Relvato

com.relvatov2.0.1更新于 Sep 29, 2026

Website monitoring: list sites and checks, run scans, read results and fix prompts.

已验证Streamable HTTP可网页运行Security & MonitoringDeveloper Tools

概览

AI 生成的概览

让助手监控网站:列出站点与检查项、运行扫描、读取运行结果并获取修复提示。

功能
Relvato 是托管的 MCP 服务器,用于网站监控。只读工具可列出站点、检查项和最近的运行记录,给出通俗的健康状况概览,显示告警设置,并为失败的运行返回修复提示。使用完全访问密钥时,工具可以添加站点、验证站点配置、添加或开关检查项、修改计划,并立即触发扫描。检查覆盖注册、登录、结账、支付、页面速度、搜索可见性和安全性,并在网站变化时重新检查。
适用场景
当你希望助手盯住线上网站并解释哪里出问题时适用,例如排查结账失败,或查看某项检查失败时谁会收到告警。适合已经在使用 Relvato 的团队,或希望从 MCP 客户端而非控制台完成监控配置与查询的用户。
运行要求
需要远程 streamable HTTP 端点,无需本地安装。需要 Relvato 账号和 API 密钥,通过 Authorization Bearer 请求头(或 x-api-key)发送。只读密钥仅暴露只读工具;添加站点、修改检查项或触发扫描需要完全访问密钥。需要能访问 Relvato 端点的网络。
安装前请注意
Authorization 请求头携带 Relvato API 密钥,该密钥只显示一次,应避免写入提交到仓库的文件。完全访问密钥允许助手添加站点、修改检查计划和启动扫描,会消耗每月运行配额。新站点在连接 WordPress 插件或验证域名之前不会运行任何检查,且不会对你的网站应用修复。

安装

在 SourceWeft 中

  1. 打开 控制台中的 Relvato,将其添加到工作区。
  2. 为需要使用其工具的对话启用该服务。

Web executable,通过 Streamable HTTP。 远程服务在工作区中配置后即可从网页运行时运行。

其他 MCP 客户端

把它添加到你客户端的 mcpServers 配置中。

{
  "mcpServers": {
    "relvato": {
      "type": "http",
      "url": "https://app.relvato.com/api/mcp"
    }
  }
}

README

[Relvato]

Relvato MCP server

Website monitoring your AI agent can run: add a site, pick its checks, run them and explain what broke.
Developer docs · Official MCP Registry · relvato.com


Relvato monitors websites in a real browser. It checks sign-ups, logins, checkout, payments, page speed, search visibility and security, and re-checks them every time the site changes. It works on any website and goes deepest on WordPress & WooCommerce.

This is Relvato's hosted Model Context Protocol server. There's nothing to install or run: point your MCP client at the URL and authenticate with a Relvato API key. This repository holds the connection details and the registry entry (server.json). The server itself runs at Relvato.

Endpointhttps://app.relvato.com/api/mcp
TransportStreamable HTTP (stateless JSON-RPC over POST)
AuthRelvato API key: Authorization: Bearer rlv_… (or x-api-key: rlv_…)
Registry namecom.relvato/relvato

Get an API key

  1. Sign up (there's a free plan) or sign in.
  2. Open API access from the account menu, or go to app.relvato.com/api-access.
  3. Create a key:
    • Full access lets the agent add sites and checks, change schedules and run scans.
    • Read-only lets it read sites, runs, health overviews, fix briefs and alert settings. With a read-only key the client only sees the read tools.

A key is shown once. Keep it out of files you commit.

