{
  "$schema": "https://verifymcp.io/schemas/changelog.json",
  "server": "us-inversolabs-agent-callback-mailbox",
  "component": "callbacks",
  "generated_at": "2026-10-09T22:21:26.474Z",
  "tracking_since": "2026-08-26",
  "counts": {
    "critical": 0,
    "security": 21,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_01a08eab-4210-7934-8c82-c2b3b0846867",
      "kind": "check.verdict",
      "family": "transport",
      "subject_kind": "check",
      "subject": "transport",
      "subject_child": "",
      "from_code": "transport.verified",
      "to_code": "transport.http_error",
      "from_value": "pass",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "status": "502",
        "transport": "streamable-http"
      },
      "occurred_on": "2026-09-11",
      "occurred_at": "2026-09-11 04:13:03.266782+00",
      "observed_since": "2026-09-10",
      "source": "scan",
      "summary": "Transport (pass → fail)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a08eab-4210-7934-8c82-c2b3b0846867"
    },
    {
      "id": "chg_01a08eab-4211-77f8-8c41-e43f38c9b915",
      "kind": "check.unverifiable",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.injection_clean",
      "to_code": "toolsafety.unreachable",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-11",
      "occurred_at": "2026-09-11 04:13:03.266782+00",
      "observed_since": "2026-09-10",
      "source": "scan",
      "summary": "Tool safety (pass → unverified)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a08eab-4211-77f8-8c41-e43f38c9b915"
    },
    {
      "id": "chg_01a08eab-4211-7d12-abe8-5bbf9aec6783",
      "kind": "check.unverifiable",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.insufficient_history",
      "from_value": "0.50",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-11",
      "occurred_at": "2026-09-11 04:13:03.266782+00",
      "observed_since": "2026-09-10",
      "source": "scan",
      "summary": "Stability (0.50 → unverified)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a08eab-4211-7d12-abe8-5bbf9aec6783"
    },
    {
      "id": "chg_01a08eab-4212-7257-95ec-2a6e20e48c29",
      "kind": "check.reason",
      "family": "auth-oauth",
      "subject_kind": "check",
      "subject": "auth-oauth",
      "subject_child": "",
      "from_code": "auth.none_undeclared",
      "to_code": "auth.none_unlisted",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-11",
      "occurred_at": "2026-09-11 04:13:03.266782+00",
      "observed_since": "2026-09-10",
      "source": "scan",
      "summary": "Authorization (Authorisation not fully verified: no authorisation is required to connect, but we couldn't read the whole tool list to see what that exposes.)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a08eab-4212-7257-95ec-2a6e20e48c29"
    },
    {
      "id": "chg_01a08eab-4213-771f-b64e-8516f252752e",
      "kind": "capture.status_changed",
      "family": "",
      "subject_kind": "server",
      "subject": "capture",
      "subject_child": "",
      "from_code": null,
      "to_code": null,
      "from_value": "verified",
      "to_value": "not_mcp",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "to": "not_mcp",
        "from": "verified"
      },
      "occurred_on": "2026-09-11",
      "occurred_at": "2026-09-11 04:13:03.266782+00",
      "observed_since": "2026-09-10",
      "source": "scan",
      "summary": "Endpoint reachability (reachable → not serving MCP)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a08eab-4213-771f-b64e-8516f252752e"
    },
    {
      "id": "chg_01a07f3a-68d5-74cb-b788-596a5e357fc2",
      "kind": "check.verdict",
      "family": "transport",
      "subject_kind": "check",
      "subject": "transport",
      "subject_child": "",
      "from_code": "transport.http_error",
      "to_code": "transport.verified",
      "from_value": "fail",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "transport": "streamable-http"
      },
      "occurred_on": "2026-09-08",
      "occurred_at": "2026-09-08 04:15:29.37021+00",
      "observed_since": "2026-09-07",
      "source": "scan",
      "summary": "Transport (fail → pass)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a07f3a-68d5-74cb-b788-596a5e357fc2"
    },
    {
      "id": "chg_01a07f3a-68d7-7799-a134-67da3e44df3c",
      "kind": "check.reverified",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.unreachable",
      "to_code": "toolsafety.injection_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-08",
      "occurred_at": "2026-09-08 04:15:29.37021+00",
      "observed_since": "2026-09-07",
      "source": "scan",
      "summary": "Injection markers (unverified → pass)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a07f3a-68d7-7799-a134-67da3e44df3c"
    },
    {
      "id": "chg_01a07f3a-68d7-7d57-9ef3-1bd35bfb12ec",
      "kind": "check.reason",
      "family": "auth-oauth",
      "subject_kind": "check",
      "subject": "auth-oauth",
      "subject_child": "",
      "from_code": "auth.none_unlisted",
      "to_code": "auth.none_undeclared",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "auth": "none",
        "undeclared_tools": "1"
      },
      "occurred_on": "2026-09-08",
      "occurred_at": "2026-09-08 04:15:29.37021+00",
      "observed_since": "2026-09-07",
      "source": "scan",
