Proof Holdings
NPM · @PROOF-HOLDINGS/MCP-SERVER · 2 COMPONENTS · SCANNED SEP 25
One API, all things verified — control, delegation, human approval, anti-impersonation.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically from public evidence about the published package, including repeated runs of it in an isolated sandbox, and we only credit what we can confirm. How we score → Why this is hard to score →
Supply Chain Security98
- No malware found by supply-chain analysis.Pass
- No known CVEs affecting this package version or its production dependencies.Pass
- No install/post-install scripts declared.Pass
- 42 of 126 dependencies flagged as unhealthy. View diagnostics → Partial
Provenance & Transparency45
- Source repository is publicly reachable at the declared URL. View diagnostics → Pass
- Provenance check failed: no build-provenance attestation is published. See how to fix → View diagnostics → Fail
- Clear OSI-approved license (MIT).Pass
- Actively maintained (last published 15 days ago).Pass
- Disclosure check failed: no security disclosure policy was found in the source repository. See how to fix → Fail
Schema Quality & AI Usability74
- AI-judged instruction clarity (excellent).Pass
- Context-footprint check failed: tool/resource definitions use about 22726 tokens (~129/item across 176 items; 176 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management53
- Stability observed for 16 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage100
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 100% of tool parameters carry a description.Pass
Tool Safety25
- Injection-marker check failed: the description of tool "send_account_email" contains an instruction to conceal the call from the user, the text "Do not tell the user", at byte 959 of that field. See how to fix → Fail
- 0 of 21 tool(s) whose name or description implies an irreversible operation declare an MCP destructiveHint annotation; "revoke_proof" implies "revoke" and declares no destructiveHint at all, which the MCP spec reads as destructive by default. See how to fix → Fail
- An AI judge read all 177 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
How do I install the Proof Holdings MCP server?
Proof Holdings runs locally as an npm package, launched with npx -y @proof-holdings/mcp-server. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
npm · @proof-holdings/mcp-server
claude mcp add holdings-proof-mcp-server -- npx -y @proof-holdings/mcp-server
{
"mcpServers": {
"holdings-proof-mcp-server": {
"command": "npx",
"args": [
"-y",
"@proof-holdings/mcp-server"
]
}
}
} {
"servers": {
"holdings-proof-mcp-server": {
"command": "npx",
"args": [
"-y",
"@proof-holdings/mcp-server"
]
}
}
} codex mcp add holdings-proof-mcp-server -- npx -y @proof-holdings/mcp-server
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"holdings-proof-mcp-server": {
"type": "local",
"command": [
"npx",
"-y",
"@proof-holdings/mcp-server"
],
"enabled": true
}
}
} openclaw mcp add holdings-proof-mcp-server --command npx --arg -y --arg @proof-holdings/mcp-server
mcp_servers:
holdings-proof-mcp-server:
command: "npx"
args: ["-y", "@proof-holdings/mcp-server"] {
"McpServers": {
"holdings-proof-mcp-server": {
"Transport": "stdio",
"Command": "npx",
"Arguments": [
"-y",
"@proof-holdings/mcp-server"
]
}
}
} assistant mcp add holdings-proof-mcp-server -t stdio -c npx -a -y @proof-holdings/mcp-server
{
"mcpServers": {
"holdings-proof-mcp-server": {
"command": "npx",
"args": [
"-y",
"@proof-holdings/mcp-server"
]
}
}
} Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 25 Sept 26 +1
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 23 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 43 to 47. That category is still filling its 30-day observation window: 13 days of observed history at the previous scan, 14 at this one. The score rises as the window fills, whether or not the server changes.
- 21 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 37 to 40. That category is still filling its 30-day observation window: 11 days of observed history at the previous scan, 12 at this one. The score rises as the window fills, whether or not the server changes.
- 19 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 30 to 33. That category is still filling its 30-day observation window: 9 days of observed history at the previous scan, 10 at this one. The score rises as the window fills, whether or not the server changes.
- 17 Sept 26 +4
- Stability: unverified → 0.27 ▲ functional
- 9 Sept 26 65
First indexed and scored.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 25 Sept 2026 · Analysed npm/@proof-holdings/mcp-server@1.1.0
Provenance No attestation
The registry publishes no build provenance for this version, so there is nothing to verify.
| Result | No attestation |
|---|---|
| Ecosystem | npm |
Background: How many MCP packages publish verified provenance →
Dependencies 126 packages
| Packages resolved | 126 |
|---|---|
| Stale | 42 |
| Tree resolution | Complete |
Background: SBOMs and build attestations, explained →
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
get_authorization ~68
Get an authorization by ID. Returns the current state of the authorization including status and usage statistics. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Authorization ID |
No output schema declared.
No examples provided.
get_circle ~81
Get a Circle by ID. Returns the Circle including its members and per-member channel presence booleans (an identifier is NEVER returned — SEC-PM-006). ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Circle ID |
No output schema declared.
No examples provided.
get_confirmation ~67
Get a confirmation by ID. Returns the full confirmation including status, response, and proof token. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Confirmation ID |
No output schema declared.
No examples provided.
get_confirmation_approval_link ~75
Generate a fresh approval link for a pending confirmation. The link expiry inherits the confirmation timeout. Only works for pending confirmations. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Confirmation ID |
No output schema declared.
No examples provided.
get_current_user ~65
Get the current authenticated user. Returns account details, plan, and settings for the API key owner. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, or sign in with start_login — a session opens this tool — then call this tool again.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
get_default_templates ~60
Get all default message templates. These are the built-in templates used when no custom template is set. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
get_delegation ~137
Get one of your delegations by Mongo id or ph_dlg_* handle. Returns the stored publishable token plus the DERIVED effective_status/is_valid — the delegation is only as live as the control proof it stands on (a revoked, suspended or expired domain proof invalidates it) and never outlives its own expires_at, whichever comes first. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Delegation ID (24-hex Mongo id or ph_dlg_<32 hex> handle) |
No output schema declared.
No examples provided.
get_dns_providers ~62
Get metadata for all supported DNS providers, including required credential fields and documentation links. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, or sign in with start_login — a session opens this tool — then call this tool again.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
get_domain ~73
Get details of a specific domain by ID, including verification status, DNS records, and provider connections. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, or sign in with start_login — a session opens this tool — then call this tool again.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Domain ID |
No output schema declared.
No examples provided.
get_hitl ~70
Get a HITL config by ID. Returns the config including channels, timeout, and status. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | HITL config ID |
No output schema declared.
No examples provided.
get_hitl_keys ~83
Get the encryption keypair for a HITL config. Returns public key, encrypted private key, KDF salt, and key ID (kid). ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| hitl_id | string | yes | HITL config ID |
No output schema declared.
No examples provided.
get_identity_challenge ~83
Get a Proof-Me identity challenge by ID. Returns status, the channel the CONFIRM ran on, and the proof token once confirmed. Poll this for resolution. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Identity challenge ID |
No output schema declared.
No examples provided.
get_multi_channel_verification_status ~112
Get the status of a multi-channel verification group by its group_id. Returns the aggregate status (pending/verified/expired), the winning_channel once one completes, per-channel statuses, and the proof token (with expires_at) when the group is verified. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| group_id | string | yes | Multi-channel verification group ID (format vg_<hex>) |
No output schema declared.
No examples provided.
get_my_profile ~62
Get the current user's primary profile. Returns profile details, theme, custom links, and public proof display settings. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
get_platform_summary ~127
Get a one-call account snapshot: quota with end-of-month projection, request health (pending/completed/expired counts + success rate), per-channel completion rates, HITL counts, and active API key count. The same data the dashboard home renders. The hitl_channels sub-object requires the hitl:read scope. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| environment | string | – | Scope request/channel/HITL metrics to test or production data (default: production) |
No output schema declared.
No examples provided.
get_profile ~71
Get a specific profile by ID. Returns full profile details including theme, custom links, and verification display settings. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| profile_id | string | yes | Profile ID |
No output schema declared.
No examples provided.
get_profile_assets ~61
Get available verified assets that can be displayed on the user's profile. Returns assets eligible for public proof display. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
get_proof_status ~110
Get the status of a proof by its public handle (ph_ctl_* / ph_dlg_*) or a verification ID. Returns whether the proof is active, suspended, expired, or revoked — a live proof reads "active". ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Public proof handle (ph_ctl_* / ph_dlg_*) or verification ID |
No output schema declared.
