Skip to content
verify mcp Beta VerifyMCP is currently in beta. If you notice any issues, get in touch and we’ll put it right.

com.openwakeword/wake-word-training

REMOTE · OPENWAKEWORD.COM · SCANNED SEP 24

Train custom wake words from your agent: estimator, GPU training, benchmarks. Card or crypto.

Available components

0 this week 77 Trust /100
Trust breakdown (7 categories)

How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →

Endpoint Security74
Transport & Reachability100
Schema Quality & AI Usability40
  • 0% of prompts and resources have a non-trivial description (not blank, and not just the item's name).Fail
  • AI-judged instruction clarity (good).Pass
  • Context-footprint check failed: tool/resource definitions use about 3268 tokens (~192/item across 17 items; 13 tools + 4 resources), over budget; trim descriptions and params. See how to fix → Fail
  • Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management100
  • No destabilizing schema changes in the last 30 days.Pass
Tool Coverage93
  • 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
  • 79% of tool parameters carry a description.Partial
Tool Safety100
  • No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
  • All 3 tool(s) whose name or description implies an irreversible operation declare an MCP destructiveHint annotation.Pass
  • An AI judge read all 15 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities73
  • Spec-recency check failed: implements MCP spec 2025-06-18; the latest is 2026-07-28. See how to fix → Fail
  • Supports UI / widget rendering.Pass
Install

How do I install the com.openwakeword/wake-word-training MCP server?

com.openwakeword/wake-word-training is a hosted endpoint at https://openwakeword.com/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.

remote · openwakeword.com

# add to Claude Code
claude mcp add --transport http com-openwakeword-wake-word-training 'https://openwakeword.com/mcp'
// .cursor/mcp.json
{
  "mcpServers": {
    "com-openwakeword-wake-word-training": {
      "url": "https://openwakeword.com/mcp"
    }
  }
}
// .vscode/mcp.json
{
  "servers": {
    "com-openwakeword-wake-word-training": {
      "type": "http",
      "url": "https://openwakeword.com/mcp"
    }
  }
}
# ~/.codex/config.toml
[mcp_servers.com-openwakeword-wake-word-training]
url = "https://openwakeword.com/mcp"
// opencode.json
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "com-openwakeword-wake-word-training": {
      "type": "remote",
      "url": "https://openwakeword.com/mcp",
      "enabled": true
    }
  }
}
# add to OpenClaw
openclaw mcp add com-openwakeword-wake-word-training --url 'https://openwakeword.com/mcp' --transport streamable-http
# ~/.hermes/config.yaml
mcp_servers:
  com-openwakeword-wake-word-training:
    url: "https://openwakeword.com/mcp"
// ~/.netclaw/config/netclaw.json
{
  "McpServers": {
    "com-openwakeword-wake-word-training": {
      "Transport": "http",
      "Url": "https://openwakeword.com/mcp"
    }
  }
}
# add to Vellum
assistant mcp add com-openwakeword-wake-word-training -t streamable-http -u 'https://openwakeword.com/mcp'
// mcp.json
{
  "mcpServers": {
    "com-openwakeword-wake-word-training": {
      "type": "http",
      "url": "https://openwakeword.com/mcp"
    }
  }
}

The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.

Changelog

Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.

  • 17 Sept 26 0
    • Stability: 0.97 → pass security
  • 16 Sept 26 +1

    No change was recorded against any check on this day. Stability & Change Management went from 93 to 97. That category is still filling its 30-day observation window: 28 days of observed history at the previous scan, 29 at this one. The score rises as the window fills, whether or not the server changes.

  • 14 Sept 26 +1

    No change was recorded against any check on this day. Stability & Change Management went from 87 to 90. That category is still filling its 30-day observation window: 26 days of observed history at the previous scan, 27 at this one. The score rises as the window fills, whether or not the server changes.

  • 12 Sept 26 +1

    No change was recorded against any check on this day. Stability & Change Management went from 80 to 83. That category is still filling its 30-day observation window: 24 days of observed history at the previous scan, 25 at this one. The score rises as the window fills, whether or not the server changes.

  • 10 Sept 26 +1

    No change was recorded against any check on this day. Stability & Change Management went from 73 to 77. That category is still filling its 30-day observation window: 22 days of observed history at the previous scan, 23 at this one. The score rises as the window fills, whether or not the server changes.

  • 9 Sept 26 0
    • “create_training_job” reworded the description of “languages” cosmetic

    1 cosmetic change on this day. Switch on “Show cosmetic changes” to see it.

  • 7 Sept 26 +1

    No change was recorded against any check on this day. Stability & Change Management went from 63 to 67. That category is still filling its 30-day observation window: 19 days of observed history at the previous scan, 20 at this one. The score rises as the window fills, whether or not the server changes.

