WEDJAT (also submitted as MCP Conduct Register) · a read only MCP and A2A conduct checker
Effective date: 2026-08-29 · Version 1.0 · Operator: The HORIZONs Co., Ltd. (The HORIZ音s株式会社), supervised by Toshikatsu Oga
In one line: WEDJAT is a free, read only checker for MCP and A2A servers. It holds no user accounts, requires no API keys, charges no fees, and stores no personal or health data about the people who use it. What it records is measurements of the public server endpoints it checks, published so that anyone can recompute them.
1. What data we collect
WEDJAT is designed to collect as little as possible. We do not ask for, and do not store, personal profiles, contact details, health information, or any special category personal data.
a. What you submit
- A target endpoint to check. When you ask WEDJAT to verify a server, you provide the public URL or endpoint of that MCP or A2A server (for example
https://example.com/mcp). This is a public machine address, not information about you.
- An optional consent flag for whether WEDJAT may issue a live tool call to the target endpoint during measurement.
b. What is generated automatically
- Standard request logs. Like any web service, our infrastructure (Cloudflare) processes the requesting IP address, timestamp, and user agent for the limited purposes of security, abuse prevention, and rate limiting.
- Measurement records. The result of a check (the verdict, the conditions measured, and a SHA-256 hash of the canonical record) is written to a public ledger so that the result can be independently recomputed. These records describe the checked server, not the person who requested the check.
We do not collect health data, we do not run diagnosis, we do not build profiles of users, and we do not accept any personal symptom or medical input.
2. How we use data
- To perform the verification you request: measuring an MCP or A2A endpoint against a fixed set of deterministic conditions (genuineness, disclosure of who funds it, jurisdiction, and consistency of responses).
- To produce a reproducible, publicly verifiable record of that measurement (SHA-256 hashed) so results are not a black box.
- To keep the service available and safe (rate limiting and abuse prevention from standard request logs).
We do not use data for advertising, profiling, or resale, and we receive no referral or listing fees from the servers we check.
3. Who we share data with
- No sale, no referral fees, no advertising partners. We do not sell or rent data and we take no compensation from the servers we measure.
- Infrastructure processor: the service runs on Cloudflare, which processes requests on our behalf as a hosting and network provider.
- Public ledger: measurement records about checked servers are, by design, public so anyone can verify them. They contain endpoint and verdict data about servers, not personal data about users.
- We disclose data only where required by applicable law.
4. Retention
- Measurement records are retained for as long as the public verification ledger exists, because their purpose is long term reproducibility of a verdict.
- Standard request logs are retained only for the short period needed for security and rate limiting, per our infrastructure provider's defaults, and are not linked to a user identity.
- We hold no personal data set that accumulates over time about an individual user.
5. Your controls and rights
- WEDJAT has no login and no user account, so there is no stored personal profile to access, correct, export, or delete.
- If you believe a public measurement record is inaccurate or out of date, you can request a re-measurement, or a correction with evidence, and a corrected or retracted record will be published with its evidence.
- For any question about this policy or a specific record, contact us using the details below.
6. What the tools actually do (current inputs and outputs)
This policy reflects the live behaviour of the service:
- Input: a public server endpoint to check, and an optional consent flag for a live tool call.
- Processing: the endpoint is measured against fixed, deterministic conditions.
- Output: a verdict, the conditions checked, and a SHA-256 hash of the canonical record, plus a public ledger entry for that server.
- Never: no medical or truth judgment, no product recommendation, no personal or health input accepted, no personal data stored.
7. Children
WEDJAT is a technical tool for verifying software servers and is not directed to children.
8. Changes to this policy
If this policy changes, we will update the version and effective date at the top of this page.
9. Contact
The HORIZONs Co., Ltd. (The HORIZ音s株式会社)
Supervisor: Toshikatsu Oga
Tel: 0463-74-5917
Contact: by the phone number above, or via the contact point on the HORIZON SHIELD site.
