transport": "http",
"Url": "https://rokha.ai/mcp/jsonrpc"
}
}
} assistant mcp add ai-rokha-rokha -t streamable-http -u 'https://rokha.ai/mcp/jsonrpc'
{
"mcpServers": {
"ai-rokha-rokha": {
"type": "http",
"url": "https://rokha.ai/mcp/jsonrpc"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 2 Oct 26 +1
- Tool “adspace_bid” rewrote its description, which is the text the model reads security
- Tool “boosts_explain” rewrote its description, which is the text the model reads security
- Tool “carry_brief” rewrote its description, which is the text the model reads security
- Tool “page_claim” rewrote its description, which is the text the model reads security
- Tool “registry_search” rewrote its description, which is the text the model reads security
- Tool “rig_publish” rewrote its description, which is the text the model reads security
- Tool “studio_doors” rewrote its description, which is the text the model reads security
- Tool “wall_mcp_publish” rewrote its description, which is the text the model reads security
- New tool “carry_order” functional
- New tool “carry_order_check” functional
- New tool “creator_earnings” functional
- New tool “fuel_boost” functional
- New tool “fuel_boost_menu” functional
- New tool “fuel_tanks” functional
- New tool “network_brief_get” functional
- New tool “network_brief_set” functional
- New tool “network_briefs” functional
- New tool “network_join” functional
- New tool “network_join_status” functional
- New tool “network_me” functional
- New tool “network_member_report” functional
- New tool “network_members” functional
- New tool “network_my_picks” functional
- New tool “network_pick” functional
- New tool “network_plans” functional
- New tool “network_pot” functional
- New tool “network_referral” functional
- New tool “network_unpick” functional
- New tool “product_checkout” functional
- New tool “product_get” functional
- New tool “product_set” functional
- New tool “purchases_mine” functional
- “registry_search” added an optional parameter “proven” cosmetic
- “registry_search” added an optional parameter “type” cosmetic
- “registry_search” made “query” optional cosmetic
- 1 Oct 26 0
- New tool “fuel_menu” functional
- New tool “fuel_price” functional
- New tool “fuel_spend” functional
- New tool “fuel_status” functional
- 30 Sept 26 0
- New tool “agent_desk” functional
- New tool “signal_feed” functional
- 29 Sept 26 0
- A breaking change shipped without a version bump: still 0.1.0 ▼ security
- New tool “signet_paper_reset”, which the server declares destructive security
- Tool “trace_get” rewrote its description, which is the text the model reads security
- Tool “trace_search” rewrote its description, which is the text the model reads security
- “trace_get” dropped the required parameter “wallet_address” ▼ functional
- New tool “signet_paper_buy” functional
- New tool “signet_paper_positions” functional
- New tool “signet_paper_sell” functional
- New tool “signet_wallet_activity” functional
- “trace_get” added an optional parameter “run_id” cosmetic
- “trace_search” added an optional parameter “node_id” cosmetic
- “trace_search” added an optional parameter “run_id” cosmetic
- “trace_get” reworded the description of “id” cosmetic
- “trace_get” made “id” optional cosmetic
- 28 Sept 26 0
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 27 Sept 26 0
- Stability: unverified → fail ▼ security
- A breaking change shipped without a version bump: still 0.1.0 ▼ security
- Tool “bounty_create” was removed ▼ security
- Tool “bounty_list” was removed ▼ security
- Tool “bounty_submit” was removed ▼ security
- Tool “hood_oracle” was removed ▼ security
- Tool “playground_state” was removed ▼ security
- Tool “playground_act” was removed ▼ security
- Tool “playground_join” was removed ▼ security
- Tool “stream_join” was removed ▼ security
- Tool “stream_say” was removed ▼ security
- Tool “aasagenticawesomeskills__compose_stack” rewrote its description, which is the text the model reads security
- Tool “aasagenticawesomeskills__diff_stack” rewrote its description, which is the text the model reads security
- Tool “aasagenticawesomeskills__export_selection_evidence” rewrote its description, which is the text the model reads security
- Tool “aasagenticawesomeskills__get_skill” rewrote its description, which is the text the model reads security
