betterimage.io
REMOTE · BETTERIMAGE.IO · SCANNED OCT 4
Social cards and OG images from designed templates: card from a URL, presets, meta tags, link checks
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →
Endpoint Security80
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- No authorisation is required to call this server. Every tool declares its destructiveHint and none is destructive, so open access doesn't expose one. See how to fix → View diagnostics → Partial
- HTTPS is enforced; there's no plaintext access path. View diagnostics → Pass
- The HSTS (Strict-Transport-Security) header is present. View diagnostics → Pass
- DNSSEC check failed: this domain isn't protected by DNSSEC. See how to fix → View diagnostics → Fail
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability65
- AI-judged instruction clarity (excellent).Pass
- Context-footprint check failed: tool/resource definitions use about 2621 tokens (~262/item across 10 items; 10 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management43
- Stability observed for 13 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage100
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 100% of tool parameters carry a description.Pass
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- We read all 10 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
- An AI judge read all 11 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a current MCP spec version (2026-07-28).Pass
How do I install the betterimage.io MCP server?
betterimage.io is a hosted endpoint at https://betterimage.io/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
remote · betterimage.io
claude mcp add --transport http io-betterimage-betterimage 'https://betterimage.io/mcp'
{
"mcpServers": {
"io-betterimage-betterimage": {
"url": "https://betterimage.io/mcp"
}
}
} {
"servers": {
"io-betterimage-betterimage": {
"type": "http",
"url": "https://betterimage.io/mcp"
}
}
} [mcp_servers.io-betterimage-betterimage] url = "https://betterimage.io/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"io-betterimage-betterimage": {
"type": "remote",
"url": "https://betterimage.io/mcp",
"enabled": true
}
}
} openclaw mcp add io-betterimage-betterimage --url 'https://betterimage.io/mcp' --transport streamable-http
mcp_servers:
io-betterimage-betterimage:
url: "https://betterimage.io/mcp" {
"McpServers": {
"io-betterimage-betterimage": {
"Transport": "http",
"Url": "https://betterimage.io/mcp"
}
}
} assistant mcp add io-betterimage-betterimage -t streamable-http -u 'https://betterimage.io/mcp'
{
"mcpServers": {
"io-betterimage-betterimage": {
"type": "http",
"url": "https://betterimage.io/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 4 Oct 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 40 to 43. That category is still filling its 30-day observation window: 12 days of observed history at the previous scan, 13 at this one. The score rises as the window fills, whether or not the server changes.
- 2 Oct 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 33 to 37. That category is still filling its 30-day observation window: 10 days of observed history at the previous scan, 11 at this one. The score rises as the window fills, whether or not the server changes.
- 30 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 27 to 30. That category is still filling its 30-day observation window: 8 days of observed history at the previous scan, 9 at this one. The score rises as the window fills, whether or not the server changes.
- 28 Sept 26 +7
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 27 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 17 to 20. That category is still filling its 30-day observation window: 5 days of observed history at the previous scan, 6 at this one. The score rises as the window fills, whether or not the server changes.
- 25 Sept 26 +1
- The server rewrote its instructions, which are the text every model session reads security
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- Server version: 1.1.0 → 1.2.0 functional
- “card_from_url” reworded the description of “fields” cosmetic
- “og_image_url” reworded the description of “fields” cosmetic
- “preview_card” reworded the description of “fields” cosmetic
- “render_card” reworded the description of “fields” cosmetic
- “save_template” reworded the description of “fields” cosmetic
- 24 Sept 26 0
- Server version: 1.0.0 → 1.1.0 functional
- “list_presets” reworded the description of “kind” cosmetic
- 22 Sept 26 +1
- Stability: unverified → 0.03 ▲ functional
- Server version: 0.1.0 → 1.0.0 functional
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 4 Oct 2026 · Probed https://betterimage.io/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=betterimage.io | CN=WE1,O=Google Trust Services,C=US | 10 Aug 2026 | 8 Nov 2026 | ECDSA 256 | ECDSA-SHA256 | 767deabfa1d70630eeabedd9a2ce294 |
| SANs: betterimage.io, *.betterimage.io | ||||||
| CN=WE1,O=Google Trust Services,C=US (CA) | CN=GTS Root R4,O=Google Trust Services LLC,C=US | 13 Dec 2023 | 20 Feb 2029 | ECDSA 256 | ECDSA-SHA384 | 7ff31977972c224a76155d13b6d685e3 |
| CN=GTS Root R4,O=Google Trust Services LLC,C=US (CA) | CN=GlobalSign Root CA,OU=Root CA,O=GlobalSign nv-sa,C=BE | 15 Nov 2023 | 28 Jan 2028 | ECDSA 384 | SHA256-RSA | 7fe530bf331343bedd821610493d8a1b |
Background: What to check on a remote MCP endpoint →
DNSSEC insecure
Validation of betterimage.io. — Not signed
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| io. | present | 57355 | 8 | Verified |
| betterimage.io. | absent | Unsigned (proven) parent-signed NSEC/NSEC3 proves an unsigned delegation |
Authentication No authorisation required
The endpoint answered without asking for a token. Anyone who knows the URL can reach it.
