Limitguard Lead Verification
UnexploredLead validation over MCP: KVK/KBO register, EU VAT, sanctions and email checks with sources.
Install
mcp_config.json
{
"mcpServers": {
"ai-limitguard-api-trust-intelligence": {
"url": "https://api.limitguard.ai/mcp",
"type": "streamable-http"
}
}
}Documentation
Limitguard MCP Server
Lead validation over the Model Context Protocol: check the company behind each lead against the KVK (Netherlands) or KBO (Belgium) register, EU VAT (VIES), sanctions lists and its email domain, in one tool call. Company, sanctions and wallet checks for developers and AI agents sit beside it.
Server URL: https://api.limitguard.ai/mcp
Transport: Streamable HTTP (POST)
Auth: API key (Bearer), plus an x402 micropayment per call on the free and sandbox tiers
What it is: Limitguard is a lead validation service for lead generation agencies, B2B marketing and sales teams: it checks the company behind each lead against official business registers (full coverage in the Netherlands and Belgium), EU VAT and sanctions lists, with website age in the company check, and returns proceed, review or block with the source on every line. Developers and AI agents can use its HTTP API, MCP server and A2A service, hosted in the EU.
Start here: On MCP a paid tool takes an x402 payment per call, or debits prepaid credit (a paid key, or a funded workspace); verify_wallet, sanctions_preview and get_trust_score are free; the free sandbox key returns mock data on the REST API only, not on MCP. Lead Verify $0.27 per lead and agent check $0.75 per wallet; $0.11-1.85 per call; entity and risk checks $0.88-1.05 fresh ($1.50 KYB), $0.11 cached ($0.25 KYB) when available.
Tools
tools/list is public: connect and read it without any credential. These are
the names it returns, and the names tools/call accepts:
| Tool | Description | Inputs |
|---|---|---|
check_entity | Company check on a business: sanctions screening and country risk, the Dutch KVK register for an NL company, and the website domain when you send it. Returns trust_score (0-100, 100 = best), trust_level (high means low risk), cluster, recommendation, confidence, top_factors and sources_checked. | entity_name (required), country (required), kvk_number, domain |
get_trust_score | Look up your own most recent trust score for an entity you checked before, from your stored checks: score, level, when, which product, trend and how many checks are on record. Runs no new check and calls no data source. Free ($0). | entity_id (required) |
verify_wallet | Screen a wallet: OFAC SDN address match, on-chain signals (contract check, native and USDC balance, transaction count, first seen on Base) and named risk rules with up to 3 advice items. On Base, also reports any ERC-8004 agent the wallet owns and its open on-chain reputation as descriptive signals, never scored. Free ($0). Supports EVM and Solana addresses. | wallet_address (required), chain_id |
get_risk_score | Quick risk score from sanctions screening and country risk only, without the register or domain lookups of check_entity. Returns risk_score (0-100, 100 = riskiest), risk_level (high means high risk, the reverse of check_entity's trust_level), sanctions_match and fatf_status; no recommendation or factors. | entity_name (required), country (required) |
get_compliance_report | Per-entity report built from one real check: registry identity, sanctions and PEP screens, domain signals, risk score with the rules that fired, correlations, every finding as a ranked action, a per-source status table (ok / unavailable / error) and a report hash. | entity_name, country, kvk_number, cbe_number, vat_number, domain, iban, wallet_address, wallet_chain, check_id |
sanctions_preview | Free yes/no sanctions preview against the local OFAC SDN, EU and UN lists. Returns possible_match, lists_checked and list_dates only, never an entry. 10 per caller per UTC day. | name (required), country |
sanctions_screen | Sanctions screen against the local OFAC SDN, EU and UN lists: matched entries with list, entry id, programmes, countries, listing date and match score. A name match is not a determination. | name (required), country |
check_agent_wallet | Check a counterparty agent's EVM wallet in one call: OFAC SDN digital-currency address list match, Base USDC and ETH balance, ERC-8004 identity registration (and, given an agent id, that agent's owner and payment wallet) and open ERC-8004 feedback, which is not scored. $0.75. | wallet (required), agent_id, domain |
verify_lead | Verify a NL/BE sales lead against the registers in one call: real and active, VAT, mail server, IBAN, sanctions; a 0-100 lead score. $0.27. | country (required), company_number, name, vat_number, email, domain, address, iban, phone, target_industries, target_size |
Pricing
A paid tool call is debited from your API key's prepaid balance, or paid per call with an
x402 micropayment (USDC on Base or Solana). The tools with their own
/v1/mcp/* path are priced below; the other tools are priced at the REST endpoint they call,
in Full x402 API.
