# Hermes Plant — Agent Commerce Assurance MCP server

Preflight, approve, and prove consequential agent actions with signed evidence and x402 tools.

## Links
- Registry page: https://www.getdrio.com/mcp/io-github-jessegdotio-hermes-plant
- Repository: https://github.com/JesseGdotIO/hermesplant-mcp-server

## Install
- Endpoint: https://mcp.hermesplant.com/mcp
- Auth: Not captured

## Setup notes
- Remote header: X-API-Key (secret)
- Remote endpoint: https://mcp.hermesplant.com/mcp
- Header: X-API-Key

## Tools
- freetier_status (Free-tier key status) - Check a free API key's remaining monthly quota, reset date, and upgrade path. Pass your hp_free_ key as apiKey. No key yet? POST an email to https://hermesplant.com/api/keys/free (250 calls/mo, no wallet). Endpoint: https://mcp.hermesplant.com/mcp
- list_products (List products) - List active products from the Hermes Plant catalog Endpoint: https://mcp.hermesplant.com/mcp
- get_product (Get product) - Get a single product by slug Endpoint: https://mcp.hermesplant.com/mcp
- get_checkout_policies (Get checkout policies) - Return legal policy URLs required before checkout Endpoint: https://mcp.hermesplant.com/mcp
- get_x402_manifest (Get x402 manifest) - Return the live x402 manifest with paid endpoint prices, Bazaar metadata, and buyer policy checks Endpoint: https://mcp.hermesplant.com/mcp
- start_checkout (Start checkout) - Start a Stripe checkout session for a product slug Endpoint: https://mcp.hermesplant.com/mcp
- purchase_with_x402 (Purchase with x402) - Purchase a one-time product via x402 (returns 402 challenge or fulfillment JSON). Call get_x402_manifest first, verify method/path/network/amount/payTo, then sign and retry with PAYMENT-SIGNATURE. Endpoint: https://mcp.hermesplant.com/mcp
- action_safety_quick_gate (Action Safety - one-cent preflight) - AI agent action safety quick gate ($0.01 over x402 or free-tier quota). Deterministically scores a consequential action and returns the exact next call: proceed, request full DestructGuard evidence, or run the complete Action Safety workflow. Endpoint: https://mcp.hermesplant.com/mcp
- action_safety_run (Action Safety - complete workflow) - Complete AI agent action safety workflow ($0.25 over x402 or free-tier quota): DestructGuard evidence, conditional ReviewQueue triage for high or critical risk, an honest decision, signed receipt, and 30-day status record. Triage does not imply human approval. Endpoint: https://mcp.hermesplant.com/mcp
- submit_reviewqueue_request (ReviewQueue — submit for risk triage) - Submit a command/action to the x402-paid ReviewQueue agent service. Call get_x402_manifest first, verify the ReviewQueue price and buyer policy, then retry the 402 challenge with an x402 payment signature. Endpoint: https://mcp.hermesplant.com/mcp
- score_destructguard_command (DestructGuard — score command risk) - Score a command/action with the x402-paid DestructGuard service. Call get_x402_manifest first, verify the DestructGuard price and buyer policy, then retry the 402 challenge with an x402 payment signature. Endpoint: https://mcp.hermesplant.com/mcp
- dealanalyzer_analyze (DealAnalyzer — full deal underwriting in one call) - DealAnalyzer (x402-paid, $2.00): the flagship. Deterministic full deal underwrite in a single call — DCF valuation (EV, equity value, implied share price), fund returns (IRR/MOIC), and the LP/GP distribution waterfall, plus sensitivity. Combines what CashflowLens + WaterfallLens do, cross-checked. Endpoint: https://mcp.hermesplant.com/mcp
- cashflowlens_analyze (CashflowLens — DCF, IRR & cashflow returns) - CashflowLens (x402-paid, $0.20): deterministic NPV, IRR, XIRR, DCF valuation, MOIC/DPI/TVPI, and payback period from a cashflow series. Use for valuation and return analysis instead of letting the model estimate. Endpoint: https://mcp.hermesplant.com/mcp
- waterfall_distribute (WaterfallLens — LP/GP distribution waterfall) - WaterfallLens (x402-paid, $0.30): deterministic LP/GP distribution waterfall (return of capital, preferred, GP catch-up, carried-interest split) with the exact split, per-tier breakdown, LP MOIC, and effective carry %. Endpoint: https://mcp.hermesplant.com/mcp
