Malicious Scanner MCP Server
Provides access to the Malicious Scanner API for real-time URL scanning, detecting malicious content, spam/gray classification, and checking domain age and other security flags.
Click on "Install Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@Malicious Scanner MCP Serverscan https://example.com for malicious content"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
Malicious Scanner MCP Server
用于访问 Malicious Scanner API 的 MCP 服务器。
🚀 使用 EMCP 平台快速体验
EMCP 是一个强大的 MCP 服务器管理平台,让您无需手动配置即可快速使用各种 MCP 服务器!
快速开始:
🌐 访问 EMCP 平台
📝 注册并登录账号
🎯 进入 MCP 广场,浏览所有可用的 MCP 服务器
🔍 搜索或找到本服务器(
bach-malicious_scanner)🎉 点击 "安装 MCP" 按钮
✅ 完成!即可在您的应用中使用
EMCP 平台优势:
✨ 零配置:无需手动编辑配置文件
🎨 可视化管理:图形界面轻松管理所有 MCP 服务器
🔐 安全可靠:统一管理 API 密钥和认证信息
🚀 一键安装:MCP 广场提供丰富的服务器选择
📊 使用统计:实时查看服务调用情况
立即访问 EMCP 平台 开始您的 MCP 之旅!
Related MCP server: unphurl-mcp
简介
这是一个 MCP 服务器,用于访问 Malicious Scanner API。
PyPI 包名:
bach-malicious_scanner版本: 1.0.0
传输协议: stdio
安装
从 PyPI 安装:
pip install bach-malicious_scanner从源码安装:
pip install -e .运行
方式 1: 使用 uvx(推荐,无需安装)
# 运行(uvx 会自动安装并运行)
uvx --from bach-malicious_scanner bach_malicious_scanner
# 或指定版本
uvx --from bach-malicious_scanner@latest bach_malicious_scanner方式 2: 直接运行(开发模式)
python server.py方式 3: 安装后作为命令运行
# 安装
pip install bach-malicious_scanner
# 运行(命令名使用下划线)
bach_malicious_scanner配置
API 认证
此 API 需要认证。请设置环境变量:
export API_KEY="your_api_key_here"环境变量
变量名 | 说明 | 必需 |
| API 密钥 | 是 |
| 不适用 | 否 |
| 不适用 | 否 |
在 Cursor 中使用
编辑 Cursor MCP 配置文件 ~/.cursor/mcp.json:
{
"mcpServers": {
"bach-malicious_scanner": {
"command": "uvx",
"args": ["--from", "bach-malicious_scanner", "bach_malicious_scanner"],
"env": {
"API_KEY": "your_api_key_here"
}
}
}
}在 Claude Desktop 中使用
编辑 Claude Desktop 配置文件 claude_desktop_config.json:
{
"mcpServers": {
"bach-malicious_scanner": {
"command": "uvx",
"args": ["--from", "bach-malicious_scanner", "bach_malicious_scanner"],
"env": {
"API_KEY": "your_api_key_here"
}
}
}
}可用工具
此服务器提供以下工具:
scan_url
Real time, Fully Scan one URL for any malicious content, including Spam/Gray classification and additional flags like domain age, and more
端点: GET /rapid/url
参数:
url(string) 必需: Example value: https://vryjm.page.link/jS6a
技术栈
传输协议: stdio
HTTP 客户端: httpx
许可证
MIT License - 详见 LICENSE 文件。
开发
此服务器由 API-to-MCP 工具生成。
版本: 1.0.0
Available Tools
1 toolscan_urlC
Real time, Fully Scan one URL for any malicious content, including Spam/Gray classification and additional flags like domain age, and more
| Name | Required | Description | Default |
|---|---|---|---|
| url | Yes | Example value: https://vryjm.page.link/jS6a |
TDQS
Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations provided, the description carries the full burden of behavioral disclosure. It mentions 'real time' (implying speed) and 'fully scan' (suggesting comprehensiveness), but lacks details on permissions, rate limits, error handling, or what 'malicious content' entails. This leaves significant gaps in understanding the tool's behavior.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.
Is the description appropriately sized, front-loaded, and free of redundancy?
The description is a single, efficient sentence that front-loads key actions ('scan', 'classify') and details. It avoids redundancy but could be slightly more structured by separating core functionality from additional features for clarity.
Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.
Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?
Given no annotations and no output schema, the description is incomplete. It lacks information on return values (e.g., scan results format), error cases, or operational constraints like rate limits. For a security scanning tool, this omission is significant and reduces usability.
Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.
Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?
The input schema has 100% description coverage, with the 'url' parameter documented in the schema. The description adds no additional parameter semantics beyond implying the URL is scanned for threats, which the schema's example already suggests. This meets the baseline for high schema coverage.
Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.
Does the description clearly state what the tool does and how it differs from similar tools?
The description clearly states the tool's purpose: scanning a URL for malicious content with specific categories (Spam/Gray classification) and additional flags (domain age). It uses specific verbs ('scan', 'classify') and identifies the resource (URL), but lacks sibling tools for differentiation, preventing a perfect score.
Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.
Does the description explain when to use this tool, when not to, or what alternatives exist?
The description provides no guidance on when to use this tool versus alternatives, prerequisites, or contextual constraints. It mentions 'real time' and 'fully scan' but does not specify scenarios where this tool is appropriate or inappropriate, leaving usage decisions unclear.
Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.
Tool Schema Changelog
Recent tool additions, removals, and schema changes observed during successful MCP inspections. Dates show when Glama detected each change.
1 tool update
v1.0.0- First observed
scan_url
TDQS
With only one tool, there is no possibility of ambiguity or overlap between tools. The single tool 'scan_url' has a clearly defined and distinct purpose, making it impossible for an agent to misselect between multiple options.
Since there is only one tool, naming consistency is inherently perfect. The tool name 'scan_url' follows a clear verb_noun pattern, and there are no other tools to compare it against, so no inconsistencies can arise.
A single tool is generally too few for most server purposes, as it limits functionality and may indicate an incomplete or overly narrow scope. For a malicious scanner, one tool might suffice for basic scanning, but it lacks coverage for related operations like batch scanning, result management, or configuration adjustments.
The tool surface is severely incomplete for a malicious scanner domain. While 'scan_url' covers the core scanning function, there are obvious gaps such as scanning multiple URLs, retrieving scan history, managing whitelists/blacklists, or configuring scan parameters, which could lead to agent failures in more complex tasks.
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Connectors
Scam and phishing detection for AI agents: safe/warn/danger verdicts for URLs and messages.
URL intelligence for AI agents and developers. 16 tools, 25 signal weights, 20 free checks.
URLhaus MCP — wraps abuse.ch URLhaus malware URL database (free, no auth)
AI-powered scam and threat verification for phone numbers, URLs, texts, and emails.
Related MCP Servers
- AlicenseCqualityDmaintenanceProvides access to a malicious URL database API, enabling users to search, list, and retrieve information about potentially dangerous URLs for security analysis and threat detection.3MIT
- AlicenseAqualityDmaintenanceURL intelligence for AI agents. One URL in, structured security and data quality signals out across 7 dimensions. 13 tools, risk score 0-100 with 23 configurable weights.161101MIT
- AlicenseAqualityBmaintenanceEnables live website health checks including TLS, HTTPS, and security headers, returning an A-F grade with specific fixes.2MIT
- AlicenseNot gradedqualityCmaintenanceEnables checking URLs against the PhishTank phishing database to identify malicious sites.15MIT
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/BACH-AI-Tools/bachai-malicious-scanner'
If you have feedback or need assistance with the MCP directory API, please join our Discord server