MCPLow riskUnclaimed
isMalicious threat intelligence for AI agents
Reputation of IPs, domains, URLs, hashes, emails and phones; CVE lookups; prompt-injection scans
ismalicious.comismalicious.com/mcp-server
server.json
{
"$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
"name": "com.ismalicious/mcp-server",
"description": "Reputation of IPs, domains, URLs, hashes, emails and phones; CVE lookups; prompt-injection scans",
"title": "isMalicious threat intelligence for AI agents",
"repository": {
"url": "https://github.com/hexablob/ismalicious-mcp-server",
"source": "github"
},
"version": "0.5.0",
"websiteUrl": "https://ismalicious.com/prompt-injection-scanner",
"packages": [
{
"registryType": "npm",
"registryBaseUrl": "https://registry.npmjs.org",
"identifier": "@ismalicious/mcp-server",
"version": "0.5.0",
"transport": {
"type": "stdio"
},
"environmentVariables": [
{
"description": "API key from https://ismalicious.com/app/account. Optional: without it the server starts in bootstrap mode and offers bootstrap_key.",
"isSecret": true,
"name": "ISMALICIOUS_API_KEY"
},
{
"description": "API secret paired with the key",
"isSecret": true,
"name": "ISMALICIOUS_API_SECRET"
},
{
"description": "API base URL (defaults to https://ismalicious.com/api; https://api.ismalicious.com reaches the API host directly)",
"name": "ISMALICIOUS_API_BASE"
},
{
"description": "Replaces every tool's timeout, in milliseconds (defaults: gate 15000, check_indicator 25000, CVE 10000, search_indicators 20000, check_indicators 60000, check_password_exposure 10000). ISMALICIOUS_TIMEOUT_<TOOL>_MS, e.g. ISMALICIOUS_TIMEOUT_CHECK_INDICATOR_MS, sets one tool's timeout and wins over it",
"name": "ISMALICIOUS_TIMEOUT_MS"
},
{
"description": "Base URL for bootstrap_key, a route only https://ismalicious.com/api serves (defaults to ISMALICIOUS_API_BASE, or https://ismalicious.com/api when that is api.ismalicious.com)",
"name": "ISMALICIOUS_WEB_BASE"
},
{
"description": "Result cache: 0 turns it off; N caps every tool's cache lifetime at N seconds (never raises one)",
"name": "ISMALICIOUS_CACHE_TTL_S"
},
{
"description": "0 (or false, off, no) skips the one unauthenticated GET /health sent after initialize to open the connection",
"name": "ISMALICIOUS_PREWARM"
}
]
}
]
}Permissions
DeclaredDetected
Runs code—
nodeInstalls—
npm:@ismalicious/mcp-server@0.5.0Runs install scripts—None
NetworkNoneNone
Needs credentials
ISMALICIOUS_API_KEYISMALICIOUS_API_SECRETISMALICIOUS_API_KEYISMALICIOUS_API_SECRETOutside the workspace—None
Agent tools—None
Checks
Low risk · Nothing worth a warning was found.
Not reviewed by a person · Checked by rules; the model review is not switched on yet.
Versions
- #10.5.0latestOct 7, 2026
isMalicious threat intelligence for AI agentsOpen in Codeg