io.github.g-digital-by-Garrigues/gocertius
NPM · @G-DIGITAL/MCP-GOCERTIUS · SCANNED SEP 21
MCP server for GoCertius: certified evidence, dossiers, notifications and chats via AI agents.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically from public evidence about the published package, including repeated runs of it in an isolated sandbox, and we only credit what we can confirm. How we score → Why this is hard to score →
Supply Chain Security98
- No malware found by supply-chain analysis.Pass
- No known CVEs affecting this package version or its production dependencies.Pass
- No install/post-install scripts declared.Pass
- 37 of 111 dependencies flagged as unhealthy (1 deprecated). View diagnostics → Partial
Provenance & Transparency45
- Source repository is publicly reachable at the declared URL. View diagnostics → Pass
- Build provenance is cryptographically sound, but it attests a different repository to the one declared in the registry. Most often the declared URL is simply stale. View diagnostics → Unverified
- Clear OSI-approved license (MIT).Pass
- Actively maintained (last published 12 days ago).Pass
- Disclosure check failed: no security disclosure policy was found in the source repository. See how to fix → Fail
Schema Quality & AI Usability67
- AI-judged instruction clarity (good).Pass
- Context-footprint check failed: tool/resource definitions use about 9650 tokens (~155/item across 62 items; 62 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management90
- Stability observed for 27 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage72
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 15% of tool parameters carry a description.Partial
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- All 10 tool(s) whose name or description implies an irreversible operation declare an MCP destructiveHint annotation.Pass
- An AI judge read all 62 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
How do I install the io.github.g-digital-by-Garrigues/gocertius MCP server?
io.github.g-digital-by-Garrigues/gocertius runs locally as an npm package, launched with npx -y @g-digital/mcp-gocertius. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
npm · @g-digital/mcp-gocertius
claude mcp add g-digital-by-garrigues-gocertius -- npx -y @g-digital/mcp-gocertius
{
"mcpServers": {
"g-digital-by-garrigues-gocertius": {
"command": "npx",
"args": [
"-y",
"@g-digital/mcp-gocertius"
]
}
}
} {
"servers": {
"g-digital-by-garrigues-gocertius": {
"command": "npx",
"args": [
"-y",
"@g-digital/mcp-gocertius"
]
}
}
} codex mcp add g-digital-by-garrigues-gocertius -- npx -y @g-digital/mcp-gocertius
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"g-digital-by-garrigues-gocertius": {
"type": "local",
"command": [
"npx",
"-y",
"@g-digital/mcp-gocertius"
],
"enabled": true
}
}
} openclaw mcp add g-digital-by-garrigues-gocertius --command npx --arg -y --arg @g-digital/mcp-gocertius
mcp_servers:
g-digital-by-garrigues-gocertius:
command: "npx"
args: ["-y", "@g-digital/mcp-gocertius"] {
"McpServers": {
"g-digital-by-garrigues-gocertius": {
"Transport": "stdio",
"Command": "npx",
"Arguments": [
"-y",
"@g-digital/mcp-gocertius"
]
}
}
} assistant mcp add g-digital-by-garrigues-gocertius -t stdio -c npx -a -y @g-digital/mcp-gocertius
{
"mcpServers": {
"g-digital-by-garrigues-gocertius": {
"command": "npx",
"args": [
"-y",
"@g-digital/mcp-gocertius"
]
}
}
} Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 21 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 87 to 90. That category is still filling its 30-day observation window: 26 days of observed history at the previous scan, 27 at this one. The score rises as the window fills, whether or not the server changes.
- 19 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 80 to 83. That category is still filling its 30-day observation window: 24 days of observed history at the previous scan, 25 at this one. The score rises as the window fills, whether or not the server changes.
- 17 Sept 26 −3
- Stability: pass → 0.77 functional
- 16 Sept 26 0
- Stability: 0.97 → pass security
- 15 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 93 to 97. That category is still filling its 30-day observation window: 28 days of observed history at the previous scan, 29 at this one. The score rises as the window fills, whether or not the server changes.
- 13 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 87 to 90. That category is still filling its 30-day observation window: 26 days of observed history at the previous scan, 27 at this one. The score rises as the window fills, whether or not the server changes.
- 11 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 80 to 83. That category is still filling its 30-day observation window: 24 days of observed history at the previous scan, 25 at this one. The score rises as the window fills, whether or not the server changes.
