DRIFTSEAL/ 01
TECHNICAL NOTES / V0.1

MCP drift monitoring

An approved MCP tool surface is a snapshot. Monitoring checks whether that approval still describes the observed component.

Baseline the contract

Capture tool names, normalized descriptions, input schemas, annotations, source identity and capability indicators. Deterministic key ordering keeps reordered JSON from appearing as schema drift.

Choose the right target

Watch an unversioned npm/PyPI coordinate for new releases, a pinned version for artifact changes, a repository for default-branch commits, or a supported public endpoint for advertised tool metadata. These observe different things; none sees all runtime behavior.

What a clean result means

DriftSeal provides automated technical analysis and monitoring. It does not guarantee that software is secure. A clean DriftSeal result means only that no material issue or drift was detected by the active ruleset and coverage available during that scan.

Establish your baseline.

Inspect a public component or use the local CLI for private source.

Scan a component — free ↗
YOUR TRUST LEDGER

Keep watch.

Sign in with a one-time email link. No password to remember.