Phony
MCP enabling AI assistants to place voice calls and send SMS/MMS and manage group conversations via Twilio and OpenAI.
๐ก๏ธ AgentReady threat assessment
MAESTRO 7-layer threat model + OWASP AIVSS risk score for Phony, derived from its capabilities.
AIVSS 9.3 ยท Critical
View MAESTRO 7-layer threat model โOverview
Phony is an MCP server that lets AI assistants make voice calls, send SMS/MMS and manage group conversations using Twilio and OpenAI. Security surface: it holds Twilio and OpenAI credentials and can initiate real calls/texts (with optional call recording), so injection could drive unwanted or costly outbound communications.
Key features
- Outbound voice calls via Twilio
- SMS/MMS messaging
- Group conversation management
- Optional call recording
Use cases
- Build a voice/SMS agent
- Automate phone outreach from chat