| Endpoint | Price |
|---|---|
Entity Check (/v1/mcp/check-entity) | $1.05 |
Risk Score (/v1/mcp/risk-score) | $0.90 |
Check Agent (/v1/mcp/check-agent) | $0.00: hidden placeholder, not in tools/list; returns placeholder data |
Trust Score (/v1/mcp/trust-score) | $0.00, free (your own stored score) |
Verify Wallet (/v1/mcp/verify-wallet) | $0.00, free (real wallet screening) |
Authentication
Two things gate a tools/call, in this order:
-
An API key, as
Authorization: Bearer <key>. Without one every call comes backAuthentication required. Provide API key via Authorization: Bearer <lg_live_...> header.Get a free one (no payment, no card):curl -X POST https://api.limitguard.ai/v1/keys/create \ -H "Content-Type: application/json" \ -d '{"email": "you@example.com"}'That returns a
free-tier key, which is the key the Quick Start configs below expect. Asking for"tier": "sandbox"instead returns a key that answers with mock data; see the next point before you use one here. -
Payment, on the free and sandbox tiers only. Send the x402 proof as
PAYMENT-SIGNATURE(x402 v2) orX-PAYMENT(v1), alongside the Bearer key. A key with a prepaid balance (indie and up) is debited per call instead and needs no per-call payment. API keys have no subscription; see API keys and prepaid balance.A sandbox key does not lift the payment requirement on this transport: it owes x402 per call exactly as a
freekey does, and it answers with mock data rather than a real check. Paying for one over MCP spends real USDC on a mock answer. Where a sandbox key is worth having is the REST mirrors under/v1/mcp/*(sent asX-API-Key, not Bearer), which serve the mock response before the payment check: a way to exercise the request and response shapes, not a cheap source of real checks.
Full x402 API (direct HTTP)
The tools above are what the MCP server exposes over the Model Context Protocol. Clients that
integrate directly over HTTP, instead of through an MCP client, can reach every x402-priced
endpoint on https://api.limitguard.ai: the REST endpoints below, plus the MCP tools' own
/v1/mcp/* paths. All of them are published in
/.well-known/x402.json; /.well-known/mcp.json
lists only the tools above.
Most of the REST endpoints are capabilities the MCP tools do not expose, but two run the same
engine over plain HTTP: /v1/entity/check behind check_entity (the MCP tool takes the entity
name, country, KVK number and domain only, so no IBAN or VAT), and /v1/risk/score behind
get_risk_score, at the same price.
Payment works the same way throughout: USDC on Base or Solana, pay-per-call. The data endpoints below need no API key at all. The /v1/keys/upgrade/* endpoints also take payment without one,
but they act on an API key you already hold; see API keys and prepaid balance.
Lead and company checks
| Endpoint | Method | Price | Description |
|---|---|---|---|
/v1/leads/verify | POST | $0.27 | Lead verify for one NL or BE sales lead: is it a real, active company? Checks the KVK or KBO register (status, legal form, start date, main activity, staff, registered address) and cross-checks whatever else the lead holds: VAT number with VIES, mail server and disposable domain, IBAN country and bank (the account holder is not checked), and the company name against the OFAC, EU and UN sanctions lists. Returns a verdict, a 0-100 lead score, flags and one action per flag. An input not given is not checked and never counts against the lead. |
/v1/agent/check | POST | $0.75 | Agent wallet check in one call: screens an EVM wallet against the OFAC SDN digital-currency address list, reads its Base USDC and ETH balance, looks up its ERC-8004 identity registration (and, given an agent id, that agent's owner and payment wallet) and lists open ERC-8004 feedback, which is not scored. Returns one verdict and each part's status; a part that could not be read says so. |
/v1/sanctions/screen | POST | $0.11 | Sanctions screen of a company or person name against the OFAC SDN, EU and UN sanctions lists, held locally and refreshed daily. Returns each matched entry: list, entry id, matched name, programmes, countries, listing date and match score. Exact normalised or word-order-insensitive name match only; a name match is not a determination. |
/v1/entity/check | POST | $1.05 | Full entity trust check across multiple verification layers: KVK/CBE registry, OpenSanctions, country risk (CPI/FATF), domain WHOIS, IBAN validation and EU VAT/VIES. Returns trust score 0-100 with cluster and recommendation. |