| Result | No authorisation required |
|---|---|
| HTTP status | 200 |
| Header | Value |
|---|---|
| strict-transport-security | max-age=15724800; includeSubdomains |
Background: How OAuth 2.1 works in the 2026 MCP spec →
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://betterimage.io/mcp | Verified | 200 | |
| http (plaintext) | http://betterimage.io/mcp | HTTPS enforced | 301 | https://betterimage.io:443/mcp |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
card_from_url Card from a page URL ~361
Make a social card for a page that already exists, in one call: fetches the page like a crawler, takes its title, description, author, domain and site icon, picks the starter design that fits the page (a Jev decision over every preset, about 100 ms) and returns the image (shown inline, watermarked, free). Use this first when the user gives a URL: "make an OG image for my latest post". Any field you pass overrides what the page says. Pass preset (see list_presets) to choose the design yourself, or a size. No API key needed; one page fetch plus one render per call.
| Name | Type | Req | Description |
|---|---|---|---|
| fields | object | – | What to put on the card. Text fields replace the template's text; the *_url fields replace its pictures, fetched server-side. Omit a field to keep what the template has. Design - colours, fonts, layo… |
| preset | string | – | Preset key from list_presets. Omit it to let Jev pick the design that fits the page (the result names the pick and its runners-up). Fallback when no pick is possible: og-essay-light. |
| size | string | – | Output canvas: og (1200x630), youtube (1280x720), square (1080x1080), portrait (1080x1350), story (1080x1920), pinterest (1000x1500). Defaults to the template's own size, usually og (1200x630, the li… |
| url | string | yes | The page URL, e.g. https://example.com/blog/my-post. |
No output schema declared.
No examples provided.
check_link_preview Check how a link previews ~129
Fetch a public page the way X, Facebook, LinkedIn, Slack and Discord crawlers do and report what they will show: the effective title, description and image per platform, the og:image's real format, dimensions and weight, and a list of concrete problems with fixes. Use when a user asks why their link looks wrong when shared, or before publishing. Only http(s) URLs on the public internet; one page fetch plus up to two image fetches per call. No API key needed.
| Name | Type | Req | Description |
|---|---|---|---|
| url | string | yes | The page URL, e.g. https://example.com/post. |
No output schema declared.
No examples provided.
generate_meta_tags Generate meta tags ~269
Build the complete <head> block for a page: <title>, meta description, canonical, Open Graph and Twitter card tags, with og:image width/height. Returns HTML to paste plus notes on anything worth fixing (title too long, image over http). Use after check_link_preview, or whenever a user needs the tags for a new page. No API key needed; nothing is fetched.
| Name | Type | Req | Description |
|---|---|---|---|
| description | string | – | One or two sentences (aim for 160 characters or fewer). |
| image_alt | string | – | Alt text for the image. |
| image_height | integer | – | Pixel height of the image file. Default 630. |
| image_url | string | – | Absolute https URL of the share image. A signed URL from og_image_url, or a PNG from render_card that you host. |
| image_width | integer | – | Pixel width of the image file. Default 1200. |
| site_name | string | – | Site or brand name for og:site_name. |
| title | string | yes | Page title (aim for 60 characters or fewer). |
| twitter_card | string | – | Twitter card layout. summary_large_image (default) shows the big image. |
| type | string | – | og:type. Default website. |
| url | string | – | Canonical page URL. |
No output schema declared.
No examples provided.
get_usage Quota and plan ~56
The API key's plan, whether renders are watermarked, and this month's image quota: used, remaining, and the reset date. Needs an API key. Check it before batch renders, or when a render came back watermarked unexpectedly.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
list_presets List starter designs ~179
Browse the ready-made designs (presets) a card can start from: key, name, template kind, native size, use-case categories, a one-line look description and a preview image URL. Start here when the user wants a social card and has no saved template. Then call preview_card with the chosen key. No API key needed.
| Name | Type | Req | Description |
|---|---|---|---|
| category | string | – | Only presets in this use-case or format category. |
| kind | string | – | Only this template kind. basic: headline + photo cards. profile: photo, name, role. testimonial: quote with reviewer and rating. minimal: headline-only. product: framed screenshot with a rating and a… |
| query | string | – | Case-insensitive match against the preset's name, key and look description, e.g. "dark", "serif", "pastel". |
No output schema declared.
