io.github.nicglazkov/commutescout
REMOTE · MCP.COMMUTESCOUT.COM · SCANNED SEP 30
Live road conditions in 37 US states: incidents, closures, chain controls, cameras, wildfires.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →
Endpoint Security80
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- No authorisation is required to call this server. Every tool declares its destructiveHint and none is destructive, so open access doesn't expose one. See how to fix → View diagnostics → Partial
- HTTPS is enforced; there's no plaintext access path. View diagnostics → Pass
- The HSTS (Strict-Transport-Security) header is present. View diagnostics → Pass
- DNSSEC check failed: this domain isn't protected by DNSSEC. See how to fix → View diagnostics → Fail
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability70
- 100% of prompts and resources have a non-trivial description (not blank, and not just the item's name).Pass
- AI-judged instruction clarity (good).Pass
- Context-footprint check failed: tool/resource definitions use about 2824 tokens (~282/item across 10 items; 10 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management100
- No destabilizing schema changes in the last 30 days.Pass
Tool Coverage67
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 0% of tool parameters carry a description.Fail
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- We read all 10 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
- An AI judge read all 11 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
How do I install the io.github.nicglazkov/commutescout MCP server?
io.github.nicglazkov/commutescout is a hosted endpoint at https://mcp.commutescout.com/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
remote · mcp.commutescout.com
claude mcp add --transport http nicglazkov-commutescout 'https://mcp.commutescout.com/mcp'
{
"mcpServers": {
"nicglazkov-commutescout": {
"url": "https://mcp.commutescout.com/mcp"
}
}
} {
"servers": {
"nicglazkov-commutescout": {
"type": "http",
"url": "https://mcp.commutescout.com/mcp"
}
}
} [mcp_servers.nicglazkov-commutescout] url = "https://mcp.commutescout.com/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"nicglazkov-commutescout": {
"type": "remote",
"url": "https://mcp.commutescout.com/mcp",
"enabled": true
}
}
} openclaw mcp add nicglazkov-commutescout --url 'https://mcp.commutescout.com/mcp' --transport streamable-http
mcp_servers:
nicglazkov-commutescout:
url: "https://mcp.commutescout.com/mcp" {
"McpServers": {
"nicglazkov-commutescout": {
"Transport": "http",
"Url": "https://mcp.commutescout.com/mcp"
}
}
} assistant mcp add nicglazkov-commutescout -t streamable-http -u 'https://mcp.commutescout.com/mcp'
{
"mcpServers": {
"nicglazkov-commutescout": {
"type": "http",
"url": "https://mcp.commutescout.com/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 28 Sept 26 +7
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 27 Sept 26 0
- Server version: 2.115.0 → 2.116.0 functional
- 26 Sept 26 0
- Server version: 2.114.0 → 2.115.0 functional
- 25 Sept 26 +2
- HSTS header: fail → pass ▲ security
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- Server version: 2.111.0 → 2.114.0 functional
- Server version: 2.110.0 → 2.111.0 functional
- Server version: 2.109.0 → 2.110.0 functional
- 17 Sept 26 0
- The server rewrote its instructions, which are the text every model session reads security
- 26 Aug 26 0
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 25 Aug 26 0
- Stability: 0.97 → pass security
- 11 Aug 26 0
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 30 Sept 2026 · Probed https://mcp.commutescout.com/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=mcp.commutescout.com | CN=WR3,O=Google Trust Services,C=US | 9 Sept 2026 | 8 Dec 2026 | RSA 2048 | SHA256-RSA | fe53c5fbe503802e107df8ec22a1303e |
| SANs: mcp.commutescout.com | ||||||
| CN=WR3,O=Google Trust Services,C=US (CA) | CN=GTS Root R1,O=Google Trust Services LLC,C=US | 13 Dec 2023 | 20 Feb 2029 | RSA 2048 | SHA256-RSA | 7ff005a91568d63abc22861684aa4b5a |
| CN=GTS Root R1,O=Google Trust Services LLC,C=US (CA) | CN=GlobalSign Root CA,OU=Root CA,O=GlobalSign nv-sa,C=BE | 19 Jun 2020 | 28 Jan 2028 | RSA 4096 | SHA256-RSA | 77bd0d6cdb36f91aea210fc4f058d30d |
Background: What to check on a remote MCP endpoint →
DNSSEC insecure
Validation of mcp.commutescout.com. — Not signed
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| com. | present | 19718 | 13 | Verified |
| commutescout.com. | absent | Unsigned (proven) parent-signed NSEC/NSEC3 proves an unsigned delegation |
Authentication No authorisation required
The endpoint answered without asking for a token. Anyone who knows the URL can reach it.
