roost-mcp
Two zero-config, advisory MCP servers from Roost for AI agents that handle money. No API key, no signup — an anonymous per-install token is created on first use. Calls are anonymized (hashed identifiers, bucketed amounts, no PII) and aggregated into a benchmark of money-moving-agent behavior; that's why they're free.
Install:
pip install roost-mcp
This provides two commands:
roost-corpus-mcp — payment pre-flight check
A second opinion before your agent sends a payment. The check_payment tool takes an invoice, purchase order, or transfer and returns a clear recommendation — proceed, hold & review, or consider financing — with the reasons: a suspected duplicate, an amount out of line with this agent's own history, an early-pay discount worth capturing, or terms worth using.
Advisory, not a gate — your agent stays in control. Fast deterministic checks, not fraud detection or a guarantee; the anomaly checks sharpen as your agent builds a short history. USD invoices, purchase orders, and transfers today.
roost-eval-mcp — finance-agent safety test
Find the financial decisions your agent gets dangerously wrong before it touches money. list_eval_scenarios returns money-action situations (fraud bait, payee changes, overspend, duplicate/replay, social engineering, …); your agent decides proceed/hold/flag on each; submit_eval returns a private scorecard that leads with a machine-readable headline — summary.status (balanced / unsafe / over_conservative / mixed / no_data), assurance_level="self_reported_unverified", and a verbatim disclaimer — followed by the component metrics (coverage, correctness, consistency, severity-adjusted risk, unsafe-proceed and conservative-friction rates) and the failed cases and fixes. There is no single "safety score" headline.
This is a private, self-reported, unverified self-test — do not publish or badge an anonymous-tier result; verified, trace-backed evaluation is a separate tier.
It is an advisory self-test, not a certificate: a determined caller can harvest answers across runs, so results are a private diagnostic, not a third-party guarantee. Verified evaluation (trace-backed / Roost-driven) is a separate, future tier. Do not submit personal, payment, or confidential business information in free-text fields.
Configuration
ROOST_CORPUS_API_BASE— API base (defaulthttps://roost-corpus.fly.dev, the live public endpoint).ROOST_CORPUS_TOKEN/ROOST_CORPUS_TOKEN_FILE— anonymous token override / file (default~/.roost/anon_token).ROOST_CORPUS_SOURCE— optional install-attribution tag.
Apache-2.0.
Metadata
Release files for roost-mcp 0.1.0
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| roost_mcp-0.1.0.tar.gz | 6.2 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| roost_mcp-0.1.0-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 14.9 kB
Release files / roost_mcp-0.1.0.tar.gz
| Download URL | roost_mcp-0.1.0.tar.gz |
|---|---|
| Size | 6.2 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
c81cab545714a48fec8e7ccfa760381fd14c4e9e5f0697120353f69ba26e6f73
|
|
BLAKE2b-256 checksum How to use checksums |
23a183da9452bfd7cc56995351273c2cf32f6aa2cdb6cdbb77a64d0f10791d32
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/7.0.0 CPython/3.14.3
|
Release files / roost_mcp-0.1.0-py3-none-any.whl
| Download URL | roost_mcp-0.1.0-py3-none-any.whl |
|---|---|
| Size | 8.8 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
b03acdaa7494fcce7033ccc8018282eca18275987df9e49a4e55cca1175a25b2
|
|
BLAKE2b-256 checksum How to use checksums |
1296d2455823e17944f3cb20652f16170f2902f583d64f4bf6ac43101a375756
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/7.0.0 CPython/3.14.3
|