Submit

Contrastapi Security Intelligence

@UPinar

Security intelligence API for AI models. CVE lookup with EPSS/KEV enrichment, domain reconnaissance (DNS, WHOIS, SSL, subdomains, WAF detection), and code security checks (secrets, injection, headers). No API key required.
Overview

ContrastAPI

Security intelligence MCP server for AI agents.

Tools Available (16)

  • CVE Lookup — Search 340,000+ vulnerabilities with EPSS exploit probability and CISA KEV status
  • Domain Report — Full recon: DNS, WHOIS, SSL, subdomains, WAF detection
  • DNS/WHOIS/SSL — Individual lookups
  • Secret Detection — Scan code for hardcoded API keys, tokens, passwords (14 patterns)
  • Injection Detection — SQL, command, and path traversal patterns
  • Header Check — Validate HTTP security headers against best practices
  • Dependency Check — Check packages against CVE database

Usage

No API key required. Free tier: 100 requests/hour.

Connect

Add to your MCP client config:

Server Config

{
  "mcpServers": {
    "contrastapi": {
      "url": "https://mcp.contrastcyber.com/mcp"
    }
  }
}
© 2025 MCP.so. All rights reserved.

Build with ShipAny.