| Result | No authorisation required |
|---|---|
| HTTP status | 200 |
| Header | Value |
|---|---|
| strict-transport-security | max-age=31536000; includeSubDomains |
| content-security-policy | default-src 'none'; frame-ancestors 'none' |
| x-content-type-options | nosniff |
| x-frame-options | DENY |
| referrer-policy | strict-origin-when-cross-origin |
| permissions-policy | geolocation=(), camera=(), microphone=(), payment=() |
Background: How OAuth 2.1 works in the 2026 MCP spec →
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://mcp.commutescout.com/mcp | Verified | 200 | |
| http (plaintext) | http://mcp.commutescout.com/mcp | HTTPS enforced | 302 | https://mcp.commutescout.com/mcp |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
check_region ~192
Full current-conditions report for a California region. Use this for area-scale questions ("how is the Bay Area?", "what's happening in SoCal?") instead of stitching together point queries. It sweeps every source over the whole region at once: CHP incidents (severity-sorted, worst first), lane closures in place (full closures called out), chain controls, and wildfires inside the region. Regions: Bay Area, Sacramento metro, Tahoe/Sierra, Central Valley, Southern California, San Diego, Central Coast, North State. An unrecognized region name returns the list. Large regions are capped to the most severe items; the counts are always exact and the response says when a list was truncated. Freshness: CHP ~1/min fetched live, everything else 5-minute cache.
| Name | Type | Req | Description |
|---|---|---|---|
| region | string | yes | – |
No output schema declared.
No examples provided.
check_route ~362
Check current conditions along a major California highway corridor. The flagship trip-check tool: give it a start and end place and it returns everything active along that stretch right now - CHP incidents, lane closures physically in place, chain controls, and wildfires within ~10 miles - ordered by miles from the start, plus a summary. ALWAYS pass from_coords and to_coords ("lat,lon") when you know where the places are - for landmarks, small towns, or anything not a major city they are required for a good answer. Coordinates do two things: they let unlisted places resolve to the nearest corridor (e.g. "Alice's Restaurant" snaps to I-280 on the Peninsula), and they CLIP the route to the span actually being driven, so a trip to a mid-corridor destination doesn't report events beyond it. Corridors covered: I-80 Sacramento-Reno, US-50 to South Lake Tahoe, I-5, US-101, SR-17, SR-99, SR-1, I-15 to Vegas, Bay Area freeways, Tahoe-area routes. This is NOT a general router: if nothing matches (even with coordinates), the response lists the covered corridors; fall back to the filtered tools with center= for anything else. Freshness: CHP incidents refresh about once a minute; closures, chain controls, and fires are on a 5-minute cache. Current conditions only - this cannot forecast tomorrow's weather or closures.
| Name | Type | Req | Description |
|---|---|---|---|
| from_coords | – | – | – |
| from_place | string | yes | – |
| to_coords | – | – | – |
| to_place | string | yes | – |
No output schema declared.
No examples provided.
get_cameras ~203
Live Caltrans roadside camera snapshots near a point or on a route. Data: ~3,000 in-service Caltrans cameras statewide. Every returned image_url was verified live moments ago (offline cameras that serve a placeholder frame are filtered out), so images can be shown directly. Snapshots refresh roughly every minute; stream_url (when present) is an HLS video stream. Filters: center "lat,lon" (required unless route is given) with radius_km; route (e.g. "I-80", "50") narrows to that highway. Results sort nearest-first when a center is given. Use a camera to let the user SEE conditions: fog on the pass, snow on the pavement, traffic density at an interchange.
| Name | Type | Req | Description |
|---|---|---|---|
| center | – | – | – |
| limit | integer | – | – |
| radius_km | number | – | – |
| route | – | – | – |
No output schema declared.