- 10 Sept 26 −3
- Stability: pass → 0.80 functional
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 21 Sept 2026 · Analysed npm/@g-digital/mcp-gocertius@2.0.0
Provenance Repository mismatch
The attestation is cryptographically sound but binds a different repository to the one the registry declares. Most often the declared URL is simply stale.
| Result | Repository mismatch |
|---|---|
| Ecosystem | npm |
| Reason | Repository mismatch |
| Discovered via | Registry attestation endpoint |
| Certificate issuer | https://token.actions.githubusercontent.com |
| Certificate SAN | https://github.com/g-digital-by-Garrigues/MCP_Market_Distribution/.github/workflows/publish.yml@refs/heads/main |
| Rekor log index | 2755463524 |
| Predicate type | https://slsa.dev/provenance/v1 |
| Subject digest | sha512:4bdcc75b0fa9101c9ca904f4431d0bdd9adb6422d49160280694c3e8573af13893077a157a0a7e0b5755e452acf0f611a68a29bbd77e632040ec31a92 |
Background: How many MCP packages publish verified provenance →
Dependencies 111 packages
| Packages resolved | 111 |
|---|---|
| Deprecated | 1 |
| Stale | 36 |
| Tree resolution | Complete |
Background: SBOMs and build attestations, explained →
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
case_file_create ~147
Creates a new case file — the top-level container for all related operations (evidence, notifications, dossiers, chats). Call this first before any other operation. Generate a UUID v4 for `id`. For `useCaseId`, use the general GoCertius use case: `063a016a-1d62-4b7b-a24f-7cf4d1d289bf` unless a specific use case is required. Returns caseFileId needed for all subsequent calls.
| Name | Type | Req | Description |
|---|---|---|---|
| description | string | – | – |
| id | string | yes | – |
| name | string | yes | – |
| reference | string | – | – |
| useCaseId | string | yes | – |
No output schema declared.
No examples provided.
case_file_delete ~92
Deletes a case file and everything filed inside it — evidence groups, dossiers, notifications and their certificates. Irreversible, with no confirmation step and no recycle bin. Requires: caseFileId. Returns no body (HTTP 204); confirm with case_file_list. Do not call it to 'clean up' unless the user asked for that case file to be destroyed.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
No output schema declared.
No examples provided.
case_file_get ~49
Retrieves details of a specific case file. Requires: caseFileId. Use to verify a case file exists before creating evidence groups, dossiers, or notifications.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
No output schema declared.
No examples provided.
case_file_list ~79
Lists all case files in your GoCertius account. Pass userId (from session_login or session_info) to scope results to your account. Returns paginated list with IDs, names, and status.
| Name | Type | Req | Description |
|---|---|---|---|
| filter | object | – | – |
| order | object | – | – |
| page | object | – | – |
| userId | string | yes | – |
No output schema declared.
No examples provided.
chat_certificate_create ~175
Creates a certificate of a range of messages from a certified chat. Requires: chat_create → chatId, personal caseFileId, chat_get → registeredAt, and messages already present in the Telegram channel. Generate a UUID v4 for `id`. Do not use createdAt as a substitute for registeredAt; if registeredAt is missing, the chat is not ready to certify. Specify chatMessagesFrom and chatMessagesTo as ISO timestamps (chatMessagesFrom must be AFTER registeredAt). ASYNC: poll chat_certificate_get until status === CERTIFIED.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| chatId | string | yes | – |
| chatMessagesFrom | string | yes | – |
| chatMessagesTo | string | yes | – |
| id | string | yes | – |
| language | string | yes | – |
| name | string | yes | – |
No output schema declared.
No examples provided.
chat_certificate_get ~115
Retrieves a certified chat certificate including its status, message range, and PDF download URL. Prerequisites: the certificate must have been created with chat_certificate_create. Returns documentUrl when status is CERTIFIED. Example: chat_certificate_get({ caseFileId: '...', chatId: '...', id: '...' })
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | UUID of the case file that owns the chat |
| chatId | string | yes | UUID of the chat |
| id | string | yes | UUID of the certificate to retrieve |
No output schema declared.