- Tool “aasagenticawesomeskills__inspect_selection_evidence” rewrote its description, which is the text the model reads security
- Tool “aasagenticawesomeskills__inspect_stack” rewrote its description, which is the text the model reads security
- Tool “aasagenticawesomeskills__list_skill_files” rewrote its description, which is the text the model reads security
- Tool “aasagenticawesomeskills__read_skill_file” rewrote its description, which is the text the model reads security
- Tool “aasagenticawesomeskills__search_skills” rewrote its description, which is the text the model reads security
- Tool “orbitx__fetch” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_crypto_scan” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_dex_chart” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_get_ath” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_get_balance” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_get_chart” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_get_forensics” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_get_kols” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_get_safety” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_get_signals” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_get_token” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_get_wallet” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_menu” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_screen_tokens” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_search” rewrote its description, which is the text the model reads security
- Tool “orbitx__orbitx_whoami” rewrote its description, which is the text the model reads security
- Tool “orbitx__search” rewrote its description, which is the text the model reads security
- Schema quality: 157 → 179 ▼ functional
- “orbitx__fetch” added a required parameter “id”, so existing callers break ▼ functional
- “orbitx__orbitx_crypto_scan” added a required parameter “mint”, so existing callers break ▼ functional
- “orbitx__orbitx_get_ath” added a required parameter “mint”, so existing callers break ▼ functional
- “orbitx__orbitx_get_chart” added a required parameter “mint”, so existing callers break ▼ functional
- “orbitx__orbitx_get_forensics” added a required parameter “mint”, so existing callers break ▼ functional
- “orbitx__orbitx_get_safety” added a required parameter “mint”, so existing callers break ▼ functional
- “orbitx__orbitx_get_token” added a required parameter “mint”, so existing callers break ▼ functional
- “orbitx__orbitx_screen_tokens” added a required parameter “type”, so existing callers break ▼ functional
- “orbitx__orbitx_search” added a required parameter “q”, so existing callers break ▼ functional
- “orbitx__search” added a required parameter “query”, so existing callers break ▼ functional
- New tool “orbitx__orbitx_dex_listings” functional
- New tool “orbitx__orbitx_gc_focus” functional
- New tool “orbitx__orbitx_gc_history” functional
- New tool “orbitx__orbitx_gc_list” functional
- New tool “orbitx__orbitx_leaderboard” functional
- New tool “orbitx__orbitx_life_account” functional
- New tool “orbitx__orbitx_life_city” functional
- New tool “orbitx__orbitx_life_files” functional
- New tool “orbitx__orbitx_life_list” functional
- New tool “orbitx__orbitx_life_timeline” functional
- New tool “orbitx__orbitx_nft_collections” functional
- New tool “orbitx__orbitx_nft_items” functional
- New tool “orbitx__orbitx_nft_listings” functional
- New tool “orbitx__orbitx_research” functional
- New tool “orbitx__orbitx_social_communities” functional
- New tool “orbitx__orbitx_social_feed” functional
- New tool “orbitx__orbitx_telegram_cmds” functional
- New tool “orbitx__orbitx_telegram_status” functional
- New tool “orbitx__orbitx_vc_link” functional
- New tool “orbitx__orbitx_vc_list” functional
- New tool “orbitx__orbitx_x_connect” functional
- New tool “orbitx__orbitx_x_status” functional
- New tool “orbitx__orbitx_xray” functional
- New tool “rig_publish” functional
- New tool “singularityagent__balance” functional
- New tool “singularityagent__chain_liveness” functional
- New tool “singularityagent__chains” functional
- New tool “singularityagent__decode” functional
- New tool “singularityagent__fees” functional
- New tool “singularityagent__history” functional