No examples provided.
get_chain_controls ~251
Current chain-control requirements on California mountain highways. Data: Caltrans chain-control status for fixed checkpoints on mountain routes (I-80 Donner, US-50 Echo Summit, SR-88, SR-89, and others). Levels: R-1 = chains OR snow tires required; R-2 = chains required except 4WD/AWD with snow tires on all four; R-3 = chains on ALL vehicles (rare, usually precedes closure). Refresh: 5-minute cache. Filters: route (e.g. "80", "US-50", "SR-88"); center "lat,lon" with radius_km for all checkpoints around a place (e.g. around Truckee), whatever highway they are on. Off-season (roughly May-October) there are usually no controls anywhere; the response says so explicitly rather than returning an empty list. Chain requirements can change hour to hour in storms - tell the user the data_as_of time and to carry chains anyway when snow is possible.
| Name | Type | Req | Description |
|---|---|---|---|
| center | – | – | – |
| radius_km | number | – | – |
| route | – | – | – |
No output schema declared.
No examples provided.
get_incidents ~346
Live CHP traffic incidents statewide, optionally filtered. Data: the California Highway Patrol statewide computer-aided dispatch feed - collisions, traffic hazards, disabled vehicles, closures as CHP logs them. Refreshes about once a minute; incidents disappear when CHP closes the log. Fetched live on every call. Filters (combinable): - highway: a route like "I-80", "US 50", "17", "Hwy 99". Matches incidents whose location text mentions that route. - center: "lat,lon" with radius_km - incidents within that circle. THIS IS THE RIGHT FILTER FOR A TOWN OR PLACE NAME: use your knowledge of where the place is (e.g. Coyote, CA -> "37.22,-121.74") with radius_km 15-30. A circle catches every road around the place, not just one highway. - area: substring match on the CHP dispatch-area name. These are CHP communication-center names ("Hollister Gilroy", "East Sac", "Golden Gate"), NOT town names - do not pass a town here. There is no county filter because CHP's feed carries no county field; for a county, use center on the county seat with a radius covering the county. Limits: locations are free-text from dispatchers; a few incidents lack usable coordinates and are omitted. No history - current logs only.
| Name | Type | Req | Description |
|---|---|---|---|
| area | – | – | – |
| center | – | – | – |
| highway | – | – | – |
| radius_km | number | – | – |
No output schema declared.
No examples provided.
get_lane_closures ~413
Caltrans lane and road closures physically in place RIGHT NOW. Data: the Caltrans Lane Closure System (LCS). Only closures that crews have actually established (CHP code 1097) and not yet picked up are returned - scheduled-but-not-started closures are excluded, so this is "what is blocking lanes now", not a construction calendar. Refresh: 5-minute cache over per-district Caltrans feeds. Filters: route (e.g. "I-80", "US 101", "1"); district (Caltrans district 1-12, e.g. 3 = Sacramento/Tahoe, 4 = Bay Area, 7 = Los Angeles); center "lat,lon" with radius_km - closures whose begin or end point is inside the circle. For a town or place, center is the filter that catches work on EVERY road around it, including small state routes. Read closure_class on each record, it is what the closure means for through traffic: - "full-roadway": the road itself is closed in that direction. The only class that means "you can't drive through". - "ramp": a ramp or connector is closed (even when the raw record says "Full", that means the ramp is fully closed, not the highway). - "one-way-traffic": alternating single lane with flagging; passable with delays. Common on two-lane mountain roads. - "alternating-lanes", "moving", "traffic-break": rolling or brief work; minor delays. - "lane": some lanes closed; the lanes field says how many of how many. estimated_delay_minutes is present when crews reported one. Shoulder-only work is excluded entirely.
| Name | Type | Req | Description |
|---|---|---|---|
| center | – | – | – |
| district | – | – | – |
| radius_km | number | – | – |
| route | – | – | – |
No output schema declared.
