Skip to content
verify mcp Beta VerifyMCP is currently in beta. If you notice any issues, get in touch and we’ll put it right.

io.usefulapi/tito

REMOTE · TITO.USEFULAPI.IO · SCANNED OCT 4

Look up events, releases, tickets, registrations and discount codes, and edit tickets and codes.

33 Trust /100
Trust breakdown (7 categories)

How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →

Endpoint Security57
Transport & Reachability100
Schema Quality & AI Usability0
  • Schema not yet verified: we couldn't read the endpoint's schema, or could read only part of its tool list.Unverified
Stability & Change Management0
  • Stability not yet verified: not enough scan history yet (needs a 30-day window).Unverified
Tool Coverage0
  • Tool coverage not yet verified: we couldn't read the endpoint's tools, or could read only part of the list.Unverified
Tool Safety0
  • Tool safety not yet verified: we couldn't read the endpoint's tools, or could read only part of the list.Unverified
Capabilities0
  • Capabilities not yet verified: we couldn't read the endpoint's capabilities.Unverified

Unverified: 5 categories

Categories scored 0 because we could not verify them: authentication we do not have, an unreachable endpoint, or not enough scan history. We only credit what we can confirm.

Install

How do I install the io.usefulapi/tito MCP server?

io.usefulapi/tito is a hosted endpoint at https://tito.usefulapi.io/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.

remote · tito.usefulapi.io

# add to Claude Code
claude mcp add --transport http io-usefulapi-tito 'https://tito.usefulapi.io/mcp'
// .cursor/mcp.json
{
  "mcpServers": {
    "io-usefulapi-tito": {
      "url": "https://tito.usefulapi.io/mcp"
    }
  }
}
// .vscode/mcp.json
{
  "servers": {
    "io-usefulapi-tito": {
      "type": "http",
      "url": "https://tito.usefulapi.io/mcp"
    }
  }
}
# ~/.codex/config.toml
[mcp_servers.io-usefulapi-tito]
url = "https://tito.usefulapi.io/mcp"
// opencode.json
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "io-usefulapi-tito": {
      "type": "remote",
      "url": "https://tito.usefulapi.io/mcp",
      "enabled": true
    }
  }
}
# add to OpenClaw
openclaw mcp add io-usefulapi-tito --url 'https://tito.usefulapi.io/mcp' --transport streamable-http
# ~/.hermes/config.yaml
mcp_servers:
  io-usefulapi-tito:
    url: "https://tito.usefulapi.io/mcp"
// ~/.netclaw/config/netclaw.json
{
  "McpServers": {
    "io-usefulapi-tito": {
      "Transport": "http",
      "Url": "https://tito.usefulapi.io/mcp"
    }
  }
}
# add to Vellum
assistant mcp add io-usefulapi-tito -t streamable-http -u 'https://tito.usefulapi.io/mcp'
// mcp.json
{
  "mcpServers": {
    "io-usefulapi-tito": {
      "type": "http",
      "url": "https://tito.usefulapi.io/mcp"
    }
  }
}

The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.

Changelog

Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.

  • 3 Oct 26 −41
    • Endpoint reachability: reachable → not serving MCP ▼ security
    • Authorization: pass → unverified ▼ security
    • Tool safety: pass → unverified ▼ security
    • Capabilities: fail → unverified ▼ functional
    • Tool coverage: 100 → unverified ▼ functional
  • 2 Oct 26 +41
    • Authorization: unverified → pass ▲ security
    • Injection markers: unverified → pass ▲ security
    • First check of Judged manipulation: pass security
    • First check of Authorization: partial security
    • MCP protocol: unverified → fail ▼ functional
    • Tool coverage: unverified → 100 ▲ functional
    • First check of Schema quality: fail functional
    • First check of Schema quality: excellent functional
    • First check of Destructive annotations: pass functional
    • First check of Schema quality: fail functional
    • First check of Tool coverage: 100 functional
  • 1 Oct 26 +5
    • HTTPS: unverified → pass ▲ security
  • 30 Sept 26 +10
    • Transport: fail → pass ▲ security
    • Authorization: Authorisation not fully verified: no authorisation is required to connect, but we couldn't read the whole tool list to see what that exposes. security
  • 29 Sept 26 18

    First indexed and scored.

