🎩 You're Invited:Meet the Socket team at Black Hat in Las Vegas, August 3-6.RSVP
Sign In

@signatrust/mcp-server

Package Overview
Dependencies
Maintainers
1
Versions
4
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

@signatrust/mcp-server

Model Context Protocol server for the SignaTrust document signing API

latest
Source
npmnpm
Version
0.3.2
Version published
Maintainers
1
Created
Source

@signatrust/mcp-server

Model Context Protocol (MCP) server for the SignaTrust document signing API. Enables AI assistants like Claude to create envelopes, manage templates, check signing status, and verify blockchain anchors via natural language.

Quick Start

Claude Code

claude mcp add signatrust -- npx -y @signatrust/mcp-server

Then set your API key in the MCP server environment.

Claude Desktop

Add to your claude_desktop_config.json:

{
  "mcpServers": {
    "signatrust": {
      "command": "npx",
      "args": ["-y", "@signatrust/mcp-server"],
      "env": {
        "SIGNATRUST_API_KEY": "sk_live_your_key_here"
      }
    }
  }
}

Cursor

Add to ~/.cursor/mcp.json (global) or .cursor/mcp.json (per-project):

{
  "mcpServers": {
    "signatrust": {
      "command": "npx",
      "args": ["-y", "@signatrust/mcp-server"],
      "env": {
        "SIGNATRUST_API_KEY": "sk_live_your_key_here"
      }
    }
  }
}

VS Code

Add to .vscode/mcp.json (note the top-level key is servers, not mcpServers):

{
  "servers": {
    "signatrust": {
      "command": "npx",
      "args": ["-y", "@signatrust/mcp-server"],
      "env": {
        "SIGNATRUST_API_KEY": "sk_live_your_key_here"
      }
    }
  }
}

To keep the key out of the file, use an input prompt instead of env:

{
  "inputs": [
    { "id": "signatrust-key", "type": "promptString", "description": "SignaTrust API key", "password": true }
  ],
  "servers": {
    "signatrust": {
      "command": "npx",
      "args": ["-y", "@signatrust/mcp-server"],
      "env": { "SIGNATRUST_API_KEY": "${input:signatrust-key}" }
    }
  }
}

Available Tools

ToolDescriptionRequired Scope
list_envelopesList envelopes with status filter and paginationenvelopes:read
get_envelopeGet full envelope details (signers, docs, blockchain)envelopes:read
create_envelopeCreate and send envelope for signing. Accepts documentIds (after upload_document) or templateId (backend copies the template). Supports three-tier securityLevel.envelopes:write
list_templatesList available document templatestemplates:read
upload_documentRead a local file and upload it to SignaTrust, returning a document ID for create_envelopedocuments:write
download_documentGet a time-limited pre-signed URL to download a document (e.g. the executed PDF)documents:read
analyze_documentRun AI contract analysis on an envelope (Gemini-powered risk/sentiment review, plan-gated)ai:analyze
verify_blockchainVerify Solana anchor and return composite hash + file hash + explorer URLenvelopes:read
get_evidenceGet the full court-ready evidence bundle (envelope, signers, audit trail, blockchain verification)envelopes:read

Three-tier security. create_envelope accepts securityLevel: STANDARD (bearer token only), VERIFIED (adds SMS/email OTP — recommended for employment, vendor, or healthcare consent), or CERTIFIED (adds WebAuthn biometric + device binding — recommended for real estate, high-value, or regulatory signings).

API Key Scopes

Create an API key at Settings > API Keys in your SignaTrust dashboard. Assign scopes based on what tools you need:

ScopeTools Enabled
envelopes:readlist_envelopes, get_envelope, verify_blockchain, get_evidence
envelopes:writecreate_envelope
templates:readlist_templates
documents:writeupload_document
documents:readdownload_document
ai:analyzeanalyze_document

Environment Variables

VariableRequiredDefaultDescription
SIGNATRUST_API_KEYYes-API key starting with sk_live_
SIGNATRUST_API_URLNohttps://app.signatrust.ioAPI base URL

Natural Language Examples

Once connected, you can ask your AI assistant things like:

  • "List all my pending envelopes"
  • "Upload ~/Documents/nda.pdf and send it to alice@example.com with VERIFIED security"
  • "Show me available templates, then create a lease agreement from the residential template for John Doe"
  • "Check the blockchain verification for envelope env_abc123 and show me the composite hash"
  • "Run AI analysis on envelope env_xyz — I want to know if there are any risky clauses before the signer reviews it"

Development

# Install dependencies
npm install

# Build
npm run build

# Run tests
npm test

# Run tests with coverage
npm run test:coverage

# Type check
npm run typecheck

# Local smoke test
SIGNATRUST_API_KEY=sk_live_xxx SIGNATRUST_API_URL=http://localhost:3000 node dist/server.js

Architecture

src/
  server.ts                      # Entry point — env validation, MCP server setup, stdio transport
  handlers.ts                    # Tool definitions and handler dispatch (testable)
  errors.ts                      # RFC 7807 ProblemDetails -> MCP tool error mapping
  vendor/signatrust-sdk/         # Vendored HTTP client + types (zero external runtime deps)
  *.test.ts                      # Co-located test files

The HTTP client and API types are vendored under src/vendor/signatrust-sdk/ so this package has no external runtime dependencies beyond @modelcontextprotocol/sdk.

Keywords

signatrust

FAQs

Package last updated on 26 Jun 2026

Did you know?

Socket

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts