Resistance Tools
REMOTE · APP.RESISTANCE.DOG · SCANNED AUG 3
MCP tools for TON Sites, TON DNS and TON Storage.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score →
Endpoint Security63
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- Authorisation check failed: no authorisation is required to call this server, and it exposes a tool marked destructive (mcp.access.revoke_consent). See how to fix → View diagnostics → Fail
- HTTPS is enforced; there's no plaintext access path. View diagnostics → Pass
- The HSTS (Strict-Transport-Security) header is present. View diagnostics → Pass
- DNSSEC check failed: this domain isn't protected by DNSSEC. See how to fix → View diagnostics → Fail
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability33
- 0% of prompts and resources have a non-trivial description (not blank, and not just the item's name).Fail
- AI-judged instruction clarity (fair).Partial
- Tool/resource definitions use about 1948 tokens (~38/item across 51 items; 46 tools + 5 resources), lean.Pass
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management3
- Stability observed for 1 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage67
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 0% of tool parameters carry a description.Fail
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
Add this component to your MCP client. Where a client-specific snippet is available, pick your client below and copy it straight into your config; otherwise use the connection detail shown.
remote · app.resistance.dog
claude mcp add --transport http tonresistor-resistance-tools-mcp https://app.resistance.dog/api/mcp
[mcp_servers.tonresistor-resistance-tools-mcp] url = "https://app.resistance.dog/api/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"tonresistor-resistance-tools-mcp": {
"type": "remote",
"url": "https://app.resistance.dog/api/mcp",
"enabled": true
}
}
} openclaw mcp add tonresistor-resistance-tools-mcp --url https://app.resistance.dog/api/mcp --transport streamable-http
mcp_servers:
tonresistor-resistance-tools-mcp:
url: "https://app.resistance.dog/api/mcp" {
"mcpServers": {
"tonresistor-resistance-tools-mcp": {
"type": "http",
"url": "https://app.resistance.dog/api/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 3 Aug 26 −1
- Tool “dns.send_record_tx” rewrote its description, which is the text the model reads security
- Tool “sites.send_link_tx” rewrote its description, which is the text the model reads security
- Stability: unverified → 0.03 ▲ functional
- Server version: 0.2.4 → 0.2.6 functional
- Server version: 0.2.2 → 0.2.4 functional
- 2 Aug 26 55
First indexed and scored.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 3 Aug 2026 · Probed https://app.resistance.dog/api/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=app.resistance.dog | CN=YE1,O=Let's Encrypt,C=US | 4 Jul 2026 | 2 Oct 2026 | ECDSA 256 | ECDSA-SHA384 | 5374913ce55e00d5eba44fd483bc2b10fe0 |
| SANs: app.resistance.dog, tonsite.resistance.dog | ||||||
| CN=YE1,O=Let's Encrypt,C=US (CA) | CN=Root YE,O=ISRG,C=US | 3 Sept 2025 | 2 Sept 2028 | ECDSA 384 | ECDSA-SHA384 | 5ddd70dd31f801c85c186a7a04b80afe |
| CN=Root YE,O=ISRG,C=US (CA) | CN=ISRG Root X2,O=Internet Security Research Group,C=US | 13 May 2026 | 2 Sept 2032 | ECDSA 384 | ECDSA-SHA384 | 872165fc34b6e5fba8add5b3705fb53a |
| CN=ISRG Root X2,O=Internet Security Research Group,C=US (CA) | CN=ISRG Root X1,O=Internet Security Research Group,C=US | 13 May 2026 | 2 Sept 2032 | ECDSA 384 | SHA256-RSA | 6c8f1dc727c7117f7baf853ac980f9cd |
DNSSEC insecure
Validation of app.resistance.dog. — Not signed
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| dog. | present | 48736 | 8 | Verified |
| resistance.dog. | absent | Unsigned (proven) parent-signed NSEC/NSEC3 proves an unsigned delegation |
Authentication No authorisation required
The endpoint answered without asking for a token. Anyone who knows the URL can reach it.
