{"servers":[{"server":{"$schema":"https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json","name":"dev.weakspot/weakspot","description":"Audit Solidity and Rust smart contracts from your editor. Pays per audit in USDC over x402.","version":"0.1.1","websiteUrl":"https://weakspot.dev","packages":[{"registryType":"npm","identifier":"weakspot-mcp","version":"0.1.1","transport":{"type":"stdio"},"environmentVariables":[{"description":"Private key of a funded Base wallet. This server SPENDS REAL USDC from it with no human in the loop — use a fresh wallet funded with only what you are willing to lose, never a personal or deployer key. Only weakspot_audit needs it; the pricing, status and wallet-status tools work without one.","format":"string","isSecret":true,"name":"WEAKSPOT_PRIVATE_KEY"},{"description":"Hard cap in USD on any single audit (default 4, the highest tier). Checked twice: against the tier price, and again against the amount the server actually quotes. An LLM decides when to call the paying tool, so this is the main spend control.","format":"number","default":"4","name":"WEAKSPOT_MAX_USD"},{"description":"Base URL of the Weakspot deployment to use. Defaults to https://weakspot.dev; override to point at staging or a self-hosted instance.","format":"string","default":"https://weakspot.dev","name":"WEAKSPOT_URL"},{"description":"Base RPC endpoint, used only to read the wallet's USDC balance in weakspot_wallet_status. Nothing else needs it.","format":"string","name":"WEAKSPOT_RPC_URL"}]}]},"_meta":{"io.modelcontextprotocol.registry/official":{"status":"active","statusChangedAt":"2026-09-05T11:51:20.712038Z","publishedAt":"2026-09-05T11:51:20.712038Z","updatedAt":"2026-09-05T11:51:20.712038Z","isLatest":true}}}],"metadata":{"count":1}}