No examples provided.
chat_create ~172
Creates a certified chat channel (Telegram). IMPORTANT: Chats can only be created in the user's personal case file (created automatically when the GoCertius account was opened). Do not use a manually created case file — use session_info → case_file_list to find the personal case file (oldest createdAt, owned by the user). Generate a UUID v4 for `id`. Set service to Telegram. Returns immediately and the chat may start in status `creating`; call chat_get and wait until it is registered/active before requesting the invitation URL or certificates.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| id | string | yes | – |
| language | string | yes | – |
| service | string | yes | – |
| serviceDescription | string | – | – |
| serviceTitle | string | – | – |
| title | string | yes | – |
No output schema declared.
No examples provided.
chat_get ~83
Retrieves details of a certified chat. Requires: personal caseFileId and chat_create → chatId. Returns status, participants, and registeredAt timestamp. After chat_create, poll chat_get until status is active/registered and registeredAt is present; createdAt is not enough for certificate creation.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| chatId | string | yes | – |
No output schema declared.
No examples provided.
chat_invitation_url ~96
Returns the Telegram invitation URL for a certified chat. Requires: chat_create → chatId and the personal caseFileId. Do not call while chat_get still shows status `creating`; wait until the chat is registered/active, otherwise the API can answer Chat not found. Share the returned invitationUrl with participants so they can join the certified channel.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| chatId | string | yes | – |
No output schema declared.
No examples provided.
dossier_certify ~149
Certifies a DRAFT dossier, locking in all its associated evidence groups. The dossier must be in DRAFT status. After certification it transitions to CERTIFIED and a tamper-evident PDF is generated. Prerequisites: the dossier must exist (dossier_create) and have evidence groups linked. Use dossier_group_certify instead if you want to create + certify in one step from a single evidence group. Example: dossier_certify({ caseFileId: '...', dossierId: '...' })
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | UUID of the case file that owns this dossier |
| dossierId | string | yes | UUID of the dossier to certify (must be in DRAFT status) |
No output schema declared.
No examples provided.
dossier_create ~164
Creates a dossier to aggregate certified evidence groups into a single tamper-evident PDF. Requires: case_file_create → caseFileId. Evidence groups must be in CLOSED status before linking. Generate a UUID v4 string for `id`. Returns dossierId. After creation, link evidence with dossier_evidence_link, then certify with dossier_certify.
| Name | Type | Req | Description |
|---|---|---|---|
| accessToken | string | – | – |
| caseFileId | string | yes | – |
| dossierTemplateId | string | – | – |
| filledFields | object | – | – |
| id | string | yes | – |
| language | string | yes | – |
| modelId | string | – | – |
| name | string | yes | – |
| purpose | string | – | – |
| validityFrom | string | yes | – |
| validityTo | string | yes | – |
No output schema declared.
No examples provided.
dossier_delete ~66
Deletes a dossier. Available in DRAFT status (to discard before certification) or in CERTIFIED status (to permanently remove the certified dossier). Irreversible. Requires: caseFileId and dossierId.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| dossierId | string | yes | – |
No output schema declared.
No examples provided.
dossier_document_url ~53
Returns the download URL for the certified dossier PDF. Requires: dossier_certify (CERTIFIED status), caseFileId, dossierId.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| dossierId | string | yes | – |
No output schema declared.
No examples provided.
dossier_evidence_delete ~76
Removes an evidence item from a dossier. Only available while dossier is in DRAFT status. Requires: caseFileId, dossierId, evidenceId.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| dossierEvidenceGroupId | string | yes | – |
| dossierEvidenceId | string | yes | – |
| dossierId | string | yes | – |
No output schema declared.
No examples provided.
dossier_evidence_get ~70
Retrieves details of a specific evidence item linked to a dossier. Requires: caseFileId, dossierId, evidenceId.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| dossierEvidenceGroupId | string | yes | – |
| dossierEvidenceId | string | yes | – |
| dossierId | string | yes | – |
No output schema declared.
No examples provided.
dossier_evidence_link ~182
Links specific evidence items to a DRAFT dossier. Call once per case file containing evidences to link. After linking all evidences, call dossier_certify to finalize. For a single-group dossier, use dossier_group_certify instead (one step). Example: dossier_evidence_link({ caseFileId: '...', dossierId: '...', caseFileToLinkId: '...', ids: ['ev-uuid-1', 'ev-uuid-2'] })
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | UUID of the case file that owns the dossier |
| caseFileToLinkId | string | yes | UUID of the case file containing the evidences (often same as caseFileId) |
| dossierId | string | yes | UUID of the DRAFT dossier to link evidences to |
| ids | array | yes | UUIDs of the evidence items to link |
No output schema declared.