| Result | No authorisation required |
|---|---|
| HTTP status | 200 |
| Header | Value |
|---|---|
| strict-transport-security | max-age=31536000 |
| x-content-type-options | nosniff |
| referrer-policy | no-referrer |
| permissions-policy | camera=(), microphone=(), geolocation=() |
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://app.resistance.dog/api/mcp | Verified | 200 | |
| http (plaintext) | http://app.resistance.dog/api/mcp | HTTPS enforced | 301 | https://app.resistance.dog/api/mcp |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability.
auth.policy MCP auth and safety policy ~25
Return public MCP auth flows, scopes, safety controls, retention, and confirmation rules.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
auth.status MCP auth status ~16
Return whether this MCP session is authenticated.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
deployments.list List deployments ~16
List retained deployments across the owner's sites.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
dns.lookup Lookup TON DNS name ~28
Lookup public TON DNS status and records for a .ton name.
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | — |
No output schema declared.
No examples provided.
dns.send_name_tx Create TON DNS name confirmation link ~44
Return one HTTPS page for a validated .ton mint, auction bid, or expired-name release transaction.
| Name | Type | Req | Description |
|---|---|---|---|
| action | string | yes | — |
| domain | string | yes | — |
No output schema declared.
No examples provided.
dns.send_record_tx Create DNS record confirmation link ~76
Revalidate indexed ownership and return one HTTPS page where the user reviews and confirms the exact TON DNS record transaction.
| Name | Type | Req | Description |
|---|---|---|---|
| domain | string | yes | — |
| keyName | string | — | — |
| kind | string | yes | — |
| rawCategory | string | — | — |
| value | string|null | — | — |
| valueKind | — | — | — |
No output schema declared.
No examples provided.
dns.send_renew_tx Create TON DNS renewal confirmation link ~41
Revalidate one to four owned .ton names and return one HTTPS page for a single TON Connect multi-message confirmation.
| Name | Type | Req | Description |
|---|---|---|---|
| domains | array | yes | — |
No output schema declared.
No examples provided.
domains.list List owned domains ~18
List .ton domains owned by the authorized wallet.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
domains.records Read domain records ~25
Read DNS records for an owned .ton domain.
| Name | Type | Req | Description |
|---|---|---|---|
| domain | string | yes | — |
No output schema declared.
No examples provided.
mcp.access.list List MCP access ~25
List MCP consents and redacted active sessions for the authenticated owner wallet.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
mcp.access.revoke_consent Revoke MCP consent ~45
Revoke one MCP consent by id and invalidate matching access/refresh tokens.
| Name | Type | Req | Description |
|---|---|---|---|
| confirmConsentId | string | yes | — |
| consentId | string | yes | — |
No output schema declared.
No examples provided.
mcp.audit.list List MCP audit events ~52
List recent redacted MCP audit events for the authenticated owner wallet.
| Name | Type | Req | Description |
|---|---|---|---|
| limit | integer | — | — |
| method | string | — | — |
| resultStatus | string | — | — |
| since | string | — | — |
No output schema declared.
No examples provided.
mcp.audit.summary Summarize MCP audit events ~42
Return owner-scoped aggregate MCP audit metrics without raw headers or request bodies.
| Name | Type | Req | Description |
|---|---|---|---|
| topMethodsLimit | integer | — | — |
| windowHours | integer | — | — |
No output schema declared.
No examples provided.
media.upload_image Upload template image ~38
Upload one PNG, JPEG, GIF, or WebP image to the authenticated owner's template media store.
| Name | Type | Req | Description |
|---|---|---|---|
| contentBase64 | string | yes | — |
No output schema declared.
No examples provided.
payments.send_tx Create product payment confirmation link ~38
Create a backend-owned payment invoice and return one HTTPS page where the user reviews and confirms it with TON Connect.
| Name | Type | Req | Description |
|---|---|---|---|
| action | string | yes | — |
No output schema declared.
No examples provided.
sites.delete Delete site ~33
Delete an owned TON Site deployment and served files.
| Name | Type | Req | Description |
|---|---|---|---|
| confirmSite | string | yes | — |
| site | string | yes | — |
No output schema declared.
No examples provided.
sites.get_content Get site template content ~27
Read the stored template/content metadata for an owned site.
| Name | Type | Req | Description |
|---|---|---|---|
| site | string | yes | — |
No output schema declared.
