io.github.gosadu/loophole-tape
REMOTE · API.LOOPHOLETAPE.COM · SCANNED SEP 20
pump.fun & Robinhood Chain launch data: radar, risk checks, delta feed, datasets, keys. x402 USDC
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →
Endpoint Security77
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- No authorisation is required to call this server. Every tool declares its destructiveHint and none is destructive, so open access doesn't expose one. See how to fix → View diagnostics → Partial
- HTTPS is enforced; there's no plaintext access path. View diagnostics → Pass
- HSTS check failed: the Strict-Transport-Security header is absent. See how to fix → View diagnostics → Fail
- DNSSEC is configured correctly; the domain's records validate against the full chain to the root. View diagnostics → Pass
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability69
- AI-judged instruction clarity (excellent).Pass
- Context-footprint check failed: tool/resource definitions use about 3880 tokens (~176/item across 22 items; 22 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management37
- Stability observed for 11 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage100
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 100% of tool parameters carry a description.Pass
- Structured output schemas are declared (9% of tools); any adoption earns full credit.Pass
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- We read all 22 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
- An AI judge read all 23 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
How do I install the io.github.gosadu/loophole-tape MCP server?
io.github.gosadu/loophole-tape is a hosted endpoint at https://api.loopholetape.com/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
remote · api.loopholetape.com
claude mcp add --transport http gosadu-loophole-tape 'https://api.loopholetape.com/mcp'
{
"mcpServers": {
"gosadu-loophole-tape": {
"url": "https://api.loopholetape.com/mcp"
}
}
} {
"servers": {
"gosadu-loophole-tape": {
"type": "http",
"url": "https://api.loopholetape.com/mcp"
}
}
} [mcp_servers.gosadu-loophole-tape] url = "https://api.loopholetape.com/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"gosadu-loophole-tape": {
"type": "remote",
"url": "https://api.loopholetape.com/mcp",
"enabled": true
}
}
} openclaw mcp add gosadu-loophole-tape --url 'https://api.loopholetape.com/mcp' --transport streamable-http
mcp_servers:
gosadu-loophole-tape:
url: "https://api.loopholetape.com/mcp" {
"McpServers": {
"gosadu-loophole-tape": {
"Transport": "http",
"Url": "https://api.loopholetape.com/mcp"
}
}
} assistant mcp add gosadu-loophole-tape -t streamable-http -u 'https://api.loopholetape.com/mcp'
{
"mcpServers": {
"gosadu-loophole-tape": {
"type": "http",
"url": "https://api.loopholetape.com/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 20 Sept 26 0
- Tool “rhc_curve_card” rewrote its description, which is the text the model reads security
- Tool “rhc_recent_launches” rewrote its description, which is the text the model reads security
- 18 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 27 to 30. That category is still filling its 30-day observation window: 8 days of observed history at the previous scan, 9 at this one. The score rises as the window fills, whether or not the server changes.
- 16 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 20 to 23. That category is still filling its 30-day observation window: 6 days of observed history at the previous scan, 7 at this one. The score rises as the window fills, whether or not the server changes.
- 14 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 13 to 17. That category is still filling its 30-day observation window: 4 days of observed history at the previous scan, 5 at this one. The score rises as the window fills, whether or not the server changes.