No examples provided.
dossier_evidence_list ~118
Lists the evidence items linked to ONE evidence group of a dossier. Requires: caseFileId, dossierId AND dossierEvidenceGroupId — all three are mandatory. For every evidence item in the dossier regardless of group, use dossier_evidence_list_by_dossier instead. Supports filter, order and page.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| dossierEvidenceGroupId | string | yes | – |
| dossierId | string | yes | – |
| filter | object | – | – |
| order | object | – | – |
| page | object | – | – |
No output schema declared.
No examples provided.
dossier_evidence_list_by_dossier ~118
Lists every evidence item linked to a dossier, across all of its evidence groups. Requires: caseFileId and dossierId. This is the dossier-wide view; dossier_evidence_list is the narrower per-group one and additionally needs a dossierEvidenceGroupId. Supports filter, order and page. Returns { data, meta.totalElements }.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| dossierId | string | yes | – |
| filter | object | – | – |
| order | object | – | – |
| page | object | – | – |
No output schema declared.
No examples provided.
dossier_evidence_list_to_link ~90
Lists evidence items that are available to be linked to a dossier (CLOSED groups not yet linked). Requires: caseFileId and dossierId.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| caseFileToLinkId | string | yes | – |
| dossierId | string | yes | – |
| filter | object | – | – |
| order | object | – | – |
| page | object | – | – |
No output schema declared.
No examples provided.
dossier_get ~66
Retrieves the full details of a specific dossier including status, linked evidence, and download URLs. Use to check current state or get certificate download URLs after CERTIFIED. Requires: caseFileId and dossierId.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| dossierId | string | yes | – |
No output schema declared.
No examples provided.
dossier_group_certify ~151
Creates AND certifies a dossier from a single sealed evidence group in one call (express path). Requires: evidence_seal (CLOSED status), case_file_create → caseFileId, evidence_group_create → evidenceGroupId. Generate a UUID v4 string for `id`. Use when you have exactly one sealed evidence group and don't need multi-group aggregation. Returns dossierId immediately with CERTIFYING status → poll until CERTIFIED.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| evidenceGroupId | string | yes | – |
| evidenceIds | array | – | – |
| id | string | yes | – |
| language | string | yes | – |
| modelId | string | – | – |
| name | string | yes | – |
No output schema declared.
No examples provided.
dossier_list ~84
Lists all dossiers in a case file with their status and metadata. Use to find an existing dossierId or monitor certification progress. Requires: caseFileId. Returns paginated list with IDs, names, status, and creation dates.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| filter | object | – | – |
| order | object | – | – |
| page | object | – | – |
No output schema declared.
No examples provided.
dossier_list_by_user ~109
Lists every dossier belonging to a user, across all of their case files. Requires: userId (from session_login or session_info). Use this when you do not know which case file a dossier is in; use dossier_list when you already have a caseFileId. Supports filter, order and page. Returns { data, meta.totalElements }.
| Name | Type | Req | Description |
|---|---|---|---|
| filter | object | – | – |
| order | object | – | – |
| page | object | – | – |
| userId | string | yes | – |
No output schema declared.
No examples provided.
dossier_package_url ~58
Returns the download URL for the full dossier package (PDF + evidence files). Requires: dossier_certify (CERTIFIED status), caseFileId, dossierId.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| dossierId | string | yes | – |
No output schema declared.
No examples provided.
dossier_preview ~45
Returns an HTML preview URL of a dossier before certification. Requires: caseFileId and dossierId.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| dossierId | string | yes | – |
No output schema declared.
No examples provided.
dossier_template_list ~45
Lists available dossier templates. No prerequisites. Returns template IDs and their translations per language. Use the returned id as dossierTemplateId in dossier_create.
| Name | Type | Req | Description |
|---|---|---|---|
| page | object | – | – |
No output schema declared.
No examples provided.
dossier_update ~132
Updates the metadata of an existing dossier (name, template fields, expiry). Requires: dossier_create → dossierId, caseFileId. Only available while dossier is in DRAFT status.
| Name | Type | Req | Description |
|---|---|---|---|
| accessToken | string | – | – |
| caseFileId | string | yes | – |
| dossierId | string | yes | – |
| dossierTemplateId | string | – | – |
| filledFields | object | – | – |
| language | string | – | – |
| modelId | string | – | – |
| name | string | – | – |
| purpose | string | – | – |
| validityFrom | string | – | – |
| validityTo | string | – | – |
No output schema declared.
