Enrichment MCP ServerServer

MSAdministrator
GitHub
securityenrichmentAPI

Loading subscription status...

💡 Description

This project provides a Model Context Protocol (MCP) server for performing enrichment based on the given observables. It determines which enrichment services to call based on the combination of the configured services and the submitted observables. This tool implements a simple MCP server for performing enrichments/communications with various services and a python package called security-cli.

📝 JSON Entries

{
  "mcpServers": [
    {
      "enrichment-mcp": {
        "args": [
          "--directory",
          "/ABSOLUTE/PATH/TO/CLONED/REPOSITORY/enrichment-mcp",
          "run",
          "server.py"
        ],
        "command": "/ABSOLUTE/PATH/TO/PARENT/FOLDER/uv"
      }
    }
  ]
}

🛠️ Tools

lookup-observable

Features

  • Enrichment lookups for IP addresses, domains, and URLs
  • Utilizes Jinja2 templates to format response data
  • Integration with VirusTotal and other third-party services

💬 Example Queries

  • Perform an enrichment lookup for the IP address 91.195.240.94
  • Enrich the domain wearab.org
  • Look up the URL https://urlscan.io/api/v1/result/01966efe-c8fa-74a4-bfc0-1ed479838e85/