trustnotch-mcp
MCP server for TrustNotch — tamper-evident audit logs for AI agents.
A local (stdio) Model Context Protocol server that exposes the TrustNotch API as tools an MCP client (Claude Desktop, etc.) can call: submit a log entry, fetch one, fetch its proof bundle, and verify a proof offline — the server it talks to is never trusted to vouch for its own logs.
Install
uvx trustnotch-mcp
or pip install trustnotch-mcp.
Configure
Set these in your MCP client's server config (env):
TRUSTNOTCH_API_KEY(required) — yourtn_live_.../tn_test_...API key.TRUSTNOTCH_API_URL(optional) — defaults tohttps://api.trustnotch.com.TRUSTNOTCH_PUBKEYS_PATH(optional) — pin a local public-key file for stronger verification independence.
Tools
submit_log— record a tamper-evident log entry (a JSON payload, or a pre-computed SHA-256 for zero-PII mode).get_log— fetch a previously submitted entry by id.get_proof— fetch the proof bundle (signed receipt + Merkle inclusion proof + OpenTimestamps Bitcoin anchor).verify_proof— verify a bundle locally, offline.verify_log— fetch + verify in one step.
License
Apache-2.0
Release files for trustnotch-mcp 0.1.1
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| trustnotch_mcp-0.1.1.tar.gz | 10.0 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| trustnotch_mcp-0.1.1-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 21.6 kB
Release files / trustnotch_mcp-0.1.1.tar.gz
| Download URL | trustnotch_mcp-0.1.1.tar.gz |
|---|---|
| Size | 10.0 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
4a7d55ac531e287bc6b7347225274e327186fba21c8fef2a334a194b1e7251ae
|
|
BLAKE2b-256 checksum How to use checksums |
675e1490355de2e15de22103bd16b6e394f1f0cbee589b9e4d84da3c86f55583
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Aug 8, 2026.
Transparency logRelease files / trustnotch_mcp-0.1.1-py3-none-any.whl
| Download URL | trustnotch_mcp-0.1.1-py3-none-any.whl |
|---|---|
| Size | 11.6 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
78b901c25279c543c5daa44fb14b3a7ac99bd8ed54889c3f927aa2e89550d71e
|
|
BLAKE2b-256 checksum How to use checksums |
f45c3a3c4ea9b22dbba0b735cfa75154732a9c67bc04ec967ac44b17236aa9c3
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Aug 8, 2026.
Transparency log