CraftedTrust is the independent trust verification platform for the AI agent ecosystem. We scan, score, and certify MCP servers, AI agent tools, and npm packages — so you know what your AI tools are doing before you connect.
The AI agent ecosystem is evolving fast. Thousands of MCP servers, npm packages, and AI tools are emerging — from enterprise integrations to community-built utilities. But there's no standardized way to know if a tool is safe, honest, or trustworthy.
CraftedTrust fills this gap. We provide independent, automated trust verification across the AI agent ecosystem. Our live scanner connects to MCP servers via the MCP protocol, while our static analyzer examines npm packages and GitHub repositories — producing transparent trust scores based on objective factors.
No server pays for a higher score. No publisher can suppress a scan. The trust score is the truth.
Every MCP server receives a trust score from 0 to 100, computed from seven independently weighted factors:
Does the server honestly declare its tools, resources, and capabilities?
Does the server request only the permissions it actually needs?
Are all outbound connections declared and necessary?
Is the server open-source or has it undergone a security audit?
Is the publisher a known, established entity?
Does the server enforce HTTPS with modern TLS?
Does the server match any patterns in our threat intelligence database?
CraftedTrust is the first step in the Agentic Security Ladder — a framework for building trust in the AI tool ecosystem. We believe autonomous agents need verifiable, cryptographic integrity proofs before they can safely interact with the world.
Today, we provide automated trust scoring. Soon, we'll offer on-chain attestations — verifiable trust records that agents can check programmatically before connecting to any MCP server.
Our goal is simple: make every AI interaction auditable, every tool verifiable, and every trust decision transparent.
CraftedTrust is the independent trust verification platform for the AI agent ecosystem. Built by Cyber Craft Solutions LLC, Lancaster, PA — a cybersecurity consultancy specializing in AI security, application hardening, and trust infrastructure.
Contact: [email protected]