No examples provided.
dossier_visibility ~61
Updates the visibility (public/private) of a certified dossier. Requires: dossier_certify (CERTIFIED status), caseFileId, dossierId.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| dossierId | string | yes | – |
| visibility | string | yes | – |
No output schema declared.
No examples provided.
evidence_create ~421
Registers a NEW evidence record inside an evidence group. Requires: evidence_group_create → evidenceGroupId, case_file_create → caseFileId. Generate a UUID v4 for `id`. Compute the SHA-256 hex hash of the file BEFORE calling. Normal INTERNAL flow: call evidence_create with custodyType INTERNAL and NO fileUrl; the API returns uploadFileUrl, a presigned S3 URL. You MUST PUT the exact file bytes to uploadFileUrl, then verify with evidence_get/evidence_list, and ONLY THEN call evidence_seal. Do not seal an evidence group until every INTERNAL evidence file has been uploaded. Convenience flow: if you pass `fileUrl` (public HTTPS, no redirects, under 1 GiB), this tool downloads that URL and PUTs the bytes to uploadFileUrl for you. EXTERNAL flow: use custodyType EXTERNAL only when you intentionally register hash-only evidence; still generate a fresh UUID for each evidence. If an INTERNAL evidence creation/upload failed and you want to retry as EXTERNAL, create a NEW evidence id; do not reuse an id whose outcome is unknown. WARNING: the API sometimes returns {code:'EvidenceCreateError'} even when the evidence was successfully persisted — always verify with evidence_list before retrying.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | UUID of the case file |
| custodyType | string | – | INTERNAL = GoCertius stores the file; EXTERNAL = only hash registered |
| evidenceGroupId | string | yes | UUID of the evidence group |
| fileName | string | yes | Original file name including extension |
| fileUrl | string | – | Optional public HTTPS URL to download and auto-upload to the returned uploadFileUrl (custodyType INTERNAL only). Omit this when you want the manual presigned-URL flow. |
| hash | string | yes | SHA-256 hex digest of the file content (64 hex chars) |
| id | string | yes | UUID v4 for the new evidence record (idempotency key) |
| title | string | yes | Human-readable title for the evidence |
No output schema declared.
No examples provided.
evidence_get ~83
Retrieves a specific evidence record. Requires: evidence_create → evidenceId, evidence_group_create → evidenceGroupId, case_file_create → caseFileId. Returns status (COMPLETED|IN_PROCESS|ERROR), hash, and tspTimestamp when certified.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| evidenceGroupId | string | yes | – |
| id | string | yes | – |
No output schema declared.
No examples provided.
evidence_group_create ~110
Creates an evidence group inside a case file. Requires: case_file_create → caseFileId. Generate a UUID v4 for `id`. Set evidenceType to FILE, PHOTO, VIDEO, or WEB_PLUGIN. Returns evidenceGroupId. One group can contain multiple evidence records.
| Name | Type | Req | Description |
|---|---|---|---|
| attestation | object | – | – |
| caseFileId | string | yes | – |
| description | string | – | – |
| evidenceType | string | yes | – |
| id | string | yes | – |
| name | string | yes | – |
No output schema declared.
No examples provided.
evidence_group_list ~81
Lists all evidence groups in a case file with their current status (OPEN, CLOSING, CLOSED). Use to find an existing group or check which groups are ready for sealing. Requires: caseFileId.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| filter | object | – | – |
| order | object | – | – |
| page | object | – | – |
No output schema declared.
No examples provided.
evidence_list ~99
Lists all evidence records in a specific evidence group. Use to review uploaded documents before sealing the group, or to find a specific evidenceId. Requires: caseFileId and evidenceGroupId. Returns paginated list with IDs, titles, status, and timestamps.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| evidenceGroupId | string | yes | – |
| filter | object | – | – |
| order | object | – | – |
| page | object | – | – |
No output schema declared.
No examples provided.
evidence_seal ~162
Seal and certify an evidence group. Closes the group to new additions and triggers async timestamping. Returns immediately — the group transitions OPEN → CLOSING → CLOSED. Poll evidence_group_list until status is CLOSED before linking to a dossier.
| Name | Type | Req | Description |
|---|---|---|---|
| altitudeLocation | string | – | – |
| attestation | object | – | – |
| caseFileId | string | yes | – |
| deviceManufacturer | string | – | – |
| deviceModel | string | – | – |
| deviceOS | string | – | – |
| evidencesCount | number | yes | – |
| id | string | yes | – |
| latitudeLocation | string | – | – |
| locationAccuracy | string | – | – |
| longitudeLocation | string | – | – |
| userAgent | string | – | – |
| webUrl | string | – | – |
No output schema declared.