No examples provided.
sites.list List TON Sites ~17
List TON Sites owned by the authorized wallet.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
sites.list_releases List site releases ~25
List retained releases for an owned site.
| Name | Type | Req | Description |
|---|---|---|---|
| site | string | yes | — |
No output schema declared.
No examples provided.
sites.publish_files Publish site files ~35
Deploy or update an owned TON Site from explicit file contents.
| Name | Type | Req | Description |
|---|---|---|---|
| files | array | yes | — |
| site | string | yes | — |
No output schema declared.
No examples provided.
sites.publish_template Publish template site ~40
Validate, render, and publish a template-based TON Site.
| Name | Type | Req | Description |
|---|---|---|---|
| content | — | — | — |
| site | string | yes | — |
| template | string | yes | — |
No output schema declared.
No examples provided.
sites.rollback Rollback site ~42
Rollback an owned TON Site to a retained release.
| Name | Type | Req | Description |
|---|---|---|---|
| confirmSite | string | yes | — |
| releaseId | string | yes | — |
| site | string | yes | — |
No output schema declared.
No examples provided.
sites.send_link_tx Create TON Site confirmation link ~41
Validate indexed ownership and return one HTTPS page where the user reviews and confirms the exact TON DNS site transaction with TON Connect.
| Name | Type | Req | Description |
|---|---|---|---|
| site | string | yes | — |
No output schema declared.
No examples provided.
storage.bag_details Read TON Storage bag details ~30
Read metadata and live state for an owned TON Storage bag.
| Name | Type | Req | Description |
|---|---|---|---|
| bagId | string | yes | — |
No output schema declared.
No examples provided.
storage.create_bag Create TON Storage bag ~37
Create and seed a new TON Storage bag from explicit file contents.
| Name | Type | Req | Description |
|---|---|---|---|
| files | array | yes | — |
| name | string | — | — |
No output schema declared.
No examples provided.
storage.delete_bag Delete TON Storage bag ~43
Delete an owned TON Storage bag reference and remove platform-seeded bytes when safe.
| Name | Type | Req | Description |
|---|---|---|---|
| bagId | string | yes | — |
| confirmBagId | string | yes | — |
No output schema declared.
No examples provided.
storage.list_bags List TON Storage bags ~20
List TON Storage bags owned by the authorized wallet.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
storage.pin_bag Pin TON Storage bag ~37
Pin/import an existing public TON Storage bag by bag id.
| Name | Type | Req | Description |
|---|---|---|---|
| bagId | string | yes | — |
| name | string | — | — |
No output schema declared.
No examples provided.
storage.provider_funding_preview Preview provider funding ~55
Calculate exact integer funding and coverage from a live provider session.
| Name | Type | Req | Description |
|---|---|---|---|
| bagId | string | yes | — |
| proofSpanSeconds | integer | yes | — |
| sessionId | string | yes | — |
| targetCoverageSeconds | — | yes | — |
No output schema declared.
No examples provided.
storage.provider_funding_session Create provider funding session ~44
Freeze a short-lived live provider and shared-balance snapshot for an owned bag.
| Name | Type | Req | Description |
|---|---|---|---|
| bagId | string | yes | — |
| providerPubkeys | array | yes | — |
No output schema declared.
No examples provided.
storage.provider_operation Read provider operation ~28
Read and reconcile one paid TON Storage provider operation.
| Name | Type | Req | Description |
|---|---|---|---|
| providerOperationId | string | yes | — |
No output schema declared.
No examples provided.
storage.provider_quote Create provider quote ~59
Create the signed backend quote that will be revalidated before a provider confirmation link is returned.
| Name | Type | Req | Description |
|---|---|---|---|
| bagId | string | yes | — |
| proofSpanSeconds | integer | yes | — |
| sessionId | string | yes | — |
| targetCoverageSeconds | — | yes | — |
No output schema declared.
No examples provided.
storage.providers List paid Storage providers ~36
List backend-verified providers compatible with an owned TON Storage bag.
| Name | Type | Req | Description |
|---|---|---|---|
| bagId | string | yes | — |
| sort | string | — | — |
No output schema declared.
