Public phishing feed: suspicious/confirmed phishing URLs detected hourly. No auth, CC0. Connect the official Phishunt MCP server to Claude, ChatGPT, or Cursor through gate — one gateway URL, no config files, security-checked.
Free to start · No credit card · No hosting needed
Pick your client. Copy, paste, done — or let gate handle sign-ins and policies for you.
claude mcp add --transport http phishunt https://mcp.phishunt.io/Run in your terminal, then restart Claude Code.
Phishunt · https://mcp.phishunt.io/
Real prompts you can type the moment it's connected — no setup, no docs to read.
“Use “check_domain”: Check whether a domain (or URL substring) appears in the phishunt active phishing feed. Returns matching entries with detection metadata if.”
“Use “list_brand_phishings”: List active phishing sites targeting a specific brand. Returns the most recent detections with URL, IP, country, cert issuer, hosting org, a.”
“Use “get_recent_detections”: Retrieve phishing detections since a given date. Useful for delta-syncing a blocklist or threat intel pipeline. Returned field values are at.”
“Use “get_brand_metadata”: Fetch curated metadata for a tracked brand: display name, STIX industry sector and display vertical, primary domain, an AI-authored characte.”
Every server in the gate directory has to pass the same four checks before your AI can touch it. Here's how Phishunt holds up.
Operated by Phishunt (phishunt.io) at its documented MCP endpoint — not a third-party mirror or community re-host.
This server only exposes public data — no account and no credentials are involved when you connect.
gate checks every tool for prompt injection, hidden instructions, data-exfiltration hints, and over-broad permissions before the server is available through your gateway.
If Phishunt adds or changes tools later, gate re-scans and alerts you — before your AI acts on the change.
Add one gateway URL to Claude, ChatGPT, or any MCP client. One-time setup, about two minutes.
Choose Phishunt in the gate directory. No sign-in needed.
Phishunt's tools are live in every AI client you've connected — with rules and logging built in.
Free to start · No credit card · No hosting needed
Fetched live from the official endpoint and re-checked daily by gate — not marketing copy.
check_domain — Check whether a domain (or URL substring) appears in the phishunt active phishing feed. Returns matching entries with detection metadata if
list_brand_phishings — List active phishing sites targeting a specific brand. Returns the most recent detections with URL, IP, country, cert issuer, hosting org, a
get_recent_detections — Retrieve phishing detections since a given date. Useful for delta-syncing a blocklist or threat intel pipeline. Returned field values are at
get_brand_metadata — Fetch curated metadata for a tracked brand: display name, STIX industry sector and display vertical, primary domain, an AI-authored characte
get_cert_metadata — Fetch factual metadata for a TLS intermediate CA seen on phishing sites: operator, root CA, key type (RSA/ECDSA), typical use case, related
search_phishings — Free-text search across active phishing URLs, domains, and IP addresses. Returns matching detections sorted by most recent first_seen. Use f
analyze_url — Analyze any URL for phishing signals WITHOUT contacting it (passive). Read `verdict` first: it is the single adjudicated call (phishing / li
analyze_url_deep — ACTIVE deep analysis of a URL: unlike analyze_url (which NEVER contacts the target), this tool actively fetches it - HTTP response, TLS cert
+ 3 more tools once connected
https://mcp.phishunt.io/Yes — Phishunt operates its own remote MCP server at mcp.phishunt.io. gate connects you to that official endpoint and adds security scanning, per-tool access rules, and an activity log on top.
Add gate's gateway URL to your AI client once, then pick Phishunt in the directory. No account or sign-in is needed. From then on, Phishunt's tools are available in every client you've connected to gate.
No. Phishunt runs the server, and gate is fully managed. You just connect one URL — there's nothing to install, deploy, or maintain.
It's the vendor's official endpoint, and gate scans its tools for prompt injection and hidden instructions before it goes live, re-checks it whenever it changes, and lets you allow, block, or require approval for every single tool.
Yes — you can get started with gate for free and connect Phishunt in minutes. No credit card required.
Every server below works through the same gateway URL — connect once, add tools anytime.
Set up Phishunt in: Claude · Claude Code · ChatGPT · Cursor · VS Code