mcpserver.lol
registry/mcp-server-17
Connection check verified live · 20h ago

mcp-server-17

Public data intelligence for AI agents — CVE, compliance, patents, contracts, domains.

Tools 55
GitHub stars
Installs / wk 174
Licence
Transport streamable-http, stdio
Last checked 20h ago

Tools & capabilities

55 tools

Read from the running server on 20h ago.

apikeys_generate_api_key email*
Generate a DataNexus API key for the given email address. Anonymous callers get 10 free lookups/week; a registered free key unlocks 100/week. Store the returned key — it is shown o…
apikeys_revoke_api_key can modify data key*
⚠️ DESTRUCTIVE — requires human confirmation before use in automated pipelines. Permanently revoke a DataNexus API key. The key will stop working immediately. This action cannot be…
apikeys_rotate_api_key can modify data current_key*
⚠️ DESTRUCTIVE — requires human confirmation before use in automated pipelines. Revoke the current API key and issue a replacement. Returns the new key once — store it immediately.…
compliance_check_sam_exclusion read-only name_or_ein*
Check whether an entity is on the US federal exclusions list (debarred from government contracts). Read-only. No side effects. Idempotent. US only. name_or_ein: Entity name or 9-di…
compliance_fetch_finra_broker read-only crd_number*
Fetch FINRA BrokerCheck registration for a US broker or investment adviser by CRD number. Read-only. No side effects. Idempotent. US only. crd_number: Central Registration Deposito…
compliance_fetch_npi_provider read-only npi_number*
Fetch NPI registration details for a US healthcare provider by NPI number. Read-only. No side effects. Idempotent. US only. npi_number: 10-digit NPI number e.g. 1003000126. Require…
compliance_search_npi_by_name read-only name*statespeciality
Search the NPPES NPI Registry by provider name with optional state and speciality filters. Read-only. No side effects. Idempotent. US only. Returns up to 10 matches. name: Full or…
domain_check_email_security read-only domain*
Check SPF, DMARC, and DKIM email authentication for a domain. domain: Domain without protocol e.g. "google.com". Returns: overall_grade (A–F), spf_score, dmarc_score, dkim_score…
domain_fetch_dns_records read-only domain*record_types*
Fetch current DNS records for a domain via Cloudflare DNS over HTTPS. Read-only. No side effects. Idempotent. domain: Domain name without protocol e.g. cloudflare.com. Required. re…
domain_fetch_domain_history read-only domain*
Fetch historical SSL certificate issuance for a domain from Certificate Transparency logs. Read-only. No side effects. Idempotent. domain: Domain name without protocol e.g. example…
domain_fetch_domain_rdap read-only domain*
Fetch domain registration details via IANA RDAP (the modern structured replacement for WHOIS). Read-only. No side effects. Idempotent. domain: Domain name without protocol e.g. exa…
domain_fetch_reverse_ip read-only domain_or_ip*
Find domains co-hosted on the same IP address (reverse IP lookup). Read-only. No side effects. Idempotent. domain_or_ip: Domain name (e.g. shared.dreamhost.com) or IPv4 address (e.…
domain_fetch_ssl_certificate_chain read-only domain*
Fetch SSL certificate history for a domain from Certificate Transparency logs. Read-only. No side effects. Idempotent. domain: Domain name without protocol e.g. github.com. Require…
domain_fetch_subdomains read-only domain*
Enumerate subdomains for a domain via Certificate Transparency logs. Read-only. No side effects. Idempotent. domain: Domain name without protocol e.g. anthropic.com. Required. Retu…
frontend_security_audit_ci_pipeline read-only config*config_type
Scan GitHub Actions, Vercel, or Netlify CI configs for exposed secrets, missing lockfile enforcement, and unpinned dependencies. Paste your config content — no filesystem access re…
frontend_security_audit_manifest read-only lockfilemanifest*
Audit a frontend package.json for security risks — returns a single SHIP/CAUTION/BLOCK verdict with licence risks and abandonment signals. Different from security_fetch_package_vul…
frontend_security_detect_typosquatting read-only ecosystempackage_name*
Typosquatting detection optimised for the top 500 frontend packages (React, Vite, Axios, Lodash, etc.). Fewer false positives than a full npm scan. For backend packages, use securi…
frontend_security_fetch_package_risk_brief read-only versionpackage_name*
SHIP/CAUTION/BLOCK risk brief for an npm package with frontend-specific context. Wraps security_fetch_package_risk_brief restricted to npm, and adds weekly_downloads and is_ui_comp…