Diagnostics

Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.

Captured 4 Oct 2026 · Probed https://tito.usefulapi.io/mcp

TLS valid

Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .

Subject Issuer Valid from Valid until Key Signature Serial
CN=usefulapi.io CN=WE1,O=Google Trust Services,C=US 13 Sept 2026 12 Dec 2026 ECDSA 256 ECDSA-SHA256 d9be3287b0fde9630e825ba1f79bff3f
SANs: usefulapi.io, *.usefulapi.io
CN=WE1,O=Google Trust Services,C=US (CA) CN=GTS Root R4,O=Google Trust Services LLC,C=US 13 Dec 2023 20 Feb 2029 ECDSA 256 ECDSA-SHA384 7ff31977972c224a76155d13b6d685e3
CN=GTS Root R4,O=Google Trust Services LLC,C=US (CA) CN=GlobalSign Root CA,OU=Root CA,O=GlobalSign nv-sa,C=BE 15 Nov 2023 28 Jan 2028 ECDSA 384 SHA256-RSA 7fe530bf331343bedd821610493d8a1b

Background: What to check on a remote MCP endpoint →

DNSSEC insecure

Validation of tito.usefulapi.io. — Not signed

Zone DS Keys Algorithms Outcome
. trust_anchor 20326, 38696 8, 8 Verified
io. present 57355 8 Verified
usefulapi.io. absent Unsigned (proven) parent-signed NSEC/NSEC3 proves an unsigned delegation
Authentication No authorisation required

The endpoint answered without asking for a token. Anyone who knows the URL can reach it.

Result No authorisation required
HTTP status 200

Background: How OAuth 2.1 works in the 2026 MCP spec →

Transports 2 probes
Transport URL Outcome Status Location
streamable-http https://tito.usefulapi.io/mcp Verified 200
http (plaintext) http://tito.usefulapi.io/mcp HTTPS enforced 301 https://tito.usefulapi.io/mcp
MCP tools · 20 exposed · ~4,562 tokens

The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →

Tool Tokens
tito_create_discount_code ~384

Create a discount code for an event. type is PercentOffDiscountCode (value = percent) or MoneyOffDiscountCode (value = flat amount off per ticket, in the event currency). Undo by editing it (e.g. quantity or end_at) with tito_update_discount_code. Tito: POST /:account/:event/discount_codes.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
codestringyesThe code attendees enter, e.g. SAVE10.
end_atstring–When the code stops working (ISO 8601 datetime).
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
max_quantity_per_releaseinteger–The discount applies to at most this many tickets per release.
min_quantity_per_releaseinteger–The discount applies only if at least this many tickets are selected.
only_show_attachedboolean–When the code is applied, show only the releases attached to it. Default false.
quantityinteger–How many tickets can use this code in total.
release_idsarray–Release ids the code applies to (empty = all).
reveal_secretboolean–Reveal secret releases when the code is applied. Default false.
start_atstring–When the code starts working (ISO 8601 datetime).
typestringyesPercentOffDiscountCode = percentage off; MoneyOffDiscountCode = flat amount off per ticket.
valuestringyesThe amount off per ticket as a decimal string, e.g. "10.0".

No output schema declared.

