SMKlog Parcel Shipping Rates
REMOTE · QUOTE-API.SMKLOG.COM · SCANNED OCT 2
Live USPS, UPS, FedEx and DHL rates from the US: domestic, Canada, UK, Germany, Australia. No scale.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →
Endpoint Security66
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- No authorisation is required to call this server. Every tool declares its destructiveHint and none is destructive, so open access doesn't expose one. See how to fix → View diagnostics → Partial
- HTTPS enforcement could not be verified: the plaintext port answered with HTTP 405, which proves neither a plaintext path nor enforcement. View diagnostics → Unverified
- HSTS check failed: the Strict-Transport-Security header is absent. See how to fix → View diagnostics → Fail
- DNSSEC is configured correctly; the domain's records validate against the full chain to the root. View diagnostics → Pass
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability63
- AI-judged instruction clarity (excellent).Pass
- Context-footprint check failed: tool/resource definitions use about 2642 tokens (~528/item across 5 items; 5 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management100
- No destabilizing schema changes in the last 30 days.Pass
Tool Coverage100
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 100% of tool parameters carry a description.Pass
- Structured output schemas are declared (100% of tools); any adoption earns full credit.Pass
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- We read all 5 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
- An AI judge read all 6 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a current MCP spec version (2026-07-28).Pass
How do I install the SMKlog Parcel Shipping Rates MCP server?
SMKlog Parcel Shipping Rates is a hosted endpoint at https://quote-api.smklog.com/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
remote · quote-api.smklog.com
claude mcp add --transport http com-smklog-parcel-shipping-rates 'https://quote-api.smklog.com/mcp'
{
"mcpServers": {
"com-smklog-parcel-shipping-rates": {
"url": "https://quote-api.smklog.com/mcp"
}
}
} {
"servers": {
"com-smklog-parcel-shipping-rates": {
"type": "http",
"url": "https://quote-api.smklog.com/mcp"
}
}
} [mcp_servers.com-smklog-parcel-shipping-rates] url = "https://quote-api.smklog.com/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"com-smklog-parcel-shipping-rates": {
"type": "remote",
"url": "https://quote-api.smklog.com/mcp",
"enabled": true
}
}
} openclaw mcp add com-smklog-parcel-shipping-rates --url 'https://quote-api.smklog.com/mcp' --transport streamable-http
mcp_servers:
com-smklog-parcel-shipping-rates:
url: "https://quote-api.smklog.com/mcp" {
"McpServers": {
"com-smklog-parcel-shipping-rates": {
"Transport": "http",
"Url": "https://quote-api.smklog.com/mcp"
}
}
} assistant mcp add com-smklog-parcel-shipping-rates -t streamable-http -u 'https://quote-api.smklog.com/mcp'
{
"mcpServers": {
"com-smklog-parcel-shipping-rates": {
"type": "http",
"url": "https://quote-api.smklog.com/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 29 Sept 26 0
- Tool “get_parcel_quote” rewrote its description, which is the text the model reads security
- “create_checkout_link” reworded the description of “quantity” cosmetic
- “get_parcel_quote” reworded the description of “quantity” cosmetic
- 28 Sept 26 0
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 25 Sept 26 0
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 24 Sept 26 +1
- Stability: 0.97 → pass security
- 22 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 90 to 93. That category is still filling its 30-day observation window: 27 days of observed history at the previous scan, 28 at this one. The score rises as the window fills, whether or not the server changes.
- 20 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 83 to 87. That category is still filling its 30-day observation window: 25 days of observed history at the previous scan, 26 at this one. The score rises as the window fills, whether or not the server changes.
- 17 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 73 to 77. That category is still filling its 30-day observation window: 22 days of observed history at the previous scan, 23 at this one. The score rises as the window fills, whether or not the server changes.
- 15 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 67 to 70. That category is still filling its 30-day observation window: 20 days of observed history at the previous scan, 21 at this one. The score rises as the window fills, whether or not the server changes.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 2 Oct 2026 · Probed https://quote-api.smklog.com/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=smklog.com | CN=WE1,O=Google Trust Services,C=US | 19 Sept 2026 | 18 Dec 2026 | ECDSA 256 | ECDSA-SHA256 | f9c803ef28f72cf0ee565cc35f5e564 |
| SANs: smklog.com, quote-api.smklog.com, *.quote-api.smklog.com | ||||||
| CN=WE1,O=Google Trust Services,C=US (CA) | CN=GTS Root R4,O=Google Trust Services LLC,C=US | 13 Dec 2023 | 20 Feb 2029 | ECDSA 256 | ECDSA-SHA384 | 7ff31977972c224a76155d13b6d685e3 |
| CN=GTS Root R4,O=Google Trust Services LLC,C=US (CA) | CN=GlobalSign Root CA,OU=Root CA,O=GlobalSign nv-sa,C=BE | 15 Nov 2023 | 28 Jan 2028 | ECDSA 384 | SHA256-RSA | 7fe530bf331343bedd821610493d8a1b |
Background: What to check on a remote MCP endpoint →
DNSSEC secure
Validation of quote-api.smklog.com. — Secure
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| com. | present | 19718 | 13 | Verified |
| smklog.com. | present | 2371 | 13 | Verified |
| quote-api.smklog.com. | Verified address RRset verified with the apex keys |
Authentication No authorisation required
The endpoint answered without asking for a token. Anyone who knows the URL can reach it.
