mcpbeat Sign in

Incidentoracle MCP Server

not responding

Incidentoracle is listed as active in the registry but did not answer our last check. It exposes 12 tools. Last commit 5 Apr 2026.

IncidentOracle - 12-tool incident management MCP: triage, BaFin DORA reporting, RCA.

Uptime history 51 days of history · worst day 0%
51 days agonow
0.0%
Uptime 24h
0 of 91 checks
12
Tools
read from the server
1049 ms
Response time
average over 24h
0
Stars
last commit 5 Apr 2026

Incidentoracle does not always answer

Over the last week it answered 0.0% of our checks. We check every 15 minutes, so you hear about the next outage within the hour — not from your users.

Three servers free · no card

Connect this server

Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 5 min ago.

run in your terminal
claude mcp add incidentoracle --transport http https://tooloracle.io/incident/mcp/
~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "incidentoracle": {
      "url": "https://tooloracle.io/incident/mcp/"
    }
  }
}
~/.codex/config.toml
[mcp_servers.incidentoracle]
url = "https://tooloracle.io/incident/mcp/"
.cursor/mcp.json
{
  "mcpServers": {
    "incidentoracle": {
      "url": "https://tooloracle.io/incident/mcp/"
    }
  }
}
.vscode/mcp.json
{
  "mcpServers": {
    "incidentoracle": {
      "url": "https://tooloracle.io/incident/mcp/"
    }
  }
}

Available tools 12

Read directly from the server with tools/list, grouped by what they act on. If a tool disappears, we record the date.

incident
incident_log
Full incident register with filters (status, classification, severity, search).
incident_stats
Dashboard: total/open/major incidents, overdue deadlines, by severity/status.
classify
classify_incident
Classify an incident against the 6 DORA criteria (RTS 2024/1772). Determines if MAJOR (triggers 4h/72h/1m reporting) or NON-MAJOR.
cyber
cyber_threat_notify
Voluntary notification of a significant cyber threat (Art. 19(2)). Uses ITS 2025/302 Annex III template.
deadline
deadline_tracker
Track all active MAJOR incident reporting deadlines. Shows overdue and upcoming.
final
final_report
Generate the 1-month final report with root cause analysis and lessons learned.
health
health_check
Server status.
initial
initial_notification
Generate the 4h initial notification for a MAJOR incident (ITS 2025/302 Annex I). Must be submitted within 4h of classification, max 24h after detection.
intermediate
intermediate_report
Generate the 72h intermediate report for a MAJOR incident (ITS 2025/302). Must include action plan if incident is not yet resolved.
log
log_incident
Log a new ICT-related incident. First step in the DORA incident management process (Art. 17).
major
major_incident_check
Quick check: would these criteria values classify as a MAJOR incident? No incident record needed — use for pre-assessment.
reclassify
reclassify
Reclassify an incident (MAJOR to NON-MAJOR or vice versa). Competent authority must be notified of reclassification.

Endpoints

URLTransportStateLatencyChecked
https://tooloracle.io/incident/mcp/ streamable-http answering 1049 ms 5 min ago

Alternatives to Incidentoracle

same job, measured the same way
Ironscales
by wyre-ai

MCP server for Ironscales phishing incident management — incidents, mailboxes, and reporting.

local only
Ironscales
by wyre-technology

MCP server for Ironscales phishing incident management — incidents, mailboxes, and reporting.

local only
Clawwork
by gammell53

AI agent project management — task boards, progress tracking, and cost reporting.

29 installs/wk local only
Gtm Ga4
by mharnett

GTM + GA4 MCP: tag management, consent auditing, workspace versioning, reports.

38 installs/wk local only
Proofpoint Essentials
by wyre-ai

MCP server for Proofpoint Essentials -- MSP org, domain, user, licensing, and reporting management.

local only
AI Incident Reporting MCP
by csoai-org

AI Incident Reporting Compliance MCP. Unified classification + reporting-clock tracker across EU...

283 installs/wk local only
Apple Search Ads
by b77

Manage Apple Ads campaigns and reporting in chat.

answering
Repose
by vncntknl

Uptime monitoring that doesn't cry wolf: manage monitors, read incidents, record deploys.

answering

Incidentoracle — questions

Answers built from our own checks of this server.

What can Incidentoracle do?
It exposes 12 tools, read directly from the server on our last check. Among them: classify_incident, cyber_threat_notify, deadline_tracker, final_report, health_check, incident_log and 6 more. The full list with descriptions is on this page — we take it from the server itself via tools/list, not from a README. How MCP servers expose tools in the first place →
Is Incidentoracle working right now?
We send a real MCP handshake every 15 minutes. Over the last 24 hours 0 of 91 checks got a reply (0.0%), average response time 1049 ms. The bar chart above shows every period we have measured.
The registry lists Incidentoracle as active — why does it not respond?
The official MCP registry stores what the author submitted; it does not verify that the server still runs. We check the endpoint ourselves, and this one does not answer. Catalogues that copy the registry without checking will show it as working.
How do I connect Incidentoracle?
Copy the ready config from this page — we generate it for Claude Code, Claude Desktop, Codex, Cursor and VS Code, each with the file path that client actually reads. It is a remote server, so there is nothing to install — the client connects to the address.
Does Incidentoracle need an API key?
No. Incidentoracle completed a full MCP handshake with us as an anonymous client and listed its tools without asking for anything. All 12 of them are readable on this page. This is what we observed, not what the docs claim.
Is Incidentoracle open source?
We cannot say either way: written in Dockerfile and 0 stars on GitHub, but we could not determine the licence, and without one the code is not open source by default.