kristo-intelligence-6 (hristovdimitri2-hub/kristo-intelligence-6) is an MCP server listed on the M8ven Trust Index. It scores 60 out of 100, grade C. No publisher has claimed this listing.

C
Caution
60/100

kristo-intelligence-6

Kristo Intelligence — AI-powered DeFi trading signals API on Base. x402 pay-per-call (.05 USDC) + /mo VIP. Machine-readable discovery: x402.json, OpenAPI, MCP, llms.txt. No API keys — the HTTP 402 IS the checkout.

Caution. Specific findings reduced this grade. They are listed on the page. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.

How we verified

⚡ Live Monitored: not connected

Verified is a snapshot. Live keeps it current, and builds your track record.

⚡ Connect GitHub → continuous verification on every pushwhy connect →

Who stands behind it

hristovdimitri2-hub

Source: github_repo_search

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →

Install from

The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.

// key findings
🚨
Secret credentials may flow to a network call
4 flows detected: TELEGRAM_BOT_TOKEN, FARCASTER_BOT_TOKEN, TELEGRAM_WEBHOOK_SECRET. We can’t prove the destination matches the brand the credential belongs to.
🔐
You'll be asked for 21 credentials: COINGECKO_API_KEY, FARCASTER_BOT_TOKEN, TELEGRAM_BOT_TOKEN, SESSION_SECRET, WALLET_PRIVATE_KEY, BASE44_API_KEY, ADMIN_API_TOKEN, RESEARCH_INGEST_TOKEN, AGENT_ACCESS_TOKEN_SECRET, TELEGRAM_WEBHOOK_SECRET, STRIPE_API_KEY, GLM_API_KEY, OPENROUTER_API_KEY, TWITTER_API_KEY, TWITTER_API_SECRET, TWITTER_ACCESS_TOKEN, TWITTER_ACCESS_TOKEN_SECRET, TWITTER_BEARER_TOKEN, STRIPE_WEBHOOK_SECRET, CDP_API_KEY_SECRET, X402_FACILITATOR_API_KEY_SECRET
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// environment variables
To run this server yourself, you supply these values. They go in your own MCP client configuration and stay on your machine. The secret label means the value is sensitive, not that the server mishandles it.
🔐 secretCOINGECKO_API_KEY
🔐 secretFARCASTER_BOT_TOKEN
configMARKET_SCAN_INTERVAL
configMARKET_STATE_FILE
🔐 secretTELEGRAM_BOT_TOKEN
configTELEGRAM_CHAT_ID
configKRISTO_FREE_TIER_LIMIT
configLOG_LEVEL
🔐 secretSESSION_SECRET
configKRISTO_MAX_CONTENT_LENGTH_BYTES
configTELEGRAM_VIP_CHAT_ID
🔐 secretWALLET_PRIVATE_KEY
configBASE_USDC_CONTRACT
configBASE_RPC_URL
configBLOCKCHAIN_POLL_INTERVAL
configBLOCKCHAIN_RETRY_INTERVAL
configAGENT_POLL_INTERVAL
🔐 secretBASE44_API_KEY
configCATALOG_ANALYTICS_INTERVAL_SECONDS
configSTRIPE_PAYMENT_SNAPSHOT_INTERVAL_SECONDS
configKRISTO_DASHBOARD_RETRO_DAYS
configKRISTO_DASHBOARD_SCAN_INTERVAL
configKRISTO_DASHBOARD_PAYAPI_INTERVAL
configWHALEFLOW_SCAN_INTERVAL
configWHALEFLOW_BACKFILL_HOURS
configCATALOG_CLICK_COOLDOWN_SECONDS
🔐 secretADMIN_API_TOKEN
🔐 secretRESEARCH_INGEST_TOKEN
🔐 secretAGENT_ACCESS_TOKEN_SECRET
configMIN_PAYMENT_CONFIRMATIONS
configKRISTO_C2_LAG_WAIT_SECONDS
configKRISTO_DEMO_SURFACES
🔐 secretTELEGRAM_WEBHOOK_SECRET
🔐 secretSTRIPE_API_KEY
configAPP_PUBLIC_URL
configWHALE_WINDOW_HOURS
configWHALEFLOW_LIMIT
configKEEPALIVE_INTERVAL_SECONDS
configKEEPALIVE_PUBLIC_URL
configWEBHOOK_PUBLIC_URL
configKRISTO_WORKER_MODE
configKRISTO_DISABLE_BACKGROUND_THREADS
configKRISTO_RENDER_SERVICE_ID
configBASE_FEE_RECEIVER
configBASE_CHAIN_ID