No examples provided.
storage.send_bag_link_tx Create Storage-backed site confirmation link ~47
Validate bag and domain ownership, then return one HTTPS page for the exact TON Storage DNS site transaction.
| Name | Type | Req | Description |
|---|---|---|---|
| bagId | string | yes | — |
| domain | string | yes | — |
No output schema declared.
No examples provided.
storage.send_provider_tx Create paid Storage provider confirmation link ~90
Revalidate the live contract, providers, shared balance, and exact amount before returning one HTTPS pin, top-up, stop, or withdraw confirmation page.
| Name | Type | Req | Description |
|---|---|---|---|
| acknowledgeOtherProviders | boolean | — | — |
| action | string | yes | — |
| bagId | string | yes | — |
| providerPubkey | string | — | — |
| quoteId | string | — | — |
| targetCoverageSeconds | integer | — | — |
No output schema declared.
No examples provided.
subdomains.collection_action_tx Create Subdomain action confirmation link ~86
Revalidate current collection or parent rights and return one HTTPS management transaction confirmation page.
| Name | Type | Req | Description |
|---|---|---|---|
| accessMode | string | — | — |
| action | string | yes | — |
| allowed | boolean | — | — |
| collectionAddress | string | yes | — |
| label | string | — | — |
| newAdmin | string | — | — |
| reserved | boolean | — | — |
| wallet | string | — | — |
No output schema declared.
No examples provided.
subdomains.control Read Subdomain control state ~30
Read fresh collection authorization and parent-return state for the authenticated wallet.
| Name | Type | Req | Description |
|---|---|---|---|
| collectionAddress | string | yes | — |
No output schema declared.
No examples provided.
subdomains.create_collection_tx Create Subdomain collection confirmation link ~59
Revalidate parent ownership, create collection metadata, and return one HTTPS transaction confirmation page.
| Name | Type | Req | Description |
|---|---|---|---|
| minChars | integer | yes | — |
| mode | string | yes | — |
| parentAddress | string | yes | — |
| priceGrid | array | yes | — |
No output schema declared.
No examples provided.
subdomains.get_collection Read Subdomain collection ~33
Read a fresh collection snapshot when the authenticated wallet holds collection or parent rights.
| Name | Type | Req | Description |
|---|---|---|---|
| collectionAddress | string | yes | — |
No output schema declared.
No examples provided.
subdomains.get_item Read owned Subdomain item ~30
Read a Subdomain NFT item owned by the authenticated wallet.
| Name | Type | Req | Description |
|---|---|---|---|
| itemAddress | string | yes | — |
No output schema declared.
No examples provided.
subdomains.list_collections List owned Subdomain collections ~36
List TON Subdomain collections controlled by the authenticated wallet.
| Name | Type | Req | Description |
|---|---|---|---|
| cursor | string | — | — |
| limit | integer | — | — |
No output schema declared.
No examples provided.
subdomains.list_items List owned Subdomain items ~36
List TON Subdomain NFT items owned by the authenticated wallet.
| Name | Type | Req | Description |
|---|---|---|---|
| cursor | string | — | — |
| limit | integer | — | — |
No output schema declared.
No examples provided.
subdomains.mint_tx Create Subdomain mint confirmation link ~65
Revalidate availability and access, build metadata, and return one HTTPS mint or pending-mint confirmation page.
| Name | Type | Req | Description |
|---|---|---|---|
| collectionAddress | string | yes | — |
| label | string | yes | — |
| parent | string | yes | — |
| setWalletToMinter | boolean | — | — |
No output schema declared.
No examples provided.
subdomains.recovery_tx Create Subdomain recovery confirmation link ~52
Re-derive an owned collection and return one HTTPS page for its deployment or resolver recovery transaction.
| Name | Type | Req | Description |
|---|---|---|---|
| action | string | yes | — |
| mode | string | yes | — |
| parentAddress | string | yes | — |
No output schema declared.
No examples provided.
subdomains.transfer_item_tx Create Subdomain transfer confirmation link ~43
Revalidate current NFT ownership and return one HTTPS Subdomain item transfer confirmation page.
| Name | Type | Req | Description |
|---|---|---|---|
| itemAddress | string | yes | — |
| newOwner | string | yes | — |
No output schema declared.
No examples provided.
wallet.me Wallet context ~18
Return the authenticated MCP owner/actor wallet context.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.