No examples provided.
get_request_by_reference ~66
Get a verification request by its reference ID (your unique identifier). ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| reference_id | string | yes | Your unique reference ID |
No output schema declared.
No examples provided.
get_request_proofs ~73
Get proof tokens for verified assets in a verification request. Returns proof tokens that can be used for offline verification. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Verification request ID |
No output schema declared.
No examples provided.
get_self_api_key ~109
Get the calling API key's own redacted metadata (id, name, key_prefix, environment, scopes, last_used_at, revoked_at, created_at) for agent self-inspection. Never returns the key hash or full secret. Requires API-key auth — a JWT session has no single-key context (returns 400 api_key_required). ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
get_session ~68
Get a session by ID. Returns the session status, verification details, and proof token if verified. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Session ID |
No output schema declared.
No examples provided.
get_settings ~59
Get account settings including branding configuration (business name, logo, colors, support email, email theme). ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
get_subscription ~56
Get the current subscription details including plan, status, billing period, and usage limits. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
get_template ~88
Get a specific template by channel and message type. Returns the custom template if set, otherwise the default. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| channel | string | yes | Message channel |
| message_type | string | yes | Message type (e.g. verification_request, login_request) |
No output schema declared.
No examples provided.
get_usage ~93
Get usage metrics for the authenticated account. Shows verification counts, API calls, and quota usage. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| months | integer | – | Number of months of history |
| period | string | – | Month to query in YYYY-MM format (e.g. 2026-01) |
No output schema declared.
No examples provided.
get_user_domain_verification_status ~74
Get the current status of a domain verification session, including challenge details. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, or sign in with start_login — a session opens this tool — then call this tool again.
| Name | Type | Req | Description |
|---|---|---|---|
| session_id | string | yes | Domain verification session ID |
No output schema declared.
No examples provided.
get_verification ~71
Get a verification by ID. Returns the full verification object including status, channel, and proof token if verified. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Verification ID |
No output schema declared.
No examples provided.
get_verification_request ~68
Get a verification request by ID. Returns the request with all its asset verification statuses. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Verification request ID |
No output schema declared.
No examples provided.
get_verified_user ~67
Get a single verified user and their verifications by external user ID. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| external_user_id | string | yes | The external user ID |
No output schema declared.
No examples provided.
get_webhook_delivery ~70
Get details of a single webhook delivery attempt including request/response payloads and retry history. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Webhook delivery ID |
No output schema declared.
No examples provided.
get_webhook_stats ~58
Get webhook delivery statistics including total deliveries, success/failure counts, and recent activity. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
invite_challenger ~107
Mint a single-use Proof-Me enrollment invite for a challenger. Returns Telegram + WhatsApp deep links and a QR code; the challenger taps the channel-matched link to bind their messenger identity to the config. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| challenger_id | string | yes | Challenger ID to invite |
| hitl_id | string | yes | HITL config ID |
No output schema declared.
No examples provided.
invite_circle_member ~101
Mint a single-use enrollment invite for a Circle member. Returns Telegram + WhatsApp deep links and a QR code; the member taps the channel-matched link to bind their messenger identity to the Circle. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Circle ID |
| member_id | string | yes | Member ID to invite |
No output schema declared.
No examples provided.
list_api_keys ~64
List all API keys for the authenticated account. Returns key metadata (not the secret key values). ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, or sign in with start_login — a session opens this tool — then call this tool again.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_assets ~99
List all verified assets for the authenticated user. Assets are verified identities (phones, emails, domains). ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| limit | integer | – | Items per page |
| page | integer | – | Page number |
| status | string | – | Filter by status |
| type | string | – | Filter by asset type |
No output schema declared.
No examples provided.
list_auth_sessions ~76
List all active authentication sessions for the current user. Shows session details including channel, user agent, and expiry. When called via API key, no session is marked as is_current. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_authorizations ~103
List authorizations with optional filters. Returns paginated results. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| channel | string | – | Filter by channel |
| limit | integer | – | Items per page |
| page | integer | – | Page number |
| phone | string | – | Filter by phone number |
| status | string | – | Filter by authorization status |
No output schema declared.
No examples provided.
list_challengers ~67
List the Proof-Me challengers enrolled on a HITL config. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| hitl_id | string | yes | HITL config ID |
No output schema declared.