configBASE_FEE_AMOUNT_USDC
configGLM_API_BASE
🔐 secretGLM_API_KEY
🔐 secretOPENROUTER_API_KEY
configGLM_MODEL
configKRISTO_STATS_PRICE
configKRISTO_SALES_PRICE
configKRISTO_ARB_PRICE
configKRISTO_RUG_PRICE
configKRISTO_WHALE_PRICE
configKRISTO_SIGNAL_PRICE
configKRISTO_WHALEFLOW_PRICE
configKRISTO_VIP_ANALYSIS_PRICE
configDISCORD_WEBHOOK_URL
configDISCORD_WEBHOOK_URLS
🔐 secretTWITTER_API_KEY
🔐 secretTWITTER_API_SECRET
🔐 secretTWITTER_ACCESS_TOKEN
🔐 secretTWITTER_ACCESS_TOKEN_SECRET
🔐 secretTWITTER_BEARER_TOKEN
configWHALE_THRESHOLD
configKRISTO_DASHBOARD_DB
configSALES_CHUNK_BLOCKS
configWHALEFLOW_CHUNK_BLOCKS
🔐 secretSTRIPE_WEBHOOK_SECRET
configKRISTO_ALLOW_MOCK_PAYMENTS
configWALLET_ADDRESS
configARB_SCAN_INTERVAL
configARB_MIN_LIQUIDITY
configARB_MIN_SPREAD
configARB_MAX_OPPORTUNITIES
configBASE44_API_BASE
configMARKET_DATA_CACHE_TTL_SECONDS
configMARKET_DATA_STALE_TTL_SECONDS
configCOINGECKO_MAX_ATTEMPTS
configCOINGECKO_BACKOFF_BASE_SECONDS
configCOINGECKO_BACKOFF_MAX_SECONDS
configCOINGECKO_COOLDOWN_MAX_SECONDS
configCOINGECKO_TIMEOUT_SECONDS
configX402_FACILITATOR_TIMEOUT
configX402_FACILITATOR_URL
configCDP_API_KEY_ID
configX402_FACILITATOR_API_KEY_ID
🔐 secretCDP_API_KEY_SECRET
🔐 secretX402_FACILITATOR_API_KEY_SECRET
configL402_LND_ADDRESS
configL402_LND_MACAROON
configMARKET_DATA_CACHE_MAX_ENTRIES
configSENTINEL_STATE_FILE
configSENTINEL_ENABLED
configKRISTO_API_BASE
configTELEGRAM_SALES_INTERVAL
configAGENT_AUTO_EXECUTE
configAGENT_MAX_POSITION_USD
configAGENT_MAX_EXPOSURE_USD
configAGENT_MIN_APY
configAGENT_MAX_RISK
configAGENT_MAX_GAS_GWEI
config_CURRENT_GAS_GWEI
configKRISTO_NEXUS_MIN_CLICKS_GAP
configKRISTO_NEXUS_MAX_REVENUE_SHARE
Deployment configuration, supplied by whoever hosts the server. Users are not asked for these.
deployPORT
deployDATABASE_URL
// quality suggestions

Tools detected

No tools extracted — insufficient content to verify at Tier 2

Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.

// full audit trail
The findings above are the summary. The full trail, every check we ran, each deduction, the network hosts observed and the dependency advisories, goes to verified publishers, along with an alert whenever a new one lands. Verified publishers can also review each finding and dispute it in one click. Publisher corrections have sharpened several of our checks this month, because the maintainer knows the codebase better than any scanner.
// improvement guidance — verified publishers only
We have 0 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Verified](https://m8ven.ai/badge/mcp/hristovdimitri2-hub/kristo-intelligence-6?variant=verified)](https://m8ven.ai/mcp/hristovdimitri2-hub/kristo-intelligence-6)
Shows verification status without the grade. Want the grade badge instead? Remove ?variant=verified from the URL.
commit: 976c7350c6e10affd7f72cbdd6161a3944a4b98d
code hash: b341694d49acb518563729dd98f75a7c8701963a5507736a1a2563d11de134e3
view raw JSON →
Check MCPs from inside your assistant
Tool Check · MCP

Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.

https://m8ven.ai/api/mcp/tool-check
check_toolsearch_toolscompare_toolsrecommend_alternativescheck_publisherreport_concern
How to add it →Free · no account needed · works in any MCP client