一言で: WEDJAT は MCP/A2A サーバーを検証する、無料・読み取り専用のチェッカーです。利用者のアカウントを持たず、APIキーを要求せず、料金を取らず、利用する人の個人情報や健康情報を一切保存しません。記録するのは「検証した公開サーバーのエンドポイントの測定結果」だけで、誰でも再計算できる形で公開します。
1. 収集するデータ
WEDJAT は収集を最小限に設計しています。個人プロフィール・連絡先・健康情報・要配慮個人情報の類は、求めることも保存することもありません。
a. 利用者が入力するもの
- 検証対象のエンドポイント。 サーバー検証を依頼するとき、対象となる MCP/A2A サーバーの公開URL(例
https://example.com/mcp)を入力します。これは公開された機械のアドレスであり、利用者個人の情報ではありません。
- 任意の同意フラグ。 測定時に対象エンドポイントへ実際のツール呼び出しを行ってよいかどうかの可否。
b. 自動的に生成されるもの
- 通常のリクエストログ。 一般的なWebサービスと同様、基盤(Cloudflare)がセキュリティ・不正防止・レート制限という限定目的で、送信元IPアドレス・時刻・ユーザーエージェントを処理します。
- 測定記録。 チェック結果(判定・測定した条件・正規化レコードの SHA-256 ハッシュ)を、第三者が独立して再計算できるよう公開台帳に記録します。この記録は「検証されたサーバー」を記述するもので、依頼した人物を記述するものではありません。
健康データは収集せず、診断も行わず、利用者のプロフィールも作らず、個人の症状や医療入力を受け付けません。
2. データの利用目的
- 依頼された検証を行うため。MCP/A2A エンドポイントを、固定された決定論的な条件(実在性・誰が資金を出しているかの開示・管轄・応答の一貫性)に照らして測定します。
- その測定を、再現可能で公開検証可能な記録(SHA-256 ハッシュ付き)として残し、結果をブラックボックスにしないため。
- サービスを安全に維持するため(通常のリクエストログによるレート制限・不正防止)。
広告・プロファイリング・データの転売には利用しません。検証対象のサーバーから紹介料・掲載料の類は一切受け取りません。
3. 第三者提供
- 売却なし・送客料なし・広告提携なし。 データの売却・貸与はせず、測定対象のサーバーから対価を受け取りません。
- 基盤処理者: 本サービスは Cloudflare 上で稼働し、ホスティング/ネットワーク提供者として当社に代わってリクエストを処理します。
- 公開台帳: 検証したサーバーに関する測定記録は、誰でも検証できるよう設計上公開されます。ここに含まれるのはサーバーのエンドポイントと判定であり、利用者個人のデータではありません。
- 適用法令で求められる場合に限り開示します。
4. 保持期間
- 測定記録: 判定の長期的な再現性がその目的であるため、公開検証台帳が存在する限り保持します。
- 通常のリクエストログ: セキュリティとレート制限に必要な短期間のみ、基盤提供者の既定に従って保持し、利用者の身元とは紐づけません。
- 個々の利用者について時系列で蓄積する個人データの集合は保持しません。
5. 利用者の管理手段・権利
- WEDJAT にはログインも利用者アカウントもないため、アクセス・訂正・エクスポート・削除の対象となる保存済み個人プロフィールが存在しません。
- 公開されている測定記録が不正確、または古いと考える場合、再測定の依頼、または証拠付きの訂正を求められます。訂正または撤回された記録は、その証拠とともに公開されます。
- 本ポリシーや特定の記録に関する問い合わせは、下記の連絡先へ。
6. ツールの実挙動(現在の入出力)
本ポリシーはサービスの実挙動に一致しています:
- 入力: 検証する公開サーバーのエンドポイント、および実ツール呼び出しの可否を示す任意の同意フラグ。
- 処理: そのエンドポイントを固定された決定論的条件に照らして測定。
- 出力: 判定・測定条件・正規化レコードの SHA-256 ハッシュ、および当該サーバーの公開台帳エントリ。
- 行わないこと: 医学的真偽の判定なし・製品推奨なし・個人/健康入力の受付なし・個人データの保存なし。
7. 子どもについて
WEDJAT はソフトウェアのサーバーを検証する技術ツールであり、子どもを対象としていません。
8. 本ポリシーの変更
本ポリシーを変更する場合、本ページ上部のバージョンと発効日を更新します。
9. 連絡先
The HORIZ音s株式会社(The HORIZONs Co., Ltd.)
監修: 大賀 俊勝
電話: 0463-74-5917
連絡: 上記の電話番号、または HORIZON SHIELD サイトのお問い合わせ窓口から。