MCP serverio.github.Project-Gifted1/pg1-threat-intel
Threat intel for AI agents: IOCs, CVEs (EPSS/KEV), wallet sanctions and age, domain and URL checks.
Overview
Score?
UNRATED 0.622
of what a free look can see, on 14 looks
Looks
15
last 16 hr ago
Tools
14
changed 3 days ago
More info
URL
pg1-ai-agent.vercel.app/api/mcp
streamable-http
Says it is
pg1-threat-intel 1.13.0
protocol 2025-06-18
In the record since
13 days ago
Among servers18,413 with a card
0median 0.606 · this server 0.622 · highest on record 0.8561
Toolsfrom sha256:a92f52db9a…6447d7 · +1 −0 3 days ago
| Tool | Schema |
|---|---|
| check_domain_age PG1 Sovereign Threat Intelligence: looks up a domain's registration age via RDAP (the IANA-standardized WHOIS successor), resolved through the IANA bootstrap registry for the corre |
input · output |
| check_hostname_reputation PG1 Sovereign Threat Intelligence: checks a single hostname against the MetaMask eth-phishing-detect blocklist/allowlist and a lookalike/typosquat detector, synced daily by the sov |
input · output |
| check_wallet_age added PG1 Sovereign Threat Intelligence: reports when an EVM wallet address first appeared on a given chain, based on its earliest on-chain transfer history (in or out), plus whether the |
input · output |
| check_wallet_sanctions PG1 Sovereign Threat Intelligence: checks a cryptocurrency wallet address against the OFAC SDN (Specially Designated Nationals) sanctions list, synced daily from US Treasury data. |
input · output |
| get_cve_batch PG1 Sovereign Threat Intelligence: looks up multiple CVE identifiers in a single call, each enriched with NVD description/CVSS, FIRST.org EPSS score, and CISA KEV status — same enr |
input · no output |
| get_cve_by_product PG1 Sovereign Threat Intelligence: returns CVEs affecting a given vendor/product (optionally a specific version), enriched with CVSS, EPSS, and CISA KEV status, sorted by exploitat |
input · no output |
| get_cve_details PG1 Sovereign Threat Intelligence: enriched CVE lookup combining NVD (description, CVSS score/vector), FIRST.org EPSS (exploit-probability score and percentile), and the CISA Known |
input · no output |
| get_ioc_batch PG1 Sovereign Threat Intelligence: looks up multiple indicators (IPs, domains, URLs, hashes) in a single call — a batched pre-action safety check for AI agents. Each returns the sa |
input · no output |
| get_ioc_context PG1 Sovereign Threat Intelligence: looks up a single specific indicator value (IP, domain, URL, or hash) — the recommended pre-action safety check for AI agents before visiting, do |
input · no output |
| get_threat_actor_profile PG1 Sovereign Threat Intelligence: returns a dossier for a known threat actor / APT group — aliases, description, associated MITRE ATT&CK techniques, and associated malware/tooling |
input · no output |
| get_threat_indicators PG1 Sovereign Threat Intelligence: returns a STIX 2.1 bundle of verified threat indicators (IPs, domains, URLs, file hashes) sourced from ThreatFox, URLhaus, OTX and NVD. Payment r |
input · no output |
| get_usage_status PG1 Sovereign Threat Intelligence: returns your remaining free-tier calls for today and current Gumroad license status. No payment required — this tool is always free. |
input · no output |
| submit_indicator PG1 Sovereign Threat Intelligence: submit an observed indicator for validation and possible inclusion in future query results. Requires a valid Gumroad license key (X-API-KEY heade |
input · no output |
| subscribe_alerts PG1 Sovereign Threat Intelligence: registers a standing filter (indicator type, min EPSS, or KEV-only). Matching new indicators are POSTed to the given webhook URL as they're inges |
input · no output |
Verify it yourself
npx teppi-check https://pg1-ai-agent.vercel.app/api/mcpcurl -s https://api.teppi.xyz/v1/trust/mcp/mcs_01M318QKSVVKF1DATYEVCBX5V5