Scalix Cloud
REMOTE · API.SCALIX.WORLD · SCANNED AUG 3
The agent-native cloud: database, functions, AI, storage, computers. 55 tools, one API key.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score →
Endpoint Security91
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- Authorisation is enforced on tool calls, but the challenge carries no valid RFC 9728 metadata, so a client cannot discover where to get a token. See how to fix → View diagnostics → Fail
- HTTPS is enforced; there's no plaintext access path. View diagnostics → Pass
- The HSTS (Strict-Transport-Security) header is present. View diagnostics → Pass
- DNSSEC is configured correctly; the domain's records validate against the full chain to the root. View diagnostics → Pass
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability71
- AI-judged instruction clarity (good).Pass
- Tool/resource definitions use about 3993 tokens (~72/item across 55 items; 55 tools + 0 resources), lean.Pass
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management5
- Stability check failed: schema churn in the 8 days we've observed: 11 tool removals, 0 breaking changes, 0 auth/transport breaks, 16 additions. See how to fix → Fail
Tool Coverage100
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 99% of tool parameters carry a description.Partial
Capabilities20
- Spec-recency check failed: implements MCP spec 2024-11-05; the latest is 2026-07-28. See how to fix → Fail
Add this component to your MCP client. Where a client-specific snippet is available, pick your client below and copy it straight into your config; otherwise use the connection detail shown.
remote · api.scalix.world
claude mcp add --transport http world-scalix-cloud https://api.scalix.world/v1/mcp
[mcp_servers.world-scalix-cloud] url = "https://api.scalix.world/v1/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"world-scalix-cloud": {
"type": "remote",
"url": "https://api.scalix.world/v1/mcp",
"enabled": true
}
}
} openclaw mcp add world-scalix-cloud --url https://api.scalix.world/v1/mcp --transport streamable-http
mcp_servers:
world-scalix-cloud:
url: "https://api.scalix.world/v1/mcp" {
"mcpServers": {
"world-scalix-cloud": {
"type": "http",
"url": "https://api.scalix.world/v1/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 2 Aug 26 0
- Server version: 1.3.5 → 1.4.0 functional
- 31 Jul 26 +5
- Schema quality: 3075 → 3993 ▼ functional
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- New tool “scalix_computer_list” functional
- New tool “scalix_computer_stop” functional
- New tool “scalix_computer_write_file” functional
- New tool “scalix_computer_create” functional
- New tool “scalix_computer_delete” functional
- New tool “scalix_computer_exec” functional
- New tool “scalix_computer_read_file” functional
- New tool “scalix_computer_set_ssh_keys” functional
- New tool “scalix_computer_start” functional
- 27 Jul 26 +1
- We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
- 26 Jul 26 66
First indexed and scored.
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 3 Aug 2026 · Probed https://api.scalix.world/v1/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=scalix.world | CN=YR2,O=Let's Encrypt,C=US | 3 Jul 2026 | 1 Oct 2026 | RSA 2048 | SHA256-RSA | 5d286810177107a7e99c0bd944de3908282 |
| SANs: *.auth.scalix.world, *.db.scalix.world, *.fn.scalix.world, *.run.scalix.world, *.store.scalix.world, api.scalix.world, console.scalix.world, docs.scalix.world, prime.scalix.world, scalix.world, www.scalix.world | ||||||
| CN=YR2,O=Let's Encrypt,C=US (CA) | CN=Root YR,O=ISRG,C=US | 3 Sept 2025 | 2 Sept 2028 | RSA 2048 | SHA256-RSA | 4ebd24947e24d394802d84a52fd5b319 |
| CN=Root YR,O=ISRG,C=US (CA) | CN=ISRG Root X1,O=Internet Security Research Group,C=US | 13 May 2026 | 2 Sept 2032 | RSA 4096 | SHA256-RSA | f24b6d17f9d9ad7cb1c9fea78782699f |
DNSSEC secure
Validation of api.scalix.world. — Secure
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| world. | present | 13081 | 8 | Verified |
| scalix.world. | present | 42985 | 13 | Verified |
| api.scalix.world. | Verified address RRset verified with the apex keys |
Authentication Challenged, unverified
The endpoint asked for a token, but we could not retrieve and validate the RFC 9728 metadata that tells a client how to obtain one.
| Result | Challenged, unverified |
|---|---|
| Enforced | On tool calls |
| HTTP status | 200 |
WWW-Authenticate challenge Bearer realm="https://docs.scalix.world/mcp", error="invalid_token", error_description="provide a Scalix API key as a Bearer token"
Bearer realm="https://docs.scalix.world/mcp", error="invalid_token", error_description="provide a Scalix API key as a Bearer token" | Header | Value |
|---|---|
| strict-transport-security | max-age=63072000; includeSubDomains |
| x-content-type-options | nosniff |
| x-frame-options | DENY |
| referrer-policy | strict-origin-when-cross-origin |
| permissions-policy | camera=(), microphone=(), geolocation=() |
Protected resource metadata
| Retrieved | No |
|---|---|
| Problem | no_resource_metadata |
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://api.scalix.world/v1/mcp | Verified | 200 | |
| http (plaintext) | http://api.scalix.world/v1/mcp | HTTPS enforced | 301 | https://api.scalix.world/v1/mcp |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability.
scalix_storage_create_bucket ~108
Create a new Scalix Storage bucket in the project (S3-compatible object storage). Bucket names must be unique within the project. Setting public=true makes every object in the bucket readable without authentication — leave it false (the default) and use presigned URLs for private sharing.
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | Bucket name, unique within the project |
| public | boolean | — | true = all objects publicly readable without auth; false (default) = private, share via presigned URLs |
No output schema declared.
No examples provided.
scalix_storage_download ~43
Download an object from storage. Returns the content as base64.
| Name | Type | Req | Description |
|---|---|---|---|
| bucket | string | yes | Bucket name |
| key | string | yes | Object key (path) |
No output schema declared.
No examples provided.
scalix_storage_list ~54
List storage buckets, or list objects in a specific bucket with optional prefix filter.
| Name | Type | Req | Description |
|---|---|---|---|
| bucket | string | — | Bucket name. If omitted, lists all buckets. |
| prefix | string | — | Filter objects by key prefix |
No output schema declared.
No examples provided.
scalix_storage_upload ~71
Upload content to object storage. Provide the content as a base64-encoded string.
| Name | Type | Req | Description |
|---|---|---|---|
| bucket | string | yes | Target bucket name |
| content | string | yes | Base64-encoded file content |
| content_type | string | — | MIME type |
| key | string | yes | Object key (path) |
No output schema declared.
No examples provided.
scalix_usage ~33
Get current usage metrics and costs for a project.
| Name | Type | Req | Description |
|---|---|---|---|
| project_id | string | yes | Project ID to check usage for |
No output schema declared.
No examples provided.