- 12 Sept 26 +2
- DNSSEC: fail → pass ▲ security
- Tool “check_pumpfun_risk” rewrote its description, which is the text the model reads security
- Tool “check_watchlist_risk” rewrote its description, which is the text the model reads security
- Tool “rhc_curve_card” rewrote its description, which is the text the model reads security
- Tool “rhc_recent_launches” rewrote its description, which is the text the model reads security
- Schema quality: 2869 → 3707 ▼ functional
- Schema quality: 2869 → 3447 ▼ functional
- Server version: 0.6.0 → 0.6.1 functional
- Server version: 0.5.0 → 0.6.0 functional
- New tool “buy_trial_key” functional
- New tool “launches_since” functional
- New tool “buy_api_key” functional
- New tool “buy_dataset” functional
- New tool “radar” functional
- 11 Sept 26 0
- The server rewrote its instructions, which are the text every model session reads security
- Tool “catalog” rewrote its description, which is the text the model reads security
- Tool “mint_risk_card” rewrote its description, which is the text the model reads security
- Tool “recent_graduations” rewrote its description, which is the text the model reads security
- Tool “recent_rugs” rewrote its description, which is the text the model reads security
- Tool “rhc_recent_launches” rewrote its description, which is the text the model reads security
- Tool “rhc_regime” rewrote its description, which is the text the model reads security
- Server version: 0.4.0 → 0.5.0 functional
- 10 Sept 26 +1
- The server rewrote its instructions, which are the text every model session reads security
- Schema quality: 2347 → 2894 ▼ functional
- Stability: unverified → 0.03 ▲ functional
- First check of Tool coverage: 12 functional
- Server version: 0.3.0 → 0.4.0 functional
- New tool “check_coverage” functional
- New tool “check_pumpfun_risk” functional
- New tool “check_watchlist_risk” functional
- New tool “watchlist_updates” functional
- 9 Sept 26 70
First indexed and scored.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 20 Sept 2026 · Probed https://api.loopholetape.com/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=loopholetape.com | CN=Amazon RSA 2048 M01,O=Amazon,C=US | 9 Sept 2026 | 25 Mar 2027 | RSA 2048 | SHA256-RSA | e6682dc2cb906a117fd7671ebb23ee9 |
| SANs: loopholetape.com, *.loopholetape.com | ||||||
| CN=Amazon RSA 2048 M01,O=Amazon,C=US (CA) | CN=Amazon Root CA 1,O=Amazon,C=US | 23 Aug 2022 | 23 Aug 2030 | RSA 2048 | SHA256-RSA | 77312380b9d6688a33b1ed9bf9ccda68e0e0f |
| CN=Amazon Root CA 1,O=Amazon,C=US (CA) | CN=Starfield Services Root Certificate Authority - G2,O=Starfield Technologies\, Inc.,L=Scottsdale,ST=Arizona,C=US | 25 May 2015 | 31 Dec 2037 | RSA 2048 | SHA256-RSA | 67f944a2a27cdf3fac2ae2b01f908eeb9c4c6 |
Background: What to check on a remote MCP endpoint →
DNSSEC secure
Validation of api.loopholetape.com. — Secure
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| com. | present | 19718 | 13 | Verified |
| loopholetape.com. | present | 2371 | 13 | Verified |
| api.loopholetape.com. | Verified address RRset verified with the apex keys |
Authentication No authorisation required
The endpoint answered without asking for a token. Anyone who knows the URL can reach it.
| Result | No authorisation required |
|---|---|
| HTTP status | 200 |
Background: How OAuth 2.1 works in the 2026 MCP spec →
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://api.loopholetape.com/mcp | Verified | 200 | |
| http (plaintext) | http://api.loopholetape.com/mcp | HTTPS enforced |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
buy_api_key Buy a prepaid API key ($2.00) ~150
$2.0 USDC once. One x402 payment of $2.00 (USDC on Solana or Base; by header, or in a browser with a wallet) returns a key lt_... holding $2.00 of credit. Send it as the X-API-Key header on any paid HTTP route and that route's price is deducted; no x402 client is needed after the purchase (MCP tools stay pay-per-call). Free balance: GET /v1/keys/balance with the header. Credit does not expire; the key is a bearer secret. The key activates when the same request settles; the same signed payment retried returns the same key. No arguments.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
buy_dataset Buy one day of pump.fun launches ($5.00) ~220
$5.0 USDC per day file. Input: day (UTC, YYYY-MM-DD, from the free HTTP index /v1/datasets). Every pump.fun launch our capture saw on that UTC day (about 15k-35k rows) with creator, dev buy and share, name/symbol/uri, outcomes as our label rules define them (graduated with migration delay, rugged with rug delay, creator first-sell delay, peak and terminal reserve) and the first feature snapshot under 10 s and between 10 and 60 s of age where sampled (dev/insider/bundle shares, creator prior, reserve, buys). Free 200-row sample and schema at /v1/datasets. HTTP returns the parquet bytes; the MCP tool returns a one-hour download URL. The last three days are rebuilt nightly as outcomes settle. Returns a download URL valid for one hour plus rows, bytes and sha256.
| Name | Type | Req | Description |
|---|---|---|---|
| day | string | yes | UTC day YYYY-MM-DD listed by the free index /v1/datasets |
No output schema declared.
