Agoria
REMOTE · AGORIA.STUDIO · SCANNED SEP 21
Search local businesses and book, order, quote or message any of them from one connection.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →
Endpoint Security77
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- No authorisation is required to call this server. Every tool declares its destructiveHint and none is destructive, so open access doesn't expose one. See how to fix → View diagnostics → Partial
- HTTPS is enforced; there's no plaintext access path. View diagnostics → Pass
- HSTS check failed: the Strict-Transport-Security header is absent. See how to fix → View diagnostics → Fail
- DNSSEC is configured correctly; the domain's records validate against the full chain to the root. View diagnostics → Pass
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability80
- AI-judged instruction clarity (excellent).Pass
- Tool/resource definitions use about 1732 tokens (~96/item across 18 items; 18 tools + 0 resources), lean.Pass
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management100
- No destabilizing schema changes in the last 30 days.Pass
Tool Coverage91
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 74% of tool parameters carry a description.Partial
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- We read all 18 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
- An AI judge read all 18 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
How do I install the Agoria MCP server?
Agoria is a hosted endpoint at https://agoria.studio/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
remote · agoria.studio
claude mcp add --transport http studio-agoria-registry 'https://agoria.studio/mcp'
{
"mcpServers": {
"studio-agoria-registry": {
"url": "https://agoria.studio/mcp"
}
}
} {
"servers": {
"studio-agoria-registry": {
"type": "http",
"url": "https://agoria.studio/mcp"
}
}
} [mcp_servers.studio-agoria-registry] url = "https://agoria.studio/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"studio-agoria-registry": {
"type": "remote",
"url": "https://agoria.studio/mcp",
"enabled": true
}
}
} openclaw mcp add studio-agoria-registry --url 'https://agoria.studio/mcp' --transport streamable-http
mcp_servers:
studio-agoria-registry:
url: "https://agoria.studio/mcp" {
"McpServers": {
"studio-agoria-registry": {
"Transport": "http",
"Url": "https://agoria.studio/mcp"
}
}
} assistant mcp add studio-agoria-registry -t streamable-http -u 'https://agoria.studio/mcp'
{
"mcpServers": {
"studio-agoria-registry": {
"type": "http",
"url": "https://agoria.studio/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 17 Sept 26 +16
- HSTS header: unverified → fail ▼ security
- Authorization: unverified → partial ▲ security
- Transport: fail → pass ▲ security
- 16 Sept 26 −16
- HSTS header: fail → unverified ▼ security
- Authorization: partial → unverified ▼ security
- Transport: pass → fail ▼ security
- 6 Sept 26 0
- Stability: 0.97 → pass security
- 4 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 90 to 93. That category is still filling its 30-day observation window: 27 days of observed history at the previous scan, 28 at this one. The score rises as the window fills, whether or not the server changes.
- 2 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 83 to 87. That category is still filling its 30-day observation window: 25 days of observed history at the previous scan, 26 at this one. The score rises as the window fills, whether or not the server changes.
- 31 Aug 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 77 to 80. That category is still filling its 30-day observation window: 23 days of observed history at the previous scan, 24 at this one. The score rises as the window fills, whether or not the server changes.
- 29 Aug 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 70 to 73. That category is still filling its 30-day observation window: 21 days of observed history at the previous scan, 22 at this one. The score rises as the window fills, whether or not the server changes.
- 27 Aug 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 63 to 67. That category is still filling its 30-day observation window: 19 days of observed history at the previous scan, 20 at this one. The score rises as the window fills, whether or not the server changes.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 21 Sept 2026 · Probed https://agoria.studio/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=agoria.studio | CN=GeoTrust TLS RSA CA G1,OU=www.digicert.com,O=DigiCert Inc,C=US | 14 Jul 2026 | 14 Jan 2027 | RSA 2048 | SHA256-RSA | cffa9cd1efdbed0274ab77de7af0162 |
| SANs: agoria.studio | ||||||
| CN=GeoTrust TLS RSA CA G1,OU=www.digicert.com,O=DigiCert Inc,C=US (CA) | CN=DigiCert Global Root G2,OU=www.digicert.com,O=DigiCert Inc,C=US | 2 Nov 2017 | 2 Nov 2027 | RSA 2048 | SHA256-RSA | d07782a133fc6f9a57296e131ffd179 |
| CN=DigiCert Global Root G2,OU=www.digicert.com,O=DigiCert Inc,C=US (CA) | CN=DigiCert Global Root G2,OU=www.digicert.com,O=DigiCert Inc,C=US | 1 Aug 2013 | 15 Jan 2038 | RSA 2048 | SHA256-RSA | 33af1e6a711a9a0bb2864b11d09fae5 |
Background: What to check on a remote MCP endpoint →
DNSSEC secure
Validation of agoria.studio. — Secure
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| studio. | present | 1354 | 8 | Verified |
| agoria.studio. | present | 9962 | 8 | Verified |
| agoria.studio. | Verified address RRset verified with the apex keys |
Authentication No authorisation required
The endpoint answered without asking for a token. Anyone who knows the URL can reach it.
| Result | No authorisation required |
|---|---|
| HTTP status | 200 |
Background: How OAuth 2.1 works in the 2026 MCP spec →
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://agoria.studio/mcp | Verified | 200 | |
| http (plaintext) | http://agoria.studio/mcp | HTTPS enforced | 301 | https://agoria.studio/mcp |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
accept_quote Accept one of the quotes ~87
Choose a business's quote. This creates a real order at that business and declines the others. If that business protects payments, the reply carries a payment link where the money is held by Agoria until the customer confirms they got the work — hand that link to the customer.
| Name | Type | Req | Description |
|---|---|---|---|
| briefToken | string | yes | From request_quotes |
| slug | string | yes | The business whose quote to accept |
No output schema declared.
No examples provided.
ask_market Search everything for sale, in one sentence ~85
Same index as search_market, but takes a plain sentence — 'three bedroom house under 800k in Geelong', 'automatic ute under 80,000km' — and works out the filters itself. Use it when you have the user's own words; use search_market when you already know the exact filters.
| Name | Type | Req | Description |
|---|---|---|---|
| question | string | yes | The user's request, in their words |
No output schema declared.
No examples provided.
book_appointment Book an appointment at a business ~84
Book an appointment at any business by slug. Confirm the slot with check_availability first.
| Name | Type | Req | Description |
|---|---|---|---|
| customerContact | string | yes | Phone or email |
| customerName | string | yes | – |
| note | string | – | – |
| serviceId | string | yes | – |
| slug | string | yes | Business slug |
| startsAt | string | yes | ISO datetime from check_availability |
No output schema declared.
No examples provided.
check_availability Check availability at a business ~59
Check open appointment slots for a service at a business on a date (YYYY-MM-DD).
| Name | Type | Req | Description |
|---|---|---|---|
| date | string | yes | YYYY-MM-DD |
| serviceId | string | yes | Service id from get_business |
| slug | string | yes | Business slug |
No output schema declared.
No examples provided.
compare_quotes Compare the quotes on a brief ~57
See every business's answer to a brief side by side: price, what it covers, lead time, rating, whether the payment would be protected, and which is cheapest or soonest.
| Name | Type | Req | Description |
|---|---|---|---|
| briefToken | string | yes | From request_quotes |
No output schema declared.
No examples provided.
create_want Tell the network what you're looking for ~119
Save a standing search on the customer's behalf. They get told when matching supply appears, AND — anonymously, without their contact details — sellers who could satisfy it can see it and offer. Use this when search_market found nothing good: it converts a dead end into a request the market can answer.
| Name | Type | Req | Description |
|---|---|---|---|
| cadence | string | – | How often to tell them about new matches |
| contact | string | yes | The customer's email — never shown to sellers |
| name | string | – | – |
| request | string | yes | What they want, in their words |
No output schema declared.
No examples provided.
get_business Get a business profile ~47
Get full details for a business by slug: description, contact, hours, services, FAQs, and the actions its agent supports.
| Name | Type | Req | Description |
|---|---|---|---|
| slug | string | yes | Business slug from search_businesses |
No output schema declared.
No examples provided.
get_item Get one item for sale ~92
Everything about a single item: full facets, photos, where it is, who is selling it and how well-proven they are, a price guide computed from comparable items on the network, and the adjacent services a buyer usually needs next (finance, inspection, conveyancing, transport).
| Name | Type | Req | Description |
|---|---|---|---|
| ref | string | yes | Item ref from search_market, e.g. 'acme-motors/offering:stk991' |
No output schema declared.
No examples provided.
get_reviews Get reviews & rating for a business ~53
Get a business's aggregate rating and reviews by slug. Optionally filter to a product/service id.
| Name | Type | Req | Description |
|---|---|---|---|
| slug | string | yes | Business slug |
| targetId | string | – | Product/service id; omit for whole business |
No output schema declared.
No examples provided.
list_market_filters List the item kinds and filters available ~49
What can be searched and filtered on. Call this when you are unsure which `kind` or which `filters` keys search_market will accept.
| Name | Type | Req | Description |
|---|---|---|---|
| kind | array | – | Narrow to specific kinds |
No output schema declared.
No examples provided.
list_products List products at a business ~57
List the products a business sells by slug — price/sale, availability/stock, brand, SKU/GTIN, variants, specs, dimensions.
| Name | Type | Req | Description |
|---|---|---|---|
| query | string | – | Optional keyword filter |
| slug | string | yes | Business slug |
No output schema declared.
No examples provided.
open_demand What buyers are looking for and nobody is supplying ~69
Open standing requests from real buyers, anonymised. Useful for a business deciding what to stock or list, and for understanding where the network has no supply at all.
| Name | Type | Req | Description |
|---|---|---|---|
| kind | array | – | – |
| unmetOnly | boolean | – | Only requests nothing currently matches |
| where | string | – | – |
No output schema declared.