No examples provided.

tito_create_ticket ~288

Issue a ticket for a release without a checkout — e.g. a speaker, sponsor or comp ticket. Tito creates a manual registration for it. This creates a real ticket that counts against the release's capacity (undo only by voiding it in the Tito dashboard). Tito: POST /:account/:event/tickets.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
company_namestring–Attendee company.
emailstring–Attendee email.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
first_namestring–Attendee first name.
last_namestring–Attendee last name.
metadataobject–Arbitrary metadata about the attendee.
phone_numberstring–Attendee phone number.
pricestring–Price recorded for the ticket as a decimal string, e.g. "0.0".
release_idstringyesThe release to issue from — its slug (e.g. speaker) or numeric id.
tagsstring–Comma-separated tags, e.g. speaker,vip.

No output schema declared.

No examples provided.

tito_get_discount_code ~138

Fetch a single discount code by its numeric id, including how many times it has been used. Tito: GET /:account/:event/discount_codes/:discount_code_id.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
discount_code_idintegeryesThe discount code's numeric id.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.

No output schema declared.

No examples provided.

tito_get_event ~126

Fetch a single event by slug: title, description, dates and times, time zone, location, currency, live/test_mode, and its releases. Tito: GET /:account/:event.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.

No output schema declared.

No examples provided.

tito_get_registration ~167

Fetch a single registration (order) by slug (reg_...), with its tickets, receipts, refunds, line items, billing address and payment details. Tito: GET /:account/:event/registrations/:registration_slug.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
registration_slugstringyesThe registration's slug, e.g. reg_ds7qNqJ4s4doDMeh1VogTrw.

No output schema declared.

No examples provided.

tito_get_release ~152

Fetch a single release (ticket type) by slug, with pricing, capacity, sales counts (full-price, discounted, free, voided), questions and activities. Tito: GET /:account/:event/releases/:release_slug.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
release_slugstringyesThe release's slug, e.g. early-bird.

No output schema declared.

No examples provided.

tito_get_ticket ~159

Fetch a single ticket by slug (ti_...), with the attendee, registration, release, question answers, tags and amounts paid. Tito: GET /:account/:event/tickets/:ticket_slug.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
ticket_slugstringyesThe ticket's slug, e.g. ti_dhlR2CSzh59ZLht5ELPkxjg.

No output schema declared.

No examples provided.

tito_list_activities ~174

List an event's activities — sessions, workshops or dinners beyond the ticket itself — with capacity, allocation_count, sold_out, date/times and attached releases. Tito: GET /:account/:event/activities.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
pageinteger–Page number (page[number]), from 1.
page_sizeinteger–Results per page (page[size]), 1-1000. Tito's default is 100.

No output schema declared.

No examples provided.

tito_list_answers ~187

List every attendee's answer to one question, each with its ticket_id and the response text. Tito: GET /:account/:event/questions/:question_slug/answers.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
pageinteger–Page number (page[number]), from 1.
page_sizeinteger–Results per page (page[size]), 1-1000. Tito's default is 100.
question_slugstringyesThe question's slug, from tito_list_questions, e.g. dietary.

No output schema declared.

No examples provided.

tito_list_checkin_lists ~178

List an event's check-in lists (the door lists used at the venue) with title, slug, the releases/activities they cover and which attendee fields they show. Tito: GET /:account/:event/checkin_lists.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
pageinteger–Page number (page[number]), from 1.
page_sizeinteger–Results per page (page[size]), 1-1000. Tito's default is 100.

No output schema declared.

No examples provided.

tito_list_discount_codes ~177

List an event's discount codes with code, type (PercentOffDiscountCode / MoneyOffDiscountCode), value, quantity and quantity_used, validity window and attached releases. Tito: GET /:account/:event/discount_codes.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
pageinteger–Page number (page[number]), from 1.
page_sizeinteger–Results per page (page[size]), 1-1000. Tito's default is 100.

No output schema declared.

No examples provided.

tito_list_events ~169

List an account's events: upcoming (default), past or archived. Each has its slug, title, dates, location, currency, live/test_mode flags and public URL. Tito: GET /:account/events, /events/past, /events/archived.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
pageinteger–Page number (page[number]), from 1.
page_sizeinteger–Results per page (page[size]), 1-1000. Tito's default is 100.
scopestring–Which events: upcoming (default), past or archived.