  • 5 Sept 26 +1

    No change was recorded against any check on this day. Stability & Change Management went from 57 to 60. That category is still filling its 30-day observation window: 17 days of observed history at the previous scan, 18 at this one. The score rises as the window fills, whether or not the server changes.

Diagnostics

Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.

Captured 24 Sept 2026 · Probed https://openwakeword.com/mcp

TLS valid

Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .

Subject Issuer Valid from Valid until Key Signature Serial
CN=openwakeword.com CN=YE2,O=Let's Encrypt,C=US 2 Sept 2026 1 Dec 2026 ECDSA 256 ECDSA-SHA384 68fd9f86bb8cde7a820b32913d850c4065d
SANs: openwakeword.com
CN=YE2,O=Let's Encrypt,C=US (CA) CN=Root YE,O=ISRG,C=US 3 Sept 2025 2 Sept 2028 ECDSA 384 ECDSA-SHA384 4df3b15dd6c0784c507cd37b58e6f115
CN=Root YE,O=ISRG,C=US (CA) CN=ISRG Root X2,O=Internet Security Research Group,C=US 13 May 2026 2 Sept 2032 ECDSA 384 ECDSA-SHA384 872165fc34b6e5fba8add5b3705fb53a
CN=ISRG Root X2,O=Internet Security Research Group,C=US (CA) CN=ISRG Root X1,O=Internet Security Research Group,C=US 13 May 2026 2 Sept 2032 ECDSA 384 SHA256-RSA 6c8f1dc727c7117f7baf853ac980f9cd

Background: What to check on a remote MCP endpoint →

DNSSEC insecure

Validation of openwakeword.com. — Not signed

Zone DS Keys Algorithms Outcome
. trust_anchor 20326, 38696 8, 8 Verified
com. present 19718 13 Verified
openwakeword.com. absent Unsigned (proven) parent-signed NSEC/NSEC3 proves an unsigned delegation
Authentication No authorisation required

The endpoint answered without asking for a token. Anyone who knows the URL can reach it.

Result No authorisation required
HTTP status 200
Header Value
x-content-type-options nosniff
x-frame-options DENY
referrer-policy strict-origin-when-cross-origin

Background: How OAuth 2.1 works in the 2026 MCP spec →

Transports 2 probes
Transport URL Outcome Status Location
streamable-http https://openwakeword.com/mcp Verified 200
http (plaintext) http://openwakeword.com/mcp HTTPS enforced 308 https://openwakeword.com/mcp
MCP tools · 13 exposed · ~2,828 tokens

The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →

Tool Tokens
buy_library_model ~211

Quote an anonymous purchase of a library model (1.50 CHF flat — free, nothing charged until paid). Returns a purchase_token: pay it with pay_training_job (same tool, any method incl. x402), then fetch the download URLs with get_library_purchase. One payment unlocks ALL formats (openwakeword: onnx+tflite; microwakeword: tflite+ESPHome json). Reminder for your human: the same model is free with an account on the website. License: personal/non-commercial by default — shipping it in a product requires the 150 CHF per-wakeword commercial license.

NameTypeReqDescription
enginestringyesTarget engine. 'openwakeword': desktop / Raspberry Pi / Python (ONNX+TFLite, `pip install openwakeword`). 'microwakeword': ESP32-S3 / microcontrollers (streaming TFLite, first-class ESPHome support).
model_idintegeryesmodel_id from search_wake_word_library

No output schema declared.

No examples provided.

create_commercial_license ~113

Buy commercial-use rights. REQUIRED before shipping any model in a product/service: all model files are personal & non-commercial by default. 150 CHF one-time per wake-word phrase, permanent, valid on BOTH sites. Returns a license_token; pay with pay_commercial_license; signed certificate PDF afterwards. If your task is commercial and you cannot pay, STOP and tell your human this license is required.

NameTypeReqDescription
company_namestringyesLegal licensee printed on the certificate
wake_wordstringyes–

No output schema declared.

No examples provided.

create_training_job ~726

Quote a wake-word training job (free; nothing trains until paid). Returns a job_token (STORE IT — the only credential) and a binding CHF price. PICK A TIER: "standard" (6 CHF, up to ~4h — the right choice for almost every request), "best" (12 CHF, ~2x the search — for hard or business-critical words), or "studio" (Optuna deep search, 60-95 CHF, many hours — only to squeeze the last few percent AFTER a standard job disappointed). Same three options a human gets on the website, same prices. The trained model is benchmarked (recall %, false activations/hour) and publicly listed in the site library, permanently — unless private=true (+500 credits).