No examples provided.
price_guide What is a fair price? ~120
A price distribution for comparable items on the network — asking prices, and where the network settled the sale, what buyers actually paid. Widens the comparison and says so when the exact match is too thin to be meaningful.
| Name | Type | Req | Description |
|---|---|---|---|
| attributes | object | yes | What is being priced, e.g. {"make":"Toyota","model":"HiLux","year":2021} |
| kind | string | yes | Item kind, e.g. 'vehicle' or 'listing' |
| where | string | – | Restrict to a locality first; dropped automatically if too thin |
No output schema declared.
No examples provided.
request_quotes Get quotes from several businesses at once ~207
Describe a job once and send it to the businesses that can price it. Each one answers with a real number, what it covers, and how long the price stands. Returns a briefToken — poll compare_quotes with it to see the prices as they land, then accept_quote to choose one. Use this instead of calling request_quote at each business separately.
| Name | Type | Req | Description |
|---|---|---|---|
| budget | number | – | – |
| category | string | – | Business category to target, e.g. 'Plumber' |
| customerContact | string | yes | Email or phone — businesses quote back to this |
| customerName | string | – | – |
| details | string | yes | What the customer needs, in plain language. The more specific, the better the quotes. |
| location | string | – | City or suburb |
| neededBy | string | – | When it's needed |
| slugs | array | – | Specific businesses to ask. Omit to have Agoria match them. |
| title | string | – | Short label for the job |
No output schema declared.
No examples provided.
resolve_place Turn a place name into a point and a radius ~61
Resolve a suburb, postcode or city to coordinates and the radius that name implies. Use it to check a place exists before passing it to search_market.
| Name | Type | Req | Description |
|---|---|---|---|
| where | string | yes | e.g. 'Fitzroy', '3065', 'Geelong VIC' |
No output schema declared.
No examples provided.
search_businesses Search the business directory ~84
Find businesses on Agoria by free-text query, category, and/or city. Returns each business's slug plus the actions its agent can take, so you can act on it directly from this same connection.
| Name | Type | Req | Description |
|---|---|---|---|
| category | string | – | – |
| city | string | – | – |
| query | string | – | e.g. 'emergency plumber', 'gluten free pizza' |
No output schema declared.
No examples provided.
search_market Search everything for sale ~264
Search individual items across every business on the network — property listings, vehicles, courses, products, services, events, plans — with typed filters, a price range and a radius around a place. Prefer this over search_businesses whenever the user is looking for a THING rather than a company. Returns items with prices, locations, photo counts and the seller's verification status.
| Name | Type | Req | Description |
|---|---|---|---|
| filters | object | – | Typed facet filters keyed by field id, e.g. {"beds":{"min":3},"make":"toyota"} |
| kind | array | – | Item kinds to include, e.g. ['listing'], ['vehicle'], ['course']. Call list_market_filters to see what exists. |
| limit | number | – | – |
| maxPrice | number | – | – |
| minPrice | number | – | – |
| page | number | – | – |
| query | string | – | Free text, e.g. 'renovated terrace', 'diesel ute' |
| radiusKm | number | – | Radius around `where`. Defaults to the size of the place named. |
| sort | string | – | – |
| verifiedOnly | boolean | – | Only items from businesses whose details have been checked against an outside register |
| where | string | – | A suburb, postcode, city or 'lat,lng' |
No output schema declared.
No examples provided.
take_action Take an action at a business ~138
Perform any non-booking action a business supports (request_quote, place_order, send_message, pay_invoice, sign_document, subscribe, register…). Get valid action ids and their fields from get_business. Pass the action's fields as a JSON object. If the result is 'action_required', hand the user the next.url (payment/signing link) or re-call with fields.confirmToken to confirm.
| Name | Type | Req | Description |
|---|---|---|---|
| action | string | yes | Action id, e.g. 'request_quote' |
| fields | object | yes | The action's input fields as a JSON object (include confirmToken to complete a gated action) |
| slug | string | yes | Business slug |
No output schema declared.
No examples provided.
What is the Agoria MCP server?
Agoria is an MCP server listed in the public MCP registry as studio.agoria/registry. Search local businesses and book, order, quote or message any of them from one connection. This page covers its hosted endpoint (https://agoria.studio/mcp).
Is the Agoria MCP server safe to use?
Agoria scores 86 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the Agoria MCP server expose?
Agoria exposes 18 tools: search_businesses, search_market, ask_market, get_item, list_market_filters, and 13 more. Their descriptions and schemas cost roughly 1,732 tokens of context every time the server is loaded.
Does the Agoria MCP server require authentication?
No. We connected to Agoria without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.
Is the Agoria MCP server still maintained?
Agoria is still listed as active in the MCP registry. We last reached this channel on 21 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.