Skip to main content
Glama
guyoverclocked

Forensic Artifact Investigator MCP Server

Related Servers

Alternatives to Forensic Artifact Investigator MCP Server

No user-submitted related servers found.

    Related Servers

    • F
      license
      Not graded
      quality
      Not graded
      maintenance
      Enables malware analysis through terminal command execution with specialized tools including file type detection, string extraction, hexdumps, and disassembly operations. Provides process management with configurable timeouts for safe analysis workflows.
      -
    • A
      license
      Not graded
      quality
      F
      maintenance
      Enables automated memory forensics analysis using Volatility 3, supporting Windows, Linux, and macOS memory dumps through a modular plugin interface.
      1
      MIT
    • A
      license
      A
      quality
      B
      maintenance
      Exposes forensic case and evidence management operations over stdio, including case creation, evidence registration with SHA-256 hashing, and integrity verification, so clients can manage DFIR investigations programmatically.
      7
      MIT
    • A
      license
      Not graded
      quality
      D
      maintenance
      Enables analysis of binary files (PE, ELF, Mach-O, COFF) by providing tools to retrieve info, headers, sections, imports, exports, libraries, security hardening, signatures, and COFF object file details.
      25
      GPL 3.0
    • F
      license
      Not graded
      quality
      C
      maintenance
      Enables local AI models to perform defensive cybersecurity analysis through narrowly scoped read-only tools for host posture, Windows security operations, file/IOC triage, code scanning, and allowlisted filesystem/network access while enforcing boundaries and audit trails.
      -

    TDQS

    A4.3/5.0

    Scored across 3 tools

    Disambiguation5/5

    Each tool addresses a completely distinct forensic task: file metadata/hash, string extraction with indicator scanning, and memory dump analysis. There is no functional overlap, so agents can easily select the right tool.

    Naming Consistency5/5

    All tool names follow the same verb-noun pattern with lowercase and hyphens (extract-metadata, extract-strings, analyze-memory-dump). The naming is perfectly consistent and predictable.

    Tool Count4/5

    Three tools is on the lower end but still within a reasonable range for a focused forensic artifact investigator. The count is just slightly under what might be expected, but each tool covers a major area.

    Completeness4/5

    The toolset covers core forensic workflows: file metadata/hash analysis, string/indicator extraction, and memory dump analysis. Minor gaps exist (e.g., no timeline or registry parsing), but the essential artifact types are addressed.

    Maintenance

    ActivityStale
    ResponsivenessNo issues