Community · Official remote MCP server

The ContrastAPI MCP server,
connected in one click.

55 tools, 7 Resources, Sigma rules, email SPF/DMARC, MITRE, CVE/KEV, risk_score. No key. Connect the official ContrastAPI MCP server to Claude, ChatGPT, or Cursor through gate — one gateway URL, no config files, security-checked.

Free to start · No credit card · No hosting needed

What you can do

What your AI can do with ContrastAPI

Real prompts you can type the moment it's connected — no setup, no docs to read.

Use “domain_report”: Query DNS, WHOIS, SSL, subdomains, and threat intel for a domain in one call. By default dns.txt is filtered to security-relevant entries (S.

Use “audit_domain”: Perform comprehensive domain audit: combines domain_report + live HTTP security headers + technology fingerprinting. By default report.dns.t.

Use “contrast_scan”: Active website security scan: runs the ContrastScan C engine (11 modules — HTTP security headers, SSL/TLS, DNS, redirect chain, information.

Use “tech_stack_cve_audit”: Composite tech-stack + CVE audit (MCP-only, no REST endpoint). Detects technologies on the target domain, queries CVE database for known vul.

Security check

How secure is the ContrastAPI MCP server?

Every server in the gate directory has to pass the same four checks before your AI can touch it. Here's how ContrastAPI holds up.

Verified directory serverContrastAPI · contrastcyber.com

Official endpoint

Operated by ContrastAPI (contrastcyber.com) at its documented MCP endpoint — not a third-party mirror or community re-host.

No sign-in needed

This server only exposes public data — no account and no credentials are involved when you connect.

Scanned before it goes live

gate checks every tool for prompt injection, hidden instructions, data-exfiltration hints, and over-broad permissions before the server is available through your gateway.

Watched for drift

If ContrastAPI adds or changes tools later, gate re-scans and alerts you — before your AI acts on the change.

How it works

Connected in three steps

01

Connect your gate

Add one gateway URL to Claude, ChatGPT, or any MCP client. One-time setup, about two minutes.

02

Pick ContrastAPI

Choose ContrastAPI in the gate directory. No sign-in needed.

03

Use it anywhere

ContrastAPI's tools are live in every AI client you've connected — with rules and logging built in.

Connect ContrastAPI free

Free to start · No credit card · No hosting needed

Straight from the server

The actual tools ContrastAPI exposes

Fetched live from the official endpoint and re-checked daily by gate — not marketing copy.

domain_reportQuery DNS, WHOIS, SSL, subdomains, and threat intel for a domain in one call. By default dns.txt is filtered to security-relevant entries (S

audit_domainPerform comprehensive domain audit: combines domain_report + live HTTP security headers + technology fingerprinting. By default report.dns.t

contrast_scanActive website security scan: runs the ContrastScan C engine (11 modules — HTTP security headers, SSL/TLS, DNS, redirect chain, information

tech_stack_cve_auditComposite tech-stack + CVE audit (MCP-only, no REST endpoint). Detects technologies on the target domain, queries CVE database for known vul

threat_reportQuery comprehensive threat profile for an IP: Shodan host data, AbuseIPDB reputation, ASN/geolocation, and open ports. Use for IP investigat

dns_lookupQuery all DNS record types (A, AAAA, MX, NS, TXT, CNAME, SOA) for a domain. Use for mail routing inspection, nameserver verification, or SPF

whois_lookupRetrieve WHOIS registration data: registrar, creation/expiry dates, nameservers, status. Use to verify domain ownership, age, expiration; fo

ssl_checkAnalyze SSL/TLS certificate: grade (A/B/C/D/F), protocol version, cipher suite, chain, expiry, Subject Alternative Names, and structured val

+ 47 more tools once connected

Server facts

The ContrastAPI MCP server at a glance

Endpointhttps://api.contrastcyber.com/mcp/
Operated byContrastAPI (contrastcyber.com)
CategoryCommunity
Sign-inNone — public data only
Available in gateYes — one-click connect
Works withClaude, ChatGPT, Cursor & any MCP client
FAQ

Questions, answered

Is there an official ContrastAPI MCP server?

Yes — ContrastAPI operates its own remote MCP server at api.contrastcyber.com. gate connects you to that official endpoint and adds security scanning, per-tool access rules, and an activity log on top.

How do I connect ContrastAPI to Claude or ChatGPT?

Add gate's gateway URL to your AI client once, then pick ContrastAPI in the directory. No account or sign-in is needed. From then on, ContrastAPI's tools are available in every client you've connected to gate.

Do I need to host anything?

No. ContrastAPI runs the server, and gate is fully managed. You just connect one URL — there's nothing to install, deploy, or maintain.

Is the ContrastAPI MCP server safe to connect?

It's the vendor's official endpoint, and gate scans its tools for prompt injection and hidden instructions before it goes live, re-checks it whenever it changes, and lets you allow, block, or require approval for every single tool.

Is it free?

Yes — you can get started with gate for free and connect ContrastAPI in minutes. No credit card required.

More servers

Connect more than just ContrastAPI

Every server below works through the same gateway URL — connect once, add tools anytime.

Set up ContrastAPI in: Claude · Claude Code · ChatGPT · Cursor · VS Code

Give your AI ContrastAPI — safely.

One URL. All MCPs. Full control. Free to start.

Get started free