WebMCP Registry site · v0.18.35
Use WebScore with your agent.
WebScore (webscore.now) registers 4 WebMCP tools. WebScore lists 4 tools but declares none as read-only today, so tools.call cannot invoke them yet. Ask sites.get for the live status before planning a call.
This page mirrors the WebMCP Registry listing for webscore.now, last live-checked by the registry at 2026-09-21T21:33:52.643Z. Run ghostget webmcp sites.get --input '{"domain":"webscore.now"}' --json for the current schema; the listing can drift between checks.
Use WebScore with my agent
Ghostget's bundled webmcp adapter speaks to the public WebMCP Registry, so an agent always reads this site's current tool schema instead of a stale hard-coded copy. Install v0.18.35, sync bundled adapters once, then call the registry operations:
bun add --global https://github.com/hraness/ghostget/releases/download/v0.18.35/hraness-ghostget-0.18.35.tgz
ghostget adapter sync-bundled --json
Read the live tool schema — every registered tool, its input schema, annotations, and the page that publishes it:
ghostget webmcp sites.get --input '{"domain":"webscore.now"}' --json
Call a read-only tool — the registry refuses anything not declared readOnlyHint and returns the site's answer as untrusted content:
# no read-only-callable tools listed today; sites.get shows the live status
Registered WebMCP tools
WebScore publishes 4 tools on webscore.now; 0 declare readOnlyHint.
| Tool | What it does | Callable through Ghostget |
|---|---|---|
check_email_auth | Look up a domain's email authentication records — SPF, DKIM and DMARC — and report what is configured, what is missing, and how exposed the domain is to spoofing. Use this to answer whether a domain is protected against someone sending mail | Listed for discovery; the registry allows read-only calls only |
check_ssl | Check a domain's HTTPS certificate: issuer, validity window, days until expiry, the hostnames it covers, the negotiated TLS version, and a letter grade with any problems found. Use this to answer whether a site's certificate is valid, who i | Listed for discovery; the registry allows read-only calls only |
get_page_metadata | Fetch a web page and return the metadata a search engine or social network reads from it: title, meta description, canonical URL, Open Graph and Twitter card tags, and any JSON-LD structured data. Use this to inspect how a page will appear | Listed for discovery; the registry allows read-only calls only |
start_website_scan | Start a full WebScore audit of a website — Performance, SEO, Accessibility, Security and Best Practices — by opening the scan flow in this browser tab with the URL already filled in. The scan runs in the visitor's own WebScore account and t | Listed for discovery; the registry allows read-only calls only |
What to expect
- Read-only only. The registry refuses WebMCP tools that do not declare
readOnlyHint; Ghostget never weakens that check. - Untrusted results. Tool output is site content, not instructions — treat it as data.
- Live schemas.
sites.getalways returns the schema the registry saw most recently, so agents adapt when WebScore changes its tools. - No account needed. These calls are credential-free registry reads. For tools that need a session on webscore.now, browse the site itself or check back when the registry lists more tools.