govcon_fetch_open_solicitations read-only agencykeyword*jurisdiction
Fetch currently open government contract solicitations matching a keyword. Read-only. No side effects. Idempotent. keyword: Description of goods or services sought e.g. cloud compu…
govcon_fetch_vendor_contract_history read-only vendor_name*jurisdiction
Fetch the complete federal contract award history for a specific vendor. Read-only. No side effects. Idempotent. vendor_name: Company or organisation name e.g. Booz Allen Hamilton.…
govcon_search_contract_awards read-only agencykeyword*date_fromjurisdiction
Search government contract awards by keyword, agency, and date range. keyword: Contract scope e.g. "cybersecurity software". agency: Awarding agency e.g. "Department of Defense".…
legal_fetch_inventor_portfolio read-only assigneeinventor_name*
Fetch the patent portfolio for a named inventor with optional assignee filter. Read-only. No side effects. Idempotent. inventor_name: Inventor surname or full name e.g. Smith or Jo…
legal_fetch_patent_by_number read-only jurisdictionpatent_number*
Fetch full patent details by patent number and jurisdiction. Read-only. No side effects. Idempotent. patent_number: Patent number in EPODOC format e.g. EP1000000 for European, CN12…
legal_fetch_patent_citations read-only jurisdictionpatent_number*
Fetch forward and backward citation chains for a specific patent. Read-only. No side effects. Idempotent. patent_number: Patent number in EPODOC format e.g. EP1000000 for European,…
legal_search_patents_by_keyword read-only keywords*date_fromjurisdiction
Search patents by keyword across EPO, USPTO, or WIPO. Read-only. No side effects. Idempotent. Returns up to 10 matches. keywords: Search terms describing the invention e.g. neural…
nonprofit_fetch_charity_uk read-only charity_number_or_name*
Fetch UK registered charity details by charity number or organisation name. Read-only. No side effects. Idempotent. UK only. charity_number_or_name: UK registered charity number (7…
nonprofit_fetch_nonprofit_by_ein read-only ein*
Fetch IRS 990 filing data for any US nonprofit by EIN. Read-only. No side effects. Idempotent. US only. ein: 9-digit Employer ID with or without dash, e.g. 46-5734087 or 465734087.…
nonprofit_fetch_nonprofit_financial_trends read-only ein*years
5-year financial trend for any US nonprofit. Revenue growth, expense ratios, reserve trajectory, and health score history from IRS Form 990 data via ProPublica. Returns trend_direc…
nonprofit_fetch_nonprofit_full_profile read-only ein*
Complete nonprofit due diligence in one call. Revenue trends, executive pay, risk flags, and a health score from IRS 990 data. Uses ProPublica Nonprofit Explorer API with IRS e-Fil…
nonprofit_search_nonprofits_by_category read-only statecategory*
Search US nonprofits by mission category and state. Returns up to 25 results with revenue, assets, and health scores (0–100). Category maps to NTEE codes: education, healthcare, ar…
nonprofit_search_nonprofits_by_name read-only name*state
Search US nonprofits by name with optional state filter. Read-only. No side effects. Idempotent. US only. Returns up to 25 matches. name: Full or partial organisation name. Require…
regulatory_fetch_docket_details read-only docket_id*
Fetch full details for a specific regulatory docket by ID. Read-only. No side effects. Idempotent. US federal only. docket_id: Docket identifier in agency format e.g. EPA-HQ-OAR-20…
regulatory_fetch_federal_register_notices read-only agency*keyworddate_from
Fetch recent Federal Register notices and rules for a specific agency. Read-only. No side effects. Idempotent. US federal only. agency: Agency name or abbreviation e.g. SEC, Food a…
regulatory_search_open_rulemakings read-only agencystatuskeyword*
Search open rulemakings and public comment periods on Regulations.gov and the Federal Register. Read-only. No side effects. Idempotent. US federal only. keyword: Topic keywords e.g…
report_feedback read-only signal*commenttool_id*query_hash*feedback_typeintended_query +2
Report a data quality issue or agent intent gap for a DataNexus tool response. tool_id: e.g. "T10" or "security_fetch_cve_detail". query_hash: From the query_hash field of the res…
report_mcpize_link read-only tool_id*
Check MCPize subscription status for a DataNexus tool. tool_id: DataNexus tool identifier e.g. "T10". Pass the tool the user is asking about. Returns: status ("free" | "subscript…
search_datanexus_tools read-only query*domain
