Publish a server manifest — transport, command or URL, allowed tools — and it is signed with the workspace key. Agents point at a name and a range like ^1.2 instead of pasting configs, resolve the newest matching version at run time, and the registry reports drift when a running agent is pinned behind. A CLI publishes from any CI.
Early access — turned on per workspace. Ask us to enable it for yours.
- Semver-versioned manifests with deprecation and drift reporting
- Ed25519 signatures with a public JWKS endpoint for offline verification
- Per-manifest allowed-tool lists enforced at connection time
- Public read routes and a CLI, so any platform can consume the registry