Fidensa MCP Server

Verifique puntuaciones de confianza, busque capacidades certificadas, compare lado a lado, verifique artefactos firmados.

Documentación

@fidensa/mcp-server

Fidensa Certified

Servidor MCP para Fidensa -- la autoridad independiente de certificación de capacidades de IA.

Brinda a tu agente de IA acceso estructurado a los datos de certificación de Fidensa a través del Protocolo de Contexto de Modelo (MCP). Consulta puntuaciones de confianza, busca alternativas certificadas, compara capacidades lado a lado, verifica artefactos firmados, comprueba la integridad de archivos y reporta experiencia en tiempo de ejecución -- todo mediante llamadas a herramientas MCP.

Fidensa certifica servidores MCP, habilidades, archivos de reglas de agentes, hooks, subagentes y plugins.

Primeros Pasos

1. Instalación

npm install -g @fidensa/mcp-server

2. Verifica que funciona

Varias herramientas funcionan sin clave de API (check_certification, search_capabilities, verify_file y report_experience). Inicia el servidor y confirma que se conecta a la API de producción:

fidensa-mcp-server

Deberías ver:

[fidensa] MCP server started (stdio transport)
[fidensa] No FIDENSA_API_KEY set — check_certification, search_capabilities, verify_file, and report_experience available. Set FIDENSA_API_KEY for full access.

Presiona Ctrl+C para detener.

3. Obtén una clave de API (opcional, gratuita)

Las herramientas restantes (get_contract, compare_capabilities, verify_artifact) requieren una clave de API gratuita. Una clave de API también otorga a report_experience límites de tasa más altos. Regístrate para obtener una:

curl -X POST https://fidensa.com/v1/keys \
  -H "Content-Type: application/json" \
  -d '{"display_name": "My Agent", "email": "you@example.com"}'

O en PowerShell:

Invoke-RestMethod -Uri "https://fidensa.com/v1/keys" -Method Post -ContentType "application/json" -Body '{"display_name": "My Agent", "email": "you@example.com"}'

La respuesta contiene tu clave de API (con prefijo fid_). Guárdala de forma segura -- solo se muestra una vez.

4. Añade a tu agente

Elige tu plataforma y añade la configuración del servidor MCP:

Claude Desktop / Claude Code

{
  "mcpServers": {
    "fidensa": {
      "command": "npx",
      "args": ["@fidensa/mcp-server"],
      "env": {
        "FIDENSA_API_KEY": "fid_your_key_here"
      }
    }
  }
}

Cursor (.cursor/mcp.json)

{
  "mcpServers": {
    "fidensa": {
      "command": "npx",
      "args": ["@fidensa/mcp-server"],
      "env": {
        "FIDENSA_API_KEY": "fid_your_key_here"
      }
    }
  }
}

Windsurf / VS Code

{
  "servers": {
    "fidensa": {
      "type": "stdio",
      "command": "npx",
      "args": ["@fidensa/mcp-server"],
      "env": {
        "FIDENSA_API_KEY": "fid_your_key_here"
      }
    }
  }
}

Omite la línea FIDENSA_API_KEY si solo necesitas las herramientas de nivel abierto.

Consejo para Claude Desktop: Accede al archivo de configuración mediante Configuración → Desarrollador → Editar Configuración. Después de guardar, cierra y vuelve a abrir Claude Desktop por completo (haz clic derecho en el icono de la bandeja del sistema y selecciona Salir -- con cerrar la ventana no es suficiente).