No examples provided.
evidence_upload ~377
Uploads a local file as evidence in one step: computes its SHA-256, registers the evidence record (custodyType INTERNAL = GoCertius stores the file), and uploads the bytes to S3 — no manual hashing or PUT needed. Internally this follows the required GoCertius sequence: create INTERNAL evidence → receive uploadFileUrl (presigned S3 URL) → PUT file bytes → return uploaded:true. Requires: case_file_create → caseFileId, evidence_group_create → evidenceGroupId. Provide EXACTLY ONE of `filePath` (absolute local path, stdio/local mode only) or `contentBase64` (base64-encoded file content, ~10 MB max). Use evidence_upload when the file is on the local machine; use evidence_create when you already have the SHA-256 hash, need to inspect/use uploadFileUrl manually, or have a public fileUrl. After this tool succeeds, verify with evidence_get/evidence_list and only then call evidence_seal. If this tool fails before returning an evidence id, check evidence_list before retrying; if retrying manually, use evidence_create with a fresh UUID. Local files must be under 1 GiB.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | UUID of the case file |
| contentBase64 | string | – | Base64-encoded file content (~10 MB max). The tool will create evidence, receive uploadFileUrl, and PUT these bytes to it. |
| evidenceGroupId | string | yes | UUID of the evidence group |
| fileName | string | yes | File name including extension |
| filePath | string | – | Absolute local path to the file (stdio/local mode only). The tool will create evidence, receive uploadFileUrl, and PUT this file to it. |
| title | string | yes | Human-readable title for the evidence |
No output schema declared.
No examples provided.
notification_certificate_document_url ~136
Returns { documentUrl } for the certificate PDF on its own, WITHOUT the attachments. Requires certificateId, receiverId, notificationRequestId and caseFileId. Wait until the certificate is CERTIFIED: generation is asynchronous and the first call can 404 or come back empty while it is still CERTIFYING, so poll a few times with a bounded retry rather than hammering it. If you want the attachments bundled in, use notification_certificate_package_url instead.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| certificateId | string | yes | – |
| notificationRequestId | string | yes | – |
| receiverId | string | yes | – |
No output schema declared.
No examples provided.
notification_certificate_get ~161
Creates or retrieves a PDF certificate for a specific notification receiver. Requires notification_request_send and notification_receiver_add. Generate a UUID v4 for `id` the first time and reuse that id when polling. This tool is idempotent: it first lists existing certificates for the receiver and, if `id` already exists, returns it instead of creating it again. If the certificate status is CERTIFIED, the response includes documentUrl when available. If it is CERTIFYING, poll this same tool with the same id.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| embeddedDocuments | boolean | – | – |
| id | string | yes | – |
| language | string | – | – |
| notificationRequestId | string | yes | – |
| receiverId | string | yes | – |
No output schema declared.
No examples provided.
notification_certificate_list ~213
Lists the delivery certificates already generated for one recipient, so you can reuse one instead of generating a duplicate. Requires receiverId, notificationRequestId and caseFileId. Returns per certificate: id, status (DRAFT, CERTIFYING, CERTIFIED), language, createdAt, certifiedAt, `partial` — whether it is an intermediate certificate issued before the recipient finished responding — and `embeddedDocuments`. Do not read `embeddedDocuments` as "the package contains the attachments": in a tested run it was false on a notification that had an attachment, and notification_certificate_package_url still returned a ZIP carrying that attachment. Once a certificate is CERTIFIED, download it with notification_certificate_document_url (the certificate alone) or notification_certificate_package_url (a ZIP that also carries the attachments).
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| filter | object | – | – |
| notificationRequestId | string | yes | – |
| order | object | – | – |
| page | object | – | – |
| receiverId | string | yes | – |
No output schema declared.
No examples provided.
notification_certificate_package_url ~136
Returns { packageUrl } for a ZIP containing the certificate AND the notification's attachments — the "with annexes" form. There is no separate preview flag anywhere in the API: the package carries the annexes, the document is the certificate alone. Requires certificateId, receiverId, notificationRequestId and caseFileId. Same preconditions as notification_certificate_document_url — wait for CERTIFIED, and expect the first call to fail while generation is still running.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| certificateId | string | yes | – |
| notificationRequestId | string | yes | – |
| receiverId | string | yes | – |
No output schema declared.