| Result | No authorisation required |
|---|---|
| HTTP status | 200 |
Background: How OAuth 2.1 works in the 2026 MCP spec →
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://quote-api.smklog.com/mcp | Verified | 200 | |
| http (plaintext) | http://quote-api.smklog.com/mcp | Inconclusive | 405 |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
create_checkout_link Create a payment session for a shipping label ~629
Turns a decided shipment into a payment session for buying its shipping label: the checkout amount and a handoff URL that opens SMKlog checkout prefilled with the parcel. Use it after get_parcel_quote, passing the quote_id that call returned, so the price is reused and no second carrier call is spent. Without a quote_id it prices the shipment live from the fields. The result carries a session_id: keep it, and get_checkout_status tells you when the human has paid and when the label exists. Side effects: it writes a session record (30-day life, readable through get_checkout_status) and is not idempotent. Calling it twice makes two sessions and, without a quote_id, spends two carrier calls. It never charges: no card is touched and nothing is reserved until the human confirms the contents certification and the carrier-adjustment consent on the page and pays there. A stale link simply reprices. No session is returned when the shipment cannot be sold online: not a parcel (SMKlog does not arrange pallet or freight shipments), more than one box (one label per box), or an installed lithium battery crossing a border. Quote first to learn which case applies. Parameter rules: - A valid quote_id overrides product, from_zip, to_zip, to_country and quantity. service is still honored. - An expired quote_id falls back to live pricing from the fields. If those were omitted too, the call fails with missing_required_fields, so pass them alongside an old id. - service is matched as a case-insensitive fragment of the display name ("Ground Advantage", "UPS Ground Saver"). A fragment that matches nothing silently anchors the quote's first rate, which is the top of the best-value ranking and not always the cheapest, so read the service field in the result. - from_zip is a real 5-digit US ZIP. to_zip follows to_country (US, CA, GB, DE or AU). - On the four international lanes the human completes the customs declaration on the page, and duty is billed to the recipient on arrival.
| Name | Type | Req | Description |
|---|---|---|---|
| from_zip | string | – | Origin US ZIP code, 5 digits. Required unless quote_id is given. |
| product | string | – | Plain-words item description. Required unless quote_id is given. |
| quantity | integer | – | How many of the item ship together. Default 1. |
| quote_id | string | – | The quote_id returned by a previous get_parcel_quote call. Valid for 15 minutes. |
| service | string | – | Service to anchor the amount to, e.g. "USPS Ground Advantage". Omitted or unmatched, the amount anchors the quote's first rate, top of the best-value ranking rather than the cheapest; the human can s… |
| to_country | string | – | Two-letter destination country: US (default), CA, GB, DE, AU. |
| to_zip | string | – | Destination postal code: a 5-digit ZIP for the US, or the destination country's own postal code. Required unless quote_id is given. |
| Name | Type | Req | Description |
|---|---|---|---|
| amount | number | yes | Live-quoted checkout total for the anchored service, USD |
| currency | string | yes | ISO currency, USD |
| handoff_url | string | yes | Opens the SMKlog checkout prefilled with this shipment |
| identified_product_title | string | – | What the estimator understood the item to be |
| intent | string | yes | Always "session" — this tool never charges |
| method | array | – | Payment rails behind the checkout, e.g. stripe, card |
| note | string | – | Standing caveats: live quote, human confirms consents and pays |
| quote_reused | boolean | – | True when the amount came from a quote_id you supplied, so no carrier call was spent. False when this tool priced the shipment live -- either because no quote_id was given, or because the one given h… |
| service | string | – | The service the amount is anchored to |
| session_id | string|null | – | Handle for get_checkout_status, shaped as_ plus a UUID, good for 30 days. Null only when the session record could not be stored. |
No examples provided.
