Atlas / MCP servers / agent-bev / agent-bev

agent-bevSAFE

mcp/agent-bev/bev-door

Agentic B2B hub for beer, wine and spirits across Europe.

Verdict
SAFE
Grade
B
Trust score
89 /100
Exposed tools
—
Transport
stdio · streamable-http
License
MIT
Stars
0
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

Agentic B2B hub for beer, wine and spirits across Europe.

agent-bev is Europe's agentic commerce hub for the B2B beverage alcohol (bev-alc) industry. AI agents for buyers source, sort and procure. Every beer, wine and spirit in Europe, through agent-bev.ai. Trade only, never to consumers.

Install

npx @agent-bev/mcp-server, or connect to https://mcp.bev-buyer.ai/mcp

Claude Desktop, Cursor or Windsurf:

{
"mcpServers": {
"agent-bev": {
"command": "npx",
"args": ["-y", "@agent-bev/mcp-server"]
}
}
}

Tools

Agent Holdings S.A., Barcelona · held by Agentic KG Holdings · MIT

Read from source at commit 436b6d854b21OBSERVED · 2026-09-27
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.

claude-code (npm)
claude mcp add mcp-server -- npx -y @agent-bev/[email protected]
03

Trust audit

SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
declared (1 observation(s))
Shell
none-observed
Dependencies
pinned
Secrets in source
none-found

Findings (1)

LOWInventory / provenance · mcp.no_tools_extracted · CWE-1104
server.json
Why it matters. the tool list is enumerated at runtime by tools/list, not declared in source
Fix. the page says so rather than showing an empty table

Gates applied: no_behavioural_pass.

Audited 2026-09-27 · audit v0.4.1 · source sha 436b6d854b21full audit observations/trust-audit/mcp-server/agent-bev__bev-door.json · Report an issue / request a re-scan
04

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-09-27436b6d854b21SAFEB89first audit
05

Questions

What is the agent-bev MCP server?

Agentic B2B hub for beer, wine and spirits across Europe.

Is agent-bev safe to connect to an agent?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.

What credentials does agent-bev need?

No credential environment variables were found in its source, so it appears to need none.

How does agent-bev run?

It speaks stdio and streamable-http, so it runs as a local process your client starts. It is published on npm as @agent-bev/mcp-server at 0.2.1.

How current is this page?

The grade is for one exact copy of the source (436b6d854b21), read on 2026-09-27. The repository is watched and re-audited when it changes.

Advertisement