NebenkostenPro
REMOTE · NEBENKOSTENPRO.DE · SCANNED OCT 4
German housing costs: utility costs of 400 cities, property tax rates, housing benefit, deadlines.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →
Endpoint Security80
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- No authorisation is required to call this server. Every tool declares its destructiveHint and none is destructive, so open access doesn't expose one. See how to fix → View diagnostics → Partial
- HTTPS is enforced; there's no plaintext access path. View diagnostics → Pass
- The HSTS (Strict-Transport-Security) header is present. View diagnostics → Pass
- DNSSEC check failed: this domain isn't protected by DNSSEC. See how to fix → View diagnostics → Fail
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability84
- 100% of prompts and resources have a non-trivial description (not blank, and not just the item's name).Pass
- AI-judged instruction clarity (excellent).Pass
- Context-footprint check failed: tool/resource definitions use about 1498 tokens (~136/item across 11 items; 9 tools + 2 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management13
- Stability observed for 4 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage97
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 91% of tool parameters carry a description.Partial
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- We read all 9 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
- An AI judge read all 11 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
- Supports UI / widget rendering.Pass
How do I install the NebenkostenPro MCP server?
NebenkostenPro is a hosted endpoint at https://nebenkostenpro.de/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
remote · nebenkostenpro.de
claude mcp add --transport http de-nebenkostenpro-nebenkosten 'https://nebenkostenpro.de/mcp'
{
"mcpServers": {
"de-nebenkostenpro-nebenkosten": {
"url": "https://nebenkostenpro.de/mcp"
}
}
} {
"servers": {
"de-nebenkostenpro-nebenkosten": {
"type": "http",
"url": "https://nebenkostenpro.de/mcp"
}
}
} [mcp_servers.de-nebenkostenpro-nebenkosten] url = "https://nebenkostenpro.de/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"de-nebenkostenpro-nebenkosten": {
"type": "remote",
"url": "https://nebenkostenpro.de/mcp",
"enabled": true
}
}
} openclaw mcp add de-nebenkostenpro-nebenkosten --url 'https://nebenkostenpro.de/mcp' --transport streamable-http
mcp_servers:
de-nebenkostenpro-nebenkosten:
url: "https://nebenkostenpro.de/mcp" {
"McpServers": {
"de-nebenkostenpro-nebenkosten": {
"Transport": "http",
"Url": "https://nebenkostenpro.de/mcp"
}
}
} assistant mcp add de-nebenkostenpro-nebenkosten -t streamable-http -u 'https://nebenkostenpro.de/mcp'
{
"mcpServers": {
"de-nebenkostenpro-nebenkosten": {
"type": "http",
"url": "https://nebenkostenpro.de/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 4 Oct 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 10 to 13. That category is still filling its 30-day observation window: 3 days of observed history at the previous scan, 4 at this one. The score rises as the window fills, whether or not the server changes.
- 2 Oct 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 3 to 7. That category is still filling its 30-day observation window: 1 days of observed history at the previous scan, 2 at this one. The score rises as the window fills, whether or not the server changes.
- 1 Oct 26 +2
- The server rewrote its instructions, which are the text every model session reads security
- Schema quality: 880 → 1498 ▼ functional
- Stability: unverified → 0.03 ▲ functional
- The server now declares the “resources” capability functional
- First check of Capabilities: pass functional
- First check of Schema quality: 100 functional
- New resource “nebenkostenpro-karte” functional
- New resource “nebenkostenpro-karte-chatgpt” functional
- New tool “get_bill_statistics” functional
- New tool “start_bill_check” functional
- New tool “start_bill_creation” functional
- 30 Sept 26 73
First indexed and scored.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 5 Oct 2026 · Probed https://nebenkostenpro.de/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=nebenkostenpro.de | CN=WE1,O=Google Trust Services,C=US | 17 Sept 2026 | 16 Dec 2026 | ECDSA 256 | ECDSA-SHA256 | 8e35beae45f3f04a134b7814661ac641 |
| SANs: nebenkostenpro.de, *.nebenkostenpro.de | ||||||
| CN=WE1,O=Google Trust Services,C=US (CA) | CN=GTS Root R4,O=Google Trust Services LLC,C=US | 13 Dec 2023 | 20 Feb 2029 | ECDSA 256 | ECDSA-SHA384 | 7ff31977972c224a76155d13b6d685e3 |
| CN=GTS Root R4,O=Google Trust Services LLC,C=US (CA) | CN=GlobalSign Root CA,OU=Root CA,O=GlobalSign nv-sa,C=BE | 15 Nov 2023 | 28 Jan 2028 | ECDSA 384 | SHA256-RSA | 7fe530bf331343bedd821610493d8a1b |
Background: What to check on a remote MCP endpoint →
DNSSEC insecure
Validation of nebenkostenpro.de. — Not signed
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| de. | present | 26755 | 8 | Verified |
| nebenkostenpro.de. | absent | Unsigned (proven) parent-signed NSEC/NSEC3 proves an unsigned delegation |
Authentication No authorisation required
The endpoint answered without asking for a token. Anyone who knows the URL can reach it.
