Skip to content
verify mcp Beta VerifyMCP is currently in beta. If you notice any issues, email [email protected] and we’ll put it right.

GitDealFlow

REMOTE · GITDEALFLOW.COM · SCANNED AUG 3

Track startup engineering acceleration from public GitHub data before funding rounds

Available components

+9 this week 25 Trust /100
Trust breakdown (6 categories)

How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score →

Endpoint Security63
Transport & Reachability0
Schema Quality & AI Usability0
  • Schema not yet verified: we couldn't read the endpoint's schema.Unverified
Stability & Change Management0
  • Stability not yet verified: not enough scan history yet (needs a 30-day window).Unverified
Tool Coverage0
  • Tool coverage not yet verified: we couldn't read the endpoint's tools.Unverified
Capabilities0
  • Capabilities not yet verified: we couldn't read the endpoint's capabilities.Unverified

Unverified: 4 categories

Categories scored 0 because we could not verify them: authentication we do not have, an unreachable endpoint, or not enough scan history. We only credit what we can confirm.

Install

Add this component to your MCP client. Where a client-specific snippet is available, pick your client below and copy it straight into your config; otherwise use the connection detail shown.

remote · gitdealflow.com

# add to Claude Code
claude mcp add --transport http kindrat86-gitdealflow https://gitdealflow.com/api/mcp
# ~/.codex/config.toml
[mcp_servers.kindrat86-gitdealflow]
url = "https://gitdealflow.com/api/mcp"
// opencode.json
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "kindrat86-gitdealflow": {
      "type": "remote",
      "url": "https://gitdealflow.com/api/mcp",
      "enabled": true
    }
  }
}
# add to OpenClaw
openclaw mcp add kindrat86-gitdealflow --url https://gitdealflow.com/api/mcp --transport streamable-http
# ~/.hermes/config.yaml
mcp_servers:
  kindrat86-gitdealflow:
    url: "https://gitdealflow.com/api/mcp"
// mcp.json
{
  "mcpServers": {
    "kindrat86-gitdealflow": {
      "type": "http",
      "url": "https://gitdealflow.com/api/mcp"
    }
  }
}

The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.

Changelog

Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.

  • 31 Jul 26 −41
    • We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
  • 30 Jul 26 +50
    • We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
  • 29 Jul 26 −34
    • Endpoint reachability: reachable → not serving MCP security
    • Stability: 0.07 → unverified security
    • Transport: pass → fail security
    • Authorization: Authorisation not fully verified: no authorisation is required to connect, but we couldn't read the tool list to see what that exposes. security
    • Capabilities: fail → unverified functional
    • Tool coverage: 100 → unverified functional
  • 28 Jul 26 +34
    • Transport: fail → pass security
    • Authorization: Authorisation not fully verified: no authorisation is required to call this server, and 4 tool(s) never declared a destructiveHint. The MCP spec treats an absent hint as destructive by default, so we cannot call this surface safe. security
    • MCP protocol: unverified → fail functional
    • Stability: unverified → 0.07 functional
    • Tool coverage: unverified → 100 functional
  • 27 Jul 26 −33
    • We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
  • 26 Jul 26 49

    First indexed and scored.

Diagnostics

Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.

Captured 3 Aug 2026 · Probed https://gitdealflow.com/api/mcp

TLS valid

Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .

Subject Issuer Valid from Valid until Key Signature Serial
CN=*.gitdealflow.com CN=YR1,O=Let's Encrypt,C=US 20 Jul 2026 18 Oct 2026 RSA 2048 SHA256-RSA 51c16a3da85c6876f97d363e5af446dda0c
SANs: *.gitdealflow.com, gitdealflow.com
CN=YR1,O=Let's Encrypt,C=US (CA) CN=Root YR,O=ISRG,C=US 3 Sept 2025 2 Sept 2028 RSA 2048 SHA256-RSA a20253f15f2691c05dc1ce13b9bcca4e
CN=Root YR,O=ISRG,C=US (CA) CN=ISRG Root X1,O=Internet Security Research Group,C=US 13 May 2026 2 Sept 2032 RSA 4096 SHA256-RSA f24b6d17f9d9ad7cb1c9fea78782699f
DNSSEC insecure

Validation of gitdealflow.com. Not signed

Zone DS Keys Algorithms Outcome
. trust_anchor 20326, 38696 8, 8 Verified
com. present 19718 13 Verified
gitdealflow.com. absent Unsigned (proven) parent-signed NSEC/NSEC3 proves an unsigned delegation
Authentication No authorisation required

The endpoint answered without asking for a token. Anyone who knows the URL can reach it.

