Hottub News
REMOTE · HOTTUB.NEWS · SCANNED SEP 28
Worldwide news for agents: search, sync and story clusters across outlets and languages. No key.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →
Endpoint Security80
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- No authorisation is required to call this server. Every tool declares its destructiveHint and none is destructive, so open access doesn't expose one. See how to fix → View diagnostics → Partial
- HTTPS is enforced; there's no plaintext access path. View diagnostics → Pass
- The HSTS (Strict-Transport-Security) header is present. View diagnostics → Pass
- DNSSEC check failed: this domain isn't protected by DNSSEC. See how to fix → View diagnostics → Fail
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability63
- AI-judged instruction clarity (good).Pass
- Context-footprint check failed: tool/resource definitions use about 1626 tokens (~180/item across 9 items; 9 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management3
- Stability observed for 1 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage88
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 63% of tool parameters carry a description.Partial
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- We read all 9 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
- An AI judge read all 10 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
How do I install the Hottub News MCP server?
Hottub News is a hosted endpoint at https://hottub.news/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
remote · hottub.news
claude mcp add --transport http news-hottub-hottub-news 'https://hottub.news/mcp'
{
"mcpServers": {
"news-hottub-hottub-news": {
"url": "https://hottub.news/mcp"
}
}
} {
"servers": {
"news-hottub-hottub-news": {
"type": "http",
"url": "https://hottub.news/mcp"
}
}
} [mcp_servers.news-hottub-hottub-news] url = "https://hottub.news/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"news-hottub-hottub-news": {
"type": "remote",
"url": "https://hottub.news/mcp",
"enabled": true
}
}
} openclaw mcp add news-hottub-hottub-news --url 'https://hottub.news/mcp' --transport streamable-http
mcp_servers:
news-hottub-hottub-news:
url: "https://hottub.news/mcp" {
"McpServers": {
"news-hottub-hottub-news": {
"Transport": "http",
"Url": "https://hottub.news/mcp"
}
}
} assistant mcp add news-hottub-hottub-news -t streamable-http -u 'https://hottub.news/mcp'
{
"mcpServers": {
"news-hottub-hottub-news": {
"type": "http",
"url": "https://hottub.news/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 28 Sept 26 +1
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 27 Sept 26 70
First indexed and scored.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 28 Sept 2026 · Probed https://hottub.news/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=hottub.news | CN=WE1,O=Google Trust Services,C=US | 27 Sept 2026 | 26 Dec 2026 | ECDSA 256 | ECDSA-SHA256 | a342deffd76269e60ed93c23bf66a997 |
| SANs: hottub.news, www.hottub.news, *.www.hottub.news | ||||||
| CN=WE1,O=Google Trust Services,C=US (CA) | CN=GTS Root R4,O=Google Trust Services LLC,C=US | 13 Dec 2023 | 20 Feb 2029 | ECDSA 256 | ECDSA-SHA384 | 7ff31977972c224a76155d13b6d685e3 |
| CN=GTS Root R4,O=Google Trust Services LLC,C=US (CA) | CN=GlobalSign Root CA,OU=Root CA,O=GlobalSign nv-sa,C=BE | 15 Nov 2023 | 28 Jan 2028 | ECDSA 384 | SHA256-RSA | 7fe530bf331343bedd821610493d8a1b |
Background: What to check on a remote MCP endpoint →
DNSSEC insecure
Validation of hottub.news. — Not signed
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| news. | present | 39979 | 8 | Verified |
| hottub.news. | absent | Unsigned (proven) parent-signed NSEC/NSEC3 proves an unsigned delegation |
Authentication No authorisation required
The endpoint answered without asking for a token. Anyone who knows the URL can reach it.
| Result | No authorisation required |
|---|---|
| HTTP status | 200 |
| Header | Value |
|---|---|
| strict-transport-security | max-age=31536000; includeSubDomains |
| x-content-type-options | nosniff |
| x-frame-options | DENY |
| referrer-policy | strict-origin-when-cross-origin |
Background: How OAuth 2.1 works in the 2026 MCP spec →
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://hottub.news/mcp | Verified | 200 | |
| http (plaintext) | http://hottub.news/mcp | HTTPS enforced | 301 | https://hottub.news/mcp |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
find_entities Find people, organizations and places ~62
Look up Wikidata ids for a name (e.g. "Tesla", "Lagos") with how many items mention each in the last 7 days; pass the id as `entity` to search_news or list_stories.
| Name | Type | Req | Description |
|---|---|---|---|
| q | string | yes | – |
No output schema declared.
No examples provided.
get_news_item Get one item ~35
Full record for one item id (n_… for news, s_… for sponsored).
| Name | Type | Req | Description |
|---|---|---|---|
| id | string | yes | – |
No output schema declared.
No examples provided.
get_story All reports of one story ~52
Every item in a story (the `story` id on items, st_…): all outlets and languages covering the same event, newest first.
| Name | Type | Req | Description |
|---|---|---|---|
| format | string | – | – |
| story | string | yes | – |
No output schema declared.
No examples provided.
list_sources List sources ~51
Registered sources with their language, country, kind and health. Filter by q (name), country or lang.
| Name | Type | Req | Description |
|---|---|---|---|
| country | string | – | – |
| lang | string | – | – |
| q | string | – | – |
No output schema declared.
