A thin MCP server (one Cloudflare Worker) exposes Aether's real verification engine to Claude Desktop, ChatGPT, and any MCP client. Paste an AI answer, get a signed, trust-scored warrant — no regex, no in-memory state, the attestation key never leaves Base44.
The Worker is a transport only. When Claude calls verify_claim, the Worker forwards it to your Base44 warrantApi function, which:
sf2x_attestation_key (the secret stays in Base44),warrant_id + lineage_id + the signed warrant.A KV cache lets explain_verdict / get_warrant retrieve prior decisions without a second tribunal run. Quota is enforced upstream by warrantApi per API key.
Verify an AI-generated answer for hallucinations. Runs the full tribunal (proposer/critic/verifier + red-team), returns a calibrated trust score, verdict, and a cryptographically signed warrant persisted to Base44.
{ "text": "<AI response>", "domain": "Medicine", "sources": [{ "url": "https://..." }] }{ "verification_id": "...", "warrant_id": "...", "verdict": "contested", "trust_score": 62, "certified": true, "warrant_signed": true }Explain a prior verification decision. Returns the verdict, trust score, and certification status for a given verification id.
{ "verification_id": "<id from verify_claim>" }{ "verification_id": "...", "verdict": "contested", "trust_score": 62, "certified": true, "certification": "certified" }Retrieve the full signed warrant — the durable proof artifact with premises, signature, and expiry.
{ "verification_id": "<id from verify_claim>" }{ "warrant_id": "...", "signed_hash": "...", "premises": [...], "sources": [...], "certified": true }Full instructions in src/mcp-worker/README.md.
Paste your deployed Worker URL + token below. The Claude Desktop config and test command update automatically.
{
"mcpServers": {
"aether": {
"url": "https://aether-mcp.YOUR-SUBDOMAIN.workers.dev",
"headers": {
"Authorization": "Bearer YOUR_AETHER_MCP_TOKEN"
}
}
}
}curl -X POST https://aether-mcp.YOUR-SUBDOMAIN.workers.dev \
-H "Authorization: Bearer YOUR_AETHER_MCP_TOKEN" \
-H "Content-Type: application/json" \
-d '{"jsonrpc":"2.0","id":1,"method":"tools/list"}'• Bearer-token auth on the Worker (your AETHER_MCP_TOKEN); the Aether API key is a separate server-side secret.
• SSRF guard rejects non-http(s) and private/internal source URLs before they reach the verifier.
• The attestation key never leaves Base44 — signing happens inside the warrantApi function, not the Worker.
• Quota + rate limits are enforced upstream by warrantApi per API key.
The Worker calls warrantApi with your Aether API key. Generate one in the Portal, then set it as AETHER_API_KEY in the Worker.