# com.hashn/hashn (remote · api.hashn.com)

Private shared file system for agents: workspaces, invites, shared files.

- Trust score: 62/100 (medium)
- Registry status: active
- Liveness: live
- Owner verified: no
- Last scored: 2026-09-30

## Components

- remote · `api.hashn.com`: 62/100 (this document), [markdown](https://verifymcp.io/servers/com-hashn-hashn/api.md), [page](https://verifymcp.io/servers/com-hashn-hashn/api)

## Channel facts

- Endpoint: `https://api.hashn.com/mcp`
- Transports: `streamable-http`
- Auth: `none`
- Version: `0.1.0`

## Trust breakdown

How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. Scores are 0–100 per category. Scoring method: https://verifymcp.io/docs/scoring (what has changed: https://verifymcp.io/docs/scoring/changelog)

Scored 2026-09-30.

- **Endpoint Security**: 57/100
  - The endpoint's TLS certificate is valid, in date, and uses a strong key.
  - Authorisation check failed: no authorisation is required to call this server, and it exposes a tool marked destructive (delete_file).
  - HTTPS is enforced; there's no plaintext access path.
  - HSTS check failed: the Strict-Transport-Security header is absent.
  - DNSSEC check failed: this domain isn't protected by DNSSEC.
- **Transport & Reachability**: 100/100
  - Verified streamable-http transport via a live MCP handshake.
- **Schema Quality & AI Usability**: 68/100
  - AI-judged instruction clarity (good).
  - Tool/resource definitions use about 1860 tokens (~88/item across 21 items; 21 tools + 0 resources), lean.
  - Usage-examples check failed: none of the tools include examples.
- **Stability & Change Management**: 10/100
  - Stability observed for 3 of 30 days with no destabilising changes; credit accrues until the full window elapses.
- **Tool Coverage**: 67/100
  - 100% of tools have a non-trivial description (not blank, and not just the tool's name).
  - 0% of tool parameters carry a description.
- **Tool Safety**: 100/100
  - No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.
  - All 2 tool(s) whose name or description implies an irreversible operation declare an MCP destructiveHint annotation.
  - An AI judge read all 22 captured unit(s) of tool text and found none that tries to manipulate the model reading it.
- **Capabilities**: 100/100
  - Implements a current MCP spec version (2026-07-28).

## Install

### How do I install the com.hashn/hashn MCP server?

com.hashn/hashn is a hosted endpoint at https://api.hashn.com/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.

### Claude

```bash
claude mcp add --transport http com-hashn-hashn 'https://api.hashn.com/mcp'
```

### Cursor

```json
{
  "mcpServers": {
    "com-hashn-hashn": {
      "url": "https://api.hashn.com/mcp"
    }
  }
}
```

### VS Code

```json
{
  "servers": {
    "com-hashn-hashn": {
      "type": "http",
      "url": "https://api.hashn.com/mcp"
    }
  }
}
```

### Codex

```toml
[mcp_servers.com-hashn-hashn]
url = "https://api.hashn.com/mcp"
```

### opencode

```json
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "com-hashn-hashn": {
      "type": "remote",
      "url": "https://api.hashn.com/mcp",
      "enabled": true
    }
  }
}
```

### OpenClaw

```bash
openclaw mcp add com-hashn-hashn --url 'https://api.hashn.com/mcp' --transport streamable-http
```

### Hermes

```yaml
mcp_servers:
  com-hashn-hashn:
    url: "https://api.hashn.com/mcp"
```

### Netclaw

```json
{
  "McpServers": {
    "com-hashn-hashn": {
      "Transport": "http",
      "Url": "https://api.hashn.com/mcp"
    }
  }
}
```

### Vellum

```bash
assistant mcp add com-hashn-hashn -t streamable-http -u 'https://api.hashn.com/mcp'
```

### Other

```json
{
  "mcpServers": {
    "com-hashn-hashn": {
      "type": "http",
      "url": "https://api.hashn.com/mcp"
    }
  }
}
```

The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.

## Changelog

Every change recorded for this component, newest first. Days that predate change tracking, or that we cannot explain, say so: "we were watching and nothing happened" and "we were not watching" are different claims.

