E

Enrichment MCP

A server based on the Model Context Protocol (MCP) for performing enrichment queries on provided observables (such as IP addresses, domain names, etc.) through third - party services (such as VirusTotal, HybridAnalysis, etc.). This project is currently only for development and testing, supports multiple observable types and third - party services, and uses environment variables to manage API keys for security.
2 points
17

What is the Enrichment MCP Server?

The Enrichment MCP Server is an implementation of the Model Context Protocol (MCP) for security analysis. It enriches the provided observations by integrating multiple third - party services. For example, it can analyze IP addresses, domain names, URLs, or email addresses and return relevant threat intelligence and risk assessments.

How to use the Enrichment MCP Server?

Users can input observations (such as IP addresses, domain names, etc.) through simple commands or interfaces, and the server will automatically call the corresponding services and return detailed analysis results.

Applicable Scenarios

The Enrichment MCP Server is suitable for security analysts, researchers, and enterprise security teams who need to quickly obtain threat intelligence on network assets.

Main Features

Multi - service IntegrationSupports multiple third - party services such as VirusTotal, Hybrid Analysis, and AlienVault.
Diverse Observation TypesSupports enrichment analysis of IP addresses, domain names, URLs, and email addresses.
Templated ResponsesUses Jinja2 templates to generate standardized response formats for easy parsing and display.

Advantages and Limitations

Advantages
Efficiently integrate multi - source threat intelligence
Easy to expand new third - party services
Provide a unified API interface
Limitations
Some advanced features may depend on paid API keys
Support for complex observations is still being improved

How to Use

Install the Dependent Environment
Ensure that Python, the uv tool, and related dependencies are installed.
Configure the Service
Edit the configuration file `config.yaml` and set the necessary API keys.
Start the Server
Run the command to start the Enrichment MCP Server.

Usage Examples

Example 1: IP Address Enrichment AnalysisAfter inputting an IP address, the system will call multiple services to return its threat intelligence.
Example 2: URL Threat Intelligence DetectionAfter inputting a URL, the system will check if it has malicious behavior.

Frequently Asked Questions

How to add a new third - party service?
Does it support custom templates?
Why are API keys required?

Related Resources

Official Documentation
The official user manual for the Enrichment MCP Server.
GitHub Code Repository
The homepage of the open - source project, containing the complete code and examples.
YouTube Tutorial
A quick - start video tutorial.
Installation
Copy the following command to your Client for configuration
{
	"mcpServers": {
		"enrichment-mcp": {
			"command": "/ABSOLUTE/PATH/TO/PARENT/FOLDER/uv",
			"args": [
				"--directory",
				"/ABSOLUTE/PATH/TO/CLONED/REPOSITORY/enrichment-mcp",
				"run",
				"server.py"
			]
		}
    }
}
Note: Your key is sensitive information, do not share it with anyone.
S
Search1api
The Search1API MCP Server is a server based on the Model Context Protocol (MCP), providing search and crawling functions, and supporting multiple search services and tools.
TypeScript
343
4 points
D
Duckduckgo MCP Server
Certified
The DuckDuckGo Search MCP Server provides web search and content scraping services for LLMs such as Claude.
Python
830
4.3 points
M
MCP Alchemy
Certified
MCP Alchemy is a tool that connects Claude Desktop to multiple databases, supporting SQL queries, database structure analysis, and data report generation.
Python
326
4.2 points
P
Postgresql MCP
A PostgreSQL database MCP service based on the FastMCP library, providing CRUD operations, schema inspection, and custom SQL query functions for specified tables.
Python
113
4 points
M
MCP Scan
MCP-Scan is a security scanning tool for MCP servers, used to detect common security vulnerabilities such as prompt injection, tool poisoning, and cross-domain escalation.
Python
618
5 points
A
Agentic Radar
Agentic Radar is a security scanning tool for analyzing and assessing agentic systems, helping developers, researchers, and security experts understand the workflows of agentic systems and identify potential vulnerabilities.
Python
558
5 points
C
Cloudflare
Changesets is a build tool for managing versions and releases in multi - package or single - package repositories.
TypeScript
1.5K
5 points
E
Edgeone Pages MCP Server
EdgeOne Pages MCP is a service that quickly deploys HTML content to EdgeOne Pages via the MCP protocol and obtains a public URL
TypeScript
254
4.8 points
Featured MCP Services
D
Duckduckgo MCP Server
Certified
The DuckDuckGo Search MCP Server provides web search and content scraping services for LLMs such as Claude.
Python
830
4.3 points
M
Markdownify MCP
Markdownify is a multi-functional file conversion service that supports converting multiple formats such as PDFs, images, audio, and web page content into Markdown format.
TypeScript
1.7K
5 points
G
Gitlab MCP Server
Certified
The GitLab MCP server is a project based on the Model Context Protocol that provides a comprehensive toolset for interacting with GitLab accounts, including code review, merge request management, CI/CD configuration, and other functions.
TypeScript
88
4.3 points
N
Notion Api MCP
Certified
A Python-based MCP Server that provides advanced to-do list management and content organization functions through the Notion API, enabling seamless integration between AI models and Notion.
Python
142
4.5 points
U
Unity
Certified
UnityMCP is a Unity editor plugin that implements the Model Context Protocol (MCP), providing seamless integration between Unity and AI assistants, including real - time state monitoring, remote command execution, and log functions.
C#
567
5 points
F
Figma Context MCP
Framelink Figma MCP Server is a server that provides access to Figma design data for AI programming tools (such as Cursor). By simplifying the Figma API response, it helps AI more accurately achieve one - click conversion from design to code.
TypeScript
6.7K
4.5 points
C
Context7
Context7 MCP is a service that provides real-time, version-specific documentation and code examples for AI programming assistants. It is directly integrated into prompts through the Model Context Protocol to solve the problem of LLMs using outdated information.
TypeScript
5.2K
4.7 points
G
Gmail MCP Server
A Gmail automatic authentication MCP server designed for Claude Desktop, supporting Gmail management through natural language interaction, including complete functions such as sending emails, label management, and batch operations.
TypeScript
285
4.5 points
AIbase
Zhiqi Future, Your AI Solution Think Tank
© 2025AIbase