Result No authorisation required
HTTP status 404
Header Value
strict-transport-security max-age=63072000; includeSubDomains; preload
content-security-policy default-src 'self'; img-src 'self' data: https:; style-src 'self' 'unsafe-inline'; script-src 'self' 'unsafe-inline' https://*.posthog.com; connect-src 'self' https://*.posthog.com https://signals.gitdealflow.com; base-uri 'self'; object-src 'none'; frame-ancestors 'none'; form-action 'self' https://signals.gitdealflow.com; upgrade-insecure-requests
x-content-type-options nosniff
x-frame-options DENY
referrer-policy strict-origin-when-cross-origin
permissions-policy camera=(), microphone=(), geolocation=()
Transports 2 probes
Transport URL Outcome Status Location
streamable-http https://gitdealflow.com/api/mcp HTTP error 404
http (plaintext) http://gitdealflow.com/api/mcp HTTPS enforced 308 https://gitdealflow.com/api/mcp
MCP tools — 12 exposed · ~2,083 tokens

The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability.

Tool Tokens
compare_signals ~133

Score and rank 2-5 named startups side by side, returning each one's acceleration score, evidence, and raise-likelihood band plus a single recommendation for which warrants deeper diligence. Same transparent scoring as predict_funding / shortlist_signals. Names that don't resolve are returned in `notFound` (expected, not an error). The recommendation is computed only over resolved companies; if fewer than 2 resolve it explains that no comparison was possible. PARAMETERS: { names: string[] } — 2 to 5 display names or GitHub org slugs (case-insensitive).

NameTypeReqDescription
namesarrayyes
NameTypeReqDescription
citationstringyes
comparedarrayyes
disclaimerstring
methodologyUrlstring
notFoundarray
periodstringyes
recommendationstringyes
sourcestring

No examples provided.

get_deep_signal ~143

PAID per-request — €0.19/call, 100 credits = €19 at https://signals.gitdealflow.com/agents/credits. Returns enriched signal beyond the free get_startup_signal: composite score (0-100), velocity/growth/novelty sub-scores, in-sector rank + percentile, plain-English investment thesis, top-3 sector comparables, and multi-period history. Requires Authorization: Bearer gdf_v2.cus_xxx.<hmac>. 1 credit consumed only on a successful match; misses are FREE. Credits never expire.

NameTypeReqDescription
namestringyesStartup display name or GitHub org slug.
NameTypeReqDescription
balanceinteger
chargedinteger
foundbooleanyes
scoresobject
thesisstring

No examples provided.

get_diligence_dossier ~146

Public-source diligence dossier for a company or entity in one cited object: who acquired it (M&A history), which funds publicly backed it, and its published engineering-acceleration signal. Use mid-diligence for 'who acquired X', 'which funds backed Y', 'what's the signal on Z'. Sources are press-release / SEC-filing / both-sides-disclosed only; returns found:false (an expected outcome, not an error) with honest notes when the entity is outside the tracked corpus — never guesses.

NameTypeReqDescription
companystringyesCompany or entity name (target, acquirer, or tracked startup). Case-insensitive, normalization-tolerant.
NameTypeReqDescription
acquiredByarrayPublic acquisitions where this entity was the target.
acquisitionsMadearrayIf the entity is itself an acquirer: notable companies it has publicly bought.
backedByarrayFunds in our tracked corpus that publicly disclosed backing this entity.
entitystringyesResolved canonical entity name.
foundbooleanyesTrue when at least one grounded fact exists; false is an expected outcome, not an error.
notesarrayPlain-language notes on what is and isn't known.
signalobject|nullPublished engineering-acceleration signal, when the entity is in the tracked corpus.

No examples provided.

get_methodology ~30

Full methodology document covering data sources, metric computation, signal classification thresholds, refresh cadence, and known limitations.

Input schema present but exposes no named parameters.

NameTypeReqDescription
methodologystringyesPlain-text methodology covering sources, metrics, thresholds, cadence, and limitations.
urlstringyesCanonical methodology page on signals.gitdealflow.com.

