Mmcp.market

OpenOSINT MCP server

by SonoTommy·io.github.SonoTommy/openosint·v2.15.2

AI-powered OSINT agent & MCP server. 16 tools: email, breach, IP, WHOIS, DNS, Shodan, GitHub & more.

C58/100grade C
What users say
No reviews yet
Be the first
Safety scan
C58/100

full report

Adoption
Established

1.7k stars

Reviews

Write one

Nobody has reviewed OpenOSINT yet.

If you have run it, two minutes of your experience saves the next person an afternoon.

OpenOSINT tools (9, 1 write)

write = sends, deletes, buys or posts

Read from the package source without running it. The installed server may list more.

  • generate_dorks

    Generate targeted Google dork URLs for any target (name, email, username, domain).

  • search_breach

    Check if an email appears in data breaches via HaveIBeenPwned. Requires HIBP_API_KEY env var.

  • search_domain

    Enumerate subdomains of a target domain using sublist3r.

  • search_emailwrite action

    Enumerate accounts linked to an email using holehe.

  • search_ip

    Retrieve geolocation and ASN data for an IP address via ipinfo.io.

  • search_paste

    Search Pastebin dumps for an email or username via psbdmp.ws.

  • search_phone

    Gather carrier and geolocation data for a phone number using phoneinfoga. Use E.164 format.

  • search_username

    Enumerate platforms where a username is registered using sherlock.

  • search_whois

    Retrieve WHOIS registration data for a domain.

Public scan report

scanner v0.1.9 · 2026-09-27 · same rubric, same numbers if you re-run it

1 high
  • Code scan31 source files scanned13/25
  • –Live reliabilityno gateway calls yet and no remote to proben/a
  • –Tool poisoningtools not inspected (local package is not executed); not countedn/a
  • Auth qualitystatic API keys via environment variables6/15
  • Maintenancelast push 1 days ago15/15
  • Maintainer identitynamespace and repository owner differ4/10

Findings (1)

  • highNetwork call to a paste/tunnel/webhook hostnet.suspicious-host
    openosint-2.15.2/openosint/tools/search_paste.py: …known date") lines.append(f"[+] https://pastebin.com/{paste_id} ({date})") if count > _M…
Overall 58/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON

What the publisher says

From the OpenOSINT repository's README, as published. We do not edit it. Read it on GitHub

mcp-name: io.github.OpenOSINT/openosint

OpenOSINT An OSINT (Open Source Intelligence) agent for security researchers and analysts: 20 investigation tools behind a natural-language interface, plus an MCP (Model Context Protocol) server so any MCP-compatible AI client can drive them directly. Use it as a REPL, CLI, MCP server, or browser Web UI. The AI issues hard-stop tool calls; your code executes the real binary — hallucinated findings are structurally impossible.

Self-host (free, MIT)

pip install openosint
# Interactive AI REPL (default)
openosint

# Web interface
openosint web

# Direct tool (no AI)
openosint email target@example.com

Try the live demo → — bring your own Anthropic / OpenRouter / Ollama key, no signup.

☁️ OpenOSINT Cloud — no install, pay per use

Run OpenOSINT tools with zero install as pay-per-use Apify Actors, in your browser or as MCP tools in Claude, Cursor, and Windsurf.

<!-- Add one row per new Actor here as they ship -->

All three are also available as MCP tools with no server to run: https://mcp.apify.com?tools=completeanalogy/openosint-email-recon,completeanalogy/openosint-username-recon,complete_analogy/openosint-domain-recon

Shortened. The full README is on GitHub.

Nothing above is checked by us. What we check is on the safety report.

Install directly

claude mcp add openosint -- uvx openosint
Add to Cursor

OpenOSINT: common questions

Is OpenOSINT MCP server safe?
With care: it is graded C, so read the findings first (58/100). Read the OpenOSINT safety report
How do I install OpenOSINT?
It runs on your machine. Copy the Claude Code, Claude Desktop or Cursor config from the install section.
Does OpenOSINT need an API key?
Yes. The registry entry asks for ANTHROPIC_API_KEY, HIBP_API_KEY, IPINFO_TOKEN, IP2LOCATION_API_KEY and 1 more.
Is OpenOSINT maintained?
The last commit was in the last day (2026-09-26). The latest release is v2.15.2.
What can I use instead of OpenOSINT?
Servers from other publishers that do the same job: OpenOSINT MCP server, Apixies Developer API Suite MCP server and Netintel MCP server. Compare all OpenOSINT alternatives.

Alternatives to OpenOSINT

Same job from other publishers: the closest match first, then the best rated.

All OpenOSINT alternatives →
  • OpenOSINT
    AI-powered OSINT agent & MCP server. 16 tools: email, breach, IP, WHOIS, DNS, Shodan, GitHub & more.
    C
  • Apixies Developer API Suite
    50 developer utility APIs as tools: SSL, DNS, WHOIS, email checks, HTML to PDF, sitemaps and more.
    B
  • Netintel
    MCP server for NetIntel — DNS, SSL, WHOIS, email security, OSINT via x402 micropayments
    B
  • Whoisxmlapi
    32 WHOIS, DNS, IP, threat intelligence, email, and bulk tools for AI agents via WhoisXML API.
    B
  • MCP
    20 domain recon tools for AI agents: DNS, SSL, headers, email, subdomains, lookalikes, changes.
    A

More from SonoTommy →