MarketNow

io.github.alicelabs-llcv1.15.0Updated Sep 29, 2026

Verify AI agent credentials, translate 9 formats, check scam domains, search 68k+ MCP servers.

Overview

AI-generated overview

Lets an assistant verify AI-agent credentials, translate them between formats, check domain scam risk, and search an indexed MCP server registry.

What it does
Exposes nine marketnow_* tools. It verifies agent credentials such as JWT, W3C VC, MCP Card, ATC v3, A2A, EAT-AI, ZTA and X.509 through a 12-stage pipeline (R20), translates credentials between eight formats (R21), lists formats and pipeline stages (R22, R23), scores domain scam risk (R24), searches an indexed registry of MCP servers (R25), checks revocation against a signed registry (R26), fingerprints MCP tool definitions with JCS and SHA-256 (R27), and submits a skill to the catalog after validation and scanning (R28).
When to use it
Use it when an assistant needs to decide whether an AI agent, credential or domain can be trusted before acting, or when you want to look up and compare indexed MCP servers. It also suits workflows that need credential format conversion, revocation checks, or tool-definition fingerprinting. It is not a general-purpose tool server.
Requirements
Runs either as a remote Streamable HTTP endpoint at the vendor's site (R31) or as a local process via npx marketnow-mcp (R32) or a published Docker image (R33). The npm package needs Node.js; Docker needs a container runtime. No authentication, environment variables or headers are declared. Network access to the vendor endpoint is required for the hosted tools.
Before you install
The submit tool publishes a skill to a public catalog and is validated and scanned before publication (R28), so treat submissions as public and irreversible in practice. Verification, translation, domain checks and revocation checks send the supplied credential, domain or card identifier to the hosted endpoint. No credentials or API keys are declared, but do not paste secrets or private keys into tool inputs.

Installation

In SourceWeft

  1. Open MarketNow in the dashboard and add it to a workspace.
  2. Enable the server for the chats that should use its tools.

Web executable via Streamable HTTP. Remote servers run from the web runtime once configured in a workspace.

Other MCP clients

Add this to your client's mcpServers config.

{
  "mcpServers": {
    "marketnow": {
      "type": "http",
      "url": "https://marketnow.site/api/mcp/"
    }
  }
}

README

MarketNow — Trust Infrastructure for AI Agents

Repo ecosystem (one owner per concern, split 2026-09-26):

RepoSole owner of
alicelabs-llc/MARKETNOW (this repo)Product code: mcp-server (npm marketnow-mcp), atc-sdk/atc-python/atc-rust, Docker/Cline/Cursor integrations, CLIs, security audits
eddyflores100-lang/marketnowLive marketplace: site (aep-marketplace/), catalog data (_data/, skills/, public/api/), the 21 scheduled data pipelines, Vercel deploys of marketnow.site
alicelabs-llc/universal-trust-adapterATC/1.0 protocol: spec, adapters, reference implementation, plugins
alicelabs-llc/marketnow-submissionsPublic skill submissions queue
alicelabs-llc/statusLive status page

Data and site questions go to the marketplace repo; protocol questions to UTA; everything else lives here.

MarketNow doesn't sell AI tools. It determines whether AI agents should be allowed to trust and execute them.

[npm version] [npm downloads] [License: AliceLabs LLC Proprietary] [Official MCP Registry]

What is MarketNow?

MarketNow is trust infrastructure for AI agents: a hosted registry that verifies skills, credentials and domains across 68,388 indexed MCP servers (132,737 tracked across GitHub, npm and PyPI), with signed skill submissions, revocation checks and a 9-tool MCP API.

Every indexed entry is security-first scored. The MCP API is free — 68,387 of the 68,388 indexed servers are free to install (paid: 1 in the public stats API).

The 9 MCP tools (endpoint v1.15.0)

Endpoint tracks the npm train: v1.15.0 (2026-09-26 — repository-field repair → alicelabs-llc/MARKETNOW, npm ↔ endpoint lockstep); previously v1.14.1 (2026-09-20).