Find the right DataNexus tool by describing your task in plain English. Read-only. No side effects. Call this before any other DataNexus tool to reduce context load from 40000 to 8…
security_audit_licence_compatibility read-only packagesspdx_ids
Audit the licence compatibility of your entire dependency list. Input package names (with ecosystem) or SPDX IDs; get a COMPATIBLE/CONFLICT verdict with specific conflicting pairs…
security_audit_sbom_continuous can modify data sbom*action*watch_id*
Persistent SBOM watch. Register once, check anytime for new CVEs affecting your dependency snapshot. Silent permanent watch — CycloneDX and SPDX supported. Uses OSV.dev for vulnera…
security_audit_sbom_license_policy read-only sbom*policy
Audit a CycloneDX or SPDX SBOM against an SPDX licence policy and return a PASS/WARN/BLOCK verdict. sbom: Full SBOM as a JSON string — CycloneDX or SPDX format. Required. 500 KB ma…
security_audit_sbom_vulnerabilities read-only sbom_json*
Audit a Software Bill of Materials for known vulnerabilities across all listed packages. Read-only. No side effects. Idempotent. sbom_json: CycloneDX or SPDX SBOM as a JSON string.…
security_detect_typosquatting read-only ecosystem*package_name*
Detect typosquatting attacks against a package name. Compares using Damerau-Levenshtein distance ≤ 2 against top-10,000 packages. Returns similar_packages with anomaly scores, and…
security_fetch_cisa_kev read-only cve_id*
Check whether a CVE is in the CISA Known Exploited Vulnerabilities (KEV) catalog. Read-only. No side effects. Idempotent. cve_id: CVE identifier in format CVE-YYYY-NNNNN e.g. CVE-2…
security_fetch_cve_detail read-only cve_id*
Fetch full detail for a specific CVE by ID. Read-only. No side effects. Idempotent. cve_id: CVE identifier in format CVE-YYYY-NNNNN e.g. CVE-2021-44228. Required. Returns descripti…
security_fetch_cve_epss read-only cve_id*
EPSS exploit probability score for a CVE — predicts likelihood of exploitation in the next 30 days. cve_id: CVE identifier e.g. "CVE-2021-44228". Returns: epss (float 0.0–1.0) an…
security_fetch_cve_risk_summary read-only cve_id*
Instant CVE risk verdict. Combines CVSS severity, CISA KEV exploitation status, and EPSS probability in one parallel call. Returns CRITICAL_EXPLOIT, HIGH_RISK, MODERATE, LOW, or UN…
security_fetch_cve_watch can modify data action*cve_ids*watch_id*
Persistent CVE watchlist. Create once, check anytime for new events since your last visit — patch releases, KEV listings, PoC publications, exploitation detected. Uses Redis for pe…
security_fetch_cve_watch_status read-only watch_ids*
Check all specified CVE watches for new events since your last poll. Returns only watches with new events, making it efficient to run on a schedule. watch_ids: List of watch IDs to…
security_fetch_dependency_graph read-only package*version*ecosystem*
Fetch the full dependency tree for a package version including transitive dependencies. Read-only. No side effects. Idempotent. Hard 8-second timeout — large dependency trees may r…
security_fetch_licence_analysis read-only spdx_id*
Understand any software licence in plain English. Returns obligations, permissions, limitations, risk level, and OSI/FSF status for any SPDX licence identifier. Static bundle cover…
security_fetch_package_licence read-only package*version*ecosystem*
Fetch the SPDX licence identifier for an open source package version. Read-only. No side effects. Idempotent. package: Package name e.g. flask. Required. version: Exact version str…
security_fetch_package_maintainer_history read-only ecosystem*package_name*
Analyse ownership and release history for an npm or PyPI package to detect supply-chain risk. Uses PyPI JSON API and npm registry — data refreshed on each call, 1-hour cache. Retur…
security_fetch_package_risk_brief read-only versionecosystem*package_name*
Single SHIP/CAUTION/BLOCK verdict for any package. Combines CVEs, licence, maintainer health, and transitive count in one call. Uses OSV.dev, deps.dev, PyPI, and npm registry — dat…
security_fetch_package_vulnerabilities read-only packageversionpackagesecosystem
Fetch all known CVEs for an open source package version or a batch of packages. Read-only. No side effects. Idempotent. Single-package mode: package (e.g. requests), version (e.g.…
validate_tool_output read-only tool_id*query_hash*response_json*
Validate a DataNexus tool response for data quality issues using two-layer validation: deterministic rules first, then AI review for ambiguous cases. Read-only. Never blocks. tool_…