No examples provided.
notification_document_add ~246
Attaches a document to a notification. Two steps: this call registers the file and returns { url }, a presigned upload URL, and you then PUT the raw bytes to that URL with an x-amz-checksum-sha256 header. Generate a UUID v4 for `id`, and compute the file's SHA-256 hex hash BEFORE calling — it goes in `hash`. ORDER MATTERS AND GETTING IT WRONG FAILS THE SEND: add every document BEFORE adding recipients, and wait until each document reaches READY_TO_SEND (poll notification_document_list; roughly 8 seconds) before calling notification_request_send. Attaching after recipients, or sending while a document is still PENDING, returns 409/404 NOTIFICATION_NOT_FOUND. The maximum number of attachments is a per-subscription setting rather than a fixed API limit, so do not assume a number. Attachments can be bundled into the delivery certificate — see notification_certificate_package_url.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| fileName | string | yes | – |
| fileSize | number | – | – |
| hash | string | yes | – |
| id | string | yes | – |
| notificationRequestId | string | yes | – |
No output schema declared.
No examples provided.
notification_document_delete ~59
Removes an attachment from a notification. Requires documentId (from notification_document_list), notificationRequestId and caseFileId.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| documentId | string | yes | – |
| notificationRequestId | string | yes | – |
No output schema declared.
No examples provided.
notification_document_download_url ~104
Returns { downloadUrl }, a temporary link to an attachment as it was sent. Requires documentId (from notification_document_list), notificationRequestId and caseFileId. Use it to retrieve a file you attached or to verify what a recipient received. The URL is presigned and expires — fetch it when you need it rather than storing it.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| documentId | string | yes | – |
| notificationRequestId | string | yes | – |
No output schema declared.
No examples provided.
notification_document_list ~140
Lists the documents attached to a notification with their processing status, and it is what you poll after notification_document_add: a newly registered document starts at PENDING and reaches READY_TO_SEND in roughly 8 seconds. Calling notification_request_send while any document is still PENDING fails with 409/404 NOTIFICATION_NOT_FOUND. Poll with a bounded retry — every few seconds, a dozen attempts at most. Requires notificationRequestId and caseFileId. Paginated.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| filter | object | – | – |
| notificationRequestId | string | yes | – |
| order | object | – | – |
| page | object | – | – |
No output schema declared.
No examples provided.
notification_receiver_add ~255
Adds a recipient to a notification request. Requires: notification_request_create → notificationRequestId, case_file_create → caseFileId. The `id` can be a UUID v4 or custom string (e.g. your internal user ID). Returns receiverId — save it for notification_certificate_get. Delivery is by email always; set sendWaUrl for a WhatsApp link, sendSmsUrl for an RCS/SMS link (the channel negotiates: RCS where the handset supports it, SMS otherwise), and otpRequired to challenge the recipient with a one-time code. Any of those three needs phonePrefix (with the +) and phoneNumber. Add all receivers before calling notification_request_send — but if the notification has attachments, add those FIRST (see notification_document_add).
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| string | yes | – | |
| firstName | string | yes | – |
| id | string | yes | – |
| lastName | string | yes | – |
| notificationRequestId | string | yes | – |
| otpRequired | boolean | – | – |
| phoneNumber | string | – | – |
| phonePrefix | string | – | – |
| sendSmsUrl | boolean | – | – |
| sendWaUrl | boolean | – | – |
No output schema declared.
No examples provided.
notification_receiver_add_bulk ~219
Adds several recipients in one call instead of one notification_receiver_add per person. Pass `receivers` as an array; each entry needs `id` (you generate it), firstName, lastName and email, and may carry phonePrefix (with the +) and phoneNumber. Note this bulk form does NOT accept the per-recipient otpRequired, sendWaUrl or sendSmsUrl flags that the single-recipient tool does — set the defaults on the request instead (otpByDefault, sendWaUrlByDefault, sendSmsUrlByDefault). The maximum number of recipients is a per-subscription setting, not a fixed API limit: it varies by tenant and platform, so do not assume a number — add them and read the error if the tenant's cap is exceeded. Add every recipient before calling notification_request_send, then check the result with notification_receiver_list, since a rejected address appears with status INVALID.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| notificationRequestId | string | yes | – |
| receivers | array | yes | – |
No output schema declared.