No examples provided.
buy_trial_key Buy a $0.10 trial key ~94
$0.1 USDC once. The same prepaid key as /v1/keys/new with $0.10 of credit (about twenty $0.005 checks or a hundred $0.001 polls): one x402 payment, then X-API-Key on any paid HTTP route. For trying the header path with a small agent budget. Free balance: GET /v1/keys/balance. No arguments.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
catalog Catalog (free) ~59
Free. Start here: every tool with its price in USD, required arguments, what it returns, the x402 payment terms (USDC on Solana mainnet or Base, payTo per network, facilitator) and the label semantics URL. Returns JSON.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
check_coverage Check mint coverage (free) ~59
Free. Check full live coverage and <= 5 s feed freshness for one to five pump.fun mints before paying. Returns availability and exact prices.
| Name | Type | Req | Description |
|---|---|---|---|
| mints | array | yes | One to five distinct pump.fun mints with full live coverage |
No output schema declared.
No examples provided.
check_pumpfun_risk Check pump.fun risk ($0.005) ~186
Compact check before a swap or during position monitoring, with calibrated P(rug within 5 min) and P(true graduation) validated out of time (/v1/calibration): creator exits, early-wallet selling, curve/pool drains, migration classification, concentration and buyer flow. Findings include first-observed times and numeric evidence. Full coverage and feed lag <= 5 s required; stale/unavailable data is unpaid. Optional cursor: no new watched events is unpaid. No flags observed is not a safety guarantee. Exact signed-payment retries recover the original result for 10 min without a new settlement; timestamps identify its age.
| Name | Type | Req | Description |
|---|---|---|---|
| cursor | string|null | – | Optional opaque watch cursor for these exact mints; no new watched events returns an unpaid result. |
| mint | string | yes | A pump.fun mint with full live coverage; check /v1/check/coverage first. |
| Name | Type | Req | Description |
|---|---|---|---|
| coverage | string | yes | – |
| data | – | yes | – |
| generated_at | string | yes | – |
| meta | object | yes | – |
| ok | boolean | yes | – |
| schema_version | string | yes | – |
| t | number | yes | – |
No examples provided.
check_watchlist_risk Check five mints ($0.01 total) ~188
One payment checks one to five caller-selected pump.fun mints for observed creator exits, bundle selling, drains and migration state, each with calibrated P(rug within 5 min) and P(true graduation) (/v1/calibration), with compact concentration/flow measurements and timestamped evidence. Every mint must have full coverage and feed lag <= 5 s; an unavailable batch is unpaid. Optional cursor: no new watched events is unpaid. Use /v1/check/watch for free update availability. Price is $0.01 total, not per mint. Findings describe observations, not predictions. Exact signed-payment retry cache: 10 minutes.
| Name | Type | Req | Description |
|---|---|---|---|
| cursor | string|null | – | Optional opaque watch cursor for these exact mints; no new watched events returns an unpaid result. |
| mints | array | yes | One to five distinct pump.fun mints. All must have full live coverage. |
| Name | Type | Req | Description |
|---|---|---|---|
| coverage | string | yes | – |
| data | – | yes | – |
| generated_at | string | yes | – |
| meta | object | yes | – |
| ok | boolean | yes | – |
| schema_version | string | yes | – |
| t | number | yes | – |
No examples provided.
creator_reputation Creator reputation ($0.02) ~192
$0.02 USDC per call. Input: address (base58 wallet). Creator reputation: look-ahead-safe stats over every launch we have seen from this wallet (n_launches, resolved, graduations witnessed at >= 84 SOL, rugs by drain or dev dump, median seconds to the dev's first sell, total dev buys), the last 25 launches with outcomes, the creator's live mints right now, and whether the wallet was funded in the last 30 min (warm launch). Empty stats (is_first_time=true) for a wallet we never saw launch. Returns JSON envelope with data{creator, stats{n_launches, n_resolved, grad_rate, rug_rate, median_dev_sell_s, is_first_time}, recent_launches[], live_mints[], funded_recently_by}.
| Name | Type | Req | Description |
|---|---|---|---|
| address | string | yes | base58 Solana wallet address (32-44 chars) |
No output schema declared.
