M8ven delivers independent trust scores for machine code packages (MCPs) and businesses, enabling agents and marketplaces to verify security, maintenance, and reputation before integration or purchase. Its platform runs static analysis, CVE scanning, capability checks, and publisher verification through two APIs—Tool Trust for MCPs and Business Trust for brands—producing results in seconds, with over 39,500 MCPs and 1.3 million businesses already evaluated.
Funding
Funding not disclosed
Founders
Product
Problem
Developers and automated agents that integrate third‑party micro‑service components (MCPs) or interact with external businesses lack a reliable, machine‑readable trust signal. Existing reviews and star ratings are designed for human interpretation and are often slow, subjective, or vulnerable to manipulation, leading to security, maintenance, and reputational risks.
Solution
M8ven delivers independent trust scores for both MCPs and businesses through a single analysis engine exposed via two REST APIs. The platform performs static code analysis, technology‑stack inspection, known vulnerability (CVE) scanning, capability mismatch detection, and publisher verification to generate structured, explainable verdicts in seconds. Scores are calculated solely from observed behavior and cannot be purchased or influenced by the subject. Agents can query these scores programmatically before installing a component, making a purchase, or establishing a connection, enabling automated risk assessment without manual review. The service offers a free tier for basic lookups and a paid tier that provides detailed violation histories, factor breakdowns, watchlist alerts, and downloadable reports.
Target Audience
Primary customers are marketplaces, fraud‑detection services, AI‑driven shopping agents, and developers who need to assess the trustworthiness of third‑party APIs or online merchants before integration or transaction.
Features
- Independent trust scores for every micro‑service component and business, evaluated across security, maintenance, and reputation dimensions
- Static source‑code analysis and technology‑stack profiling to detect known vulnerabilities and capability mismatches
- Publisher verification and reputation checks based on observed behavior rather than self‑reported claims
- Real‑time API responses (≈15 seconds) suitable for automated agent workflows
- Structured, explainable verdicts that agents can parse without additional translation layers
- Free tier for casual lookups and a paid Plus tier ($5 per month) with full violation details, watchlist alerts, and downloadable reports
- Enterprise‑grade custom pricing and feature extensions for large‑scale marketplaces or fraud‑detection platforms