Fine Structure
warningsfinestructure.ai
Build and host full-stack apps from a prompt, with agents that reach you on WhatsApp and email.
https://finestructure.ai/api/mcpWebsiteOAuthMCP 2025-11-25v1.0.0last checked 24 Aug 2026spoke MCP on 2 of 2 checks (30 days)initialize in 1126 msHow to authenticate
Checked against the endpoint by our probe on 24 Aug 2026. These are the capabilities the server advertises, not a prediction about any particular client.
| Scheme | OAuth |
|---|---|
| Issuer | https://finestructure.ai |
| Dynamic client registration | ✓Advertised (RFC 7591) |
| Client ID Metadata Document | ✕Not advertised |
| PKCE | ✓S256 |
| Grant types | authorization_code, refresh_token |
| Scopes | agency:read, agency:write, agents:read, agents:write, create, publish, read, security:read, security:write, update, versions:read, versions:write |
| Protected-resource metadata | ✓Published (RFC 9728) |
| Anonymous access | Handshake succeeds; 82 tools listable |
| Credentials demanded in prose | ✕invite_app_member, create_agent, start_owner_phone_verification, attach_agent_whatsapp These tools are listed anonymously and their own descriptions ask for an account or key, but no challenge is issued — so a client has nothing to act on and the refusal arrives as a tool error. |
| Documentation | https://finestructure.ai/api/mcp/docs |
What the probe found
4 of the 82 tools listed anonymously say in their own descriptions that they need an account or a key (invite_app_member, create_agent, start_owner_phone_verification, attach_agent_whatsapp), but the endpoint issued no WWW-Authenticate challenge. The requirement is stated only in prose, so a call reaches the tool and comes back as a tool error instead of an authorization step.
The server exposes a public surface before authorization: create_app, agency_create_client, agency_list_clients, agency_create_client_app, agency_create_claim_link, agency_get_claim_status, update_app, publish_app, get_platform_guide, get_recommended_workflow, get_job_status, get_app_status, get_app_links, list_app_domains, add_custom_domain, get_domain_verification, check_domain_verification, set_primary_domain, remove_custom_domain, get_domain_ssl_status, configure_domain_redirects, list_apps, get_app_files, read_app_file, read_app_files, write_app_file, patch_app_file, rename_app_file, get_app_detail, get_entities, query_entity, seed_entity, create_entity_records, update_entity_record, update_entity_records, delete_entity_records, get_pages, get_errors, get_app_analytics, get_preview_url, list_saved_versions, create_change_set, add_file_change, validate_change_set, apply_change_set, discard_change_set, validate_app, inspect_preview, get_app_security_context, set_route_policy, set_entity_policy, list_app_members, invite_app_member, update_app_member_role, remove_app_member, get_app_security_audit, compare_saved_versions, compare_current_to_version, restore_file_from_version, create_entity_schema, update_entity_schema, validate_entity_relationships, update_entity_metadata, list_secret_keys, set_secret, delete_secret, list_integrations, configure_integration, list_ab_tests, create_ab_test, update_ab_test, delete_ab_test, get_ab_test_stats, create_agent, list_agents, schedule_agent_task, list_agent_tasks, get_agent_whatsapp, start_owner_phone_verification, confirm_owner_phone_verification, attach_agent_whatsapp, detach_agent_whatsapp.
Tools
Contract history
Get alerted when this contract changes
Depend on this server? Leave an email and get a message when a probe records a change — a tool removed, an argument newly required, an enum narrowed. Alerts are being built; signing up is what tells us to hurry.
Prefer a feed reader? This page's contract changes are also an Atom feed.
Status badge
Status for a README, from the last probe — cached an hour, so up to seven hours behind the endpoint. Links back to this page.
[](https://mcpi.app/servers/fine-structure)Own this server?
Sign in to claim this listing by proving control of the endpoint.