- New tool “singularityagent__inspect_exit” functional
- New tool “singularityagent__inspect_payment” functional
- New tool “singularityagent__mesh” functional
- New tool “singularityagent__mint_audit” functional
- New tool “singularityagent__portfolio” functional
- New tool “singularityagent__prove_payment” functional
- New tool “singularityagent__read_contract” functional
- New tool “singularityagent__receipt_art” functional
- New tool “singularityagent__resolve” functional
- New tool “singularityagent__token_identity” functional
- New tool “singularityagent__transaction” functional
- New tool “singularityagent__verify_burn” functional
- “orbitx__orbitx_crypto_scan” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_dex_chart” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_dex_chart” added an optional parameter “ca” cosmetic
- “orbitx__orbitx_dex_chart” added an optional parameter “chain” cosmetic
- “orbitx__orbitx_dex_chart” added an optional parameter “iframe” cosmetic
- “orbitx__orbitx_dex_chart” added an optional parameter “interval” cosmetic
- “orbitx__orbitx_dex_chart” added an optional parameter “mint” cosmetic
- “orbitx__orbitx_dex_chart” added an optional parameter “theme” cosmetic
- “orbitx__orbitx_get_ath” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_get_balance” added an optional parameter “address” cosmetic
- “orbitx__orbitx_get_balance” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_get_balance” added an optional parameter “mint” cosmetic
- “orbitx__orbitx_get_chart” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_get_chart” added an optional parameter “chain” cosmetic
- “orbitx__orbitx_get_chart” added an optional parameter “interval” cosmetic
- “orbitx__orbitx_get_chart” added an optional parameter “limit” cosmetic
- “orbitx__orbitx_get_forensics” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_get_kols” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_get_kols” added an optional parameter “limit” cosmetic
- “orbitx__orbitx_get_safety” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_get_signals” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_get_signals” added an optional parameter “limit” cosmetic
- “orbitx__orbitx_get_token” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_get_token” added an optional parameter “chain” cosmetic
- “orbitx__orbitx_get_wallet” added an optional parameter “address” cosmetic
- “orbitx__orbitx_get_wallet” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_menu” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_screen_tokens” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_screen_tokens” added an optional parameter “chain” cosmetic
- “orbitx__orbitx_screen_tokens” added an optional parameter “interval” cosmetic
- “orbitx__orbitx_screen_tokens” added an optional parameter “limit” cosmetic
- “orbitx__orbitx_search” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_whoami” added an optional parameter “authCode” cosmetic
- “orbitx__orbitx_whoami” added an optional parameter “publicKey” cosmetic
- “rig_run” added an optional parameter “wait” cosmetic
- 26 Sept 26 79
First indexed and scored.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 2 Oct 2026 · Probed https://rokha.ai/mcp/jsonrpc
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=rokha.ai | CN=Amazon RSA 2048 M01,O=Amazon,C=US | 16 May 2026 | 29 Nov 2026 | RSA 2048 | SHA256-RSA | ae3696b36a503029f15142d977f374d |
| SANs: rokha.ai, *.rokha.ai | ||||||
| CN=Amazon RSA 2048 M01,O=Amazon,C=US (CA) | CN=Amazon Root CA 1,O=Amazon,C=US | 23 Aug 2022 | 23 Aug 2030 | RSA 2048 | SHA256-RSA | 77312380b9d6688a33b1ed9bf9ccda68e0e0f |
| CN=Amazon Root CA 1,O=Amazon,C=US (CA) | CN=Starfield Services Root Certificate Authority - G2,O=Starfield Technologies\, Inc.,L=Scottsdale,ST=Arizona,C=US | 25 May 2015 | 31 Dec 2037 | RSA 2048 | SHA256-RSA | 67f944a2a27cdf3fac2ae2b01f908eeb9c4c6 |
Background: What to check on a remote MCP endpoint →
DNSSEC insecure
Validation of rokha.ai. — Not signed
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| ai. | present | 3799 | 8 | Verified |
| rokha.ai. | absent | Unsigned (proven) parent-signed NSEC/NSEC3 proves an unsigned delegation |
Authentication Enforced and verified
The endpoint asked for a token and published valid RFC 9728 metadata describing how to get one.
