BlackVeil DNS & Email Security Scanner is answering right now. Last checked 3 min ago. It exposes 80 tools. Last commit 18 Sep 2026.
DNS and email security scanner with 80 MCP tools for SPF, DMARC, DNSSEC, SSL, and brand audits.
Every tool that appeared, vanished or quietly changed what it asks for. Recorded since 14 August 2026. No other catalogue keeps this.
We read the source, 21 h ago · tools taken from the live server · rules 3dff92dd89df
What this server is able to do. For an MCP server this is often the job itself — a terminal server runs commands because that is what it is for. Listed so you know what you are plugging in, not as an accusation.
'MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArmqcx2roHY0AGFBJ6QQldlX0e5/BQVCL9nQKNgJqPgjhSlRVuBJmGCI4vEAe5qLkgKRbZ5WxS0F9LRI+tgDlKZvmmv/Bh7BhqN9ZpKFdsQIg4odgUa0tCFg/V9cPlzDDFFgox77fDFcKf2os+ORqBunHmhJPE6HODXD+lFF6RtTmQSyQXVZepREju5fmUd/xEkMhVYQVIKSK9YMM0D5cIkKzylpjMp9WKozrdkg…
Found in continuous integration, deployment or infrastructure files, or in a neighbouring package of the same monorepo. None of this is installed when you add the server: it describes how the project is built and released. We list it because a leaked key in a build pipeline is still a real problem, but it is not something this server does on your machine.
# Keep the image surface small and deterministic. Project tooling is installed # from package-lock.json by the devcontainer post-create command. USER root
'.npmrc'
Is this your server and something here is wrong? Tell us — corrections are free and do not require a plan.
We found places where it runs commands, builds paths or queries from values it is given. None of that is a flaw by itself — it becomes one when the code changes, and code changes quietly between releases. We re-read it on every one.
Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 3 min ago.
claude mcp add dns --transport http https://dns-mcp.blackveilsecurity.com/mcp
{
"mcpServers": {
"dns": {
"url": "https://dns-mcp.blackveilsecurity.com/mcp"
}
}
}
[mcp_servers.dns]
url = "https://dns-mcp.blackveilsecurity.com/mcp"
{
"mcpServers": {
"dns": {
"url": "https://dns-mcp.blackveilsecurity.com/mcp"
}
}
}
{
"mcpServers": {
"dns": {
"url": "https://dns-mcp.blackveilsecurity.com/mcp"
}
}
}
Read directly from the server with tools/list, grouped by what they act on.
If a tool disappears, we record the date.
osint_investigate_domain_start
osint_investigate_email_start
osint_investigate_infrastructure_start
osint_investigate_supply_chain_start
osint_investigate_username_start
osint_investigation_report
osint_investigation_status
brand_audit_batch_start
brand_audit_get_report
brand_audit_single
brand_audit_status
delete_brand_audit_watch
list_brand_audit_watches
discover_brand_domains
discover_brand_domains_findings
discover_brand_domains_start
discover_brand_domains_status
discover_subdomains
batch_scan
batch_scan_findings
batch_scan_start
batch_scan_status
scan_buckets_findings
scan_buckets_start
scan_buckets_status
scan_domain
check_mx
check_ns
compare_baseline
compare_domains
check_dane
check_dane_https
check_dnssec
check_dnssec_chain
map_compliance
map_supply_chain
check_agent_discovery
analyze_drift
assess_spoofability
check_authoritative_dns_infra
get_benchmark
check_bimi
check_caa
cymru_asn
check_dbl
check_dkim
check_dmarc
check_dnskey_strength
get_domain_rank
explain_finding
check_fast_flux
generate
check_http_security
check_lookalikes
check_mta_sts
check_nsec_walkability
prioritize_portfolio_leads
get_provider_insights
check_ptr
check_rbl
rdap_lookup
check_realtime_threat_feed
register_brand_audit_watch
check_mx_reputation
resolve_spf_chain
check_resolver_consistency
check_root_server_set
sge_quickscan
check_shadow_domains
simulate_attack_paths
check_spf
check_srv
check_ssl
check_subdomailing
check_subdomain_takeover
check_svcb_https
check_tlsrpt
check_txt_hygiene
validate_fix
check_zone_hygiene
Tools this server used to expose. Anything built against them stopped working on the day they went.
assess_coverage
get_ca_policies
query_signins
query_ual
prioritize_csc_leads
| URL | Transport | State | Latency | Checked |
|---|---|---|---|---|
| https://dns-mcp.blackveilsecurity.com/mcp | streamable-http | answering | 513 ms | 3 min ago |
DNS and email security: check SPF, DKIM, DMARC, DNSSEC, DANE and build the records. 45 tools.
Audit a domain's email and web security: SPF, DKIM, DMARC, MTA-STS, DNSSEC, TLS, WHOIS. No API keys.
Real-time DNS security analysis — DNSSEC, email auth, and RDAP. Built for SOC investigations.
Security scanner for MCP servers - detects tool poisoning and injection
13 security recon tools for AI agents — DNS, SSL, HTTP, email, ports, ASN. Health Score 0-100.
Security scanner for AI Agent skills, plugins, and MCP servers with A-F grading.
BridgeGuard MCP Server - Cross-chain bridge security audit tools for AI coding agents. Scan bri...
29 pay-per-call DNS, SEO, SSL, security, and dev tools for AI agents. x402, no API key.
Answers built from our own checks of this server.