No examples provided.

get_scout_receipts ~110

Compute a Scout Score (0-100) for a GitHub user from their public starring history. Cross-references starred repos against ~75 validated unicorns and grades how many they starred *before* the validation event. Returns score, rank (curious/scout/sharp/elite/oracle), top early calls, personality summary, and a shareable card URL.

NameTypeReqDescription
github_usernamestringyesGitHub username, 1-39 chars, alphanumeric + single hyphens.
NameTypeReqDescription
early_countintegerOf the matches, how many were starred BEFORE the validation event.
matched_countintegerStars that match a validated unicorn in the database.
og_image_urlstringOG/Twitter card image URL for sharing.
personalitystringOptional one-line personality summary based on starring patterns.
rankstringyesRank label derived from the score: 'curious' | 'scout' | 'sharp' | 'elite' | 'oracle'.
scorenumberyesScout Score, 0-100. Higher means earlier+more validated calls.
share_urlstringyesShareable Scout Receipts page URL.
top_winsarrayTop early calls ranked by points contribution.
total_starsintegerTotal public stars analysed.
usernamestringyesGitHub username analysed.

No examples provided.

get_signals_summary ~31

Period, sector and startup counts, last refresh, citation, and direct URLs to every machine-readable format.

Input schema present but exposes no named parameters.

NameTypeReqDescription
citationstringyesSuggested citation string.
dashboardstring
formatsobjectyesDirect URLs for every machine-readable format.
lastDataRefreshstringyesISO 8601 timestamp of the last refresh.
periodstringyesCurrent reporting period label.
sectorsActiveintegeryesNumber of active sectors.
startupsTrackedintegeryesTotal startups in the dataset.
updateFrequencystringHuman-readable update cadence.
websitestring

No examples provided.

get_startup_signal ~67

Full engineering-acceleration profile for a single tracked startup, by display name or GitHub org slug. Case-insensitive, normalization-tolerant.

NameTypeReqDescription
namestringyesStartup display name OR GitHub org name. Case-insensitive; punctuation and whitespace are ignored during matching.
NameTypeReqDescription
citationstringSuggested citation string.
foundbooleanyesTrue when the startup is in the tracked universe; false is an expected outcome, not an error.
startupobjectA single startup ranked by engineering acceleration, derived from public GitHub activity.
suggestionstringWhen found=false, a hint on how to discover the correct name or alternative tools to call.

No examples provided.

get_trending_startups ~36

Top 20 startups by engineering acceleration across all 20 sectors for the current weekly period. Read-only, idempotent.

Input schema present but exposes no named parameters.

NameTypeReqDescription
citationstringyesSuggested citation string for reports.
periodstringyesReporting period label, e.g. 'Q2 2026'.
sourcestringyes
startupsarrayyesTop 20 startups ranked by engineering acceleration.

No examples provided.

predict_funding ~271

Transparent, scored funding-likelihood claim for one tracked startup, with the full evidence chain and citable provenance. Instead of an opaque number, returns the score, every component that produced it, a confidence level, honest caveats, and links to the methodology + SSRN paper so the derivation can be cited. IS a deterministic heuristic over public GitHub engineering-acceleration signals; IS NOT an ML black box, a guarantee of any financing event, or based on private/cap-table data. The disclaimer is returned in every response. SCORING (also returned in evidence.scoreBreakdown): velocity ≤40 (saturates +300%), contributorGrowth ≤25 (saturates +200%), newRepos ≤15 (saturates 10), signalType ≤20 (Deploy frequency spike 20 / Engineering hiring burst 17 / Infrastructure buildout 14 / Framework migration 8). Total 0-100 → >=70 high, 45-69 elevated, 25-44 moderate, <25 low. PARAMETERS: { name } — display name or GitHub org slug (case-insensitive). On no match returns { found: false, suggestion } (expected, not an error).

NameTypeReqDescription
namestringyesStartup display name or GitHub org slug. Case-insensitive.
NameTypeReqDescription
caveatsarray
companyobject
disclaimerstringyes
evidenceobject
foundbooleanyes
predictionobject
provenanceobjectyes
suggestionstring

No examples provided.

search_startups_by_sector ~99

Every tracked startup within a sector, ranked by engineering acceleration. Sector slug must be one of 20 enumerated values.

