MCPLow riskUnclaimed
threatcluster
Live threat intel for agents: incidents, actors, CVEs with KEV/EPSS, ransomware leak-site victims.
Jam0kjam0k/threatcluster
server.json
{
"$schema": "https://static.modelcontextprotocol.io/schemas/2025-09-29/server.schema.json",
"name": "io.github.Jam0k/threatcluster",
"description": "Live threat intel for agents: incidents, actors, CVEs with KEV/EPSS, ransomware leak-site victims.",
"repository": {
"url": "https://github.com/Jam0k/Threat-Intelligence-MCP",
"source": "github"
},
"version": "0.2.3",
"packages": [
{
"registryType": "npm",
"registryBaseUrl": "https://registry.npmjs.org",
"identifier": "threatcluster-mcp",
"version": "0.2.3",
"transport": {
"type": "stdio"
},
"environmentVariables": [
{
"description": "ThreatCluster API key (tc_live_... / tc_agent_...). Free keys: https://threatcluster.io/api",
"isRequired": true,
"format": "string",
"isSecret": true,
"name": "THREATCLUSTER_API_KEY"
},
{
"description": "API base URL",
"format": "string",
"default": "https://threatcluster.io/api/public/v1",
"name": "THREATCLUSTER_API_BASE"
}
]
}
],
"remotes": [
{
"type": "streamable-http",
"url": "https://threatcluster.io/mcp",
"headers": [
{
"description": "ThreatCluster API key. Free keys: https://threatcluster.io/api",
"isRequired": true,
"isSecret": true,
"name": "X-API-Key"
}
]
}
]
}Permissions
DeclaredDetected
Runs code—
nodeInstalls—
npm:threatcluster-mcp@0.2.3Runs install scripts—None
Network
threatcluster.iothreatcluster.ioNeeds credentials
THREATCLUSTER_API_KEYX-API-KeyTHREATCLUSTER_API_KEYX-API-KeyOutside the workspace—None
Agent tools—None
Checks
Low risk · Nothing worth a warning was found.
Not reviewed by a person · Checked by rules; the model review is not switched on yet.
Versions
- #10.2.3latestOct 7, 2026
threatclusterOpen in Codeg