Skip to content

Commit da3ff1e

Browse files
author
andrey.korchemkin
committed
2 parents d76aeb7 + 61a9f7c commit da3ff1e

1 file changed

Lines changed: 6 additions & 0 deletions

File tree

README.md

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -272,6 +272,12 @@ More detail:
272272
- [docs/assets/filesystem-scan-hero.svg](docs/assets/filesystem-scan-hero.svg)
273273
- [.github/workflows/example.yml](.github/workflows/example.yml)
274274

275+
## Ecosystem & Complementary Tools
276+
277+
`MCP Trust Kit` is designed as a **Layer 1 (Static Risk)** scanner. For a complete agentic DevSecOps pipeline, we recommend pairing it with runtime observability tools:
278+
279+
* [**Veridict**](https://github.com/xkumakichi/veridict) (Layer 2 - Runtime Trust): A lightweight middleware that logs actual tool executions and gives a trust verdict based on real execution history. While MCP Trust Kit answers *"Is the blast radius structurally safe?"*, Veridict answers *"Is the server actually reliable in production?"*.
280+
275281
## Roadmap
276282

277283
Near-term work after `v0.5.0`:

0 commit comments

Comments
 (0)