      "summary": "Authorization (Authorisation not fully verified: no authorisation is required to call this server, and 1 tool(s) never declared a destructiveHint. The MCP spec treats an absent hint as destructive by default, so we cannot call this surface safe.)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a07f3a-68d7-7d57-9ef3-1bd35bfb12ec"
    },
    {
      "id": "chg_01a06a9e-5d27-7a62-a43d-1389aa7b5de1",
      "kind": "check.verdict",
      "family": "transport",
      "subject_kind": "check",
      "subject": "transport",
      "subject_child": "",
      "from_code": "transport.verified",
      "to_code": "transport.http_error",
      "from_value": "pass",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "status": "502",
        "transport": "streamable-http"
      },
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 04:12:38.428033+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "Transport (pass → fail)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a06a9e-5d27-7a62-a43d-1389aa7b5de1"
    },
    {
      "id": "chg_01a06a9e-5d2e-75e6-9454-c63ece5a825a",
      "kind": "check.unverifiable",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.insufficient_history",
      "from_value": "0.27",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 04:12:38.428033+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "Stability (0.27 → unverified)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a06a9e-5d2e-75e6-9454-c63ece5a825a"
    },
    {
      "id": "chg_01a06a9e-5d2f-7821-97ed-a42ac91fd2e8",
      "kind": "check.unverifiable",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.injection_clean",
      "to_code": "toolsafety.unreachable",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 04:12:38.428033+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "Tool safety (pass → unverified)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a06a9e-5d2f-7821-97ed-a42ac91fd2e8"
    },
    {
      "id": "chg_01a06a9e-5d31-7494-9e3e-b93dfad771e8",
      "kind": "check.reason",
      "family": "auth-oauth",
      "subject_kind": "check",
      "subject": "auth-oauth",
      "subject_child": "",
      "from_code": "auth.none_undeclared",
      "to_code": "auth.none_unlisted",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 04:12:38.428033+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "Authorization (Authorisation not fully verified: no authorisation is required to connect, but we couldn't read the whole tool list to see what that exposes.)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a06a9e-5d31-7494-9e3e-b93dfad771e8"
    },
    {
      "id": "chg_01a06a9e-5d39-7726-89ca-e39550bd4e44",
      "kind": "capture.status_changed",
      "family": "",
      "subject_kind": "server",
      "subject": "capture",
      "subject_child": "",
      "from_code": null,
      "to_code": null,
      "from_value": "verified",
      "to_value": "not_mcp",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "to": "not_mcp",
        "from": "verified"
      },
      "occurred_on": "2026-09-04",
      "occurred_at": "2026-09-04 04:12:38.428033+00",
      "observed_since": "2026-09-03",
      "source": "scan",
      "summary": "Endpoint reachability (reachable → not serving MCP)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a06a9e-5d39-7726-89ca-e39550bd4e44"
    },
    {
      "id": "chg_01a06051-3a1e-7ef2-9ecb-5faa038fcc43",
      "kind": "check.verdict",
      "family": "transport",
      "subject_kind": "check",
      "subject": "transport",
      "subject_child": "",
      "from_code": "transport.http_error",
      "to_code": "transport.verified",
      "from_value": "fail",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "transport": "streamable-http"
      },
      "occurred_on": "2026-09-02",
      "occurred_at": "2026-09-02 04:12:10.973668+00",
      "observed_since": "2026-09-01",
      "source": "scan",
      "summary": "Transport (fail → pass)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a06051-3a1e-7ef2-9ecb-5faa038fcc43"
    },
    {
      "id": "chg_01a06051-3a1f-7de2-927b-5ef9148e00f1",
      "kind": "check.reverified",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.unreachable",
      "to_code": "toolsafety.injection_clean",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-02",
      "occurred_at": "2026-09-02 04:12:10.973668+00",
      "observed_since": "2026-09-01",
      "source": "scan",
      "summary": "Injection markers (unverified → pass)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a06051-3a1f-7de2-927b-5ef9148e00f1"
    },
    {
      "id": "chg_01a06051-3a22-71d0-8113-64def6f301ce",
      "kind": "check.reason",
      "family": "auth-oauth",
      "subject_kind": "check",
      "subject": "auth-oauth",
      "subject_child": "",
      "from_code": "auth.none_unlisted",
      "to_code": "auth.none_undeclared",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "auth": "none",
        "undeclared_tools": "1"
      },
      "occurred_on": "2026-09-02",
      "occurred_at": "2026-09-02 04:12:10.973668+00",
      "observed_since": "2026-09-01",
      "source": "scan",
      "summary": "Authorization (Authorisation not fully verified: no authorisation is required to call this server, and 1 tool(s) never declared a destructiveHint. The MCP spec treats an absent hint as destructive by default, so we cannot call this surface safe.)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a06051-3a22-71d0-8113-64def6f301ce"
