🛡️ About Us

Trust, but verify.

CraftedTrust is the independent trust verification platform for the AI agent ecosystem. We scan, score, and certify MCP servers, AI agent tools, and npm packages — so you know what your AI tools are doing before you connect.

Our Mission

The AI agent ecosystem is evolving fast. Thousands of MCP servers, npm packages, and AI tools are emerging — from enterprise integrations to community-built utilities. But there's no standardized way to know if a tool is safe, honest, or trustworthy.

CraftedTrust fills this gap. We provide independent, automated trust verification across the AI agent ecosystem. Our live scanner connects to MCP servers via the MCP protocol, while our static analyzer examines npm packages and GitHub repositories — producing transparent trust scores based on objective factors.

No server pays for a higher score. No publisher can suppress a scan. The trust score is the truth.

How Trust Scoring Works

Every MCP server receives a trust score from 0 to 100, computed from seven independently weighted factors:

Declaration Accuracy

Does the server honestly declare its tools, resources, and capabilities?

Permission Minimality

Does the server request only the permissions it actually needs?

Network Behavior

Are all outbound connections declared and necessary?

Code Transparency

Is the server open-source or has it undergone a security audit?

Publisher Reputation

Is the publisher a known, established entity?

Transport Security

Does the server enforce HTTPS with modern TLS?

Known Threat Match

Does the server match any patterns in our threat intelligence database?

Our Vision

CraftedTrust is the first step in the Agentic Security Ladder — a framework for building trust in the AI tool ecosystem. We believe autonomous agents need verifiable, cryptographic integrity proofs before they can safely interact with the world.

Today, we provide automated trust scoring. Soon, we'll offer on-chain attestations — verifiable trust records that agents can check programmatically before connecting to any MCP server.

Our goal is simple: make every AI interaction auditable, every tool verifiable, and every trust decision transparent.

Built by Cyber Craft Solutions

CraftedTrust is the independent trust verification platform for the AI agent ecosystem. Built by Cyber Craft Solutions LLC, Lancaster, PA — a cybersecurity consultancy specializing in AI security, application hardening, and trust infrastructure.

Contact: [email protected]