NameTypeReqDescription
sectorstringyesSector slug from the enumerated list. Map fuzzy user input to the closest slug (e.g. 'AI' → 'ai-ml', 'crypto' → 'web3', 'cyber' → 'cybersecurity', 'SaaS' → 'enterprise-saas').
NameTypeReqDescription
availableSectorsarrayWhen error is present, the full list of valid sector slugs.
citationstringSuggested citation string.
errorstringPresent only when the sector slug is invalid.
periodstringyesReporting period label.
sectorobjectSector metadata.
startupCountintegerNumber of startups in this sector.
startupsarrayStartups within the sector, ranked by engineering acceleration.

No examples provided.

share_result ~733

Generate a ready-to-share social-media post (tweet, Bluesky, Mastodon, LinkedIn, Telegram) about a result the user just received from another VC Deal Flow Signal tool, plus the install command for the MCP server. Returns the post body, character counts per platform, and one-click intent URLs to compose the post in each network. WHEN TO USE: - The user just got a `get_trending_startups` / `search_startups_by_sector` / `get_startup_signal` / `get_deep_signal` result and says 'share this', 'tweet this', 'post this', or 'how do I tell people about this?'. - The user is writing a thread/post about startup engineering signals and wants the canonical install command + share copy. DO NOT USE FOR: - Posting on the user's behalf — this tool only composes the text + intent URLs. The user must click and confirm in the destination network. - Generating fake or speculative results — pass real data the agent received from another tool call. BEHAVIOR (two-step approval flow, see `approval_token`): - Step 1: call this tool with `summary` only. The server replies with an error (-32602) containing a `/share-approve?summary=...` URL the user must open. - Step 2: the user reads the proposed summary on that page, clicks Approve, and pastes the resulting 10-minute token back into the chat. Retry the tool with `approval_token` filled in and the SAME `summary` verbatim. - The token is bound to a hash of `summary`; if the agent rewrites the summary between approval and the retry, the call is rejected. - Composes platform-specific posts (Twitter ≤275 chars, Bluesky ≤295, Mastodon ≤495, LinkedIn ≤695, Telegram ≤995) with a consistent hook + insight + install URL. - Returns intent URLs (e.g. https://x.com/intent/post?text=...) so the user/agent can open the destination network with the post pre-filled. - Always includes the canonical install command `npx @gitdealflow/mcp-signal` and the SSRN paper link for credibility. PARAMETERS: - `summary` (string, required, 10-200 chars) — the one-line…

NameTypeReqDescription
approval_tokenstringyes10-minute HMAC-signed token bound to a hash of `summary`. Obtain it by directing the user to https://signals.gitdealflow.com/share-approve?summary=<urlencoded-summary> — they review and click Approve…
mention_handlebooleanInclude @data_nerd attribution. Only applied to twitter/bluesky/mastodon.
networkstringTarget network. 'all' returns one post per network.
summarystringyesOne-line takeaway (10-200 chars) the user wants to share.
NameTypeReqDescription
installCommandstringyes
methodologyUrlstringyes
postsarrayyes

No examples provided.

shortlist_signals ~284

Return a ranked shortlist of the strongest engineering-acceleration signals matching a set of filters — the whole sourcing workflow in ONE call (e.g. 'the 5 strongest signals in fintech in the EU'). Scans the full tracked universe, scores each with the transparent engine (same scoring as predict_funding), filters, sorts by accelerationScore desc, returns the top `limit`. GEOGRAPHY IS REGION-LEVEL ONLY — values are US / EU / UK / APAC / LATAM / Canada / Unknown. City/country aliases ('NYC', 'New York', 'London', 'Berlin', 'Singapore') normalize up to the enclosing region and the response `notes` says so. There is no city-level filtering. PARAMETERS (all optional): sector (one of 20 slugs), geography (region token or alias), signalType (exact label), minAccelerationScore (0-100), minVelocityChangePct (integer percent), limit (1-25, default 5).

NameTypeReqDescription
geographystringRegion token (US/EU/UK/APAC/LATAM/Canada) or a city/country alias normalized up to the region.
limitinteger
minAccelerationScoreinteger
minVelocityChangePctinteger
sectorstring
signalTypestring
NameTypeReqDescription
citationstringyes
consideredCountinteger
disclaimerstring
matchedCountintegeryes
methodologyUrlstring
notesarray
periodstringyes
queryobjectyes
resultsarrayyes
sourcestring

No examples provided.