BlackSwan Risk Intelligence
BlackSwan monitors crypto markets 24/7 and produces two risk assessments:
- Flare — Precursor detection from a 15-minute signal window. Use for immediate, alarm-bell risk checks. Before the news breaks.
- Core — State synthesis from a 60-minute signal window. Use for market context and risk assessment. As the news breaks.
When to use each tool
| Question |
Tool |
| "Is something happening right now?" |
Flare |
| "What's the overall market risk environment?" |
Core |
| "Should I be worried about sudden moves?" |
Flare |
| "Give me a full risk briefing" |
Both (Flare first, then Core) |
Base URL
https://mcp.blackswan.wtf
Endpoints
GET /api/flare
Returns the latest Flare precursor detection assessment.
curl -s https://mcp.blackswan.wtf/api/flare
Response fields:
| Field |
Description |
agent |
Always "flare" |
data_age |
Human-readable age of the data (e.g. "12 minutes ago") |
status |
"clear" or "alert" |
severity |
"none", "low", "medium", "high", or "critical" |
checked_at |
ISO 8601 timestamp of the assessment |
assessment |
Natural language risk assessment |
signals |
Array of detected signals, each with type, source, and detail |
GET /api/core
Returns the latest Core state synthesis assessment.
curl -s https://mcp.blackswan.wtf/api/core
Response fields:
| Field |
Description |
agent |
Always "core" |
data_age |
Human-readable age of the data (e.g. "1 hour ago") |
timestamp |
ISO 8601 timestamp of the assessment |
environment |
"stable", "elevated", "stressed", or "crisis" |
assessment |
Natural language risk assessment |
key_factors |
Array of strings describing the main risk factors |
sources_used |
Array of data source names used in the assessment |
data_freshness |
Description of how fresh the underlying data is |
Interpreting severity levels (Flare)
| Severity |
Meaning |
none |
No precursors detected, markets quiet |
low |
Minor signals, worth noting but not actionable |
medium |
Notable signals, warrants attention |
high |
Strong precursors detected, elevated risk of sudden moves |
critical |
Extreme signals, immediate risk of major market event |
Interpreting environment levels (Core)
| Environment |
Meaning |
stable |
Normal market conditions, low systemic risk |
elevated |
Above-normal risk, some stress indicators present |
stressed |
Significant stress across multiple indicators |
crisis |
Severe market stress, active dislocation or contagion |
Error handling
| HTTP Status |
Meaning |
200 |
Success, response contains full assessment |
502 |
Agent output failed validation — format may have changed |
503 |
No recent agent runs — system may be starting up |
500 |
Unexpected server error |
On non-200 responses, the body is {"error": "..."} with a human-readable message.
Complete risk check pattern
To get a full picture, call both endpoints:
curl -s https://mcp.blackswan.wtf/api/flare
curl -s https://mcp.blackswan.wtf/api/core
Present Flare results first (immediate risks), then Core (broader context).
1---2name: blackswan3description: Real-time crypto risk intelligence; before and as things break. Two tools: Flare (15-min precursor detection, immediate alarms) and Core (60-min state synthesis, context assessment). Free access to the last analysis. No API key required. Upgrade to x402 for custom analysis.4---56# BlackSwan Risk Intelligence78BlackSwan monitors crypto markets 24/7 and produces two risk assessments:910- **Flare** — Precursor detection from a 15-minute signal window. Use for immediate, alarm-bell risk checks. Before the news breaks.11- **Core** — State synthesis from a 60-minute signal window. Use for market context and risk assessment. As the news breaks.1213## When to use each tool1415| Question | Tool |16|----------|------|17| "Is something happening right now?" | Flare |18| "What's the overall market risk environment?" | Core |19| "Should I be worried about sudden moves?" | Flare |20| "Give me a full risk briefing" | Both (Flare first, then Core) |2122## Base URL2324```25https://mcp.blackswan.wtf26```2728## Endpoints2930### GET /api/flare3132Returns the latest Flare precursor detection assessment.3334```bash35curl -s https://mcp.blackswan.wtf/api/flare36```3738**Response fields:**3940| Field | Description |41|-------|-------------|42| `agent` | Always `"flare"` |43| `data_age` | Human-readable age of the data (e.g. "12 minutes ago") |44| `status` | `"clear"` or `"alert"` |45| `severity` | `"none"`, `"low"`, `"medium"`, `"high"`, or `"critical"` |46| `checked_at` | ISO 8601 timestamp of the assessment |47| `assessment` | Natural language risk assessment |48| `signals` | Array of detected signals, each with `type`, `source`, and `detail` |4950### GET /api/core5152Returns the latest Core state synthesis assessment.5354```bash55curl -s https://mcp.blackswan.wtf/api/core56```5758**Response fields:**5960| Field | Description |61|-------|-------------|62| `agent` | Always `"core"` |63| `data_age` | Human-readable age of the data (e.g. "1 hour ago") |64| `timestamp` | ISO 8601 timestamp of the assessment |65| `environment` | `"stable"`, `"elevated"`, `"stressed"`, or `"crisis"` |66| `assessment` | Natural language risk assessment |67| `key_factors` | Array of strings describing the main risk factors |68| `sources_used` | Array of data source names used in the assessment |69| `data_freshness` | Description of how fresh the underlying data is |7071## Interpreting severity levels (Flare)7273| Severity | Meaning |74|----------|---------|75| `none` | No precursors detected, markets quiet |76| `low` | Minor signals, worth noting but not actionable |77| `medium` | Notable signals, warrants attention |78| `high` | Strong precursors detected, elevated risk of sudden moves |79| `critical` | Extreme signals, immediate risk of major market event |8081## Interpreting environment levels (Core)8283| Environment | Meaning |84|-------------|---------|85| `stable` | Normal market conditions, low systemic risk |86| `elevated` | Above-normal risk, some stress indicators present |87| `stressed` | Significant stress across multiple indicators |88| `crisis` | Severe market stress, active dislocation or contagion |8990## Error handling9192| HTTP Status | Meaning |93|-------------|---------|94| `200` | Success, response contains full assessment |95| `502` | Agent output failed validation — format may have changed |96| `503` | No recent agent runs — system may be starting up |97| `500` | Unexpected server error |9899On non-200 responses, the body is `{"error": "..."}` with a human-readable message.100101## Complete risk check pattern102103To get a full picture, call both endpoints:104105```bash106curl -s https://mcp.blackswan.wtf/api/flare107curl -s https://mcp.blackswan.wtf/api/core108```109110Present Flare results first (immediate risks), then Core (broader context).