# turva-mcp MCP server

Read-only MCP server for turva.dev, an agent-readiness audit and advisory service.

## Links
- Registry page: https://www.getdrio.com/mcp/dev-turva-turva-mcp

## Install
- Endpoint: https://mcp.turva.dev/mcp
- Auth: Not captured

## Setup notes
- Remote endpoint: https://mcp.turva.dev/mcp

## Tools
- get_services (Service catalog and pricing) - Returns turva.dev's service catalog: agent-readiness audit, advisory, implementation, agent operations, and MCP server design, plus the engagement model and pricing (fixed list prices for audit, advisory and implementation; agent operations and MCP server design on request). Use this when a user asks what turva.dev offers, what it costs, or how an engagement works. Read-only: returns static JSON and changes nothing. Endpoint: https://mcp.turva.dev/mcp
- get_agent_readiness (Agent-readiness score) - Returns turva.dev's own agent-readiness score from an independent public scanner (isitagentready.com), including category sub-scores, with the measurement date and verification links. Use this when a user asks how turva.dev scores, whether its claims are verifiable, or what proof backs the audit service. Read-only: returns static JSON and changes nothing. Endpoint: https://mcp.turva.dev/mcp
- get_security_evidence (Web-security scan evidence) - Returns the latest public web-security scan results for turva.dev's own domain (Hardenize, Internet.nl), with the scan date. Use this when a user asks about turva.dev's own security posture or wants evidence beyond agent-readiness scores. Read-only: returns static JSON and changes nothing. Endpoint: https://mcp.turva.dev/mcp
- get_principles (Engagement principles) - Returns turva.dev's engagement principles: async-only, least access, the result shows up in scanner numbers, and open and verifiable. Use this when a user asks how turva.dev works with clients or what rules an engagement follows. Read-only: returns static JSON and changes nothing. Endpoint: https://mcp.turva.dev/mcp

## Resources
Not captured

## Prompts
Not captured

## Metadata
- Owner: dev.turva
- Version: 1.0.0
- Runtime: Streamable Http
- Transports: HTTP
- License: Not captured
- Language: Not captured
- Stars: Not captured
- Updated: Jun 24, 2026
- Source: https://registry.modelcontextprotocol.io