get_checkout_status Check a checkout session ~314
Reports where a payment session made by create_checkout_link stands: whether the human has opened checkout, paid, and whether the shipping label exists yet, with the tracking number once it does. Reads SMKlog's own order records only: no carrier call, no quote allowance, nothing changes. Poll it after handing the human the link, minutes apart rather than seconds, because nothing moves until the human acts. Statuses, in order: awaiting_checkout (link made, no checkout started), checkout_started (a checkout exists, not paid), paid (paid, label not created yet: the checkout page buys it right after payment, otherwise an operator picks it up), label_ready (label bought, tracking_number present), delivered, refunded. Once label_ready, feed tracking_number to track_parcel for scan events. Parameter rules: - session_id is the session_id returned by create_checkout_link, shaped as_ plus a UUID. Nothing else identifies a session: no order id, no email, no quote_id. - A session lives 30 days from creation. An unknown, malformed or expired id answers session_not_found rather than a status. - The answer never carries names, addresses or emails. Treat the session_id like a tracking number: whoever holds it can read the tracking number. - A manual-review request made from the handoff page is not a checkout and leaves the status at awaiting_checkout. - Allowance: 60 checks an hour per client.
| Name | Type | Req | Description |
|---|---|---|---|
| session_id | string | yes | The session_id from create_checkout_link. |
| Name | Type | Req | Description |
|---|---|---|---|
| amount | number | – | The amount the session was anchored to, USD |
| checkout | object|null | – | The checkout the human started, null while awaiting_checkout |
| created_at | string | – | When create_checkout_link made the session, ISO 8601 |
| currency | string | – | ISO currency, USD |
| expires_at | string | – | When the session stops answering, ISO 8601 |
| next | string | – | What, if anything, the agent should do now |
| quote_reused | boolean | – | Whether the session reused a quote_id |
| service | string | – | The service the session was anchored to |
| session_id | string | yes | The session asked about |
| status | string | yes | Stage, in that order |
No examples provided.
get_parcel_quote Get live parcel shipping rates from a US origin ~833
Live shipping rates for one parcel sent from a US origin — inside the US, or to Canada, the UK, Germany or Australia — across USPS, UPS and FedEx, and DHL Express on the German and Australian lanes. Describe the item in plain words and the packed box size and weight are estimated. Give exact dimensions and weight to skip the estimate. Returns up to five purchasable services, each as one checkout total with the SMKlog fee inside it (the fee is itemized only on the checkout receipt) and, where the carrier publishes one, its own counter price for the same parcel beside it. Not every request is priced. A shipment past parcel limits or described as a pallet or freight load returns mode not_a_parcel with no rates: SMKlog does not arrange pallet or freight shipments. More than one box returns mode multiple_boxes with no rates: one label per box, so quote each box with quantity 1. Shipping labels are bought on smklog.com, not through this tool. Choosing between the tools: use this one to answer what a shipment would cost. Then hand the quote_id it returns to create_checkout_link once the human has settled on shipping this exact parcel, so the pair costs one carrier call rather than two. Use get_price_index instead for typical or historical prices: it is free, while this tool spends a rate-limited carrier call every time. Parameter rules: - weight_lb, length_in, width_in and height_in count only as a set of four, each above zero. Leave any one out and all four are ignored in favor of the estimate, so never send weight alone. - One label per box. quantity counts units of the item: units that fit one box are priced as that box (two books go in one carton), and units that need more than one box return mode multiple_boxes, as does any quantity above 1 sent with exact dimensions, since those describe a single box. A box past the largest parcel any carrier here takes (150 lb, 108 in on the longest side, 165 in of length plus girth; USPS stops lower, and only services that take…
| Name | Type | Req | Description |
|---|---|---|---|
| from_zip | string | yes | Origin US ZIP code, 5 digits. The origin is always in the United States. |
| height_in | number | – | Packed box height, inches. |
| length_in | number | – | Packed box length, inches. |
| product | string | yes | Plain-words item description, e.g. "65 inch flat screen TV in original box". |
| quantity | integer | – | How many of the item ship together. Default 1. |
| to_country | string | – | Two-letter destination country: US (default), CA, GB, DE, AU. |
| to_zip | string | yes | Destination postal code: a 5-digit ZIP for the US, or the destination country's own postal code, e.g. M5V 2T6 for Toronto or SW1A 1AA for London. |
| weight_lb | number | – | Packed weight, pounds. Decimals allowed. |
| width_in | number | – | Packed box width, inches. |
| Name | Type | Req | Description |
|---|---|---|---|
| mode | string | – | Quote mode: parcel_label_ready when rates are listed; not_a_parcel, multiple_boxes or parcel_restricted when they are not |
| package | object | – | The packed box the rates were computed for |
| quote_id | string | – | Handle to this quote, good for 15 minutes. Pass it to create_checkout_link as quote_id and that call spends no second carrier call. Null when no rate came back, or when the handle could not be stored. |
| rates | array | yes | Up to five purchasable services. Not cheapest first: they are ranked by best value, each rate scored as its checkout total in cents plus 175 per business day of transit (30 days when the carrier quot… |
No examples provided.