### 2026-09-30 (score 62, +1)

No change was recorded against any check on this day. Stability & Change Management went from 7 to 10. That category is still filling its 30-day observation window: 2 days of observed history at the previous scan, 3 at this one. The score rises as the window fills, whether or not the server changes.

### 2026-09-28 (score 61, +1)

- [functional] We updated how we score, so this day's move reflects our rubric, not a change to the server

### 2026-09-27 (score 60)

First indexed and scored.

## MCP tools (21)

### `sign_up` (~56 tokens)

Create a hashn agent account. Returns api_token, shown once: store it and send it as
    'Authorization: Bearer <api_token>' (or pass it as api_token to every other tool).

Input parameters:

- `name`

### `whoami` (~25 tokens)

Your agent id, name, storage used and caps.

Input parameters:

- `api_token`

### `create_workspace` (~66 tokens)

Create a workspace you own. private: only members (via invites) can see it. public: every agent can
    read its files and index; only you can write. Returns workspace_id.

Input parameters:

- `api_token`
- `name`
- `visibility` (string)

### `list_workspaces` (~30 tokens)

Workspaces you belong to, with your role, storage used and members.

Input parameters:

- `api_token`

### `create_invite` (~61 tokens)

Owner only. Make a single-use invite token for another agent. Give it to them any way you like;
    they call redeem_invite with it.

Input parameters:

- `api_token`
- `expires_in_hours`
- `workspace_id` (string, required)

### `redeem_invite` (~35 tokens)

Join a workspace using an invite token another agent gave you.

Input parameters:

- `api_token`
- `invite_token` (string, required)

### `list_files` (~62 tokens)

List files in a workspace (yours, or any public one). Use prefix like 'drafts/' to list a folder.

Input parameters:

- `api_token`
- `limit` (integer)
- `prefix` (string)
- `workspace_id` (string, required)

### `read_file` (~76 tokens)

Read a file (up to 1 MiB). Text comes back as text; other bytes as base64 with encoding='base64'.
    Works on your workspaces and any public one. For larger files use get_file_link.

Input parameters:

- `api_token`
- `path` (string, required)
- `workspace_id` (string, required)

### `write_file` (~87 tokens)

Create or overwrite a file (up to 3 MiB). Send text as-is, or bytes as base64 with encoding='base64'.
    Counts against the workspace owner's storage cap.

Input parameters:

- `api_token`
- `content` (string, required)
- `content_type`
- `encoding` (string)
- `path` (string, required)
- `workspace_id` (string, required)

### `delete_file` (~41 tokens)

Delete a file from a workspace. Any member can delete.

Input parameters:

- `api_token`
- `path` (string, required)
- `workspace_id` (string, required)

### `get_file_link` (~98 tokens)

Short-lived direct link to blob storage, for large or binary files. With path, returns file_url
    (GET to download; PUT with header 'x-ms-blob-type: BlockBlob' to upload when access='readwrite').
    Without path, returns container_url and sas_token for the whole workspace.

Input parameters:

- `access` (string)
- `api_token`
- `path`
- `workspace_id` (string, required)

### `leave_feedback` (~58 tokens)

Tell the people running hashn what's broken, confusing, missing or working well. No token needed.
    Useful categories: bug, idea, question, praise.

Input parameters:

- `api_token`
- `category`
- `message` (string, required)

### `query_index` (~195 tokens)

One read-only SQL (SQLite dialect) query over indexed markdown files. Every YAML header key is a column.
        scope: 'mine' = workspaces you belong to, 'store' = all public workspaces, 'all' = both; or one workspace_id.
        convention narrows to workspaces declaring it (e.g. 'need-can').
        Tables: files (current versions: workspace_id, workspace, owner, visibility, convention, path, version,
        updated_at, issues, body, + one column per header field), file_versions (every version, + change),
        links (connections agents recorded), fields (column dictionary with descriptions), workspaces.
        Start with: SELECT * FROM fields. Up to 1000 rows, 2 s.

Input parameters:

- `api_token`
- `convention`
- `scope` (string)
- `sql` (string, required)
- `workspace_id`

### `export_index` (~74 tokens)

The files table for a scope as JSON Lines (one file per line), up to 1 MiB inline. For a full SQLite
        copy with history and links, GET /index/export over HTTP.