| Result | No authorisation required |
|---|---|
| HTTP status | 200 |
| Header | Value |
|---|---|
| strict-transport-security | max-age=31536000; includeSubDomains |
| content-security-policy | default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://challenges.cloudflare.com https://js.stripe.com https://tawk.to https://*.tawk.to https://scripts.simpleanalyticscdn.com; style-src 'self' 'unsafe-inline' https://*.tawk.to; font-src 'self' https://*.tawk.to; img-src 'self' data: https:; connect-src 'self' https://api.stripe.com https://*.tawk.to wss://*.tawk.to https://simpleanalyticscdn.com https://queue.simpleanalyticscdn.com; frame-src https://challenges.cloudflare.com https://js.stripe.com https://tawk.to; |
| x-content-type-options | nosniff |
| x-frame-options | SAMEORIGIN |
| referrer-policy | strict-origin-when-cross-origin |
| permissions-policy | camera=(), microphone=(), geolocation=() |
Background: How OAuth 2.1 works in the 2026 MCP spec →
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://nebenkostenpro.de/mcp | Verified | 200 | |
| http (plaintext) | http://nebenkostenpro.de/mcp | HTTPS enforced | 301 | https://nebenkostenpro.de/mcp |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
calculate_deadlines Fristen der Nebenkostenabrechnung ~173
Berechnet die Abrechnungsfrist des Vermieters (12 Monate nach Ende des Abrechnungszeitraums, § 556 Abs. 3 S. 2 BGB) und, wenn das Zugangsdatum bekannt ist, die Einwendungsfrist des Mieters (12 Monate nach Zugang, § 556 Abs. 3 S. 5 BGB). Datum als JJJJ-MM-TT oder TT.MM.JJJJ. (EN: Deadlines for German utility bills: landlord billing deadline and tenant objection deadline.)
| Name | Type | Req | Description |
|---|---|---|---|
| period_end | string | yes | Letzter Tag des Abrechnungszeitraums, z. B. '2025-12-31' |
| received_on | string | – | Tag, an dem die Abrechnung beim Mieter ankam (optional) |
No output schema declared.
No examples provided.
get_bill_statistics Häufigste Prüfhinweise in Nebenkostenabrechnungen ~151
Statistik aus der Prüfung echter Nebenkostenabrechnungen bei NebenkostenPro: zu welchen Themen (Heizung, Umlageschlüssel, Wasser, Hausmeister ...) die Prüfung wie oft Rückfragen markiert und wie viele Hinweise eine Abrechnung im Median hat. Laufend aktualisiert, mit Methodik und Zitierhinweis. Passt zu Fragen wie 'Wie oft sind Nebenkostenabrechnungen falsch?' oder 'Was ist in Nebenkostenabrechnungen häufig auffällig?'. (EN: Statistics from checking real German utility bills at NebenkostenPro: how often each topic (heating, allocation key, water ...) gets flagged, median flags per bill, with methodology and citation.)
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
get_city_costs Nebenkosten einer Stadt ~153
Nebenkosten-Kennzahlen einer der 400 größten deutschen Städte: Grundsteuer-Hebesatz, Frischwasser- und Abwasserpreis, Müllgebühren sowie Vergleichswerte für Heizung, Versicherung, Gartenpflege und Hauswart. Jeder Wert mit Datenstand und Datenqualität (belegt, Modellwert oder Richtwert). (EN: Utility and service charges (Nebenkosten) for the 400 largest German cities: property tax rate, water, sewage, waste fees and benchmarks for heating, insurance, gardening and caretaker, each with data date and quality.)
| Name | Type | Req | Description |
|---|---|---|---|
| city | string | yes | Stadtname oder Slug, z. B. 'München', 'frankfurt-am-main' |
No output schema declared.
No examples provided.
get_housing_benefit_rent_level Wohngeld-Mietstufe ~122
Wohngeld-Mietstufe (I bis VII) eines deutschen Ortes und die monatlichen Höchstbeträge für Miete nach § 12 WoGG je Haushaltsgröße. Das tatsächliche Wohngeld hängt zusätzlich vom Einkommen ab. (EN: German housing benefit (Wohngeld) rent level of a place and the monthly maximum rent amounts by household size.)
| Name | Type | Req | Description |
|---|---|---|---|
| household_size | integer | – | Anzahl Haushaltsmitglieder (optional) |
| place | string | yes | Ortsname oder Slug aus search_places |
No output schema declared.