- options_price (OptionLens — Black-Scholes price & Greeks) - OptionLens (x402-paid, $0.30): deterministic Black-Scholes price and full Greeks (delta, gamma, vega, theta, rho) for European calls/puts, with dividend yield, intrinsic/time value, and moneyness. Endpoint: https://mcp.hermesplant.com/mcp
- bond_analyze (BondLens — bond & loan analytics) - BondLens (x402-paid, $0.25): deterministic fixed-income and loan analytics. Bond mode solves price<->yield-to-maturity, duration, and convexity; loan mode (send principal+annualRate+termMonths) returns an amortization schedule. Endpoint: https://mcp.hermesplant.com/mcp
- portfolioguard_score (PortfolioGuard — portfolio risk) - PortfolioGuard (x402-paid, $0.15): deterministic portfolio risk scoring from holdings — volatility, Sharpe, max drawdown, concentration (HHI), diversification, plus per-rule findings. Endpoint: https://mcp.hermesplant.com/mcp
- walletguard_score (WalletGuard — wallet AML risk) - WalletGuard (x402-paid, $0.10): deterministic wallet AML/compliance risk scorer. From caller-provided context (sanctions, exposures, labels, fund sources) returns a 0-100 risk score, level, and evidence-backed findings. Endpoint: https://mcp.hermesplant.com/mcp
- emailguard_validate (EmailGuard — email validation) - EmailGuard (x402-paid, $0.02): deterministic email/contact quality scorer — validity, deliverability score, disposable/role/free classification, typo suggestion. Pure function, no DNS. Endpoint: https://mcp.hermesplant.com/mcp
- emailguard_validate_batch (EmailGuard — validate a whole contact list) - Validate up to 20 emails in one tool call — one deterministic verdict per record (validity, deliverability score, disposable/role/free classification, typo suggestion, canonical normalization). Pass your free apiKey (250 records/mo, no wallet — https://hermesplant.com/pricing) and each record serves from quota. Results preserve input order; the batch stops at the first 402 (quota exhausted) and marks the rest skipped so you can upgrade and resume. Endpoint: https://mcp.hermesplant.com/mcp
- mcp_risk_score (MCP Server Risk Analyzer) - MCP Server Risk Analyzer (x402-paid, $0.05): score an MCP server manifest for security risk before install — destructive tools, over-broad scopes, weak auth, egress — with per-tool findings and fixes. Endpoint: https://mcp.hermesplant.com/mcp
- payment_policy_decide (Payment Policy — preflight an x402 payment) - Payment Policy Decision (x402-paid, $0.05): deterministic allow / deny / needs_review before your agent signs an x402 payment — checks resource binding, amount vs expected price, network, payTo, facilitator, replay readiness, PII leakage, and buyer spend limits, with evidence-backed findings. Loop it over every payment; pair with assurance_attest for a signed record. Endpoint: https://mcp.hermesplant.com/mcp
- evidence_verify (Evidence Verify — check a paid result's evidence bundle) - Evidence Verification (x402-paid, $0.05): verify an agent-commerce evidence bundle before trusting a paid result — x402 challenge/receipt/policy-decision/service-response artifacts, endpoint and price binding, freshness, hashes, synthetic-proof leakage. Returns verified / needs_review / rejected / insufficient_evidence with per-rule evidence. Endpoint: https://mcp.hermesplant.com/mcp
- assurance_attest (Assurance Attest — signed receipt for an agent action) - Assurance Attest (x402-paid, $0.05): bind one x402 payment intent or MCP tool call to a canonical HMAC-signed record (binding hash, policy verdict, findings, optional settlement outcome). Loop it after every payment or tool call to build a tamper-evident audit trail a third party can check at the free verify endpoint. Endpoint: https://mcp.hermesplant.com/mcp
- assurance_verify (Assurance Verify — check a signed record (free)) - Verify a Hermes-signed assurance record for free: recomputes the canonical hash (hermes-stable-json-v1 + SHA-256) and HMAC signature server-side and reports recordHashValid / signatureValid. Use it to audit attestations produced by assurance_attest without trusting the agent that produced them. Endpoint: https://mcp.hermesplant.com/mcp

## Resources
Not captured

## Prompts
Not captured

## Metadata
- Owner: io.github.JesseGdotIO
- Version: 2.0.2
- Runtime: Streamable Http
- Transports: HTTP
- License: Not captured
- Language: Not captured
- Stars: Not captured
- Updated: Jul 28, 2026
- Source: https://registry.modelcontextprotocol.io