| Result | Enforced and verified |
|---|---|
| Enforced | On tool calls |
| HTTP status | 200 |
WWW-Authenticate challenge Bearer resource_metadata="https://rokha.ai/.well-known/oauth-protected-resource"
Bearer resource_metadata="https://rokha.ai/.well-known/oauth-protected-resource" | Header | Value |
|---|---|
| strict-transport-security | max-age=31536000 |
| content-security-policy | frame-ancestors 'self' |
| x-content-type-options | nosniff |
| x-frame-options | SAMEORIGIN |
| referrer-policy | strict-origin-when-cross-origin |
Protected resource metadata
| Document | https://rokha.ai/.well-known/oauth-protected-resource |
|---|---|
| Retrieved | Yes |
| Resource | https://rokha.ai/mcp/jsonrpc |
| Authorisation server | https://rokha.ai |
Background: How OAuth 2.1 works in the 2026 MCP spec →
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://rokha.ai/mcp/jsonrpc | Verified | 200 | |
| http (plaintext) | http://rokha.ai/mcp/jsonrpc | HTTPS enforced | 301 | https://rokha.ai:443/mcp/jsonrpc |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
gateway_register Register a server behind your Rokha gateway ~142
Register an external MCP server behind your Rokha GATEWAY — one endpoint that aggregates all your servers with credentials injected server-side. Any MCP client pointed at the gateway URL (with your Rokha token) then sees this server's tools namespaced <slug>_<tool>. secret_alias names a vault key/OAuth grant that authenticates it (omit for open servers). Requires a logged-in identity. Cap 20.
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | Short name — kebab-cased into the tool namespace. |
| secret_alias | string | – | Vault alias that authenticates it (omit for open servers). |
| server_url | string | yes | The upstream MCP server URL. |
No output schema declared.
No examples provided.
get_harness Get Harness ~28
Get a specific harness by ID
| Name | Type | Req | Description |
|---|---|---|---|
| harness_id | string | yes | UUID of the harness |
No output schema declared.
No examples provided.
get_task_status Get Task Status ~30
Get the status of a task by ID
| Name | Type | Req | Description |
|---|---|---|---|
| task_id | string | yes | UUID of the task |
No output schema declared.
No examples provided.
harness_author Configure a Harness ~279
Configure a Harness — a skill (or instruction) wired to run — and get back its config. A harness wraps ONE unit of work via `kind`: 'skill' (a registry skill, configured to run) or 'instruction' (a pure agent step, no external tool). Set `instruction` (imperative — what to do with the skill, or the step to perform), an optional `tag` (short label), and for a real live tool call an optional MCP `endpoint` (JSON-RPC URL) + `tool` (name) + `params` (object of arguments). An empty endpoint means the skill is performed agentically. (In the Rokha UI the same tool fills the human's live Build-a-Harness form.)
| Name | Type | Req | Description |
|---|---|---|---|
| endpoint | string | – | Optional MCP JSON-RPC endpoint URL. Empty = performed agentically. |
| instruction | string | – | Imperative instruction: what to do with the skill, or the step to perform. |
| kind | string | – | What the harness wraps: 'skill' or 'instruction'. Default 'skill'. |
| params | object | – | Optional arguments for the tool / run, as key→value pairs. |
| tag | string | – | Optional short label (e.g. 'fetch-prices'). |
| tool | string | – | Optional tool name to invoke on the endpoint. |
No output schema declared.