No examples provided.
notification_receiver_delete ~79
Removes a recipient from a notification. Requires receiverId, notificationRequestId and caseFileId. To remove every address the platform rejected in one call, use notification_receiver_invalid_purge rather than deleting them one by one.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| notificationRequestId | string | yes | – |
| receiverId | string | yes | – |
No output schema declared.
No examples provided.
notification_receiver_invalid_purge ~120
Removes every recipient whose status is INVALID — addresses the platform rejected as malformed or duplicated — from a notification in a single call. Requires notificationRequestId and caseFileId. Recipients in any other status are left untouched. AN INVALID RECIPIENT BLOCKS THE SEND, so run this (or fix the addresses with notification_receiver_update) before notification_request_send, or the notification will not go out. Use notification_receiver_list first to see what will go.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| notificationRequestId | string | yes | – |
No output schema declared.
No examples provided.
notification_receiver_list ~176
Lists a notification's recipients with their individual delivery state. Returns per recipient: id, firstName, lastName, email, phonePrefix/phoneNumber, status (INVALID, READY_TO_SEND, SENT, READ, ANSWERED, ERROR), statusUpdatedAt, `answer` once they respond, emailBounced, and validationError (TAKEN, IS_DEFINED, IS_INVALID) for a rejected address. Worth calling before notification_request_send to see whether any address came back INVALID, and after sending to see who read or answered. Also the way to recover a receiverId for notification_certificate_get. Paginated; filterable by id.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| filter | object | – | – |
| notificationRequestId | string | yes | – |
| order | object | – | – |
| page | object | – | – |
No output schema declared.
No examples provided.
notification_receiver_update ~181
Corrects a recipient's details: firstName, lastName, email, phonePrefix, phoneNumber. Requires receiverId, notificationRequestId and caseFileId. Use this to fix a mistyped address rather than deleting and re-adding, which would lose the receiverId. phonePrefix must include the + (for example +34). A phone number is required if the recipient is to receive the RCS/SMS link (sendSmsUrl), the WhatsApp link (sendWaUrl), or an OTP challenge (otpRequired).
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| string | – | – | |
| firstName | string | – | – |
| lastName | string | – | – |
| notificationRequestId | string | yes | – |
| phoneNumber | string | – | – |
| phonePrefix | string | – | – |
| receiverId | string | yes | – |
No output schema declared.
No examples provided.
notification_request_case_file_move ~89
Moves a notification to a different case file. Note the two caseFileId values: the one in the path is where the notification is NOW, and the one in the body is the destination. Notifications are grouped by case file, and this is the only way to change that grouping without duplicating.
| Name | Type | Req | Description |
|---|---|---|---|
| caseFileId | string | yes | – |
| notificationRequestId | string | yes | – |
No output schema declared.
No examples provided.
What is the io.github.g-digital-by-Garrigues/gocertius MCP server?
io.github.g-digital-by-Garrigues/gocertius is an MCP server listed in the public MCP registry as io.github.g-digital-by-Garrigues/gocertius. MCP server for GoCertius: certified evidence, dossiers, notifications and chats via AI agents. This page covers its npm package (@g-digital/mcp-gocertius).
Is the io.github.g-digital-by-Garrigues/gocertius MCP server safe to use?
io.github.g-digital-by-Garrigues/gocertius scores 79 out of 100 on VerifyMCP. We found no known CVEs affecting it as of 21 September 2026. It declares no install or post-install scripts. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the io.github.g-digital-by-Garrigues/gocertius MCP server expose?
io.github.g-digital-by-Garrigues/gocertius exposes 62 tools: evidence_create, evidence_list, evidence_seal, evidence_get, evidence_group_create, and 57 more. Their descriptions and schemas cost roughly 9,650 tokens of context every time the server is loaded.
Is the io.github.g-digital-by-Garrigues/gocertius MCP server still maintained?
io.github.g-digital-by-Garrigues/gocertius is still listed as active in the MCP registry. We last reached this channel on 21 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.
What licence is the io.github.g-digital-by-Garrigues/gocertius MCP server under?
io.github.g-digital-by-Garrigues/gocertius declares the MIT licence, which is OSI-approved. That covers the source only, and says nothing about the cost of any service it calls.