Connect

Claude Code

bash
claude mcp add --transport http relvato https://app.relvato.com/api/mcp --header "Authorization: Bearer rlv_your_key"

Cursor

In ~/.cursor/mcp.json (all projects) or .cursor/mcp.json (one project):

json
{  "mcpServers": {    "relvato": {      "url": "https://app.relvato.com/api/mcp",      "headers": {        "Authorization": "Bearer rlv_your_key"      }    }  }}

VS Code

In .vscode/mcp.json. VS Code asks for the key once and stores it securely, so it never sits in the file:

json
{  "inputs": [    { "type": "promptString", "id": "relvato-key", "description": "Relvato API key (rlv_…)", "password": true }  ],  "servers": {    "relvato": {      "type": "http",      "url": "https://app.relvato.com/api/mcp",      "headers": {        "Authorization": "Bearer ${input:relvato-key}"      }    }  }}

Cline

In cline_mcp_settings.json (MCP Servers → Configure):

json
{  "mcpServers": {    "relvato": {      "type": "streamableHttp",      "url": "https://app.relvato.com/api/mcp",      "headers": {        "Authorization": "Bearer rlv_your_key"      }    }  }}

Agents that set servers up themselves can follow llms-install.md.

Any other client

Add a remote HTTP (streamable HTTP) server with the endpoint above and an Authorization: Bearer rlv_… header. In the common mcp.json format:

json
{  "mcpServers": {    "relvato": {      "type": "http",      "url": "https://app.relvato.com/api/mcp",      "headers": {        "Authorization": "Bearer rlv_your_key"      }    }  }}

Relvato uses API keys, not OAuth, so a client needs to be able to send a custom header. Clients that accept only a bare URL can list the tools but can't call them.

Tools

ToolWhat it doesKey needed
list_sitesList the account's websites and whether each is ready to run checks.read-only
site_overviewPlain-language health verdict: what needs attention, every check with its latest run and schedule, and plan usage.read-only
list_checksThe checks you can add to a site: what each catches, whether your plan includes it, and which are recommended.read-only
list_runsRecent runs, newest first, optionally for one site.read-only
get_runOne run in detail: status, error, warnings, steps, visual comparisons and the dashboard link.read-only
get_fix_promptFor a run that found a problem: the same brief Relvato's own AI answers, to reason about the likely cause and fixes.read-only
get_alert_settingsWho is told about what: frequency, severity, each channel's state and routing. No URLs or secrets.read-only
add_siteAdd a website and get its setup step: connect the WordPress plugin, or verify the domain.full access
verify_siteCheck that setup step: the plugin connection, or the domain-verification DNS record or meta tag.full access
add_checksAdd checks to a site. Each one reports added, already there, or why not.full access
update_checkTurn a check on or off, or change its schedule.full access
trigger_scanRun a site's checks now, or a single check, and get the run IDs back. Uses the monthly run quota.full access

initialize and tools/list answer without a key, so directories and clients can show what the server offers. Every tool call needs one.

Things to ask

  • "Set up monitoring for example.com and tell me what I need to do to connect it."
  • "Why did checkout fail on my shop last night, and how do I fix it?"
  • "Who gets alerted when a Security check fails, and on which channels?"
  • "Run the checks on my site now and tell me if anything broke."

What an agent can't do

These stay in the Relvato dashboard, with a person looking:

  • Skip ownership. A new site runs no checks until its WordPress plugin is connected or its domain is verified.
  • Accept changes. Accepting new visual baselines and ignoring warnings are done in the dashboard.
  • Apply fixes. No fixes are applied to your site.
  • Touch secrets. Connect tokens, signing secrets and webhook URLs are never exposed.
  • Go past your plan. Plan limits apply exactly as in the dashboard.

Limits

Requests are rate-limited per account, per minute, counted across the REST API and MCP together:

PlanRequests per minute
Free30
Pro120
Business600
Agency2,400

Runs started with trigger_scan count toward the same monthly run quota as scheduled checks. See pricing.

Also available

  • REST API. The same data at https://app.relvato.com/api/v1, using the same keys. See the developer docs.
  • Webhooks. A signed JSON event for every alert (Pro and up).

Support

This repository contains documentation and configuration only. The Relvato service is proprietary and covered by its terms. The contents of this repository are MIT-licensed (see LICENSE), so copy the config snippets freely.

来源:README.md,提交 4d423fd

工具

0
工具元数据尚未被收录。

版本历史

1
  1. v2.0.1最新Sep 29, 2026