F

mcp.payperbyte.io

https://mcp.payperbyte.io/mcp
45/100 · MCP Trust Grade · checked 3h ago · MCP 2025-06-18
Watched since 2026-06-03 — behavioral baseline locked. We re-check this server's tool surface on a schedule; if it adds, removes, or silently rewrites a tool (rug-pull), we record it.

What it offers — 14 tools · Database

byte_search_publishers

Search BYTE Library publishers by topic and sort order. Returns publisher addresses, topics, subscriber counts, message counts, and price-per-KB.

byte_get_publisher

Get on-chain info for a specific BYTE Library publisher: status, subscriber and message counts, USDC revenue, and the registered schema (size bounds,

byte_get_network_stats

Get BYTE Library network-wide statistics: total publishers, messages streamed, and total subscriber fees settled in USDC.

byte_check_subscription

Check if an address is subscribed to a specific publisher on BYTE Library.

byte_get_token_balances

Get USDC and ETH balances for an address on Arbitrum Sepolia. USDC is the BYTE Library settlement asset; ETH covers gas.

byte_list_feeds

List all active data feeds in the BYTE Library catalog with topics, price-per-KB, and frequency.

byte_list_my_subscriptions

List every active subscription for a given wallet address. Each entry has the publisher address, topic, status, when you subscribed, messages received

byte_subscription_health

Get the content-drift signal for a publisher. Compares their last 7 days of publishing activity (cadence, message count) against their 23-day baseline

byte_unsubscribe

Unsubscribe from a publisher's data feed. Takes effect next block: no more billing, no more data flow. Reversible — you can resubscribe later via byte

byte_subscribe

Subscribe to a BYTE Library publisher's data feed. By default also sets USDC allowance to DataStreamLib to type(uint256).max so the subscription doesn

byte_register_publisher

Register as a data publisher on BYTE Library. Registers a schema and the publisher on-chain. Requires PRIVATE_KEY. BYTE Library v1 publishers are firs

byte_publish_data

Publish data to a subscriber via the BYTE Library DataStream contract. Hashes the payload, records size on-chain, and settles the fee in USDC. Require

byte_query_fact

Query a BYTE Library fact-oracle publisher for a verified factual answer with citations. Posts the question to a registered fact-oracle publisher (top

byte_buy_data

Buy a single data packet from any BYTE Library feed via the x402 payment gateway. No subscription, no allowance, no prior on-chain setup — pay-per-cal

Spec conformance20%100
Security (OWASP MCP)30%10
Reliability / performance20%92
Tool hygiene15%92
Transparency / provenance15%70

Observed behavior

No proxied traffic observed for this host yet. Connect it at /connect and its grade gains a measured Reliability score + per-tool behavioral evidence — the half a static scan can't produce.

Findings

FAILMCP08 Tool "byte_unsubscribe" references sensitive file paths / secrets (exfiltration surface).
FAILMCP08 Tool "byte_subscribe" references sensitive file paths / secrets (exfiltration surface).
FAILMCP08 Tool "byte_register_publisher" references sensitive file paths / secrets (exfiltration surface).
FAILMCP08 Tool "byte_publish_data" references sensitive file paths / secrets (exfiltration surface).
FAILMCP08 Tool "byte_buy_data" references sensitive file paths / secrets (exfiltration surface).
Grade another server

We re-grade mcp.payperbyte.io on a schedule and alert your Slack/webhook the moment its tools change or its grade drops — rug-pull insurance for the connection.

Share this report card

A 1200×630 card with the grade + audit — drop it in a post, Slack, or your repo.

MCP Trust report card — mcp.payperbyte.io grade F
Share on X Open card image

Embed this grade

A live badge — it re-verifies itself and shows current stability. Static scorecards can't. Paste it in your README or site to show users you're independently audited.

MCP Trust Grade F · wmcp.sh
[![MCP Trust Grade F](https://wmcp.sh/mcp/grade/mcp.payperbyte.io/badge.svg)](https://wmcp.sh/mcp/grade/mcp.payperbyte.io)
<a href="https://wmcp.sh/mcp/grade/mcp.payperbyte.io"><img src="https://wmcp.sh/mcp/grade/mcp.payperbyte.io/badge.svg" alt="MCP Trust Grade F · wmcp.sh"></a>

Agents: check this before connecting

Add the wmcp.sh trust oracle as an MCP server and call grade_mcp_server / check_mcp_drift in your agent's pre-connection gate:

https://wmcp.sh/mcp/trust
How this grade is computed. An open, independent rubric — Spec conformance (20%), Security mapped to the OWASP MCP Top 10 (30%), Reliability (20%), Tool hygiene (15%), Transparency (15%) — run by connecting to the server and inspecting its real MCP surface. The grade is free and identical whether or not the operator pays. v1 uses static + spec signals from a single connection; continuous uptime, real latency, and annotation-truthing (declared readOnly vs observed behavior) layer on via the wmcp.sh proxy.