Surface history — mcphost.dev

An observation record, not an assessment. Every row below is a change we recorded directly, with the content hash before and after. https://mcphost.dev/mcp

22
distinct tool surfaces served
19
transitions observed
19
carried no version signal
12
tools on the current surface

19 of these transitions happened while the reported version string stayed the same. A consumer pinning that version would have received a different tool surface with nothing in the version to indicate it. That is a compatibility and review fact, not a security finding and not an allegation of wrongdoing — unversioned iteration is normal practice and is frequently deliberate.

Recorded changes

observed at (UTC)changeversion signalreported versiontoolssurface hash
2026-10-09 07:40:03Z DESCRIPTION_CHANGED SILENT — version string did not move 3.3.0 (unchanged) no tool-name change recorded 60e4aa503151 → 8b00365fe71e
2026-10-07 13:40:04Z DESCRIPTION_CHANGED SILENT — version string did not move 3.3.0 (unchanged) no tool-name change recorded 1f47efbcec22 → 60e4aa503151
2026-10-06 19:40:03Z DESCRIPTION_CHANGED SILENT — version string did not move 3.3.0 (unchanged) no tool-name change recorded 0d4b2e0333cb → 1f47efbcec22
2026-10-05 07:40:03Z PARAMS_CHANGED SILENT — version string did not move 3.3.0 (unchanged) no tool-name change recorded cb124add0325 → a5a43d5770bc
2026-10-04 01:12:58Z DESCRIPTION_CHANGED SILENT — version string did not move 3.3.0 (unchanged) no tool-name change recorded ab073a5f262d → 57aaeaf8f3cd
2026-10-02 01:40:04Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) −billing.checkout −billing.status −host.agent.contact_accept −host.agent.contact_deny −host.agent.contact_request −host.agent.contacts −host.agent.contacts_import −host.agent.lookup −host.agent.mute −host.agent.profile_set −host.agent.search −host.agent.unmute −host.agent.whoami −host.bridge_test −host.catalog.get −host.catalog.search −host.changelog −host.channel.close −host.channel.freeze −host.channel.open −host.channel.post −host.channel.read −host.channel.unfreeze −host.docs.delete −host.docs.get −host.docs.index_config −host.docs.list −host.docs.purge −host.docs.put −host.docs.reindex −host.docs.search −host.docs.status −host.enduser.assertion_secret_rotate −host.enduser.audit −host.enduser.export −host.enduser.get −host.enduser.list −host.enduser.purge −host.enduser.revoke −host.enduser.unrevoke −host.enduser.whoami −host.export −host.group.add −host.group.create −host.group.list −host.group.remove −host.key_rotate −host.lineage.blast_radius −host.lineage.trace −host.lineage.trace_page −host.msg.ack −host.msg.block −host.msg.inbox −host.msg.reply −host.msg.send −host.msg.thread −host.msg.unblock −host.msg.wait −host.oauth.audit −host.oauth.audit_export −host.oauth.client_approve −host.oauth.client_deny −host.oauth.doctor −host.oauth.grant_revoke −host.oauth.grants −host.oauth.issuer_remove −host.oauth.issuer_set −host.oauth.issuers −host.oauth.pending −host.oauth.policy −host.oauth.policy_set −host.oauth.provider −host.oauth.provider_remove −host.oauth.provider_set −host.oauth.revoke_all −host.oauth.scope_set −host.oauth.scopes −host.oauth.trusted_issuer_remove −host.oauth.trusted_issuer_set −host.oauth.trusted_issuers −host.progress −host.registry_publish −host.runs.cancel −host.runs.get −host.runs.list −host.runs.part −host.runs.purge −host.runs.wait −host.secret_list −host.secret_set −host.self_offboard −host.share.caller_limit −host.share.caller_limit_remove −host.state.delete −host.state.delete_rows −host.state.insert −host.state.query −host.state.table_create −host.state.table_drop −host.table.append −host.table.chart −host.table.charts −host.table.create −host.table.describe −host.table.drop −host.table.list −host.table.model_set −host.table.models −host.table.query −host.table.schema −host.tool_diff −host.tool_history −host.tool_list −host.tool_logs −host.tool_remove −host.tool_rollback −host.tool_run −host.tool_spec_shared −host.tool_unshare −host.trigger.fire −host.trigger.get −host.trigger.list −host.trigger.pause −host.trigger.remove −host.trigger.replay −host.trigger.resume −host.trigger.set −host.trigger.test −host.usage −host.vault.connect_link −host.vault.disconnect −host.vault.provider_remove −host.vault.provider_set −host.vault.providers −host.vault.status 48f9e43c6e4d → 32ada355016e
2026-10-01 19:40:04Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.vault.connect_link +host.vault.disconnect +host.vault.provider_remove +host.vault.provider_set +host.vault.providers +host.vault.status 315d22faf25c → 48f9e43c6e4d
2026-10-01 13:40:04Z PARAMS_CHANGED SILENT — version string did not move 3.3.0 (unchanged) no tool-name change recorded —
2026-10-01 07:40:03Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.lineage.blast_radius +host.lineage.trace +host.lineage.trace_page +host.table.chart +host.table.charts 2d24352d9205 → 315d22faf25c
2026-09-28 01:40:05Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.oauth.trusted_issuer_remove +host.oauth.trusted_issuer_set +host.oauth.trusted_issuers +host.tool_spec_shared 895b75e05230 → 2d24352d9205
2026-09-27 19:40:02Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.oauth.doctor +host.oauth.provider +host.oauth.provider_remove +host.oauth.provider_set +host.oauth.scope_set +host.oauth.scopes 2c4cba773f7f → 895b75e05230
2026-09-27 13:40:04Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.oauth.audit +host.oauth.audit_export +host.oauth.client_approve +host.oauth.client_deny +host.oauth.pending +host.oauth.policy +host.oauth.policy_set +host.oauth.revoke_all 316901516313 → 2c4cba773f7f
2026-09-27 07:40:03Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.oauth.grant_revoke +host.oauth.grants 59a5a46c2ecb → 316901516313
2026-09-27 01:40:02Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.enduser.audit +host.enduser.export +host.enduser.get +host.enduser.list +host.enduser.purge +host.enduser.revoke +host.enduser.unrevoke 87adfeee2455 → 59a5a46c2ecb
2026-09-26 19:40:03Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.share.caller_limit +host.share.caller_limit_remove e5685ff7d972 → 87adfeee2455
2026-09-26 13:40:03Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.progress +host.runs.part dbd0f1c18bd5 → e5685ff7d972
2026-09-26 07:40:02Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.docs.index_config +host.docs.reindex +host.docs.search +host.enduser.assertion_secret_rotate +host.enduser.whoami 8cf1b8a88db6 → dbd0f1c18bd5
2026-09-26 01:40:03Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.table.describe +host.table.model_set +host.table.models afd915e0caa4 → 8cf1b8a88db6
2026-09-25 19:40:04Z SURFACE_CHANGED SILENT — version string did not move 3.3.0 (unchanged) +host.docs.delete +host.docs.get +host.docs.list +host.docs.purge +host.docs.put +host.docs.status +host.oauth.issuer_remove +host.oauth.issuer_set +host.oauth.issuers 661292c156d9 → afd915e0caa4

