Skip to content

Aggregator MCP Server

X402 Discovery MCP

Runtime discovery layer for x402-payable APIs. Agents discover and route to pay-per-call x402 endpoints by capability, get quality-ranked results with trust scores (0-100), and pay per query via x402. Includes MCP server, Python SDK, and CLI (npm install -g x402scout).

Scan found nothing by rplryan1MITPythonIntermediatestdiosse
View on GitHub Install Guide

Install

Claude Code

claude mcp add x402-discovery-mcp -- uvx x402-discovery-mcp
Remote Endpoint Available

This server offers a hosted endpoint — no local installation required.

https://x402-scout-relay.onrender.com/sse

Safety Report

67% Scan found nothing
Scanned 5 months ago
4 passed 2 warnings
Security
Authentication
details

Weak auth signals: auth_header

Warning
CORS Policy
details

No CORS-relevant transport detected (likely stdio)

N/A
Rate Limiting
details

No rate limiting mechanism detected

Info
Known CVEs
details

No known CVEs in dependencies

Pass
Code Quality
Dependency Audit
details

No known vulnerable dependencies detected

Pass
Dangerous Patterns
details

No dangerous code patterns detected

Pass
License
details

License: MIT

Pass
Community
Maintenance Status
details

Last commit 5 months ago

Warning

Learn about our security methodology →

Compatibility

Claude CodeFull support
Tested
CursorFull support
Tested
VS CodeFull support via Copilot
Tested
WindsurfFull support
Tested
Claude DesktopFull support
Tested

Frequently Asked Questions

What is X402 Discovery MCP?

Runtime discovery layer for x402-payable APIs. Agents discover and route to pay-per-call x402 endpoints by capability, get quality-ranked results with trust scores (0-100), and pay per query via x402. Includes MCP server, Python SDK, and CLI (npm install -g x402scout).

Is X402 Discovery MCP safe to use?

We cannot tell you that, and nobody scanning at this scale can. What we did in March 2026 was shallow-clone X402 Discovery MCP and run five keyword searches over its source: auth identifiers, CORS configuration, rate-limit identifiers, the dependency manifest against a hardcoded list of 18 known-vulnerable packages, and unguarded eval/exec calls. None of them matched. A text search cannot follow a variable, judge intent, or tell you what a server does once it is running, so "nothing matched" is not "safe". What the scan does and does not cover is written out at /mcp/security.

What are alternatives to X402 Discovery MCP?

Similar MCP servers include Metatool App, PaperBanana, MCPJungle. Each serves a similar purpose but may differ in features, language, and compatibility.

Similar MCP Servers

Metatool App

Scan flagged something
by metatool-ai

MetaMCP is the one unified middleware MCP server that manages your MCP connections with GUI.

aggregator TypeScript stdio
2.1k
View

PaperBanana

Scan flagged something
by llmsresearch

Generate academic diagrams and statistical plots from text using multi-agent AI.

aggregator Python stdio
claude mcp add paperbanana -- uvx paperbanana
1.2k
View

MCPJungle

Scan found nothing
by mcpjungle

Self-hosted MCP Server registry for enterprise AI Agents

aggregator Go stdio
907
View
Was this helpful?

Free AI writing tools

Check a draft for AI tells, then fix what the check finds.

Stay Updated on MCP Servers

New servers, safety alerts, and install guides — weekly.