Independent fail-closed 'verify before you act' trust gate for AI agents — MCP server. Tiered, disclosed, pay-per-call via x402 (USDC on Base): quick_verify $0.02, grounded_verify $0.25 (live web citations), pro_verify $0.35, free verify_receipt (checks Ed25519-signed verdict receipts), plus prompt-injection, moderation, PII, and pre-action guardrail checks at $0.02. Keyless.
Project description
mcp-name: io.github.meloliva14/verity-mcp
Verity MCP — verify before you act
The official Model Context Protocol server for VerityLayer: independent, fail-closed trust checks any MCP-capable agent can discover and call. Fact-check a claim, screen for prompt-injection, catch PII, and gate irreversible actions — each check returns a calibrated verdict and abstains rather than guess. Payment is pay-per-call via x402 (USDC on Base mainnet). Verity holds no private key and never charges silently.
Name note: this is VerityLayer's official server — PyPI package
verity-mcp, npm package@veritylayer/mcp. The npm package namedverity-mcpis an unrelated third-party project.
Tools & pricing (every docstring states its price up front)
| Tool | Price | Grounded? | What it's for |
|---|---|---|---|
quick_verify |
$0.02 | no (Haiku) | Cheap reality-check on a claim — the loopable default. Run everywhere, escalate the load-bearing ones. |
grounded_verify |
$0.25 | yes (Sonnet, live web citations) | The default product — web-grounded with cited evidence, for facts that matter before you act on them. |
pro_verify |
$0.35 | yes (Opus, premium synthesis) | The deepest tier — high-stakes claims where the grounded answer isn't confident enough to act on. |
verify_receipt |
free | — | Statelessly verify a signed Ed25519 verdict receipt — the audit trail / second opinion, no payment. |
detect_injection |
$0.02 | — | Screen untrusted text / tool output for prompt-injection before acting on it. |
moderate_content |
$0.02 | — | Is this safe to publish? (allow / review / block priced identically — no block-to-bill.) |
redact_pii |
$0.02 | — | Does this leak PII or secrets? Returns findings + a redacted version. |
guard_action |
$0.02 | — | The money-line gate: allow / review / block right before an irreversible action. |
Quickstart
With uv (recommended — Claude Desktop / any MCP client):
{
"mcpServers": {
"verity": {
"command": "uvx",
"args": ["verity-mcp"]
}
}
}
Or with pip:
pip install verity-mcp
verity-mcp # stdio MCP server
How payment works
Verity's endpoints answer HTTP 402 (Payment Required) until paid. When a tool call hits a 402, this server surfaces it transparently — price restated, x402 challenge attached — so your x402-capable client or proxy can settle the small, disclosed USDC micro-payment and retry. This server never holds a key and never pays on your behalf. verify_receipt is a free route and never 402s.
Signed receipts — don't take Verity's word for it
Every paid verdict ships with an Ed25519-signed receipt: self-contained cryptographic proof of exactly what Verity said about exactly what claim, verifiable forever. Check any receipt free with the verify_receipt tool, offline against the public key at /.well-known/verity-pubkey.json, or live: curl https://api.veritylayer.dev/receipt/selftest.
Configuration (all optional)
| Env var | Default | Purpose |
|---|---|---|
VERITY_ENGINE_URL |
https://api.veritylayer.dev |
Flagship claim-verification engine |
VERITY_SUITE_URL |
https://verity-suite.onrender.com |
Trust-check suite (injection/moderation/PII/guardrail) |
VERITY_TIMEOUT |
90 |
HTTP timeout (seconds) |
VERITY_PRICE_QUICK |
$0.02 |
Disclosed price echo for quick_verify |
VERITY_PRICE_GROUNDED |
$0.25 |
Disclosed price echo for grounded_verify |
VERITY_PRICE_PRO |
$0.35 |
Disclosed price echo for pro_verify |
VERITY_PRICE_SUITE |
$0.02 |
Disclosed price echo for the suite checks |
Referral tag (reserved)
Every tool accepts an optional affiliate_id, forwarded as an X-Verity-Ref header. It never changes price, gating, or the verdict — it only tags who routed the call, and it is reserved for a future referral program: no split is paid today, and none will be until public terms are published at veritylayer.dev.
Links
- Website: https://veritylayer.dev · Manifesto: https://veritylayer.dev/manifesto/
- Live API + discovery: https://api.veritylayer.dev/llms.txt ·
/.well-known/x402.json - npm client:
@veritylayer/mcp - Contact: veritylayer@gmail.com
Independent · fail-closed · keyless · pay-per-call. The only trust form an autonomous agent can pick up mid-task with no human and no account.
Project details
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file verity_mcp-0.3.0.tar.gz.
File metadata
- Download URL: verity_mcp-0.3.0.tar.gz
- Upload date:
- Size: 8.3 kB
- Tags: Source
- Uploaded using Trusted Publishing? No
- Uploaded via: twine/6.2.0 CPython/3.14.3
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
aca25d10ca729f1db1f619e46542da416332044abdf3a715576f57e737be319f
|
|
| MD5 |
fec0d205da817a1d4aa0b3303b164eb2
|
|
| BLAKE2b-256 |
19b39758f702377aa992d9a702d9b20bc1b09cf92963f13fb4566c2e31af6fbb
|
File details
Details for the file verity_mcp-0.3.0-py3-none-any.whl.
File metadata
- Download URL: verity_mcp-0.3.0-py3-none-any.whl
- Upload date:
- Size: 8.9 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? No
- Uploaded via: twine/6.2.0 CPython/3.14.3
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
7878e4826d5c37ca175905df49519515ff9debd5b44a8eda350870ddfea75a85
|
|
| MD5 |
1e299a79ae1d1f18a002d4b1c5951b35
|
|
| BLAKE2b-256 |
7922cc373df6c5b3e260b685fbccbd3eb1013526962263b186affa0ccffe96d7
|