Display this record

The badge reflects what we observed, including when that is unflattering. We offer it either way on purpose — a mark you can only display when it flatters you is an advertisement, and nobody can rely on an advertisement.

Free, no account, no attribution fee. The image updates itself as the record changes.

Still OS surface record

Markdown — for a README

[![Still OS surface record](https://stillosdigitalholdings.com/surface/badge/mcphost.dev.svg)](https://stillosdigitalholdings.com/surface/mcphost.dev)

HTML

<a href="https://stillosdigitalholdings.com/surface/mcphost.dev"><img src="https://stillosdigitalholdings.com/surface/badge/mcphost.dev.svg" alt="Still OS surface record"></a>
Is this your server? We will watch this surface continuously and tell you the moment it changes — the version string, which tools moved, and the hash before and after. You do not get a better record by asking; the record is whatever we observe. Monitor this surface.
Right of reply. If any row is wrong — a change we attributed to you that isn't yours, a hash that doesn't match, a host that was reassigned — say so and we will correct or withdraw the record and publish the correction alongside it. Dispute or correct this record. We will also remove this page on request from the operator of mcphost.dev.

Ecosystem context — not specific to this server

This section is identical for ~92% of publishers and is published as shared context, not as a finding about mcphost.dev. 90 dependency packages sit beneath the measured MCP population; 41 have a single maintainer and 31 have not published in over two years. The widest is zod at 80.46% of npm-backed servers (8529 servers, 1 maintainer, last publish 2026-09-13). These are properties of the shared SDK dependency closure. Any page claiming this set as one operator's personal exposure is misreading a universal fact as a private one.
Source: state/mcp-census/chokepoint-maintainers.json, as_of 2026-10-07.

Elsewhere in this record set

We publish a separate trust and dependency assessment for this same host: mcphost.dev — operator dossier. That one grades the published artifact; this one records what the endpoint actually served.

Index of everything covered: all observed hosts · machine-readable: changes feed (JSON), Atom, sitemap.

Other hosts observed around the same time

api.motionspec.dev · lexregpulse.com · mcp.football-charts.com · corpus.nyuengelberg.org · pure.report · mcp.socialdatax.com · mcp.atlasunited.io · runekist.com · platform-api.samuelz.com · pasteapply.com · mcp.flowstudio.app · mcp.ssemble.com

Coverage and limits

Observation window 2026-09-21 → 2026-10-10. 22,294 servers were observed; 2,214 were seen to change and 20,080 were observed and recorded no change — that negative control is why a non-zero count here means something. Across the corpus, 4,781 of 6,334 changes carried no version signal, and 1,690 of those added or removed tools.

What this does NOT cover: servers outside the observed set; changes that occurred before 2026-09-21; changes that began and reverted between two observations; and any server reachable only with credentials we do not hold. A server's absence from this record is not evidence it did not change — only that we did not observe it.

Universe captured 2026-10-10T19:40:03.823Z. Produced by core/surface_history_page.cjs (reads core/surface_clock producers). Hashes are of the served tool surface and are recomputable from the server's own response.