{
  "$schema": "https://modelcontextprotocol.io/schema/mcp-discovery.json",
  "name": "cloak-kms-agent-tools",
  "description": "Cloakapps KMS exposed as an MCP server. HSM-backed key management and cryptographic operations callable by AI agents under human-set policy.",
  "vendor": {
    "name": "Cloakapps",
    "url": "https://www.cloakapps.com"
  },
  "mcpServers": [
    {
      "name": "cloak-kms",
      "endpoint": "https://kms.cloakapps.com/kms/mcp",
      "transport": "streamable-http",
      "protocolVersion": "2025-06-18",
      "discoveryDocument": "https://kms.cloakapps.com/kms/mcp/info",
      "authentication": {
        "type": "bearer",
        "issuer": "https://keycloak.cloakapps.com/realms/cloakapps",
        "credentialProvisioning": "https://kms.cloakapps.com/console/agent-access"
      },
      "tools": [
        "kms_list_masterkeys",
        "kms_read_public_key",
        "kms_create_masterkey",
        "kms_delete_masterkey",
        "kms_sign",
        "kms_verify",
        "kms_encrypt",
        "kms_decrypt",
        "kms_ecdh_derive"
      ]
    }
  ],
  "humanReadableDocs": "https://www.cloakapps.com/agents.html",
  "agentDeveloperGuide": "https://www.cloakapps.com/agentic.html",
  "llmsTxt": "https://www.cloakapps.com/llms.txt",
  "receipts": {
    "spec": "https://github.com/cloakapps/cloakapps-docs/blob/main/mcp-server/receipts-spec.md",
    "schema": "https://verify.cloakapps.com/schemas/receipt-v1.json",
    "recommendedOperations": "https://verify.cloakapps.com/schemas/receipt-operations-recommended.json",
    "jwks": "https://verify.cloakapps.com/.well-known/cloakapps-receipt-keys.json",
    "verifyUrl": "https://www.cloakapps.com/verify.html"
  }
}