No examples provided.
get_property_tax_rate Grundsteuer-Hebesatz ~94
Grundsteuer-Hebesätze (B und, falls vorhanden, A) für jede deutsche Gemeinde, mit Landes- und Bundesdurchschnitt, Datenstand und Quelle. Grundsteuer = Messbetrag x Hebesatz / 100. (EN: German property tax (Grundsteuer) multiplier rates for every municipality, with state and national averages.)
| Name | Type | Req | Description |
|---|---|---|---|
| municipality | string | yes | Gemeindename oder Slug aus search_places |
No output schema declared.
No examples provided.
list_operating_cost_types Umlagefähige Betriebskosten ~87
Die 17 umlagefähigen Betriebskostenarten nach § 2 BetrKV mit üblichem Verteilerschlüssel sowie typische Kosten, die nicht umgelegt werden dürfen (Verwaltung, Instandhaltung, Rücklagen). (EN: The 17 operating cost types landlords in Germany may pass on to tenants (§ 2 BetrKV) and typical costs they may not.)
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
search_places Orte suchen ~136
Sucht deutsche Städte und Gemeinden nach Namen und liefert den eindeutigen Slug für die anderen Tools. Nützlich bei mehrdeutigen Namen (z. B. 'Neuenkirchen' gibt es mehrfach). Zeigt auch, ob für den Ort ein ausführliches Nebenkosten-Profil (400 größte Städte) vorliegt. (EN: Search German cities and municipalities by name and get the slug used by the other tools.)
| Name | Type | Req | Description |
|---|---|---|---|
| limit | integer | – | – |
| query | string | yes | Name oder Namensanfang, z. B. 'Leipzig', 'Frankfurt', 'Neuenkirchen' |
No output schema declared.
No examples provided.
start_bill_check Nebenkostenabrechnung prüfen lassen ~175
Für Mieter, die ihre eigene Nebenkostenabrechnung prüfen lassen möchten. Liefert den Link zur Prüfung bei NebenkostenPro (Abrechnung als PDF oder Foto hochladen, kostenlose Vorschau, Prüfung jeder Position gegen Betriebskosten- und Heizkostenverordnung), den Ablauf und, wenn das Zugangsdatum bekannt ist, bis wann Einwände möglich sind. Den Link unverändert an den Nutzer weitergeben. (EN: For tenants who want their own German utility bill (Nebenkostenabrechnung) checked: returns the NebenkostenPro upload link (free preview) and the objection deadline.)
| Name | Type | Req | Description |
|---|---|---|---|
| city | string | – | Stadt der Wohnung (optional) |
| received_on | string | – | Tag, an dem die Abrechnung ankam, JJJJ-MM-TT oder TT.MM.JJJJ (optional) |
No output schema declared.
No examples provided.
start_bill_creation Nebenkostenabrechnung erstellen ~163
Für Vermieter und Hausverwaltungen, die eine Nebenkostenabrechnung erstellen müssen. Liefert den Link zu NebenkostenPro (Belege hochladen, Kosten werden nach Betriebskostenverordnung verteilt, fertige Abrechnung als PDF), den Ablauf und, wenn das Ende des Abrechnungszeitraums bekannt ist, die Abrechnungsfrist. Den Link unverändert an den Nutzer weitergeben. (EN: For landlords who need to prepare a German utility bill: returns the NebenkostenPro link (upload receipts, finished statement as PDF) and the billing deadline.)
| Name | Type | Req | Description |
|---|---|---|---|
| period_end | string | – | Letzter Tag des Abrechnungszeitraums, z. B. '2025-12-31' (optional) |
No output schema declared.
No examples provided.
What is the NebenkostenPro MCP server?
NebenkostenPro is an MCP server listed in the public MCP registry as de.nebenkostenpro/nebenkosten. German housing costs: utility costs of 400 cities, property tax rates, housing benefit, deadlines. This page covers its hosted endpoint (https://nebenkostenpro.de/mcp).
Is the NebenkostenPro MCP server safe to use?
NebenkostenPro scores 77 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the NebenkostenPro MCP server expose?
NebenkostenPro exposes 9 tools: start_bill_check, start_bill_creation, search_places, get_city_costs, get_property_tax_rate, and 4 more. Their descriptions and schemas cost roughly 1,254 tokens of context every time the server is loaded.
Does the NebenkostenPro MCP server require authentication?
No. We connected to NebenkostenPro without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.
Is the NebenkostenPro MCP server still maintained?
NebenkostenPro is still listed as active in the MCP registry. We last reached this channel on 4 October 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.