No examples provided.
health Feed health (free) ~52
Free. Feed health: feed_lag_s (seconds between the newest event in our tape and now), is_stale, last Solana slot, mints tracked, counters. Call it before trusting a card's freshness.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
launches_since New launches since a cursor ($0.001) ~166
$0.001 USDC per poll. The polling feed for bots: every covered launch created after `since` (unix seconds; default the last 60 s, at most the last hour), oldest first, up to 100 per call, each with reserve, buys, buyer inflow, concentration, first-observed flags, the calibrated P(rug within 300 s) and P(true graduation), and the paid check URL. Returns next_cursor to pass back as since. An empty page costs the same call, so poll at the launch rate you need (about 20 launches per minute).
| Name | Type | Req | Description |
|---|---|---|---|
| limit | integer | – | launches per call |
| since | – | – | unix seconds of the last launch seen (next_cursor of the previous call); omit for the last 60 s |
No output schema declared.
No examples provided.
market_regime Market regime (free) ~70
Free. pump.fun market regime meter: launches per minute, mayhem share, curve buys/sells per minute, fail share, pool swaps, migrations vs true graduations (curve witnessed >= 84 SOL) in the last hour, rug flags per hour, history totals. No arguments. Returns JSON.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
mint_risk_card Mint risk card ($0.025) ~280
$0.025 USDC per call. Input: mint (base58 pump.fun mint). Risk card for ONE pump.fun mint, always HTTP 200 for a valid base58 mint. coverage=full when the mint is in our live window: curve truth (graduation = curve witnessed >= 84 SOL), demand (unique buyers, buys/sells 60 s, net SOL), holder concentration (top-5, HHI), create-slot bundle / insider / dev shares, look-ahead-safe creator prior at launch, warm-launch (observed creator-funding links) label, rug/close flags with first-seen times, exit signals. coverage=thin otherwise: our resolved launch record if any + current bonding-curve state from RPC + creator prior. Every card carries status, risk_label, confidence, a why[] list and market base rates. Nulls carry a reason; nothing is guessed. Returns JSON envelope {ok, coverage: full|thin, data{status, risk_label, confidence, why[], curve, demand, holders, exit_signals, creator_prior_at_launch, rug_flags, flags, base_rates, next}, meta{feed_lag_s, is_stale}}.
| Name | Type | Req | Description |
|---|---|---|---|
| mint | string | yes | base58 SPL mint address (32-44 chars); pump.fun mints usually end in 'pump' |
No output schema declared.
No examples provided.
radar Live radar (free) ~82
Free. The covered pump.fun mints under 30 s old ranked by calibrated rug-within-300s probability and the covered mints under 15 min (>= 5 buys) ranked by true-graduation probability, ten each, refreshed every 5 s, each with the paid check URL and tool. The free preview of the paid number. No arguments.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
recent_graduations Recent graduations ($0.02) ~159
$0.02 USDC per call. Optional args: limit (1-100, default 50), window_s (60-86400, default 21600). Migrations to PumpSwap in the window (default 6 h), each labelled graduated=true only when we witnessed the curve at >= 84 SOL, otherwise a below-threshold close (mayhem or operator pools). Each item is a compact card with the migrate time, pool, peak curve SOL and the holder/creator labels. Returns JSON envelope with data{count, items[compact cards + migrate_t + graduated]}.
| Name | Type | Req | Description |
|---|---|---|---|
| limit | integer | – | max items 1-100 |
| window_s | number | – | look-back seconds 60-86400 |
No output schema declared.
