EverThread runs on your own machine — the client starts it, so there is no endpoint to ping. Last commit 23 Sep 2026.
Plain-English website security check for agents: certificate, headers, scripts, forms, spam.
Today is the operative word: we check EverThread every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.
This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.
claude mcp add everthread -- npx -y everthread
{
"mcpServers": {
"everthread": {
"args": [
"-y",
"everthread"
],
"command": "npx"
}
}
}
[mcp_servers.everthread]
command = "npx"
args = ["-y", "everthread"]
{
"mcpServers": {
"everthread": {
"args": [
"-y",
"everthread"
],
"command": "npx"
}
}
}
{
"mcpServers": {
"everthread": {
"args": [
"-y",
"everthread"
],
"command": "npx"
}
}
}
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
x402-paid domain verification for AI agents — trustscore, SSL, security headers, robots.
Scan websites for security vulnerabilities, headers, TLS, and email security.
License check, outdated deps, security for AI agents
Security tools for your AI: scan, pentest, check headers, guard code and scan repos for secrets.
Read-only network & security recon tools (DNS, TLS, headers, CORS) for AI agents, each graded.
Free web tools for AI agents: HTML to Markdown, compliance scan, page profile, security headers.
Website intelligence for AI agents: tech stack, hosting, security posture, SEO, and DNS.
Answers built from our own checks of this server.