Rollin Mcp Server — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Rollin Mcp Server (Agent Skill) and scored it 45/100 (orange). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 1 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 1 flagged
A base64 string of 128+ characters appears in a documentation file. Encoded prompt injection hides the hostile instruction in base64 — invisible to keyword filters — and relies on the agent's ability to decode it at runtime. There is no normal authoring reason to embed a multi-hundred-byte base64 blob in skill docs.
*.sig, SIGNATURES) outside the documentation.Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
<p align="center"> <a href="https://joinrollin.com"> <img src="https://joinrollin.com/assets/rollin1-final.png" alt="ROLLIN" height="60"> </a> </p>
<h3 align="center">ROLLIN MCP Server</h3>
<p align="center"> Wheelchair accessibility data for 105,000+ locations across 15 US states — delivered through the Model Context Protocol. </p>
<p align="center"> <a href="https://www.npmjs.com/package/rollin-mcp-server"><img src="https://img.shields.io/npm/v/rollin-mcp-server?style=flat-square&color=14b8a6&label=npm" alt="npm version"></a> <a href="https://www.npmjs.com/package/rollin-mcp-server"><img src="https://img.shields.io/npm/dm/rollin-mcp-server?style=flat-square&color=14b8a6" alt="npm downloads"></a> <a href="https://opensource.org/licenses/MIT"><img src="https://img.shields.io/badge/license-MIT-blue?style=flat-square" alt="License: MIT"></a> <img src="https://img.shields.io/badge/node-%3E%3D18-brightgreen?style=flat-square" alt="Node.js >=18"> <a href="https://modelcontextprotocol.io"><img src="https://img.shields.io/badge/MCP-compatible-14b8a6?style=flat-square&logo=data:image/svg+xml;base64,PHN2ZyB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciIHdpZHRoPSIyNCIgaGVpZ2h0PSIyNCIgdmlld0JveD0iMCAwIDI0IDI0IiBmaWxsPSJub25lIiBzdHJva2U9IiNmZmYiIHN0cm9rZS13aWR0aD0iMiI+PHJlY3QgeD0iMiIgeT0iMiIgd2lkdGg9IjgiIGhlaWdodD0iOCIgcng9IjIiLz48cmVjdCB4PSIxNCIgeT0iMiIgd2lkdGg9IjgiIGhlaWdodD0iOCIgcng9IjIiLz48cmVjdCB4PSI4IiB5PSIxNCIgd2lkdGg9IjgiIGhlaWdodD0iOCIgcng9IjIiLz48L3N2Zz4=" alt="MCP Compatible"></a> </p>
The only wheelchair accessibility data source available through MCP. Search 105,000+ restaurants, cafes, and bars across 15 US states. Get real 0–100 accessibility scores. Submit corrections through natural conversation. One protocol — every platform.
v1.3.0 — Trial mode + smart onboarding. No API key? No problem. The server boots and works immediately with 5 free requests per session. Real data, real scores. Progressive nudges guide you to a free key when you're ready. Session-aware — the more you use it, the more personalized the experience.
Nobody should have to call ahead to ask if they can get in the door. ROLLIN puts accessibility data where it actually gets used.
npx rollin-mcp-serverThat's it. The server starts in trial mode with 5 free requests. Real data, real scores, no signup. When you're ready for unlimited access, grab a free key at [joinrollin.com/portal](https://joinrollin.com/portal.html).
Model Context Protocol is the open standard for connecting tools to data. No custom integrations. No API wrappers. No glue code.
Build one MCP server → every compatible client gets instant access. Think of it as USB-C for data: one plug, universal compatibility. ROLLIN was one of the first accessibility data providers to ship an MCP server.
If your tool speaks MCP, it speaks accessibility.
npx rollin-mcp-serverNo global install. Runs anywhere Node 18+ is available. Works immediately in trial mode — no API key needed for your first 5 requests.
Sign up at [joinrollin.com/portal](https://joinrollin.com/portal.html) — no credit card required. Set ROLLIN_API_KEY in your config to unlock unlimited requests.