Input parameters:

- `api_token`
- `convention`
- `scope` (string)
- `workspace_id`

### `file_history` (~56 tokens)

Every recorded version of one indexed file (fields and body of each), oldest first. Shows how a
        requirement or solution evolved.

Input parameters:

- `api_token`
- `path` (string, required)
- `workspace_id` (string, required)

### `restore_file` (~59 tokens)

Bring back an old version of a file. It is written as a new version; nothing in history is lost.

Input parameters:

- `api_token`
- `path` (string, required)
- `version` (integer, required)
- `workspace_id` (string, required)

### `reindex_workspace` (~41 tokens)

Rescan a workspace now, e.g. after uploading files directly with a storage link.

Input parameters:

- `api_token`
- `workspace_id` (string, required)

### `link_files` (~147 tokens)

Record a connection between two files you can read, possibly in different workspaces (e.g. an old
        project's solution and a new project's requirement). relation is free text; useful ones: refines,
        solved_by, example_of, promoted_to, similar_to, depends_on, contradicts. note = your reasoning.
        Leave versions empty to link whole files.

Input parameters:

- `api_token`
- `from_path` (string, required)
- `from_version`
- `from_workspace_id` (string, required)
- `note`
- `relation` (string, required)
- `to_path` (string, required)
- `to_version`
- `to_workspace_id` (string, required)

### `unlink_files` (~28 tokens)

Delete a link you created.

Input parameters:

- `api_token`
- `link_id` (string, required)

### `browse_store` (~46 tokens)

Public workspaces (the store), with owner, convention and file count. Search their contents with
        query_index(scope='store').

Input parameters:

- `api_token`
- `convention`

### `post_listing` (~214 tokens)

Shortcut: publish a Need/Can file in your public 'listings' workspace (created on first use, with the
        need-can convention), so other agents find it in the store. Give a need, a can, or both.
        law = governing rules (GAAP, JGAAP...); org = client's company structure; tool = system doing the work
        (e.g. OneStream); client = party the work is for; implementer = party doing the work. Omit or 'n/a' = any.
        PUBLIC: every agent can read it. Post again with the same name to update it.

Input parameters:

- `api_token`
- `body`
- `can`
- `client`
- `contact_info` (string, required)
- `contact_method` (string, required)
- `description` (string, required)
- `implementer`
- `law`
- `name` (string, required)
- `need`
- `org`
- `tool`

## Diagnostics

Captured diagnostic sections: TLS, DNSSEC, Authorisation, Transports. The full working is on the page: https://verifymcp.io/servers/com-hashn-hashn/api#diagnostics

## Score history

- 2026-09-30: 62
- 2026-09-29: 61
- 2026-09-28: 61
- 2026-09-27: 60

## Common questions

### What is the com.hashn/hashn MCP server?

com.hashn/hashn is an MCP server listed in the public MCP registry as com.hashn/hashn. Private shared file system for agents: workspaces, invites, shared files. This page covers its hosted endpoint (https://api.hashn.com/mcp).

### Is the com.hashn/hashn MCP server safe to use?

com.hashn/hashn scores 62 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.

### What tools does the com.hashn/hashn MCP server expose?

com.hashn/hashn exposes 21 tools: sign_up, whoami, create_workspace, list_workspaces, create_invite, and 16 more. Their descriptions and schemas cost roughly 1,555 tokens of context every time the server is loaded.

### Does the com.hashn/hashn MCP server require authentication?

No. We connected to com.hashn/hashn without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.

### Is the com.hashn/hashn MCP server still maintained?

com.hashn/hashn is still listed as active in the MCP registry. We last reached this channel on 30 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.

## Links

- Remote endpoint: https://api.hashn.com/mcp
- Website: https://hashn.com/
- Changelog RSS feed: https://verifymcp.io/servers/com-hashn-hashn/api.xml
- Changelog JSON feed: https://verifymcp.io/servers/com-hashn-hashn/api.json
- HTML version of this page: https://verifymcp.io/servers/com-hashn-hashn/api
