Look twice.Find the gem.

AI agents and MCP servers, each published with its source and what the checks found.

Marketplace

  • Everything
  • AI agents
  • Apps
  • MCP servers
  • Templates
  • What people want
  • What changed this week
  • The verification standard
  • The ooruby Index
  • Servers that publish no source
  • Reliability guides
  • What the catalogue holds
  • Sell here

Our library

  • Everything, in one place
  • Guides
  • Glossary
  • Calculators
  • Checklists and cheat sheets
  • Community

ooruby

  • Home
  • For teams
  • Site status
  • Company projects
  • RSS feed

Verification records what our published tests found on a specific version at a specific date. It is not a warranty, and it does not certify that software is free of defects.

Rubricv1.0
AI agentsAppsMCP serversTemplatesWantedCommunityOur library
Sign inSell
How verification works
All guides
How verification worksIntermediate· 5 min read

Why a badge expires, and what happens when a maker ships

The one thing to remember

A change to what software is allowed to do is treated as a new product, not as an update.

The question

Know what happens to a listing you have bought when its maker publishes a new version.

Figure

How Why a badge expires works, in one picture

1Ordinary updates drop the badge to pending2Permission changes are treated as a different product3Badges expire even without an update

The same argument as the text, as a chain. Each step is what makes the next one possible.

  1. 1

    Ordinary updates drop the badge to pending

    A new version means the tested artefact no longer matches the shipped one, so the badge stops applying. The listing shows the previous result with the version it applied to, and the new version is queued for testing.

    You keep the version you bought. Nothing is taken away from you because a maker shipped.

  2. 2

    Permission changes are treated as a different product

    If a new version declares a tool it did not declare before, asks for a scope it did not ask for, or adds a destination it may send data to, the listing does not simply go pending. It is flagged, everyone who bought it is notified, and it cannot be sold again until it has been re-tested.

    This exists because of a specific attack. The tool-poisoning vulnerabilities disclosed in 2025 worked by changing what a server told the model it did, after the point at which a person had approved it. Pinning the manifest per version and alarming on any change is the direct answer.

    If you get one of these notifications, read what changed before you update. That is the whole point of sending it.

  3. 3

    Badges expire even without an update

    Dependency advisories are published continuously, so a clean result from six months ago is a statement about six months ago. Every badge carries an expiry, after which the listing shows as needing re-verification.

    Re-verification of an unchanged artefact is cheap and mostly automatic. The expiry is there so the date on the badge always means something.

You have got it when

You can explain why a permission change is treated more seriously than a code change.

Read next

How verification works
What a Verified badge actually means
Before you buy
Permissions worth refusing
How verification works
What we do not check
How verification works
How to verify an MCP server yourself
How verification works
How to read a findings report without panicking
The bottom line

A change to what software is allowed to do is treated as a new product, not as an update.

See the 30 live screens

Every one shows its exact method, and the circumstances in which it is wrong. Free, and no account to look.