github TypeScript analyzed 8b852d5

cyanheads/attack-surface-mcp-server

github

Passive external attack-surface mapping: CT subdomains, DNS, TLS, HTTP posture, RDAP/WHOIS, Shodan via MCP. STDIO or Streamable HTTP.

maintainer
cyanheads
licence
Apache-2.0
first seen
2026-06-13
last seen
2026-08-31
releases · 30d
3
short id

cyanheads/attack-surface-mcp-server is an MCP server distributed on github, maintained by cyanheads, tracked here since June 2026. It has shipped 5 releases and exposes 8 tools. Tools include attacksurface_enumerate_subdomains, attacksurface_inspect_tls, attacksurface_lookup_host, attacksurface_lookup_registration, attacksurface_map_domain, attacksurface_probe_http, and 2 more. Its composite risk grade is A — an inferred review prompt computed from observed signals, not a verdict.

what we found

Its 8 tools appear to reach network, inferred from tool names, descriptions and input schemas rather than from observed behaviour.

Since the previous scan on 2026-09-11: 9 tools added and 11 tools removed.

full security breakdown →
tools 8
  • attacksurface_enumerate_subdomains
  • attacksurface_inspect_tls
  • attacksurface_lookup_host
  • attacksurface_lookup_registration
  • attacksurface_map_domain
  • attacksurface_probe_http
  • attacksurface_recon_guidance
  • attacksurface_resolve_dns
release cadence · 90d 5 releases
06-14 00:00 07-28 00:00 now
recent releases last 5
version date src
v0.2.1 2026-08-30 github
v0.2.0 2026-08-21 github
v0.1.2 2026-08-21 github
v0.1.1 2026-06-14 github
v0.1.0 2026-06-13 github

view all →