three.ws Provenance MCP Server
by nirholasio.github.nirholas/provenance-mcpv0.1.2
Append-only, signed, on-chain-verifiable agent action log — record and audit what agents did.
context tax
queued
security
queued
cold start
queued
freshness
Active2d ago
Install three.ws Provenance MCP server
Install in Claude Code
claude mcp add provenance-nirholas -e THREE_WS_TOKEN='<three-ws-token>' -e THREE_WS_SIGNER_KEY='<three-ws-signer-key>' -- npx -y @three-ws/provenance-mcpInstall in Cursor
{
"mcpServers": {
"provenance-nirholas": {
"command": "npx",
"args": [
"-y",
"@three-ws/provenance-mcp"
],
"env": {
"THREE_WS_TOKEN": "<three-ws-token>",
"THREE_WS_SIGNER_KEY": "<three-ws-signer-key>"
}
}
}
}Add to ~/.cursor/mcp.json (global) or .cursor/mcp.json (project).
Install in Claude Desktop
{
"mcpServers": {
"provenance-nirholas": {
"command": "npx",
"args": [
"-y",
"@three-ws/provenance-mcp"
],
"env": {
"THREE_WS_TOKEN": "<three-ws-token>",
"THREE_WS_SIGNER_KEY": "<three-ws-signer-key>"
}
}
}
}Settings → Developer → Edit Config (claude_desktop_config.json), then restart.
Install in VS Code
{
"servers": {
"provenance-nirholas": {
"type": "stdio",
"command": "npx",
"args": [
"-y",
"@three-ws/provenance-mcp"
],
"env": {
"THREE_WS_TOKEN": "<three-ws-token>",
"THREE_WS_SIGNER_KEY": "<three-ws-signer-key>"
}
}
}
}Add to .vscode/mcp.json in your workspace.
Install in Windsurf
{
"mcpServers": {
"provenance-nirholas": {
"command": "npx",
"args": [
"-y",
"@three-ws/provenance-mcp"
],
"env": {
"THREE_WS_TOKEN": "<three-ws-token>",
"THREE_WS_SIGNER_KEY": "<three-ws-signer-key>"
}
}
}
}Add to ~/.codeium/windsurf/mcp_config.json.
Configuration
| Variable | Required | Secret | Description |
|---|---|---|---|
| THREE_WS_BASE | — | — | Base URL of the three.ws API that serves the agent-actions ledger. Override only when self-hosting or targeting a preview deployment. |
| THREE_WS_TIMEOUT_MS | — | — | Per-request timeout in milliseconds for the ledger reads/appends. |
| THREE_WS_TOKEN | yes | yes | Bearer token authenticating every call — a three.ws API key (sk_live_…) or an OAuth access token. The ledger is owner-scoped: you can read and append actions only for agents your token owns. Required for all three tools. Treat like a password. |
| THREE_WS_SIGNER_KEY | — | yes | Optional 0x-prefixed EVM private key. When set, append_agent_action ERC-191-signs each action so anyone can ecrecover the signer and verify authorship on-chain. A per-call `signer_key` arg overrides it. Omit to append unsigned. Treat like cash. |
Freshness
Active — last maintenance signal 2d ago. The newest of the signals below sets the band.
Last commit (default branch)
2026-10-08 · 2d ago · GitHub
Latest release
2026-09-30 · 10d ago · GitHub · v1.5.2
Package published
no data · npm/PyPI
Registry entry updated
2026-08-19 · 51d ago · official registry · v0.1.2
FAQ
›How do I install the three.ws Provenance MCP server in Claude Code?
Run: claude mcp add provenance-nirholas -e THREE_WS_TOKEN='<three-ws-token>' -e THREE_WS_SIGNER_KEY='<three-ws-signer-key>' -- npx -y @three-ws/provenance-mcp. For Cursor, VS Code, Claude Desktop and Windsurf, use the install tabs above.
›Does three.ws Provenance require an API key?
Yes. It expects THREE_WS_TOKEN, THREE_WS_SIGNER_KEY, of which 2 are secrets.
›Can I use three.ws Provenance as a remote (hosted) MCP server?
No hosted endpoint is published; it runs locally over stdio.
›Is three.ws Provenance in the official MCP registry?
Yes, as io.github.nirholas/provenance-mcp.