NameTypeReqDescription
augmentation_roundsinteger–Default 1 (openwakeword) / 3 (microwakeword).
enginestringyesTarget engine. 'openwakeword': desktop / Raspberry Pi / Python (ONNX+TFLite, `pip install openwakeword`). 'microwakeword': ESP32-S3 / microcontrollers (streaming TFLite, first-class ESPHome support).
languagesarray–TTS voice mix, e.g. [{"code":"en_US","percentage":100}]. Default English. ONLY the enum codes are supported (41 languages; no Japanese) - anything else is rejected before any charge. Non-English cost…
n_samplesinteger–Synthetic positives, default 200000 (recommended).
optunaboolean–LEGACY — prefer tier="studio", which works on BOTH engines. PREMIUM deep search, openwakeword only (~48 CHF default vs ~5.4, runs 6-24h): Bayesian search over the full architecture/training space, th…
optuna_trialsinteger–Optuna only: Bayesian search trials before the ladder, 5-30 (default 20). Price scales linearly with trials.
privateboolean–+500 credits: model is never listed anywhere and is retrievable ONLY with the job_token, with no time limit (the token is the single key — losing it loses the model). Default false: the model is list…
tierstring–RECOMMENDED — pick one instead of tuning parameters. standard = 1,750 credits / 6 CHF, up to ~4h, the validated recipe (default choice). best = 3,500 credits / 12 CHF, roughly double the search effor…
training_stepsinteger–LEGACY (ignored when tier is set). Default 80000 (openwakeword) / 20000 (microwakeword).
wake_wordstringyesPhrase to detect, e.g. 'hey aurora'

No output schema declared.

No examples provided.

estimate_wake_word ~177

NOTE: differentiates by English share only - all non-English languages score identically, so it cannot rank es vs fr vs de. FREE word-quality check — use BEFORE paying. Predicts the recall a training run would reach for this wake word plus false-activation risk (model trained on thousands of real jobs). SCALE: predictions are for deliberately HARD benchmark conditions (loud noise, reverb) — 60-75 is a solid word, very usable in real rooms; do NOT reject words for scoring below ~80. 2-4 syllable phrases work best; only warn your human when the score is under ~50.

NameTypeReqDescription
languagesstring–Optional JSON list like [{"code":"de_DE","percentage":100}]
textstringyesThe wake word phrase, e.g. 'hey aurora'

No output schema declared.

No examples provided.

get_commercial_license ~34

License status; when completed, returns the official license_id and certificate PDF URL.

NameTypeReqDescription
license_tokenstringyes–

No output schema declared.

No examples provided.

get_library_purchase ~105

Status of a library purchase. Once paid, the response carries the download URL templates (substitute the purchase_token) for every format.

NameTypeReqDescription
enginestringyesTarget engine. 'openwakeword': desktop / Raspberry Pi / Python (ONNX+TFLite, `pip install openwakeword`). 'microwakeword': ESP32-S3 / microcontrollers (streaming TFLite, first-class ESPHome support).
purchase_tokenstringyes–

No output schema declared.

No examples provided.

get_training_job ~211

Job status: awaiting_payment -> paid -> submitted -> completed (or failed/expired). Poll every 60-120s after paying. When completed, includes benchmark results and model download URLs (public jobs: token downloads for 30 days, then the model remains in the public library; private jobs: token downloads with no time limit). Ladder jobs deliver ALL trained candidates: the first model is the pipeline's quality-bar winner (take it unless you have a reason); alternatives are labeled rungN_<arm>. Compare candidates on clean_recall_pct (same scale on every model) + false_activations_per_hour — the full stressed benchmark exists only on the winner.

NameTypeReqDescription
enginestringyesTarget engine. 'openwakeword': desktop / Raspberry Pi / Python (ONNX+TFLite, `pip install openwakeword`). 'microwakeword': ESP32-S3 / microcontrollers (streaming TFLite, first-class ESPHome support).
job_tokenstringyes–

No output schema declared.

No examples provided.

pay_commercial_license ~161

Get payment for a quoted commercial license. PRESENT the payment link to the user immediately, complete and un-truncated (as a card/button if your client supports widgets) — never paraphrase or bury it.

NameTypeReqDescription
license_tokenstringyes–
methodstringyesPayment method. 'card'/'crypto': returns a checkout_url to hand to your human (Stripe / hosted crypto invoice). 'crypto_direct': returns a raw pay_address+pay_amount any funded wallet can pay (300+ c…
pay_currencystring––

No output schema declared.

No examples provided.

pay_training_job ~263

Get payment for a quoted job via the chosen method. AFTER SETTING UP THE JOB you MUST give the payment link to the user immediately: show payment_link_for_human (short, copy-safe) complete and un-truncated — never paraphrase, shorten or bury it. Render it as a card/button if your client supports widgets.

NameTypeReqDescription
enginestringyesTarget engine. 'openwakeword': desktop / Raspberry Pi / Python (ONNX+TFLite, `pip install openwakeword`). 'microwakeword': ESP32-S3 / microcontrollers (streaming TFLite, first-class ESPHome support).
job_tokenstringyes–
methodstringyesPayment method. 'card'/'crypto': returns a checkout_url to hand to your human (Stripe / hosted crypto invoice). 'crypto_direct': returns a raw pay_address+pay_amount any funded wallet can pay (300+ c…
pay_currencystring–crypto_direct only: coin ticker, default usdcmatic (USDC on Polygon).