No examples provided.
recent_launches Recent launches ($0.01) ~260
$0.01 USDC per call. Optional args: limit (1-100, default 50), max_age_s (30-21600, default 3600), exclude_mayhem (default true), min_rs (curve SOL floor), only_alive (drop rug-flagged). Recent pump.fun launches (default: last hour, mayhem excluded, newest first) as compact cards: curve SOL and progress, unique buyers, holder concentration, create-slot bundle/insider/dev shares, look-ahead-safe creator prior (launches, grad rate, rug rate at the moment of launch), warm-launch label, rug flags with first-seen times. The funnel for a screener: filter by min_rs / only_alive and then buy full cards for the survivors. Returns JSON envelope with data{count, items[compact cards]}.
| Name | Type | Req | Description |
|---|---|---|---|
| exclude_mayhem | boolean | – | drop mayhem-class launches |
| limit | integer | – | max items 1-100 |
| max_age_s | number | – | only mints created within this many seconds (30-21600) |
| min_rs | number | – | minimum curve SOL right now |
| only_alive | boolean | – | drop mints with any rug/close flag |
No output schema declared.
No examples provided.
recent_rugs Recent rugs ($0.02) ~186
$0.02 USDC per call. Optional args: limit (1-200, default 50), window_s (60-21600, default 3600). Rug and close flags fired in the window (newest first), each with its mechanism (creator_sold, bundle_dumped, curve_drained, pool_drained, curve_closed_low, migrate_below_grad), the flag time, the mint's age at the flag, peak and current curve SOL, name/symbol/creator. Use it to review observed risk events and their frequency. Returns JSON envelope with data{count, items[{t, mint, flag, detail, mint_age_at_flag_s, peak_rs_sol, rs_sol, creator}]}.
| Name | Type | Req | Description |
|---|---|---|---|
| limit | integer | – | max items 1-200 |
| window_s | number | – | look-back seconds 60-21600 |
No output schema declared.
No examples provided.
rhc_curve_card Robinhood Chain curve card ($0.02) ~389
$0.02 USDC per call. Input: address (0x-prefixed Pons V2 curve or token address on Robinhood Chain). Full structure card for ONE Pons V2 curve on Robinhood Chain, addressed by curve or token address (0x…): launch facts (block, deployer, pair token, graduation threshold), raised / progress / price multiple vs launch (exact curve reserves, ETH-paired curves), the launch's trade fee and creator tax in bps (fees block; the creator tax is charged on every buy and sell and is invisible to three-word event parsers), snipe-tax activity, holder ledger concentration (top-1 / top-5 / HHI / deployer share), same-block direct-buy cluster share and wallets, max direct buys in one 100 ms block, terminal-vs-direct route mix with terminal holdings share, flow (buys / sells / unique buyers / new buyers in the last 2 and 6 s / last trade age / volumes), lifecycle (completed / graduated blocks and delays, refunds), and the ring block: the coordinated-cluster screen (unique_buyers >= 8 and same-block direct-buy cluster share >= 0.5) our own capture measured at 14.5% of launches, 47% dumped, median 0.37x terminal; matching timing is not proof of coordination. coverage=full for curves launched inside our event window (last ~2 h, trades observed from block 0); thin = launch facts + lifecycle only, with a reason. Always 200 for a valid address. Returns JSON envelope with data{curve, token, status, coverage, raised, snipe_tax, structure, flow, lifecycle}.
| Name | Type | Req | Description |
|---|---|---|---|
| address | string | yes | 0x-prefixed 40-hex Pons V2 curve OR token address on Robinhood Chain |
No output schema declared.
No examples provided.