The MCP server exposes 9 tools, all under the marketnow_* namespace so Claude Desktop, Cursor, Cline, LangChain and LlamaIndex can disambiguate them at tool-choice time:

#ToolWhat it does
1marketnow_verify_trustVerify any AI-agent credential (JWT, W3C VC, MCP Card, ATC v3, A2A, EAT-AI, ZTA, X.509) through the UTA 12-stage verification pipeline
2marketnow_translate_credentialTranslate a credential between 8 formats (ATC v3, JWT, W3C VC, A2A, EAT-AI, ZTA, MCP Card, X.509) losslessly via the Universal Trust Schema
3marketnow_list_formatsList the 8 supported credential formats with their algorithms and status
4marketnow_get_pipelineGet the 12-stage verification pipeline details
5marketnow_check_domainScam checker: returns a domain risk score with reasons
6marketnow_search_skillsSearch the registry of indexed MCP servers (GitHub, npm, PyPI), security-first scored
7marketnow_check_revocationCheck revocation of an Agent Trust Card or CA key against the signed Revocation Registry (MNR-CRL-1.0) + live ledger
8marketnow_fingerprint_toolCryptographically fingerprint MCP tool definitions (OWASP MCP Cheat Sheet) with RFC 8785 JCS + SHA-256
9marketnow_submit_skillPublish a skill to the catalog: validated and Sentinel-scanned (injection patterns, embedded secrets, dangerous capabilities)

Tool contract: deterministic marketnow_ snake_case names · intent-oriented descriptions · strict JSON-Schema parameters · structured { content, isError } responses.

Quick start

Connect any MCP client (Streamable HTTP)

json
{  "mcpServers": {    "marketnow": {      "url": "https://www.marketnow.site/api/mcp"    }  }}

Run the MCP server

bash
npx -y marketnow-mcp

Run it in Docker (audited repo tree, published by CI)

bash
docker run -i --rm ghcr.io/alicelabs-llc/marketnow-mcp:1.15.0# or register it in the Docker MCP Toolkit:docker mcp gateway add --docker ghcr.io/alicelabs-llc/marketnow-mcp

Cline

Paste the ready block from integrations/cline/cline_mcp_settings.json into Cline → MCP Servers → Configure. The repo also ships .clinerules/ house rules. Guide: integrations/cline/README.md.

Cursor

Open this repo as your Cursor workspace — .cursor/mcp.json auto-registers the server, and .cursor/rules/marketnow.mdc teaches Cursor the house rules. Guide: integrations/cursor/README.md.

Verify an Agent Trust Card (ATC/1.3)

bash
curl "https://www.marketnow.site/api/atc?action=ca-key"    # public CA key (Ed25519, RFC 8032)curl "https://www.marketnow.site/api/atc?action=spec"      # ATC/1.3 specificationcurl "https://www.marketnow.site/api/atc?action=verify&card_id=ATC-2026-XXXXX"

Stats (public, machine-readable)

MetricValue
MCP servers indexed68,388
Tracked across all sources132,737
Core certified (L1)59,946
Community indexed9,131
Free to install68,387 of 68,388 (paid: 1)
Paid1
L1 index checks10/10 passing
L2 Sentinel scans2,839 of 2,868 npm tarballs
Credential formats8 (ATC v3, JWT, W3C VC, A2A, EAT-AI, ZTA, MCP Card, X.509)
Verification pipeline12 stages (UTA)
CAEd25519 (RFC 8032)

Source of truth: https://www.marketnow.site/api/stats.json — CI fails if any surface diverges.

Security model

Two levels:

  • L1 — index certification: all 68,388 entries pass 10 metadata/security checks before being indexed.
  • L2 — Sentinel scans: shipped npm tarballs are scanned (2,839 to date) for injection patterns, embedded secrets and dangerous capabilities. Skills that fail are quarantined and published in the transparency report.

Conformance

Canonical conformance vectors for the UTA pipeline: /uta/conformance/vectors/_index.json (schema 1.5.0).

Links

License

All code in this repository is PROPRIETARY — property of AliceLabs LLC.

For licensing: [email protected] For support: [email protected] General: [email protected]

Built by AliceLabs LLC (Wyoming, USA) — founder Edison Flores.

Source: README.md at commit 8e2e146

Tools

0
Tool metadata has not been indexed yet.

Version history

1
  1. v1.15.0LatestSep 29, 2026