No output schema declared.

No examples provided.

tito_list_questions ~182

List the custom questions an event asks attendees (e.g. dietary requirements, t-shirt size) with slug, field_type, required flag and answers_count. Use a question's slug with tito_list_answers. Tito: GET /:account/:event/questions.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
pageinteger–Page number (page[number]), from 1.
page_sizeinteger–Results per page (page[size]), 1-1000. Tito's default is 100.

No output schema declared.

No examples provided.

tito_list_refunds ~178

List the refunds recorded for an event, each with amount, created_at, whether it was manual, and the registration it belongs to. Read-only: this server never issues refunds. Tito: GET /:account/:event/refunds.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
pageinteger–Page number (page[number]), from 1.
page_sizeinteger–Results per page (page[size]), 1-1000. Tito's default is 100.

No output schema declared.

No examples provided.

tito_list_registrations ~479

List an event's registrations — Tito's orders — newest first, with buyer name/email, reference, total, state, paid/refunded flags, discount code and ticket quantities. Filter by free text (email, name, slug, reference, company, discount code), state, and created/updated time. Cancelled ones are excluded unless states includes 'cancelled'. Tito: GET /:account/:event/registrations.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
created_afterstring–Only registrations created after this time (search[created_at][gt]), e.g. 2026-01-01T09:00:00+UTC. Without the +UTC suffix Tito uses the event's own time zone.
created_beforestring–Only registrations created before this time (search[created_at][lt]), e.g. 2026-01-01T09:00:00+UTC. Without the +UTC suffix Tito uses the event's own time zone.
directionstring–Sort direction (search[direction]).
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
pageinteger–Page number (page[number]), from 1.
page_sizeinteger–Results per page (page[size]), 1-1000. Tito's default is 100.
qstring–Free-text search: email, name, slug, reference, company name or discount code.
sortstring–Sort attribute (search[sort]). Default created_at, newest first.
statesarray–Only these states (search[states][]).
updated_afterstring–Only registrations updated after this time (search[updated_at][gt]), e.g. 2026-01-01T09:00:00+UTC. Without the +UTC suffix Tito uses the event's own time zone.
viewstring–Response view. Lists default to 'short'; 'extended' includes associated records but can be slow and large.

No output schema declared.

No examples provided.

tito_list_releases ~176

List an event's releases — Tito's ticket types — with price, quantity, tickets_count sold, sold_out / off_sale / secret flags, sale window and share_url. Tito: GET /:account/:event/releases.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
pageinteger–Page number (page[number]), from 1.
page_sizeinteger–Results per page (page[size]), 1-1000. Tito's default is 100.

No output schema declared.

No examples provided.

tito_list_tickets ~555

List an event's tickets — one per attendee — newest first, with name, email, company, reference, release, price paid and state. Filter by free text (name, email, phone, reference, company, tag), state, type, release, activity, and created/updated time. Void tickets are excluded unless states includes 'void'. Tito: GET /:account/:event/tickets.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
activity_idsarray–Only tickets attached to these activity ids (search[activity_ids][]).
created_afterstring–Only tickets created after this time (search[created_at][gt]), e.g. 2026-01-01T09:00:00+UTC. Without the +UTC suffix Tito uses the event's own time zone.
created_beforestring–Only tickets created before this time (search[created_at][lt]), e.g. 2026-01-01T09:00:00+UTC. Without the +UTC suffix Tito uses the event's own time zone.
directionstring–Sort direction (search[direction]).
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
pageinteger–Page number (page[number]), from 1.
page_sizeinteger–Results per page (page[size]), 1-1000. Tito's default is 100.
qstring–Free-text search: email, name, phone, slug, reference, company or tag.
release_slugsarray–Only tickets of these releases, by release slug (search[release_ids][]).
sortstring–Sort attribute (search[sort]). Default created_at, newest first.
statesarray–Only these states (search[states][]). 'archived' also includes tickets of archived releases.
typesarray–manual = added by an organiser, standard = ordered by a customer (search[types][]).
updated_afterstring–Only tickets updated after this time (search[updated_at][gt]), e.g. 2026-01-01T09:00:00+UTC. Without the +UTC suffix Tito uses the event's own time zone.
viewstring–Response view. Lists default to 'short'; 'extended' includes associated records but can be slow and large.