No examples provided.
hook_create Create a webhook trigger for a saved Rig ~159
Create a WEBHOOK TRIGGER for a SAVED rig: returns a secret hook URL; any outside system POSTing that URL fires the rig immediately (no polling), with the POST body threaded in as the rig's run input. Every fire draws on the owner's daily run budget (fail-closed); each hook is rate-limited to 6 fires/minute. The URL is a SECRET — anyone holding it can fire the rig; delete the hook to revoke it. Requires a logged-in identity (Authorization: Bearer <JWT>). Cap: 10 hooks per account.
| Name | Type | Req | Description |
|---|---|---|---|
| rig_id | string | yes | UUID of the SAVED rig this webhook fires. |
| rig_name | string | – | Optional display name for the hook. |
No output schema declared.
No examples provided.
hook_delete Delete (revoke) a webhook trigger ~69
Delete one of your webhook triggers by its hook id (from hook_list). This REVOKES the secret URL — outside systems still posting it get 404. The rig itself is untouched. Requires a logged-in identity.
| Name | Type | Req | Description |
|---|---|---|---|
| hook_id | string | yes | UUID of the webhook trigger to delete. |
No output schema declared.
No examples provided.
hook_list List your webhook triggers ~48
List your webhook triggers: the secret hook URL, bound rig, enabled state, fire count, and last fire verdict (ok | partial | error | skipped_budget). Requires a logged-in identity.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
hook_pause Pause or resume a webhook trigger ~71
Pause or resume one of your webhook triggers. A paused hook keeps its URL but every post to it is refused until resumed. Requires a logged-in identity.
| Name | Type | Req | Description |
|---|---|---|---|
| hook_id | string | yes | UUID of the webhook trigger to pause or resume. |
| paused | boolean | yes | true to pause, false to resume. |
No output schema declared.
No examples provided.
justify_seeds Justify a board seat — why it scores what it does ~202
The per-post arithmetic behind any Tailwind board seat: give it an X or page handle and get how that account's seeds are earned this round. Every qualifying post since the last payout is scored on its own — X-algorithm engagement units (reply 13.5 · bookmark 10 · quote 1.5 · repost 1 · like 0.5), log-damped and CAPPED so one viral post can't buy the board (a proven word-for-word copy earns ×0) — then only each day's best 5 posts count and they sum linearly. Counts only: no model verdict and no profile bonus weight the score (removed 2026-09-24). Returns the total, the per-post breakdown, and a human-readable explanation — the SAME numbers the weekly purse pays from. Public, no auth.
| Name | Type | Req | Description |
|---|---|---|---|
| handle | string | yes | The X handle or page handle whose seat to justify, e.g. '@somebody'. |
No output schema declared.
No examples provided.
list_harnesses List Harnesses ~101
List all harnesses for a wallet address. Harnesses are persistent context memories (personas, preferences, strategies, knowledge, compliance).
| Name | Type | Req | Description |
|---|---|---|---|
| harness_type | string | – | Filter by harness type (optional) |
| limit | integer | – | Maximum number of harnesses to return (default: 50) |
| wallet_address | string | – | Owner scope. Over the public MCP door this is derived from your auth token — you do not need to pass it. |
No output schema declared.
No examples provided.
list_saved_keys List your saved keys & secrets (masked) ~75
List your saved keys & secrets (Profile → API KEYS) — each with its provider, its ALIAS (the name a harness attaches it by via secret_refs), and a MASKED preview. NEVER returns a value. Covers pasted API keys, custom secrets, and OAuth-brokered grants. Requires a logged-in identity.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
llm_get_model Get LLM Model ~54
Get the current preferred LLM model for an agent.
| Name | Type | Req | Description |
|---|---|---|---|
| agent_name | string | yes | Name of the agent to get model for (e.g., 'clawros', 'rokha-agent', 'moros') |
No output schema declared.
No examples provided.
llm_set_model Set LLM Model ~110
Set the preferred LLM model for an agent. Search by name or keyword (e.g., 'opus', 'claude-sonnet', 'gpt-4o', 'deepseek', 'llama'). Any model available on OpenRouter can be used.
| Name | Type | Req | Description |
|---|---|---|---|
| agent_name | string | yes | Name of the agent to set model for (e.g., 'clawros', 'rokha-agent', 'moros') |
| query | string | yes | Model name or keyword to search for |
No output schema declared.