    },
    {
      "id": "chg_01a05b2a-e04c-7a4b-9187-e2a146837ef5",
      "kind": "check.verdict",
      "family": "transport",
      "subject_kind": "check",
      "subject": "transport",
      "subject_child": "",
      "from_code": "transport.verified",
      "to_code": "transport.http_error",
      "from_value": "pass",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "status": "530",
        "transport": "streamable-http"
      },
      "occurred_on": "2026-09-01",
      "occurred_at": "2026-09-01 04:12:11.660967+00",
      "observed_since": "2026-08-31",
      "source": "scan",
      "summary": "Transport (pass → fail)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a05b2a-e04c-7a4b-9187-e2a146837ef5"
    },
    {
      "id": "chg_01a05b2a-e04d-7a8e-982e-9ff5f8ae84fc",
      "kind": "check.unverifiable",
      "family": "tool-safety-injection",
      "subject_kind": "check",
      "subject": "tool-safety-injection",
      "subject_child": "",
      "from_code": "toolsafety.injection_clean",
      "to_code": "toolsafety.unreachable",
      "from_value": "pass",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-01",
      "occurred_at": "2026-09-01 04:12:11.660967+00",
      "observed_since": "2026-08-31",
      "source": "scan",
      "summary": "Tool safety (pass → unverified)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a05b2a-e04d-7a8e-982e-9ff5f8ae84fc"
    },
    {
      "id": "chg_01a05b2a-e04e-7323-a9ab-329f73078786",
      "kind": "check.unverifiable",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.building_history",
      "to_code": "stability.insufficient_history",
      "from_value": "0.17",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-01",
      "occurred_at": "2026-09-01 04:12:11.660967+00",
      "observed_since": "2026-08-31",
      "source": "scan",
      "summary": "Stability (0.17 → unverified)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a05b2a-e04e-7323-a9ab-329f73078786"
    },
    {
      "id": "chg_01a05b2a-e04e-7d3a-b41c-dd125b5fd27c",
      "kind": "check.reason",
      "family": "auth-oauth",
      "subject_kind": "check",
      "subject": "auth-oauth",
      "subject_child": "",
      "from_code": "auth.none_undeclared",
      "to_code": "auth.none_unlisted",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-09-01",
      "occurred_at": "2026-09-01 04:12:11.660967+00",
      "observed_since": "2026-08-31",
      "source": "scan",
      "summary": "Authorization (Authorisation not fully verified: no authorisation is required to connect, but we couldn't read the whole tool list to see what that exposes.)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a05b2a-e04e-7d3a-b41c-dd125b5fd27c"
    },
    {
      "id": "chg_01a05b2a-e051-781a-b62b-13379df71acf",
      "kind": "capture.status_changed",
      "family": "",
      "subject_kind": "server",
      "subject": "capture",
      "subject_child": "",
      "from_code": null,
      "to_code": null,
      "from_value": "verified",
      "to_value": "not_mcp",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "to": "not_mcp",
        "from": "verified"
      },
      "occurred_on": "2026-09-01",
      "occurred_at": "2026-09-01 04:12:11.660967+00",
      "observed_since": "2026-08-31",
      "source": "scan",
      "summary": "Endpoint reachability (reachable → not serving MCP)",
      "link": "https://verifymcp.io/servers/us-inversolabs-agent-callback-mailbox/callbacks#chg-chg_01a05b2a-e051-781a-b62b-13379df71acf"
    }
  ],
  "days": [
    {
      "date": "2026-09-28",
      "total": 18,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-25",
      "total": 18,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-09-11",
      "total": 18,
      "delta": -42,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 7
    },
    {
      "date": "2026-09-09",
      "total": 60,
      "delta": 1,
      "tracked": true,
      "explained": false,
      "beyond_event_horizon": false,
      "attribution": {
        "category": "Stability & Change Management",
        "from": 43,
        "to": 47,
        "delta": 4,
        "others": [],
        "accrual": {
          "code": "stability.building_history",
          "from_days": 13,
          "to_days": 14
        },
        "partial": false,
        "compared_to": "2026-09-08",
        "summary": "No change was recorded against any check on this day. Stability & Change Management went from 43 to 47. That category is still filling its 30-day observation window: 13 days of observed history at the previous scan, 14 at this one. The score rises as the window fills, whether or not the server changes."
      },
      "event_count": 0
    },
    {
      "date": "2026-09-08",
      "total": 59,
      "delta": 41,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 7
    },
    {
      "date": "2026-09-04",
      "total": 0,
      "delta": null,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 7
    },
    {
      "date": "2026-09-02",
      "total": 0,
      "delta": null,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 7
    },
    {
      "date": "2026-09-01",
      "total": 0,
      "delta": null,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 8
    }
  ]
}