No examples provided.
list_stories Top stories with briefs ~95
The most widely covered stories right now (last 48h), each with a neutral multi-source brief when available, outlet count, languages, entities and a representative report. Filter by lang, country, category, entity.
| Name | Type | Req | Description |
|---|---|---|---|
| category | string | – | – |
| country | string | – | – |
| entity | string | – | – |
| format | string | – | – |
| lang | string | – | – |
| limit | integer | – | – |
No output schema declared.
No examples provided.
news_stats Coverage statistics ~31
Item counts over the last 24 hours by kind, language, country and source, plus the current sync cursor.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
quote_placement Price a sponsored press release ~115
Quote for placing a labeled, paid press release in the Hottub News mix via Hottub Business. Price varies by topic tier, current topic interest, demand, targeting reach and duration; the response itemizes each factor. Read-only: returns a price; books and charges nothing.
| Name | Type | Req | Description |
|---|---|---|---|
| country | string | – | – |
| days | integer | – | – |
| lang | string | – | – |
| topics | string | – | Comma-separated topics to target, e.g. "ai,business"; omit for run of network |
No output schema declared.
No examples provided.
search_news Search or browse news ~558
Newest-first headlines from worldwide sources, optionally filtered by words, language, country, topic, source, kind and time.
| Name | Type | Req | Description |
|---|---|---|---|
| before | string | – | Paging cursor from a previous result's next link |
| category | string | – | Comma-separated IPTC top-level categories: arts-culture-entertainment, conflict-war, crime-law, disaster-accident, economy-business, education, environment, health, human-interest, labour, lifestyle-… |
| collapse | string | – | One item per story (best representative); related = other reports of it |
| country | string | – | Comma-separated ISO 3166-1 alpha-2 codes of the publisher's country, e.g. "US,GB" |
| entity | string | – | Comma-separated Wikidata ids (from find_entities), e.g. "Q312" |
| format | string | – | md: readable with summaries; lines: tab-separated, fewest tokens; ndjson/json: full records |
| kind | string | – | Comma-separated: article, press_release, official, community, research, sponsored |
| lang | string | – | Comma-separated ISO 639-1 codes, e.g. "en,es" |
| limit | integer | – | – |
| match | string | – | keyword: exact words only; semantic: meaning only (cross-language) |
| political | boolean | – | true: political stories only (political score ≥ 0.5); false: non-political only |
| q | string | – | What you're looking for, in any language. Matches by meaning and by keyword (hybrid) over the last 7 days unless since is given; results carry a relevance score. |
| sentiment | string | – | Comma-separated: negative, neutral, positive |
| since | string | – | Only items published at/after this: RFC 3339, a date, or an age like "6h", "2d" |
| sort | string | – | hot: most widely covered stories of the last 48h, one per story; positive/negative: most positive/negative tone first (last 24h unless since is given) |
| source | string | – | Comma-separated source ids (see list_sources) or publisher domains |
| sponsored | string | – | Paid press releases are labeled; exclude to omit them |
| tone_max | number | – | – |
| tone_min | number | – | Only items with tone ≥ this (-1 most negative … 1 most positive) |
| topic | string | – | Comma-separated topics, e.g. "space,science" |
| until | string | – | Only items published at/before this |
No output schema declared.
No examples provided.
sync_news Get new items since a cursor ~424
Incremental feed: returns items added after `after`, oldest first, plus a new cursor. Call again with that cursor to get only what is new.
| Name | Type | Req | Description |
|---|---|---|---|
| after | integer | yes | The cursor returned by your previous sync_news call; 0 to start from the oldest retained item |
| category | string | – | Comma-separated IPTC top-level categories: arts-culture-entertainment, conflict-war, crime-law, disaster-accident, economy-business, education, environment, health, human-interest, labour, lifestyle-… |
| country | string | – | Comma-separated ISO 3166-1 alpha-2 codes of the publisher's country, e.g. "US,GB" |
| format | string | – | md: readable with summaries; lines: tab-separated, fewest tokens; ndjson/json: full records |
| kind | string | – | Comma-separated: article, press_release, official, community, research, sponsored |
| lang | string | – | Comma-separated ISO 639-1 codes, e.g. "en,es" |
| limit | integer | – | – |
| political | boolean | – | true: political stories only (political score ≥ 0.5); false: non-political only |
| sentiment | string | – | Comma-separated: negative, neutral, positive |
| since | string | – | Only items published at/after this: RFC 3339, a date, or an age like "6h", "2d" |
| source | string | – | Comma-separated source ids (see list_sources) or publisher domains |
| sponsored | string | – | Paid press releases are labeled; exclude to omit them |
| tone_max | number | – | – |
| tone_min | number | – | Only items with tone ≥ this (-1 most negative … 1 most positive) |
| topic | string | – | Comma-separated topics, e.g. "space,science" |
| until | string | – | Only items published at/before this |
No output schema declared.
No examples provided.
What is the Hottub News MCP server?
Hottub News is an MCP server listed in the public MCP registry as news.hottub/hottub-news. Worldwide news for agents: search, sync and story clusters across outlets and languages. No key. This page covers its hosted endpoint (https://hottub.news/mcp).
Is the Hottub News MCP server safe to use?
Hottub News scores 71 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the Hottub News MCP server expose?
Hottub News exposes 9 tools: search_news, sync_news, list_stories, find_entities, get_story, and 4 more. Their descriptions and schemas cost roughly 1,423 tokens of context every time the server is loaded.
Does the Hottub News MCP server require authentication?
No. We connected to Hottub News without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.
Is the Hottub News MCP server still maintained?
Hottub News is still listed as active in the MCP registry. We last reached this channel on 28 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.