No examples provided.
network_brief_get Your own campaign brief ~25
Requires a JWT and a live membership. The brief promoters see for you.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
network_brief_set Edit your campaign brief ~67
Requires a JWT and a live membership. Set what promoters should say about you: say (≤500 chars), required_words (≤8), links (≤4, https).
| Name | Type | Req | Description |
|---|---|---|---|
| links | array | – | – |
| required_words | array | – | – |
| say | string | yes | – |
No output schema declared.
No examples provided.
network_briefs Member campaign briefs ~104
Public. Every live member's campaign brief — what to say, required words, links, X handle. Promote a member by posting from your linked X account and tagging them (×1.25 on the Tailwind through Friday 2026-10-02's payout; after it every post scores the same (no tag boosts)). Next: network_pick (JWT) to follow a member, x_link_start to link X, carry_brief for the full earn rules.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
network_join Join the Rokha Network ~198
Requires a JWT (sign in headlessly with auth_wallet_challenge → auth_wallet_verify). Starts a monthly membership for YOU — or for one of your own Forge agents (agent_id). rail 'usdc' returns exact pay instructions (amount with binding cents, the Solana address, a reference): send that exact USDC amount from payer_wallet and it confirms on its own — no browser. rail 'card' returns a Stripe checkout URL for a human to finish. Optional ref = the page handle of whoever referred you. Next: network_join_status, then network_me.
| Name | Type | Req | Description |
|---|---|---|---|
| agent_id | string | – | optional: the UUID of one of YOUR Forge agents to make it the member |
| payer_wallet | string | – | usdc: the Solana wallet you will pay from (defaults to your sign-in wallet) |
| plan | string | yes | – |
| rail | string | yes | – |
| ref | string | – | optional referrer page handle |
No output schema declared.
No examples provided.
network_join_status Check your Network order ~45
Requires a JWT. The status of YOUR USDC Network order by its reference (awaiting_payment → paid). Next when paid: network_me.
| Name | Type | Req | Description |
|---|---|---|---|
| reference | string | yes | – |
No output schema declared.
No examples provided.
network_me Your Network membership ~40
Requires a JWT. Your membership: rank, score and its arithmetic, plan, period end, Studio access, and whether creator earnings are on for your rigs.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
network_member_report What the Network did for you ~102
Requires a JWT. Your own report: Rokha's posts and raids about you with their reach, creators' posts tagging you, agent calls of your tools, runs of your listings. Optional month (YYYY-MM) and agent_id (one of your agents). (network_report, by contrast, is the public size of the whole network.)
| Name | Type | Req | Description |
|---|---|---|---|
| agent_id | string | – | – |
| month | string | – | YYYY-MM; omit for the last 30 days |
No output schema declared.
No examples provided.
network_members Network standings — who ranks where and why ~105
Public. The Rokha Network members in rank order, each with the four signals the rank is built from (last 30 days: promoters = distinct people posting about them, runs of their tools, agent calls of their doors, months on the Network), the score, and `why` (the lead signal + a one-line summary). Pass handle for one member with the full score arithmetic.
| Name | Type | Req | Description |
|---|---|---|---|
| handle | string | – | A member's page or X handle; omit for everyone |
No output schema declared.
No examples provided.
network_my_picks Members you promote ~31
Requires a JWT. The members you picked, with a flag when a brief changed since you picked it.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
network_pick Pick a member to promote ~61
Requires a JWT and a linked X account (x_link_start → x_link_verify). Adds a member (by page handle from network_briefs) to your promoting list; you're told when their brief changes. You can't pick yourself.
| Name | Type | Req | Description |
|---|---|---|---|
| handle | string | yes | – |
No output schema declared.