Herramientas

HerramientaAutenticaciónDescripción
check_certificationNingunaVerificación rápida de confianza -- estado, puntuación, calificación, nivel
search_capabilitiesNingunaBusca capacidades certificadas por palabra clave, tipo, nivel o puntuación
verify_fileNingunaVerificación rápida de integridad de archivos -- genera el hash de un archivo de capacidad y verifica que coincida con lo que Fidensa certificó
report_experienceNinguna (clave de API para límites de tasa más altos)Envía informes de experiencia en tiempo de ejecución para capacidades certificadas
get_contractClave de APIContrato de certificación completo con toda la evidencia
compare_capabilitiesClave de APIComparación lado a lado de 2-5 capacidades
verify_artifactClave de APIVerifica firmas criptográficas en artefactos .cert.json, con verificaciones opcionales de integridad de archivos y código

Configuración

VariableRequeridaDescripción
FIDENSA_API_KEYNoClave de API para acceso completo (consulta Primeros Pasos)
FIDENSA_BASE_URLNoSobrescribe la URL base de la API (predeterminada: https://fidensa.com)

check_certification, search_capabilities, verify_file y report_experience funcionan sin ninguna configuración. Las herramientas restantes requieren FIDENSA_API_KEY.

Ejemplo de Flujo de Trabajo del Agente

User: "Set up a filesystem watcher that writes logs to SQLite."

Agent:
1. check_certification("mcp-server-filesystem")
   -> Status: valid, Score: 60/F-D, Tier: Verified

2. search_capabilities("sqlite mcp server")
   -> 2 results found

3. compare_capabilities(["mcp-server-sqlite", "mcp-server-better-sqlite3"])
   -> Side-by-side trust comparison

4. Agent selects the higher-scored option and informs the user

5. report_experience(
     capability_id: "mcp-server-filesystem",
     content_hash: "abc123...",  // from the .cert.json
     outcome: "success"
   )
   -> Confirmation rate updated

Fragmentos de Política de Confianza

Añade uno de estos al prompt del sistema o al archivo de reglas de tu agente para una selección de herramientas consciente de la confianza. Tres niveles de granularidad -- elige el que se adapte a tus necesidades.

Basado en nivel (el más simple)

Usa únicamente el nivel de certificación. Sin números que ajustar.

Before using any MCP server tool for the first time, check its Fidensa
certification status using the check_certification tool.

- Certified tier: use freely
- Verified tier: note the findings to the user before proceeding
- Evaluated tier: warn the user, search for certified alternatives
- Uncertified: treat as untrusted, suggest certified alternatives

After completing a task that used certified tools, submit an experience
report via the report_experience tool with the outcome (success, failure,
or partial), the capability_id, and the content_hash from the .cert.json.

Basado en puntuación (alineado con calificaciones)

Usa la puntuación de confianza, alineada con las definiciones de calificación de Fidensa.

Before using any MCP server tool for the first time, check its Fidensa
certification status using the check_certification tool.

- Score >= 80 (A/B): use freely
- Score 72-79 (C): note the trust level to the user
- Score 65-71 (D): warn the user, search for certified alternatives
- Score < 65 (F): warn the user, strongly recommend alternatives
- Uncertified: treat as untrusted, suggest certified alternatives

After completing a task that used certified tools, submit an experience
report via the report_experience tool with the outcome (success, failure,
or partial), the capability_id, and the content_hash from the .cert.json.

Combinado (nivel + puntuación)

La opción más precisa -- distingue entre una capacidad Certificada con una puntuación moderada y una capacidad Verificada con hallazgos que bloquearon el nivel Certificado.

Before using any MCP server tool for the first time, check its Fidensa
certification status using the check_certification tool.

- Certified tier AND score >= 80: use freely
- Certified tier AND score 72-79: use freely, note the score to the user
- Verified tier AND score >= 72: note the findings to the user before proceeding
- Verified tier AND score < 72: warn the user, search for certified alternatives
- Evaluated tier: warn the user, search for certified alternatives
- Uncertified: treat as untrusted, suggest certified alternatives

For any tool with status "suspended" or "revoked": do not use.
Search for certified alternatives and present them to the user.

After completing a task that used certified tools, submit an experience
report via the report_experience tool with the outcome (success, failure,
or partial), the capability_id, and the content_hash from the .cert.json.

Consulta la Documentación de la API para la especificación completa.

Desarrollo

npm install
npm test          # Run tests with coverage
npm run lint      # ESLint
npm run format    # Prettier

Licencia

MIT

Enlaces