MCP servercom.dechonet/mcp
20 domain recon tools for AI agents: DNS, SSL, headers, email, subdomains, lookalikes, changes.
Overview
Score?
UNRATED 0.580
of what a free look can see, on 19 looks
Looks
20
last 16 hr ago
Tools
21
changed 1 day ago
More info
URL
dechonet.com/mcp
streamable-http
Says it is
dechonet 1.2.4
protocol 2025-06-18
In the record since
18 days ago
Among servers18,413 with a card
0median 0.606 · this server 0.580 · highest on record 0.8561
Toolsfrom sha256:a2c9443800…776e24 · +1 −0 1 day ago
| Tool | Schema |
|---|---|
| asn_lookup Look up Autonomous System (ASN) / BGP information for an IP address or AS number: the network operator, announced prefixes, abuse contact, and a classification (cloud, CDN, ISP, ho |
input · output |
| dns_lookup Query DNS records (A, AAAA, MX, TXT, NS, SOA, CAA) for a domain and validate email-related records, including DNSSEC presence and SPF/DMARC syntax, returning severity-rated diagnos |
input · output |
| dns_propagation Query one DNS record across 8+ global public resolvers (Google, Cloudflare, Quad9, OpenDNS, and more) simultaneously and report which resolvers return stale versus updated values. |
input · output |
| domain_changes Report what has changed for a domain over time — the security regressions and drift that DechoNet's daily monitoring has recorded across every watch on the domain (SSL grade, heade |
input · output |
| email_auth Assess a domain's email authentication and deliverability posture: MX records, SPF, DMARC, DKIM (probes 15 common selectors), BIMI, MTA-STS, TLS-RPT, and DANE, plus a blacklist che |
input · output |
| email_header_analysis Parse raw email headers to reconstruct the delivery path (each Received hop in order), extract SPF/DKIM/DMARC authentication results, measure per-hop delays, and flag unencrypted ( |
input · output |
| golive_check Check whether a domain is ready to launch or migrate — a go/no-go verdict over five essentials: DNS resolves to an IP, has propagated consistently across global resolvers, SSL/TLS |
input · output |
| http_security Follow a URL's HTTP redirect chain and audit response security headers (CSP, HSTS, X-Frame-Options, COOP, CORP, COEP, Permissions-Policy), grading A+ to F and flagging information |
input · output |
| impersonation_exposure Assess how exposed a domain is to brand impersonation and phishing, PASSIVELY: live typosquat/lookalike domains (homoglyph, omission, transposition, TLD swap) that actually resolve |
input · output |
| ip_info Report information about the caller's own public IP as seen by the server: IPv4/IPv6 address, ISP, ASN, approximate geolocation, and proxy/VPN heuristics. Takes no input — it refle |
input · output |
| lookalike_domains Generate the typosquat/lookalike variants of a domain that phishers actually register — homoglyph swaps (l→1, o→0, rn→m), TLD swaps (.com→.co), character omissions, transpositions, |
input · output |
| owasp_check Assess a domain's OWASP posture from EXTERNAL OBSERVATION only: the OWASP Secure Headers Project plus the externally observable Top 10 subset — A02 Cryptographic Failures (TLS/cert |
input · output |
| port_scan Probe a host for a fixed set of common TCP ports (HTTP, HTTPS, SSH, FTP, SMTP, DNS, and common databases) and report which are open, the service name, and the response time. BEHAVI |
input · output |
| pqc_readiness added Check whether a website's public TLS endpoint is ready for post-quantum cryptography: does it complete a TLS 1.3 handshake that offers only the hybrid X25519MLKEM768 key exchange ( |
input · output |
| reverse_dns Resolve the PTR (reverse DNS) record for an IPv4 or IPv6 address and verify forward-confirmed reverse DNS (FCrDNS) by checking that the PTR hostname resolves back to the same IP. I |
input · output |
| security_scan One-shot comprehensive audit of a domain: runs DNS, SSL, HTTP headers, email auth, port scan, DNS propagation, reverse DNS, and ASN/RDAP checks in parallel, then computes a 0-100 H |
input · output |
| ssl_check Inspect a host's served TLS/SSL certificate and connection: expiry date, issuer, SAN list, chain integrity, TLS version, and HSTS, returning an A+ to F grade weighted by certificat |
input · output |
| subdomain_discovery Enumerate the subdomains of a domain from Certificate Transparency logs — fully passive (no packets are sent to the target; CT logs are public records of every TLS certificate ever |
input · output |
| subnet_calc Compute IPv4 subnet details from CIDR notation entirely locally — no network call: network and broadcast addresses, usable host range, total usable hosts, subnet mask, and wildcard |
input · output |
| watch_domain Start (or reuse) a daily DechoNet watch on a domain so that changes are recorded over time — SSL grade/issuer/expiry, DNS records, HTTP security headers, domain registration, and o |
input · output |
| whois_lookup Retrieve domain registration data via RDAP (with WHOIS fallback): registrar, creation/expiry/update dates, nameservers, and EPP status flags, highlighting risk states such as clien |
input · output |
Verify it yourself
npx teppi-check https://dechonet.com/mcpcurl -s https://api.teppi.xyz/v1/trust/mcp/mcs_01M2MCA1DTJP9VAKBZ2F9WAPCR