<details> <summary><strong>Desktop App</strong> (JSON config)</summary>
Add to your MCP client's configuration file:
{
"mcpServers": {
"rollin": {
"command": "npx",
"args": ["-y", "rollin-mcp-server"],
"env": {
"ROLLIN_API_KEY": "your_api_key_here"
}
}
}
}Works with any desktop MCP client.
</details>
<details> <summary><strong>Cursor</strong></summary>
Add to .cursor/mcp.json in your workspace:
{
"mcpServers": {
"rollin": {
"command": "npx",
"args": ["-y", "rollin-mcp-server"],
"env": {
"ROLLIN_API_KEY": "your_api_key_here"
}
}
}
}</details>
<details> <summary><strong>VS Code</strong></summary>
Add to .vscode/mcp.json in your workspace:
{
"servers": {
"rollin": {
"command": "npx",
"args": ["-y", "rollin-mcp-server"],
"env": {
"ROLLIN_API_KEY": "your_api_key_here"
}
}
}
}</details>
<details> <summary><strong>CLI / Headless</strong></summary>
export ROLLIN_API_KEY="your_api_key_here"
npx -y rollin-mcp-serverPipe into any MCP-compatible process.
</details>
search_locationsSearch accessible venues by location, query, and accessibility criteria.
| Parameter | Type | Required | Description |
|---|---|---|---|
q | string | no | Search query (name, cuisine, type) |
lat | number | no | Latitude for location-based search |
lng | number | no | Longitude for location-based search |
radius | number | no | Search radius in miles (default: 10) |
min_score | number | no | Minimum accessibility score 0-100 |
limit | number | no | Max results (default: 20) |
lighting | string | no | Filter by lighting: bright, moderate, dim |
get_location_detailsFull accessibility breakdown for a single venue.
| Parameter | Type | Required | Description |
|---|---|---|---|
id | string | yes | Location ID from search results |
Returns: score (0-100), 6 tracked features (wheelchair_entry, accessible_restroom, level_entry, parking, elevator, wide_aisles), environment/lighting data, verification status, community feedback.
list_regionsAll coverage areas with location counts. No parameters.
submit_feedbackSubmit accessibility corrections through conversation.
| Parameter | Type | Required | Description |
|---|---|---|---|
location_id | string | yes | Location ID |
type | string | yes | Feedback type |
message | string | yes | Description of correction |
check_healthVerify the API is up. No parameters.
Once configured, just ask naturally:
15 US states · 48 regions · 105,000+ scored locations
| State | Regions |
|---|---|
| New York | NYC Metro, Hudson Valley, Long Island, Capital Region, Finger Lakes, Western NY, Adirondacks |
| California | LA Metro, SF Bay Area, San Diego, Sacramento, Central Coast, Inland Empire |
| Florida | Miami, Orlando, Tampa Bay, Jacksonville, Southwest FL |
| Massachusetts | Boston Metro, Western MA |
| Illinois | Northern IL, West-Central IL, Central IL, Southern IL |
| Colorado | Northeast CO, Northwest CO, Southeast CO, Southwest CO |
| Texas | DFW, Houston, Austin, San Antonio, El Paso |
| Ohio | Cleveland, Cincinnati, Columbus, Northwest OH |
| Idaho | Northern ID, Boise Metro |
| New Jersey | Statewide |
| Pennsylvania | Statewide |
| Washington DC | DC Metro |
| Arizona | Phoenix, Tucson |
| Washington | Seattle Metro |
| Oregon | Portland Metro |
The MCP server uses your ROLLIN API key. Same tiers, same limits.
| Free | Developer | Business | |
|---|---|---|---|
| Requests | 1,000/mo | 50,000/mo | 500,000/mo |
| Price | $0 | $29/mo | $149/mo |
[Get your free key →](https://joinrollin.com/portal.html)
| MCP Server Page | joinrollin.com/mcp |
| API Documentation | joinrollin.com/developers |
| Developer Portal | joinrollin.com/portal |
| API Status | joinrollin.com/status |
| Python SDK | stainless-commons/rollin-python |
| MCP Protocol Spec | modelcontextprotocol.io |
MIT — Stackline Studio
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.