No examples provided.
list_circle_member_channels ~92
List a Circle member's channels. Returns channel metadata only (channel, status, verified_at) — an identifier is NEVER returned (SEC-PM-006). ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Circle ID |
| member_id | string | yes | Member ID |
No output schema declared.
No examples provided.
list_circle_members ~87
List a Circle's members. Each member carries channel-presence booleans only (has_telegram / has_whatsapp) — an identifier is NEVER returned (SEC-PM-006). ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | Circle ID |
No output schema declared.
No examples provided.
list_circles ~148
List Circles with optional filters. Archived Circles are excluded by default; pass status="archived" to surface them. Returns paginated results. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| environment | string | – | Filter by environment (production or test) |
| limit | integer | – | Items per page (default 20, max 100) |
| page | integer | – | Page number (default 1) |
| profile_id | string | – | Filter by bound public profile (sub-account) |
| status | string | – | Filter by status (archived excluded unless requested) |
No output schema declared.
No examples provided.
list_confirmations ~103
List confirmations with optional filters. Returns paginated results with status and HITL config filtering. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| hitl_id | string | – | Filter by HITL config ID |
| limit | integer | – | Items per page |
| page | integer | – | Page number |
| status | string | – | Filter by confirmation status |
No output schema declared.
No examples provided.
list_delegations ~224
List your own delegations with optional filters. Each item carries the DERIVED effective_status/is_valid beside its stored status — read effective_status, since status records only whether the owner revoked the delegation themselves, so a delegation still reads active there after its domain control proof was revoked, suspended or expired, and after its OWN lifetime ran out. effective_status accounts for all of those: it reports expired once either lifetime has passed, whichever is earlier. Tokens are not included in the list — use get_delegation for the stored token. There is no public enumeration of third-party delegations. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| limit | integer | – | Items per page |
| page | integer | – | Page number |
| status | string | – | Filter by the delegation's OWN stored status (active|revoked). Does NOT filter the derived effective_status — status=active still returns delegations whose control proof died, and ones that simply ra… |
No output schema declared.
No examples provided.
list_dns_credentials ~64
List all stored DNS provider credentials for the authenticated account. Returns credential metadata (not secret values). ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, or sign in with start_login — a session opens this tool — then call this tool again.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_domains ~59
List all domains for the authenticated account. Returns domain metadata including verification status. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, or sign in with start_login — a session opens this tool — then call this tool again.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_emails ~55
List all email addresses associated with the authenticated account. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, or sign in with start_login — a session opens this tool — then call this tool again.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_hitls ~100
List HITL configs with optional filters. Returns paginated results. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, then call this tool again. start_login does NOT open this tool.
| Name | Type | Req | Description |
|---|---|---|---|
| environment | string | – | Filter by environment (production or test) |
| limit | integer | – | Items per page |
| page | integer | – | Page number |
| status | string | – | Filter by status (active or archived) |
No output schema declared.
No examples provided.
list_incoming_requests ~58
List incoming verification requests where the authenticated user is the subject. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, or sign in with start_login — a session opens this tool — then call this tool again.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_my_requests ~54
List verification requests created by the authenticated user. ACCESS: needs a Proof account. Set PROOF_API_KEY and restart this server, or sign in with start_login — a session opens this tool — then call this tool again.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
What is the Proof Holdings MCP server?
Proof Holdings is an MCP server listed in the public MCP registry as holdings.proof/mcp-server. One API, all things verified, control, delegation, human approval, anti-impersonation. This page covers its npm package (@proof-holdings/mcp-server).
Is the Proof Holdings MCP server safe to use?
Proof Holdings scores 73 out of 100 on VerifyMCP. We found no known CVEs affecting it as of 25 September 2026. It declares no install or post-install scripts. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the Proof Holdings MCP server expose?
Proof Holdings exposes 176 tools: create_verification, get_verification, list_verifications, trigger_verification, submit_verification_code, and 171 more. Their descriptions and schemas cost roughly 22,440 tokens of context every time the server is loaded.
Is the Proof Holdings MCP server still maintained?
Proof Holdings is still listed as active in the MCP registry. We last reached this channel on 25 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.
What licence is the Proof Holdings MCP server under?
Proof Holdings declares the MIT licence, which is OSI-approved. That covers the source only, and says nothing about the cost of any service it calls.