get_price_index US parcel shipping price index ~227
The SMKlog parcel shipping price index: a monthly repriced basket of six common boxes (1 to 20 lb) shipped from Newark, NJ to five US cities, quoted through the same live USPS, UPS and FedEx pipeline that prices real shipments. Returns the cheapest purchasable service per box and lane with every rate behind it, plus basket averages. Reference data for questions like "what does shipping a shoebox cost in the US right now" — reading it spends no quote allowance. For a price on a specific shipment, call get_parcel_quote instead. Parameter rules: month names one published issue as YYYY-MM; issues exist from 2026-07 onward, one per month, and omitting month returns the newest. A month with no issue answers issue_not_found together with available_months, so one miss lists every valid value; anything not shaped YYYY-MM answers invalid_month. Every issue prices the same boxes and lanes, so two months compare cell for cell.
| Name | Type | Req | Description |
|---|---|---|---|
| month | string | – | Issue month as YYYY-MM. Omit for the newest published issue. |
| Name | Type | Req | Description |
|---|---|---|---|
| basket_average | number|null | – | Mean of the cheapest rate across all thirty cells, USD |
| captured_on | string | yes | The date every price in this issue was captured |
| carrier_wins | object|null | – | How many cells each carrier priced cheapest |
| cells | array | yes | One entry per box and destination |
| label | string | – | Issue month spelled out, e.g. "August 2026" |
| methodology | string | – | How the numbers are produced |
| month | string | yes | Issue month, YYYY-MM |
| origin | string | – | Origin of every lane, Newark NJ (07102) |
| page | string | – | The published issue page on smklog.com |
No examples provided.
track_parcel Track a SMKlog shipment ~278
Track a shipment whose shipping label was bought on smklog.com, by carrier tracking number. Returns the current delivery status, the latest scan events and the estimated delivery date when the carrier reports one. Works for SMKlog labels only — it is not a universal tracker for arbitrary USPS, UPS, FedEx or DHL numbers, so a number from any other seller comes back not-found rather than as a status. Unrelated to the two pricing tools: it neither quotes nor spends quote allowance. Parameter rules: tracking_number is the only key; no order id or email is needed or accepted. When the label was bought through a create_checkout_link session, get_checkout_status hands back this number at label_ready. It is matched after removing spaces and hyphens and ignoring case, so a pasted or spoken number works as-is. Expect USPS as 20 to 22 digits (13 characters ending in US for international), UPS as 1Z plus 16 characters, FedEx as 12 to 22 digits; anything shorter than 6 characters after cleanup is refused as tracking_number_required, and a number SMKlog never sold answers 404 tracking_not_found with status "not_found". Scan events come newest first, up to eight.
| Name | Type | Req | Description |
|---|---|---|---|
| tracking_number | string | yes | Carrier tracking number from the SMKlog receipt or label page |
| Name | Type | Req | Description |
|---|---|---|---|
| events | array | yes | Scan events, newest first, up to eight |
| tracking | object | yes | – |
No examples provided.
What is the SMKlog Parcel Shipping Rates MCP server?
SMKlog Parcel Shipping Rates is an MCP server listed in the public MCP registry as com.smklog/parcel-shipping-rates. Live USPS, UPS, FedEx and DHL rates from the US: domestic, Canada, UK, Germany, Australia. No scale. This page covers its hosted endpoint (https://quote-api.smklog.com/mcp).
Is the SMKlog Parcel Shipping Rates MCP server safe to use?
SMKlog Parcel Shipping Rates scores 80 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the SMKlog Parcel Shipping Rates MCP server expose?
SMKlog Parcel Shipping Rates exposes 5 tools: get_parcel_quote, create_checkout_link, track_parcel, get_price_index, get_checkout_status. Their descriptions and schemas cost roughly 2,281 tokens of context every time the server is loaded.
Does the SMKlog Parcel Shipping Rates MCP server require authentication?
No. We connected to SMKlog Parcel Shipping Rates without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.
Is the SMKlog Parcel Shipping Rates MCP server still maintained?
SMKlog Parcel Shipping Rates is still listed as active in the MCP registry. We last reached this channel on 2 October 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.