mcpbeat

Nullcone Threat Intelligence MCP Server

io.github.maco144/nullcone
not responding

Nullcone Threat Intelligence is listed as active in the registry but did not answer our last check. Last commit 6 Jun 2026.

Real-time threat intel for AI agents: 890K+ IOCs incl. prompt-injection & AI-skill threats

Uptime history 41 hours of history · worst hour 0%
41 hours agonow
0.0%
Uptime 24h
0 of 91 checks
Tools
hidden behind auth
20000 ms
Response time
average over 24h
0
Stars
last commit 6 Jun 2026

Connect this server

Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 6 min ago.

run in your terminal
claude mcp add nullcone --transport http https://nullcone.ai/mcp
~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "nullcone": {
      "url": "https://nullcone.ai/mcp"
    }
  }
}
~/.codex/config.toml
[mcp_servers.nullcone]
url = "https://nullcone.ai/mcp"
.cursor/mcp.json
{
  "mcpServers": {
    "nullcone": {
      "url": "https://nullcone.ai/mcp"
    }
  }
}
.vscode/mcp.json
{
  "mcpServers": {
    "nullcone": {
      "url": "https://nullcone.ai/mcp"
    }
  }
}

Endpoints

URLTransportStateLatencyChecked
https://nullcone.ai/mcp streamable-http answering 20000 ms 6 min ago

Nullcone Threat Intelligence — questions

Answers built from our own checks of this server.

Is Nullcone Threat Intelligence working right now?
We send a real MCP handshake every 15 minutes. Over the last 24 hours 0 of 91 checks got a reply (0.0%), average response time 20000 ms. The bar chart above shows every period we have measured.
The registry lists Nullcone Threat Intelligence as active — why does it not respond?
The official MCP registry stores what the author submitted; it does not verify that the server still runs. We check the endpoint ourselves, and this one does not answer. Catalogues that copy the registry without checking will show it as working.
How do I connect Nullcone Threat Intelligence?
Copy the ready config from this page — we generate it for Claude Code, Claude Desktop, Codex, Cursor and VS Code, each with the file path that client actually reads. It is a remote server, so there is nothing to install — the client connects to the address.
Does Nullcone Threat Intelligence need an API key?
No. Nullcone Threat Intelligence completed a full MCP handshake with us as an anonymous client and listed its tools without asking for anything. This is what we observed, not what the docs claim.
Is Nullcone Threat Intelligence open source?
Yes — it is published under the NOASSERTION licence, written in Python and 0 stars on GitHub. The source link is on this page, so you can read exactly what it does with your data before you connect it.