/v1/risk/score | POST | $0.90 | Quick risk score (0-100) for entity name + country. Lightweight check without full data source scan. |
/v1/entity/deep-check | POST | $0.88 | Extended screening in two tiers. fresh ($0.88): politically exposed person and relative/close-associate (role.pep / role.rca) matches from OpenSanctions, with the match detail the standard entity check does not return, plus a Dutch Centraal Insolventieregister screen (NL only). enhanced ($1.71): the same plus adverse media screening against a global news index. If a source of the requested tier cannot be reached the call returns 503 and is not charged. |
/v1/reports/entity | POST | $1.85 | Per-entity report built from one real check's signals: identity, sanctions and PEP screening, domain signals, trust score (risk.trust_score, 0-100, 100 = best), correlations with the caller's earlier reports, sources and an evidence hash. A source that did not answer is shown unavailable, never clean. |
Reputation management
| Endpoint | Method | Price | Description |
|---|---|---|---|
/v1/reputation/score | POST | $0.90 | Reputation scoring with linear trust decay: after its first week a score loses 2-5 points a week by risk cluster (none for a sanctions-flagged entity), plus a bonus of up to 5 points for repeat verifications. |
/v1/reputation/history/{id} | GET | $0.11 | Historical reputation trend data. Returns the trust score timeline with the decay applied at each point and an overall trend. |
Wallet services
| Endpoint | Method | Price | Description |
|---|---|---|---|
/v1/wallet/balance | GET | $0.11 | ERC-8004 agent wallet balance check. Returns the on-chain USDC balance (Base mainnet) for a registered ERC-8004 agent wallet. |
Regulatory compliance
| Endpoint | Method | Price | Description |
|---|---|---|---|
/v1/kyb/check | POST | $1.50 | Know Your Business verification: company registration, sanctions screening, VAT/VIES, and domain analysis in one call. |
/v1/compliance/alerts | GET | $0.11 | Daily changes to the OFAC, EU and UN sanctions lists, plus alerts when an entity or wallet this key checked is listed. Poll this route; alerts about entities or wallets this key checked are also sent to a webhook registered for sanctions.match.new (POST /v1/webhooks). Filter by jurisdiction and severity. |
/v1/compliance/readiness/{id} | GET | $0.11 | EU AI Act readiness self-assessment for one AI system. Send the system_type and the checklist items you have completed (completed_items); returns the EU AI Act risk level for that system type, a readiness score and the open gaps. entity_id is your label: nothing is looked up about it. |
MCP tool paths (direct HTTP)
The MCP tools that mirror a REST check are also reachable over plain HTTP at their own
x402-priced /v1/mcp/* paths, with the same capabilities and prices as the Tools table above,
for clients that pay per call without opening an MCP session. The other tools call one of the
REST endpoints above directly.
| Endpoint | Method | Price | MCP tool |
|---|---|---|---|
/v1/mcp/check-entity | POST | $1.05 | check_entity |
/v1/mcp/check-agent | POST | $0.00 | check_agent |
/v1/mcp/trust-score | POST | $0.00 | get_trust_score |
/v1/mcp/verify-wallet | POST | $0.00 | verify_wallet |
/v1/mcp/risk-score | POST | $0.90 | get_risk_score |
API keys and prepaid balance
Limitguard accepts two forms of payment: x402 per call, or an API key with a prepaid balance
that each priced call is debited from. API keys and x402 have no subscription (the Limitguard dashboard also has optional monthly plans, paid in euros). Paying per call needs no API key on the data endpoints above or the /v1/keys/upgrade/* paths.
The MCP transport always wants one: it takes Authorization: Bearer on every tools/call, and
its /v1/mcp/* mirrors take X-API-Key.
A base key is free and self-service: POST /v1/keys/create with an email address, no payment and
no existing key needed. It identifies you and tracks your usage; it does not pay for calls. A
free-tier key holds no balance and still owes x402 on every paid endpoint, on REST exactly as on
MCP. The monthly_limit it reports is a ceiling on how many calls it may make, not an allowance of
free ones. A sandbox key is also free and returns mock data, never a real check. Over MCP it owes
x402 like any other free key, so it earns its keep only against the REST mirrors.