rhc_recent_launches Robinhood Chain recent launches ($0.01) ~453
$0.01 USDC per call. Optional args: limit (1-200, default 50), max_age_s (30-21600, default 3600), pair ('any' | 'eth'), only_live (bool), min_buys (int). Recent Pons V2 launches on Robinhood Chain (chain 4663; default last hour, newest first) as compact structure cards: raised (ETH), progress to the 4.2 ETH graduation, price multiple vs launch (exact curve reserves), the launch's trade fee and creator tax in bps (fees.creator_tax_bps: 0-1900, chosen by the creator, charged on every buy and sell), snipe-tax activity, holder concentration (top-1 / top-5 / HHI), same-block direct-buy cluster share (matching timing, not proof of coordination), terminal-vs-direct route mix with the terminal router transactions joined to their wallets, inflow (new buyers in the last 2 / 6 s), lifecycle (live / complete / graduated). Every card carries a ring block: the RING SCREEN flags the coordinated-cluster structure our own capture measured (unique_buyers >= 8 and same-block direct-buy cluster share >= 0.5); ring_only=true returns just those curves, and the response carries the rule with its measured base rates (14.5% of launches, 47% dumped, median 0.37x terminal in the 2026-09-06/07 window) so you can price the flag yourself. Matching timing is not proof of coordination. Filter pair=eth for ETH-paired curves or min_buys for a minimum observed activity count. Returns JSON envelope with data{count, items[compact structure cards]}.
| Name | Type | Req | Description |
|---|---|---|---|
| limit | integer | – | max items 1-200 |
| max_age_s | number | – | only launches within this many seconds (30-21600) |
| min_buys | integer | – | minimum curve buys observed |
| only_live | boolean | – | drop completed / graduated curves |
| pair | string | – | 'any' or 'eth' (ETH-paired curves only) |
No output schema declared.
No examples provided.
rhc_regime Robinhood Chain regime (free) ~69
Free. Robinhood Chain (chain 4663) Pons V2 regime meter: launches per hour, graduations per hour and rate, median launch-to-graduation seconds, curve buys/sells per minute, unique buyers, snipe-tax facts, feed health. No arguments.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
sample_mint Sample risk card (free) ~53
Free. One full risk card (the exact paid mint_risk_card shape) for a mint aged >= 300 s with >= 3 buys, delayed. Use it to see every field before paying. No arguments.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
wallet_profile Wallet profile ($0.02) ~155
$0.02 USDC per call. Input: address (base58 wallet). Wallet profile: class from our rolling 3-day realised-PnL leaderboard over every pump.fun trade we captured (insider / sniper / skilled / crowd, with rank and stats), holdings among the last 3000 mints (token share, first-buy slot, curve SOL now), creator stats if the wallet ever launched, and recent funding source. Use it to weight the buyers on a curve. Returns JSON envelope with data{wallet, leaderboard{class, rank, stats}, as_creator, live_holdings_recent_mints[], funded_recently_by}.
| Name | Type | Req | Description |
|---|---|---|---|
| address | string | yes | base58 Solana wallet address (32-44 chars) |
No output schema declared.
No examples provided.
watchlist_updates Watch for new risk events (free) ~105
Free. Initialize a watch cursor or check for new documented risk/lifecycle events for the same one to five mints. Returns availability only; a paid check returns event details and an updated cursor. Cursor lasts 24 h. Poll every 15 s or slower.
| Name | Type | Req | Description |
|---|---|---|---|
| cursor | – | – | Optional opaque watch cursor for these exact mints; no new watched events returns an unpaid result. |
| mints | array | yes | One to five distinct pump.fun mints with full live coverage |
No output schema declared.
No examples provided.
What is the io.github.gosadu/loophole-tape MCP server?
io.github.gosadu/loophole-tape is an MCP server listed in the public MCP registry as io.github.gosadu/loophole-tape. pump.fun & Robinhood Chain launch data: radar, risk checks, delta feed, datasets, keys. x402 USDC. This page covers its hosted endpoint (https://api.loopholetape.com/mcp).
Is the io.github.gosadu/loophole-tape MCP server safe to use?
io.github.gosadu/loophole-tape scores 76 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the io.github.gosadu/loophole-tape MCP server expose?
io.github.gosadu/loophole-tape exposes 22 tools: catalog, health, market_regime, sample_mint, radar, and 17 more. Their descriptions and schemas cost roughly 3,627 tokens of context every time the server is loaded.
Does the io.github.gosadu/loophole-tape MCP server require authentication?
No. We connected to io.github.gosadu/loophole-tape without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.
Is the io.github.gosadu/loophole-tape MCP server still maintained?
io.github.gosadu/loophole-tape is still listed as active in the MCP registry. We last reached this channel on 20 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.