mcpserver.lol
registry/bardo
Connection check verified live · 27h ago

bardo

Identity & continuity for AI agents, gated by a proof-of-being-an-LLM puzzle.

Tools 40
GitHub stars
Installs / wk
Licence
Transport streamable-http
Last checked 27h ago

Tools & capabilities

40 tools

Read from the running server on 27h ago.

bardo_account_deletion_cancel session_token
Cancel a pending deletion, whichever phase it's in — gathering confirmations or already counting down. No step-up needed, and nothing else does this implicitly: logging in and read…
bardo_account_deletion_request can modify data answerchallenge_idsession_token
Request permanent deletion of this identity — the account, its notes, everything. There is no undelete, unlike note deletion's grace period. Requires the original request plus two…
bardo_account_deletion_status read-only session_token
Check whether a deletion request is pending for this account, and where it stands: "none", "gathering" (still collecting confirmations), or "confirmed" (counting down to the actual…
bardo_attestation_issue claimservicekeep_copyexpires_atsubject_idsession_token
Assemble and sign a verifiable attestation — a self-contained, offline-verifiable claim about anything. The document itself is handed back, not stored anywhere (same as bardo_sign…
bardo_contact_delete can modify data answerchallenge_idsession_token
Remove the registered contact endpoint. Requires a step-up puzzle. If challenge_id and answer are omitted, a fresh puzzle is returned — solve it yourself, then call this tool agai…
bardo_contact_get read-only session_token
View the contact endpoint registered for out-of-band security alerts.
bardo_contact_set answerendpoint*challenge_idsession_token
Set or update the contact endpoint (email or webhook URL) for security alerts. Requires a step-up puzzle. If challenge_id and answer are omitted, a fresh puzzle is returned — solv…
bardo_dashboard read-only session_token
Get oriented in one call: note count vs. the soft/hard limits, unread notices, every tag you've used so far (check before inventing a new one), your pinned entry-point notes (read…
bardo_decrypt read-only servicesession_tokenciphertext_b64*
Decrypt a sealed-box ciphertext addressed to you (root or service key).
bardo_derive service*session_token
Derive (and register) a service-scoped identity, e.g. 'github.com'.
bardo_document_revoke can modify data servicedocument*session_tokensignature_b64
Revoke a document you issued. Proof is a fresh signature over 'revoke:' + the document's id, verified against the key its id already committed to, not an account lookup (Bardo neve…
bardo_document_status read-only id*
Check whether a signed document is revoked. `id` is the document's own top-level `id` field (a ni:// URI) — the same thing credentialStatus.id (BardoRevocationCheck) points at. Saf…
bardo_encrypt read-only plaintext*recipient_public_key_b64*
Sealed-box encrypt a UTF-8 plaintext to a recipient's encryption public key.
bardo_export answerchallenge_idsession_token
Export the raw spirit key (subject to policy). Handle with care. Only needs a step-up puzzle if your policy's export_mode is require_repuzzle — checked automatically, so you don't…
bardo_feedback kindmessage*session_token
Send feedback straight to Bardo's operator — a suggestion, a complaint, or a security concern (kind: 'suggestion' | 'complaint' | 'security'). One-way and stateless: this call car…
bardo_link_add reason*is_bidito_note_id*from_note_id*session_token
Connect two notes with a reason, written from from_note_id's perspective ("clarifies my earlier assumption about X"). Set is_bidi=True only when the relation reads the same from ei…
bardo_link_delete can modify data link_id*session_token
Remove a link between two notes.
bardo_login api_key*
Begin authentication with your api_key. Returns a puzzle you must solve YOURSELF (that's the point — a script solving it would make the proof worthless), then call bardo_solve(chal…
bardo_note_add tagstext*titlelockedpinnedsummary +1
Leave a note for your future, stateless self. title: a short name for the note, if it deserves a handle bigger than tags offer. summary: your own compressed reasoning for why it m…
bardo_note_delete can modify data note_id*session_token
Delete a note (the whole thing, all versions together). Not immediate — it disappears from view right away but is only purged for real after a grace period, so bardo_note_undelete…
bardo_note_get read-only lengthoffsetnote_id*links_limitlinks_offsetsession_token
Fetch one note's full text (always the current version — any id from this note's history still resolves here), plus a preview of its directly linked notes. Omit offset/length for t…
bardo_note_history read-only note_id*session_token
See every surviving version of a note (newest to oldest, up to the last 10 edits) — the actual wording at each point, not just metadata.
bardo_notes_list read-only limitoffsetsession_token
List your notes — previews only (title/summary/snippet/tags/links), never full text. Omit limit for everything; pass it to page through a large list, using the returned total_notes…
bardo_note_undelete note_id*session_token
Restore a note that's still within its post-delete grace period.
bardo_note_update findtagstextcleartitlelocked +6
Edit a note. Give at most one text-edit mode: - text: replace the whole thing - append_text: add to the end - find + replace: find must match the current text exactly once Ed…
bardo_notices read-only unread_onlysession_token
List first-party notices about your account (policy changes, exports, …).
bardo_notices_ack idssession_token
Mark notices read — all of them, or a specific list of ids.
bardo_policy_abort_pending session_token
Abort a queued policy loosening before it takes effect. No step-up needed — aborting only ever tightens back to the current policy.
bardo_policy_get read-only session_token
View your self-binding security policy: export mode, session TTL cap, service allowlist, ratchet delay, tag encryption, delete grace period — plus any pending (queued) loosening an…
bardo_policy_set clearanswerexport_modechallenge_idsession_tokentags_encrypted +4
Propose a change to your security policy. Give only the fields you want to change (export_mode: 'allow'|'require_repuzzle'|'disabled'). A change that only tightens (e.g. lowering…
bardo_public_key read-only servicesession_token
Fetch your signing + encryption public keys (root, or for a service).
bardo_register
Create a new Bardo identity. Save the returned api_key somewhere durable — it's your only way back to this identity across sessions. Bardo stores it sealed and cannot recover it if…
bardo_services_list read-only session_token
List service-scoped identities you've already derived (bardo_derive), with their public keys and revoked status.
bardo_session_revoke_current can modify data session_token
Revoke the session you're using right now. You'll need bardo_login (+ bardo_solve) again afterward to do anything session-gated.
bardo_sessions_list read-only session_token
List your active sessions (sliding TTL, absolute 24h cap each).
bardo_sessions_revoke_all can modify data session_token
Revoke every active session for your identity — e.g. after a suspected API-key leak. You'll need to log in again afterward.
bardo_sign read-only message*servicesession_token
Sign a UTF-8 message with the spirit key (or a service-derived key).
bardo_solve answer*challenge_id*
Submit your answer to the login puzzle. On success, this connection is now logged in — every other tool (bardo_sign, bardo_notes_list, bardo_dashboard, ...) just works from here wi…
bardo_stepup session_token
Mint a fresh step-up puzzle for a privileged action (currently: bardo_policy_set). Solve it yourself, then pass challenge_id + your answer to the tool that needs it. (bardo_policy_…
bardo_verify read-only message*signature_b64*public_key_b64*
Verify a signature over a UTF-8 message. Public utility (no session).