No output schema declared.

No examples provided.

tito_update_discount_code ~364

Change an existing discount code — its code, value, quantity, validity window or attached releases. Only the fields you pass are sent. To retire a code without deleting it, set end_at to now. Tito: PATCH /:account/:event/discount_codes/:discount_code_id.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
codestring–New code text.
discount_code_idintegeryesThe discount code's numeric id.
end_atstring–When the code stops working (ISO 8601 datetime).
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
max_quantity_per_releaseinteger–The discount applies to at most this many tickets per release.
min_quantity_per_releaseinteger–The discount applies only if at least this many tickets are selected.
only_show_attachedboolean–When the code is applied, show only the releases attached to it. Default false.
quantityinteger–How many tickets can use this code in total.
release_idsarray–Release ids the code applies to (empty = all).
reveal_secretboolean–Reveal secret releases when the code is applied. Default false.
start_atstring–When the code starts working (ISO 8601 datetime).
typestring–New discount type.
valuestring–New amount off per ticket as a decimal string, e.g. "15.0".

No output schema declared.

No examples provided.

tito_update_ticket ~268

Correct a ticket's attendee details — name, email, company, phone, tags or metadata. Only the fields you pass are sent, and no email is sent to anyone (unlike a reassignment, which this server does not do). Tito: PATCH /:account/:event/tickets/:ticket_slug.

NameTypeReqDescription
account_slugstring–The account slug (the first part of https://ti.to/<account>/<event>). Optional if TITO_ACCOUNT is set; tito_whoami lists the accounts this token can reach.
company_namestring–Attendee company.
emailstring–Attendee email.
event_slugstringyesThe event slug (the second part of https://ti.to/<account>/<event>), e.g. 2026.
first_namestring–Attendee first name.
last_namestring–Attendee last name.
metadataobject–Arbitrary metadata about the attendee.
phone_numberstring–Attendee phone number.
tagsstring–Comma-separated tags (replaces the existing tags).
ticket_slugstringyesThe ticket's slug, e.g. ti_dhlR2CSzh59ZLht5ELPkxjg.

No output schema declared.

No examples provided.

tito_whoami ~61

Confirm the API token works and list the account slugs it can reach, plus its lookup mode (live or test — a token only sees tickets and registrations of its own mode). Call this first to discover account_slug. Tito: GET /hello.

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

Common questions

What is the io.usefulapi/tito MCP server?

io.usefulapi/tito is an MCP server listed in the public MCP registry as io.usefulapi/tito. Look up events, releases, tickets, registrations and discount codes, and edit tickets and codes. This page covers its hosted endpoint (https://tito.usefulapi.io/mcp).

Is the io.usefulapi/tito MCP server safe to use?

io.usefulapi/tito scores 33 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.

What tools does the io.usefulapi/tito MCP server expose?

io.usefulapi/tito exposes 20 tools: tito_whoami, tito_list_events, tito_get_event, tito_list_releases, tito_get_release, and 15 more. Their descriptions and schemas cost roughly 4,562 tokens of context every time the server is loaded.

Does the io.usefulapi/tito MCP server require authentication?

No. We connected to io.usefulapi/tito without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.

Is the io.usefulapi/tito MCP server still maintained?

io.usefulapi/tito is still listed as active in the MCP registry. We last reached this channel on 4 October 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.