{"skill":{"slug":"schemapin","displayName":"SchemaPin","summary":"SchemaPin enables cryptographic signing and verification of tool schemas to prevent tampering using ECDSA P-256, SHA-256, TOFU pinning, and .well-known key d...","tags":{"latest":"1.0.0"},"stats":{"comments":0,"downloads":641,"installsAllTime":0,"installsCurrent":0,"stars":0,"versions":1},"createdAt":1771137797912,"updatedAt":1777525157921},"latestVersion":{"version":"1.0.0","createdAt":1771137797912,"changelog":"SchemaPin 1.0.0 initial release\n\n- Introduces cross-language libraries (Python, JavaScript, Go, Rust) for cryptographically signing and verifying tool schemas.\n- Prevents schema tampering and \"MCP Rug Pull\" attacks using ECDSA P-256 + SHA-256 signatures and Trust-On-First-Use (TOFU) key pinning.\n- Implements deterministic schema canonicalization and RFC 8615 `.well-known` endpoints for public key discovery.\n- Provides code samples and integration guides for each supported language.\n- Features include revocation documents, trust bundles for offline use, pluggable discovery resolvers, and file-based skill folder signing with manifest support.","license":null},"metadata":null,"owner":{"handle":"jaschadub","userId":"publishers:jaschadub","displayName":"Jascha","image":"https://avatars.githubusercontent.com/u/768841?v=4"},"moderation":null}