heade.rs
Server Details
Look up any domain, IP address or AS number: hosting, DNS, registration, email, TLS and headers.
- Status
- Healthy
- Last Tested
- Transport
- Streamable HTTP · MCP 2025-11-25
- URL
TDQS
Scored across 1 tool
The server exposes a single tool, so there is no possibility of an agent confusing it with another tool. Its purpose (fetch a heade.rs report for a domain, IP, or ASN) is unambiguous.
With only one tool, naming consistency is trivially satisfied. 'lookup' is a clear, conventional verb-style name with no competing conventions to clash against.
A single tool is borderline thin for a surface that spans three distinct input types (domain, IP, ASN) and many report sections. It works as one unified lookup endpoint, but splitting domain/IP lookups from AS lookups would be more discoverable.
The one tool covers an impressively wide report surface: hosting/BGP/RPKI, registration, DNS/DNSSEC, email security, TLS, headers, tech stack, AI crawlers, and ports. Missing niceties like bulk lookup, historical/change tracking, or reverse/prefix enumeration are minor gaps an agent can work around.
Available Tools
1 toollookupLook up a domain, IP address or networkARead-onlyIdempotentInspect
Look up a domain, IP address or network (AS number) on heade.rs and return its report. For a domain or IP address: where it's hosted (network, BGP prefix, RPKI, location, cloud region, CDN), registration (RDAP/WHOIS), DNS records and DNSSEC, email security (SPF, DMARC, MTA-STS, BIMI), the certificate, a security-header grade and the response headers, the website's tech stack with end-of-life and vulnerability checks, which AI crawlers it lets in and what it offers agents, and open ports from Shodan InternetDB. For an AS number: its prefixes, RPKI and ASPA, upstreams and peers, internet exchanges and registration. Data is live or mirrored within the hour; a lookup takes a few seconds.
| Name | Required | Description | Default |
|---|---|---|---|
| query | Yes | A domain (example.com), IPv4 or IPv6 address (1.1.1.1, 2606:4700::1111), AS number (AS13335) or URL (the hostname is used). | |
| format | No | markdown (the default, about 3,000 tokens for a domain) or json (every field, several times longer). | markdown |
TDQS
Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already cover safety (readOnly, idempotent, non-destructive, open-world). The description adds genuine behavioral context beyond those: data freshness ('live or mirrored within the hour') and latency ('a lookup takes a few seconds'). It stops short of describing failure/error behavior for invalid inputs, but the added traits are substantive.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.
Is the description appropriately sized, front-loaded, and free of redundancy?
Front-loaded with the core purpose, then a structured per-input-type breakdown of return content. It is long, but nearly every clause enumerates a distinct data category rather than padding, so the length is largely earned.
Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.
Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?
There is no output schema, and the description compensates thoroughly by enumerating what the report contains for each input type, plus freshness and runtime expectations. Nothing an agent needs to decide to call this tool and interpret its value is missing.
Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.
Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?
Schema description coverage is 100%, and the schema itself lists the accepted query formats (domain, IPv4/IPv6, AS number, URL) and the format enum semantics (markdown vs json token cost). The description restates the query types and report size but adds no syntax or constraint detail beyond the schema, so the baseline of 3 applies.
Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.
Does the description clearly state what the tool does and how it differs from similar tools?
States a specific verb (look up) plus the exact resource types accepted (domain, IP address, network/AS number) and the service used (heade.rs), then enumerates the returned report categories. An agent immediately knows what it gets back and for which inputs.
Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.
Does the description explain when to use this tool, when not to, or what alternatives exist?
The description clearly establishes the context of use: any time you need hosting, registration, DNS, email-security, certificate, tech-stack, AI-crawler, or port data for a domain/IP/AS. There are no sibling tools to differentiate from and no explicit when-not guidance, so this is clear context without exclusions.
Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.
Tool Schema Changelog
Recent tool additions, removals, and schema changes observed during successful MCP inspections.
1 tool update
- First observed
lookup
Related MCP Connectors
WHOIS/RDAP lookup, IP geolocation and Punycode conversion. 1400+ TLDs incl. IDN. No API key.
Live DNS, email-auth and redirect checks, HTTP security headers, uptime history, PC hardware prices.
WHOIS, DNS, SSL, IP geo for security forensics and OSINT — separate from SEO.
Query WHOIS/RDAP information for domains, IP addresses, CIDR prefixes and ASNs. Self-hostable.
Related MCP Servers
- AlicenseNot gradedqualityCmaintenanceWHOIS/RDAP domain lookup, IP geolocation and Punycode conversion. 1400+ TLDs including IDN. Public remote server, no API key.1MIT
- FlicenseAqualityDmaintenanceProvides comprehensive DNS lookup capabilities including A, AAAA, MX, TXT, NS, SOA, CNAME, SRV, CAA, DNSSEC records, reverse DNS lookups, and bulk queries for multiple domains or IPs.4-
- AlicenseNot gradedqualityCmaintenancePerform DNS lookups, WHOIS queries, connectivity testing, TLS certificate analysis, HTTP endpoint monitoring, and hostname resolution, all from your trusty AI.10MIT
- AlicenseNot gradedqualityAmaintenanceQuery WHOIS/RDAP information for domains, IP addresses, CIDR prefixes and ASNs. Results are normalized to RDAP-style (RFC 9083) JSON. Public instance of the open-source KincaidYang/whois server, which can also be self-hosted.64MIT
Glama MCP Gateway
Add one secure layer between your agents and this server.