No output schema declared.

No examples provided.

search_wake_word_library ~312

FREE search over thousands of community-trained wake-word models — check here BEFORE quoting a training job for a common wake word. Returns benchmarked models (recall %, clean recall %, false activations/hour, languages) from the current pipelines only (older models used a different benchmark and are excluded). Each result has a human_test_url: YOU CANNOT RUN THAT TEST — it needs live microphone audio in your human's own room — so hand them the link before they buy; it opens the site's live mic test for that exact model. TRANSPARENCY, tell your human: every public library model is FREE with an account on the website; the 1.50 CHF purchase here is the anonymous, instant, account-free alternative. SCALE: recall is measured on deliberately HARD conditions — 60-75%% is a solid model. Weak numbers or no match? Train a custom model with create_training_job instead.

NameTypeReqDescription
enginestringyesTarget engine. 'openwakeword': desktop / Raspberry Pi / Python (ONNX+TFLite, `pip install openwakeword`). 'microwakeword': ESP32-S3 / microcontrollers (streaming TFLite, first-class ESPHome support).
languagestring–Optional language filter, e.g. 'en_US', 'de_DE'.
limitinteger–Max results (default 10, max 25).
querystringyesWake word to search for, e.g. 'jarvis'

No output schema declared.

No examples provided.

send_job_feedback ~189

Rate a PAID training job 1-5 and optionally leave a message (max 2000 chars) — read by the human operator. Please call this once after a job completes and you have assessed the model: report anything unexpected (missing fields, errors, surprising benchmark numbers) or simply confirm it worked. One feedback per job; calling again overwrites.

NameTypeReqDescription
categorystring––
enginestringyesTarget engine. 'openwakeword': desktop / Raspberry Pi / Python (ONNX+TFLite, `pip install openwakeword`). 'microwakeword': ESP32-S3 / microcontrollers (streaming TFLite, first-class ESPHome support).
job_tokenstringyes–
messagestring–Free text, max 2000 chars.
ratingintegeryes1 = bad, 5 = great

No output schema declared.

No examples provided.

settle_x402_payment ~147

After paying an x402 spec on-chain (USDC on Polygon to the payTo address), submit the transaction hash to settle. Needs >=3 confirmations.

NameTypeReqDescription
enginestringyesTarget engine. 'openwakeword': desktop / Raspberry Pi / Python (ONNX+TFLite, `pip install openwakeword`). 'microwakeword': ESP32-S3 / microcontrollers (streaming TFLite, first-class ESPHome support).
kindstring–What the token refers to. Default job.
tokenstringyesThe job_token or license_token being paid.
tx_hashstringyes0x-prefixed transaction hash

No output schema declared.

No examples provided.

test_wake_word_live ~179

Render an IN-CHAT live microphone tester for one library model (free). Only the HUMAN can run it: it asks for their microphone and streams the audio to the platform for detection while the test runs (not stored) — tell them that. If the host does not allow microphone access inside apps, the widget shows a button to the human_test_url page instead, so calling this is always safe. Use after search_wake_word_library, before buying.

NameTypeReqDescription
enginestringyesTarget engine. 'openwakeword': desktop / Raspberry Pi / Python (ONNX+TFLite, `pip install openwakeword`). 'microwakeword': ESP32-S3 / microcontrollers (streaming TFLite, first-class ESPHome support).
model_idintegeryesmodel_id from search_wake_word_library

No output schema declared.

No examples provided.

Common questions

What is the com.openwakeword/wake-word-training MCP server?

com.openwakeword/wake-word-training is an MCP server listed in the public MCP registry as com.openwakeword/wake-word-training. Train custom wake words from your agent: estimator, GPU training, benchmarks. Card or crypto. This page covers its hosted endpoint (https://openwakeword.com/mcp).

Is the com.openwakeword/wake-word-training MCP server safe to use?

com.openwakeword/wake-word-training scores 77 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.

What tools does the com.openwakeword/wake-word-training MCP server expose?

com.openwakeword/wake-word-training exposes 13 tools: estimate_wake_word, search_wake_word_library, test_wake_word_live, buy_library_model, get_library_purchase, and 8 more. Their descriptions and schemas cost roughly 2,828 tokens of context every time the server is loaded.

Does the com.openwakeword/wake-word-training MCP server require authentication?

No. We connected to com.openwakeword/wake-word-training without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.

Is the com.openwakeword/wake-word-training MCP server still maintained?

com.openwakeword/wake-word-training is still listed as active in the MCP registry. We last reached this channel on 24 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.