The endpoints below take an x402 payment, credit the same amount 1:1 to the prepaid balance of a
key you already hold, and set its tier label. Each priced call is then debited from that balance
at the prices above, with no per-call x402 payment. When the balance is too low for a call, that
call answers 402 with an x402 quote and the top-up path, and POST /v1/keys/topup/{usd}
adds any whole-dollar amount from $5. On every tier monthly_limit is an abuse limit, not an
allowance of included calls.
| Endpoint | Method | Price | Tier label | monthly_limit (abuse limit) |
|---|---|---|---|---|
/v1/keys/upgrade/indie | POST | $29 | Indie | 1,000 calls/mo |
/v1/keys/upgrade/starter | POST | $99 | Starter | 10,000 calls/mo |
/v1/keys/upgrade/growth | POST | $299 | Growth | 50,000 calls/mo |
/v1/keys/upgrade/pro | POST | $999 | Pro | 250,000 calls/mo |
Prices and descriptions above are generated from the service and were last checked against the live x402 manifest on 2026-10-06. The manifest is the source of truth: fetch it if you need the current schema for any endpoint.
Quick Start
Claude (Desktop and claude.ai)
This is a remote server, so it is added as a custom connector, not in
claude_desktop_config.json (that file is for local servers only):
- Open Customize > Connectors, then + Add > Add custom connector. On a Team or Enterprise plan an owner adds it under Organization settings > Connectors.
- URL:
https://api.limitguard.ai/mcp - Under Request headers, add
Authorizationwith the valueBearer YOUR_LIMITGUARD_KEY.
Cursor
Add to MCP settings:
{
"limitguard": {
"type": "url",
"url": "https://api.limitguard.ai/mcp",
"headers": {
"Authorization": "Bearer YOUR_LIMITGUARD_KEY"
}
}
}
Smithery
npx -y @smithery/cli install team-mehs/limitguard
Any MCP Client
Connect to https://api.limitguard.ai/mcp using Streamable HTTP transport (POST),
sending Authorization: Bearer <key> on every tools/call.
Discovery Endpoints
| Endpoint | URL |
|---|---|
| MCP server card | /.well-known/mcp/server-card.json |
| MCP Tools | /.well-known/mcp.json |
| x402 Pricing | /.well-known/x402.json |
| Health | /health |
The service publishes two tool cards, and they do not fully agree. Both list the same
tools, taking the same required arguments, so a tools/call written against either one
works, but the descriptions and the argument wording differ between them. The Tools
table above and this repository's server.json are generated from the server card,
which is the one to read when the two disagree. Reconciling them is the service's to fix.
Use Cases
- Lead validation: check the company behind each lead (KVK or KBO register, EU VAT via VIES, sanctions lists and email domain) before it reaches a client, and get a verdict, a 0-100 lead score and flags (
verify_lead). - Company checks: developers and AI agents verify a business entity before a deal or a payment (
check_entity,get_risk_score), or build a per-entity report with every source's status (get_compliance_report). - Sanctions screening: screen a company or person name against the OFAC, EU and UN lists (
sanctions_preview,sanctions_screen). - Agent-to-agent checks: check a counterparty agent's wallet and ERC-8004 identity before working with it (
check_agent_wallet). - Wallet screening: screen a wallet address before an on-chain payment (
verify_wallet).
Security
- HTTPS with TLS 1.3
- x402 payment protocol for per-call billing (no stored payment credentials)
- Hosted in the EU (API and dashboard in the EU, database in Ireland); data minimisation
- All tools are read-only (no data modification)
- Rate limited per payment (abuse-proof)
Links
- Website: limitguard.ai
- Status: status.limitguard.ai
- MCP Registry: ai.limitguard.api/trust-intelligence (JSON; the registry has no HTML page per server)
License
MIT
Sourced from the repository README.
More in AI & Agents
- PonytailMakes your AI agent think like the laziest senior dev in the room. The best code is the code you never wrote.109,599
- AgentsMulti-harness agentic plugin marketplace for Claude Code, Codex, Cursor, OpenCode, GitHub Copilot, and Google Antigravity39,079
- Frontend SlidesCreate beautiful slides on the web using a coding agent's frontend skills28,060
- Agent Skills Search ServerSearch and discover Agent Skills from the skills.sh registry. Powered by HAPI MCP server.25,980
- Agency Agents Zh🎭 267 个即插即用的 AI 专家角色 — 支持 Hermes Agent/Claude Code/Cursor/Copilot 等 18 种工具,覆盖工程/设计/营销/金融等 20 个部门。含 52 个中国市场原创智能体(小红书/抖音/微信/飞书/钉钉等)。搭配编排器 agency-orchestrator,一句话即可让多位专家按 DAG 自动协作。19,868
- Watermarks RemoverStrip multi-vendor AI provenance marks: Unicode text hygiene, statistical rewrite hooks, and C2PA/metadata from PNG/JPEG/SVG/PDF/DOCX/HTML/MD17,822