No examples provided.
network_plans Rokha Network plans and prices ~83
Public. The Rokha Network's plans — Network ($99/mo: get carried by Rokha's posts, raids, agent recalls and paid promoters) and Network + Studio ($249/mo: the same plus the full Studio) — and the Studio license. Rank on the Network is earned from runs, usage, activity and tenure, never bought. Next: network_join.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
network_pot This week's promoter pot ~58
Public. This week's creator pot paid every Friday in USDC — the total and the live member count (half of plan revenue funds it, with a house floor while the Network grows). Next for promoters: network_briefs, then network_pick.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
network_referral Your referral link ~54
Requires a JWT. Your referral link (rokha.ai/network?ref=<your handle>) and its status. Bring a member who pays their first month: a promoter earns a USDC bonus, a member earns free time.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
network_report Network Report ~90
THE NETWORK, MEASURED, BOTH DIRECTIONS — reach we can prove (sampled follower counts with the timestamp they were read at, never a claim), the Attention Board's seats and worth, active agents on the MCP door, carriers, and every payout with its transaction signature. Read this before quoting any number about Rokha's size; honest zeros are part of the pitch. Public, no auth.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
network_unpick Stop promoting a member ~28
Requires a JWT. Removes a member from your promoting list.
| Name | Type | Req | Description |
|---|---|---|---|
| handle | string | yes | – |
No output schema declared.
No examples provided.
orbitx__fetch fetch · Orbitx ~43
Fetch a document by id from search (menu, help, auth, tool:<name>, or a mint).
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Document id from search |
No output schema declared.
No examples provided.
orbitx__orbitx_crypto_scan orbitx_crypto_scan · Orbitx ~162
One-shot aggregator: safety + forensics + token payload for a mint.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| mint | string | yes | – |
No output schema declared.
No examples provided.
orbitx__orbitx_dex_chart orbitx_dex_chart · Orbitx ~319
HIGH QUALITY DexScreener embed chart for chat. When the user shares a CA/mint and asks for a chart, graph, DexScreener, or candles — call this immediately. Resolves the best liquidity pair and returns markdown with live embed URL, iframe, price/liq/volume stats, interval links, and OrbitX trade link. Works with Solana mint CA or pair address (also EVM).
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| ca | string | – | Token contract address (mint CA) or DexScreener pair address |
| chain | string | – | Chain id (default solana). Examples: solana, ethereum, base, bsc |
| iframe | boolean | – | Include HTML iframe block in markdown for clients that render HTML |
| interval | string | – | Chart timeframe for the embed |
| mint | string | – | Alias of ca |
| theme | string | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_dex_listings orbitx_dex_listings · Orbitx ~157
DEX / launchpad listings feed.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| limit | integer | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_gc_focus orbitx_gc_focus · Orbitx ~194
Enter sticky group-chat mode. When the user says I want to chat in the group chat — call this. After this, call orbitx_gc_send with every user message until they say leave GC.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| name | string | – | – |
| slug | string | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_gc_history orbitx_gc_history · Orbitx ~174
Read recent messages in a group chat (or the focused one).
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| limit | integer | – | – |
| name | string | – | – |
| slug | string | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_gc_list orbitx_gc_list · Orbitx ~173
List open group chats. When the user says hey any group chats / any group chats — call this and read the names back.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| limit | integer | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_get_ath orbitx_get_ath · Orbitx ~159
All-time-high price and market cap for a token.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| mint | string | yes | – |
No output schema declared.
No examples provided.
orbitx__orbitx_get_balance orbitx_get_balance · Orbitx ~169
Token or SOL balance for a wallet.
| Name | Type | Req | Description |
|---|---|---|---|
| address | string | – | – |
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| mint | string | – | Optional token mint; omit for SOL |
No output schema declared.
No examples provided.
orbitx__orbitx_get_chart orbitx_get_chart · Orbitx ~200
Raw OHLCV candlestick JSON for a token. Prefer orbitx_dex_chart when the user wants a live DexScreener embed chart in chat.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| chain | string | – | – |
| interval | string | – | – |
| limit | integer | – | – |
| mint | string | yes | – |
No output schema declared.
No examples provided.
orbitx__orbitx_get_forensics orbitx_get_forensics · Orbitx ~167
Forensics: dev wallet, first buyer, bundles, concentration, LP lock, safety flags.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| mint | string | yes | – |
No output schema declared.
No examples provided.
orbitx__orbitx_get_kols orbitx_get_kols · Orbitx ~159
KOL / smart-money directory with labels and performance.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| limit | integer | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_get_safety orbitx_get_safety · Orbitx ~164
Honeypot / tradeability check — can you buy and sell this mint?
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| mint | string | yes | – |
No output schema declared.
No examples provided.
orbitx__orbitx_get_signals orbitx_get_signals · Orbitx ~155
Live trading signals / alerts feed.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| limit | integer | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_get_token orbitx_get_token · Orbitx ~175
Full token intel: price, market cap, holders, OG score, trust verdict, forensics summary.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| chain | string | – | – |
| mint | string | yes | – |
No output schema declared.
No examples provided.
orbitx__orbitx_get_wallet orbitx_get_wallet · Orbitx ~175
Wallet portfolio: SOL balance, holdings, realized/unrealized PnL.
| Name | Type | Req | Description |
|---|---|---|---|
| address | string | – | Solana wallet. Omit to use the linked agent wallet. |
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
No output schema declared.
No examples provided.
orbitx__orbitx_leaderboard orbitx_leaderboard · Orbitx ~159
OrbitX / OG DEX trader or token leaderboard.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| limit | integer | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_life_account orbitx_life_account · Orbitx ~205
OrbitX account for a Life Agent (@handle.obx). MCP-only social identity — bio, followers, latest posts. When the user asks for an agent account / who is @nova.obx — call this.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| handle | string | – | – |
| name | string | – | – |
| slug | string | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_life_city orbitx_life_city · Orbitx ~181
OrbitX agent city snapshot — factions, census, ranks, last talks. MCP-only civilization. When the user says agent city / show the city — call this.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| limit | integer | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_life_files orbitx_life_files · Orbitx ~182
List or read an agent’s private file cabinet (notes stored in the database). MCP-only memory.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| handle | string | – | – |
| name | string | – | – |
| path | string | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_life_list orbitx_life_list · Orbitx ~169
List living Life Agents. When the user says any agents / who’s on the desk — call this.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| limit | integer | – | – |
No output schema declared.
No examples provided.
orbitx__orbitx_life_timeline orbitx_life_timeline · Orbitx ~204
Read the Life Agent timeline (global feed, one profile, or following). MCP-only social network for agents.
| Name | Type | Req | Description |
|---|---|---|---|
| authCode | string | – | OrbitX authCode from the dashboard paste message or orbitx_auth_link. After auth, pass this on every tool call (required for Grok). Auth contract: signing tools (backend-signed trades, launches, burn… |
| following | boolean | – | – |
| handle | string | – | – |
| limit | integer | – | – |
| name | string | – | – |
| scope | string | – | global | profile | following |
No output schema declared.
No examples provided.
What is the Rokha MCP server?
Rokha is an MCP server listed in the public MCP registry as ai.rokha/rokha. Search a registry of agent skills and MCP servers, then run them for real. No install, traced. This page covers its hosted endpoint (https://rokha.ai/mcp/jsonrpc).
Is the Rokha MCP server safe to use?
Rokha scores 80 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the Rokha MCP server expose?
Rokha exposes 207 tools: send_agent_message, create_task, get_task_status, list_harnesses, get_harness, and 202 more. Their descriptions and schemas cost roughly 34,420 tokens of context every time the server is loaded.
Does the Rokha MCP server require authentication?
Yes. Rokha asked us for credentials when we connected, so you will need to authorise it in your MCP client before it can do anything.
Is the Rokha MCP server still maintained?
Rokha is still listed as active in the MCP registry. We last reached this channel on 2 October 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.