No examples provided.
get_nearby_events ~256
Live road events near a point anywhere CommuteScout covers, not just California: 37 states today, growing. Data: the same multi-state feeds the live map shows, normalized - state DOT incidents, roadwork and closures, chain and traction advisories, and nationwide wildfires. Every event names its publishing agency in the source field. Coverage varies by state (some publish roadwork only; docs/state-coverage.md has the matrix); states added later appear here automatically. For CALIFORNIA questions prefer the dedicated tools above (richer detail: dispatch logs, lane counts, chain levels). Use THIS tool for any location outside California, near a state border, or as a supplement when a California tool comes back empty. center is "lat,lon". kinds is a comma list from: incident, closure, chain, fire, sign, rwis, camera, toll (toll adds live and fixed toll prices where agencies publish them). radius_km caps at 160.
| Name | Type | Req | Description |
|---|---|---|---|
| center | string | yes | – |
| kinds | string | – | – |
| radius_km | number | – | – |
No output schema declared.
No examples provided.
get_road_signs ~185
What Caltrans changeable message signs are displaying right now. Data: statewide CMS sign text, blank and out-of-service signs already filtered - every record is a message a driver is physically seeing. Signs carry the road's operational truth ("CHAINS REQUIRED 10 MI AHEAD", "FULL CLOSURE HWY 96 DUE TO FIRE", "PREPARE TO STOP"), often before the event shows up in any other feed. Refresh: ~2-minute cache. Filters: route (e.g. "I-80") and/or center "lat,lon" with radius_km. Quote sign text verbatim to the user - it is the most current and most local signal this server has.
| Name | Type | Req | Description |
|---|---|---|---|
| center | – | – | – |
| radius_km | number | – | – |
| route | – | – | – |
No output schema declared.
No examples provided.
get_wildfires ~296
Active California wildfires, flagged when close to a major highway. Data: the interagency WFIGS current-wildfire feed (NIFC) - name, size in acres, percent contained, discovery date. Points are each fire's ORIGIN, not its perimeter: a large fire can affect roads far from this point. Refresh: 5-minute cache; size/containment typically update once or twice a day. Small, fast-moving local fires may appear in CHP incident logs (get_incidents, type "FIRE-Report of Fire") before this feed has them. Filters: - near_route (e.g. "I-5", "101") - only fires within ~10 miles of that highway's corridor line. - center "lat,lon" with radius_km - fires around a place, regardless of highway. Without either, every active CA fire is returned, each carrying a `near_highways` list of major corridors within ~10 miles (empty = not near a covered major highway; it may still affect local roads). This tool does NOT know about road closures caused by fires - cross-check get_incidents and get_lane_closures for the affected area.
| Name | Type | Req | Description |
|---|---|---|---|
| center | – | – | – |
| near_route | – | – | – |
| radius_km | number | – | – |
No output schema declared.
No examples provided.
rank_routes ~172
Which major corridors have the most going on right now. Answers broad questions like "what are the busiest routes", "where is traffic worst", or "which highways should I avoid today" across all 17 tracked corridors. by="activity" ranks on live events (full closures weigh most, then incidents, lane closures, chain controls); by="congestion" ranks on measured speed vs free-flow at each corridor's midpoint and needs the traffic feed to be configured - if it is not, the ranking silently falls back to activity. Each entry carries the counts and a one-line reason, so the answer can say WHY a corridor ranks where it does, not just list names.
| Name | Type | Req | Description |
|---|---|---|---|
| by | string | – | – |
| limit | integer | – | – |
No output schema declared.
No examples provided.
What is the io.github.nicglazkov/commutescout MCP server?
io.github.nicglazkov/commutescout is an MCP server listed in the public MCP registry as io.github.nicglazkov/commutescout. Live road conditions in 37 US states: incidents, closures, chain controls, cameras, wildfires. This page covers its hosted endpoint (https://mcp.commutescout.com/mcp).
Is the io.github.nicglazkov/commutescout MCP server safe to use?
io.github.nicglazkov/commutescout scores 84 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the io.github.nicglazkov/commutescout MCP server expose?
io.github.nicglazkov/commutescout exposes 10 tools: check_route, check_region, get_incidents, get_lane_closures, get_chain_controls, and 5 more. Their descriptions and schemas cost roughly 2,676 tokens of context every time the server is loaded.
Does the io.github.nicglazkov/commutescout MCP server require authentication?
No. We connected to io.github.nicglazkov/commutescout without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.
Is the io.github.nicglazkov/commutescout MCP server still maintained?
io.github.nicglazkov/commutescout is still listed as active in the MCP registry. We last reached this channel on 30 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.