PluginBench
MCP Server
Active
Apache-2.0

io.github.cyanheads/attack-surface-mcp-server MCP Server

io.github.cyanheads/attack-surface-mcp-server

What is the io.github.cyanheads/attack-surface-mcp-server MCP server?

Passive external attack-surface mapping: CT subdomains, DNS, TLS, HTTP posture, RDAP/WHOIS, Shodan.

How to install io.github.cyanheads/attack-surface-mcp-server

Copy-paste configuration for popular MCP clients.

transport: stdio
Config generated by PluginBench — verify against the source before use.
Environment / auth
  • SHODAN_API_KEY
    secret

    Optional Shodan API key. Enables attacksurface_lookup_host; absent → that one tool returns source_unavailable and the rest of the server works.

  • CERTSPOTTER_API_KEY
    secret

    Optional Certspotter API key. Raises CT-fallback rate limits; absent → free unauthenticated tier.

  • ATTACKSURFACE_DEFAULT_RESOLVERS

    Comma-separated default DNS resolver IPs for attacksurface_resolve_dns.

  • ATTACKSURFACE_HTTP_USER_AGENT

    Default User-Agent for attacksurface_probe_http (overridable per call).

  • ATTACKSURFACE_MAX_SUBDOMAINS

    Cap on subdomains resolved during a map_domain run.

  • ATTACKSURFACE_RDAP_BOOTSTRAP_URL

    RDAP bootstrap base URL; override for a private/mirrored RDAP.

  • ATTACKSURFACE_ALLOW_PRIVATE_TARGETS

    Set true to disable the SSRF guard for internal-network assessment (local/trusted deployments only).

  • MCP_LOG_LEVEL

    Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').

  • MCP_HTTP_HOST

    The hostname for the HTTP server.

  • MCP_HTTP_PORT

    The port to run the HTTP server on.

  • MCP_HTTP_ENDPOINT_PATH

    The endpoint path for the MCP server.

  • MCP_AUTH_MODE

    Authentication mode to use: 'none', 'jwt', or 'oauth'.

~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "attack-surface-mcp-server": {
      "command": "bun",
      "args": [
        "-y",
        "@cyanheads/attack-surface-mcp-server",
        "run",
        "start:stdio"
      ],
      "env": {
        "SHODAN_API_KEY": "<YOUR_SHODAN_API_KEY>",
        "CERTSPOTTER_API_KEY": "<YOUR_CERTSPOTTER_API_KEY>",
        "ATTACKSURFACE_DEFAULT_RESOLVERS": "<YOUR_ATTACKSURFACE_DEFAULT_RESOLVERS>",
        "ATTACKSURFACE_HTTP_USER_AGENT": "<YOUR_ATTACKSURFACE_HTTP_USER_AGENT>",
        "ATTACKSURFACE_MAX_SUBDOMAINS": "<YOUR_ATTACKSURFACE_MAX_SUBDOMAINS>",
        "ATTACKSURFACE_RDAP_BOOTSTRAP_URL": "<YOUR_ATTACKSURFACE_RDAP_BOOTSTRAP_URL>",
        "ATTACKSURFACE_ALLOW_PRIVATE_TARGETS": "<YOUR_ATTACKSURFACE_ALLOW_PRIVATE_TARGETS>",
        "MCP_LOG_LEVEL": "<YOUR_MCP_LOG_LEVEL>",
        "MCP_HTTP_HOST": "<YOUR_MCP_HTTP_HOST>",
        "MCP_HTTP_PORT": "<YOUR_MCP_HTTP_PORT>",
        "MCP_HTTP_ENDPOINT_PATH": "<YOUR_MCP_HTTP_ENDPOINT_PATH>",
        "MCP_AUTH_MODE": "<YOUR_MCP_AUTH_MODE>"
      }
    }
  }
}

Related MCP servers

Fetch METARs, TAFs, PIREPs, and domestic SIGMETs from the NWS Aviation Weather Center.

1
TypeScript
Apache-2.0
View repository →

Search and retrieve bioRxiv and medRxiv preprints — by DOI, date interval, or keyword — via MCP.

1
TypeScript
View repository →

Fetch US Bureau of Labor Statistics data — CPI, unemployment, wages, JOLTS, and more via MCP.

1
TypeScript
View repository →

Search posts, profiles, feeds, threads, and trending topics on Bluesky.

1
TypeScript
Apache-2.0
View repository →

Collaborative BrAPI v2.1 MCP workspace — studies, germplasm, genotypes across Breedbase, T3, more.

3
TypeScript
Apache-2.0
View repository →

Browser compatibility and Baseline status for any web feature — offline, from bundled MDN data.

1
TypeScript
Apache-2.0
View repository →