No examples provided.
list_templates List saved templates ~72
The user's saved templates (their own designs, made in the editor or with save_template): slug, name, kind, the fields render_card and og_image_url can override, and when it was last edited. Needs an API key. Call this before render_card or og_image_url when you do not know the slug.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
og_image_url Signed og:image URL ~319
Build a signed image URL for a saved template with the given text, ready to put in a page's <meta property="og:image"> tag. Nothing is rendered now: the image is generated when a crawler fetches the URL, cached at the edge for a day, and each uncached fetch spends one image of the monthly quota. Needs an API key. This is the zero-infrastructure way to give every page its own card; use it in page templates, CMS hooks and static site generators. Returns the URL and the ready meta tag.
| Name | Type | Req | Description |
|---|---|---|---|
| fields | object | – | What to put on the card. Text fields replace the template's text; the *_url fields replace its pictures, fetched server-side. Omit a field to keep what the template has. Design - colours, fonts, layo… |
| scale | integer | – | 2 renders at twice the pixel size for high-DPI screens (a 1200x630 card becomes 2400x1260). Default 1. |
| size | string | – | Output canvas: og (1200x630), youtube (1280x720), square (1080x1080), portrait (1080x1350), story (1080x1920), pinterest (1000x1500). Defaults to the template's own size, usually og (1200x630, the li… |
| template | string | yes | Template slug from list_templates or save_template. |
No output schema declared.
No examples provided.
preview_card Preview a card from a preset ~257
Render a preset with the user's text and return the image (shown inline). Free, no API key; the preview carries a small betterimage.io watermark and does not touch any quota. Use it to show the user what their card will look like before they commit. For a clean image: save_template + render_card on a paid API plan, or the one-off clean download in the editor.
| Name | Type | Req | Description |
|---|---|---|---|
| fields | object | – | What to put on the card. Text fields replace the template's text; the *_url fields replace its pictures, fetched server-side. Omit a field to keep what the template has. Design - colours, fonts, layo… |
| preset | string | yes | Preset key from list_presets, e.g. "loud-pastel". |
| size | string | – | Output canvas: og (1200x630), youtube (1280x720), square (1080x1080), portrait (1080x1350), story (1080x1920), pinterest (1000x1500). Defaults to the template's own size, usually og (1200x630, the li… |
No output schema declared.
No examples provided.
render_card Render a saved template ~271
Render one of the user's saved templates with the given text and return the PNG (shown inline, at 1x). Needs an API key. On a paid plan the image is clean (no watermark); on the free tier it is watermarked. Each call spends one image of the monthly quota. Use it when the user wants the actual file, e.g. to host it themselves. For an og:image tag that needs no hosting, or for a 2x retina file, prefer og_image_url.
| Name | Type | Req | Description |
|---|---|---|---|
| fields | object | – | What to put on the card. Text fields replace the template's text; the *_url fields replace its pictures, fetched server-side. Omit a field to keep what the template has. Design - colours, fonts, layo… |
| size | string | – | Output canvas: og (1200x630), youtube (1280x720), square (1080x1080), portrait (1080x1350), story (1080x1920), pinterest (1000x1500). Defaults to the template's own size, usually og (1200x630, the li… |
| template | string | yes | Template slug from list_templates or save_template. |
No output schema declared.
No examples provided.
save_template Save a preset as a template ~276
Copy a preset (optionally with the user's text as its new defaults) into the user's account as a saved template, so render_card and og_image_url can use it. Needs an API key. Do this once per design, not per image: afterwards every render only passes the text that changes. Returns the slug to use next and a link to fine-tune the design in the editor.
| Name | Type | Req | Description |
|---|---|---|---|
| fields | object | – | What to put on the card. Text fields replace the template's text; the *_url fields replace its pictures, fetched server-side. Omit a field to keep what the template has. Design - colours, fonts, layo… |
| name | string | – | Template name (up to 80 characters); its slug is derived from it. Defaults to the preset's name. |
| preset | string | yes | Preset key from list_presets. |
| size | string | – | Output canvas: og (1200x630), youtube (1280x720), square (1080x1080), portrait (1080x1350), story (1080x1920), pinterest (1000x1500). Defaults to the template's own size, usually og (1200x630, the li… |
No output schema declared.
No examples provided.
What is the betterimage.io MCP server?
betterimage.io is an MCP server listed in the public MCP registry as io.betterimage/betterimage. Social cards and OG images from designed templates: card from a URL, presets, meta tags, link checks. This page covers its hosted endpoint (https://betterimage.io/mcp).
Is the betterimage.io MCP server safe to use?
betterimage.io scores 78 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the betterimage.io MCP server expose?
betterimage.io exposes 10 tools: card_from_url, list_presets, preview_card, check_link_preview, generate_meta_tags, and 5 more. Their descriptions and schemas cost roughly 2,189 tokens of context every time the server is loaded.
Does the betterimage.io MCP server require authentication?
No. We connected to betterimage.io without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.
Is the betterimage.io MCP server still maintained?
betterimage.io is still listed as active in the MCP registry. We last reached this channel on 4 October 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.