ContrastAPI — 55 Security Tools + 7 MCP Resources for AI Agents

MCP serverCommunication

Once added, your AI can look up CVEs and known exploited vulnerabilities, check email SPF and DMARC records, work with Sigma detection rules, and calculate risk scores. It comes with 55 tools and 7 resources of security reference data, including MITRE. No key is required to use it.

Available today. Use it from your connected AI after setup.

Add it and your AI can start using it right away, since no key is needed. Try asking your AI to look up a vulnerability or check the email records for a domain.

Then ask your AI: use the domain report tool from ContrastAPI — 55 Security Tools + 7 MCP Resources for AI Agents

What your AI can do with it

  • Look up CVEs and known exploited vulnerabilities
  • Check a domain's email SPF and DMARC records
  • Look up MITRE references
  • Work with Sigma detection rules
  • Calculate risk scores

From the project's README

As published by upinar/contrastapi in README.md.

Security intelligence, built for AI agents. Give your agent grounded answers about vulnerabilities, threats, and attack surface — backed by authoritative sources (NVD, CISA KEV, FIRST EPSS, MITRE ATLAS & D3FEND), never guesswork. CVE/KEV/CWE lookup with EPSS exploit-probability and composite risk scoring, domain & IP investigation, IOC enrichment, code-security checks, and live web intelligence. 55 tools, 7 Resources, and 3 Prompts — free, no API key, no signup.

中文 · Live: api.contrastcyber.com


Documentation

  • API Documentation — REST reference: 60+ endpoints, authentication, rate limits, token costs, and response envelope.
  • MCP Documentation — MCP tool-selection guide, 7 Resources, 3 Prompts, and copy-paste agent prompts.

Setup (MCP)

Any MCP client

{
  "mcpServers": {
    "contrastapi": {
      "command": "npx",
      "args": ["-y", "mcp-remote", "https://api.contrastcyber.com/mcp/"]
    }
  }
}

Restart your agent. Other clients (Python SDK, Node SDK, cURL, VS Code): mcp-setup · quickstart

Claude Desktop — one-click extension

Grab the .mcpb file from the latest release and double-click it (or Claude Desktop → Settings → Extensions → Install Extension…). No signup, no API key — all 55 tools ready immediately.

SDKs

pip install contrastapi      # Python 3.10+ — sync + async, typed responses, shortcut helpers
npm install contrastapi      # Node 14+ — concrete TypeScript types, 14 namespaces

Both SDKs cover every HTTP endpoint and MCP tool — CVE/KEV/CWE, ATLAS, D3FEND, Sigma rules, email security posture, domain, IP, IOC, code security, and web intelligence — with wire-exact response shapes and a typed exception hierarchy that mirrors the API error envelope. They also expose MCP Resources for browsing the ATLAS, D3FEND, and CWE catalogs (see docs/MCP_Documentation.md) and a conditional triage Prompt (see docs/MCP_Documentation.md#contrast-triage). Web-intelligence tools — robots_txt, redirect_chain, email_verify, brand_assets, seo_audit, geo_audit — ship with an explicit ethical floor: per-target throttling, robots.txt respected, no SMTP probing.

Links

OpenAPI: openapi.json

Smithery · npm · VS Code Marketplace · Awesome OSINT MCP · RapidAPI

Responses include a verdict block — deterministic, falsifiable_fields, data_age_seconds, sources_queried / sources_unavailable, completeness — so a verifier agent can independently re-derive specific fields from the upstream authority (NVD, RDAP, CT logs, URLhaus). Probe GET /v1/capabilities for "verdict_metadata": true.

CVE responses also embed next_calls: list[PivotHint]{tool, input, reason} triples that suggest the next MCP tool to call (e.g. kev_detail when kev.in_kev=true, cwe_lookup when cwe_id is set). Agents chain workflows without manual prompting.

MIT

Tools it offers (55)

What this server listed when ahel dialed its public endpoint in Sep 2026, with no key and no account of yours. The names are the server’s own.

  • domain_report
  • audit_domain
  • contrast_scan
  • tech_stack_cve_audit
  • threat_report
  • dns_lookup
  • whois_lookup
  • ssl_check
  • subdomain_enum
  • tech_fingerprint
  • threat_intel
  • wayback_lookup
  • scan_headers
  • email_mx
  • email_security_posture
  • email_disposable
  • email_verify
  • robots_txt
  • redirect_chain
  • brand_assets
  • seo_audit
  • geo_audit
  • phone_lookup
  • ip_lookup
  • asn_lookup
  • cve_lookup
  • calculate_risk_score
  • get_cvss_details
  • cve_search
  • cve_leading

Signals

GitHub stars
33
Forks
4
Last commit
Sep 2026
Advanced
Delivery
api MCP server → your ahel gateway (mcp.ahel.ai) → every connected AI client.
Catalog kind
mcp-server
Gateway key
com-contrastcyber-api
Source
github.com/upinar/contrastapi
Hosted endpoint
https://api.contrastcyber.com/mcp/