Skip to main content
Glama
mwnickerson

BloodHound MCP Server

by mwnickerson

Related Servers

Alternatives to BloodHound MCP Server

No user-submitted related servers found.

    Related Servers

    • A
      license
      A
      quality
      D
      maintenance
      Connects LLMs to BloodHound Enterprise for natural language attack path analysis, Cypher queries, and exploration of Active Directory, Azure/Entra ID, and OpenGraph environments.
      20
      GPL 3.0
    • F
      license
      B
      quality
      C
      maintenance
      Enables users to query BloodHound Active Directory graph data using natural language, finding attack paths, Kerberoastable accounts, and other AD security insights.
      23
      -
    • F
      license
      Not graded
      quality
      D
      maintenance
      BloodHound-MCP-AI is integration that connects BloodHound with AI through Model Context Protocol, allowing security professionals to analyze Active Directory attack paths using natural language instead of complex Cypher queries.
      375
      -
    • F
      license
      C
      quality
      D
      maintenance
      An extension that allows Large Language Models to interact with and analyze Active Directory environments through natural language queries instead of manual Cypher queries.
      100
      160
      -
    • A
      license
      Not graded
      quality
      C
      maintenance
      An MCP server that enables LLMs to query and reason over Active Directory attack graphs collected by BloodHound, providing attack paths, blast radius analysis, choke points, and defender remediation advice.
      MIT
    • F
      license
      Not graded
      quality
      B
      maintenance
      Enables AI-assisted SOC workflows by connecting Claude Desktop to Splunk Enterprise for security event analysis and incident response.
      -

    TDQS

    B3/5.0

    Scored across 79 tools

    Disambiguation4/5

    The tools are highly specialized with distinct purposes, such as get_computer_admin_rights vs get_computer_admin_users, which target different aspects of computer administration. However, some tools like get_computer_rdp_rights and get_computer_rdp_users have overlapping domains that could cause minor confusion, but descriptions clarify the differences. Overall, the set is well-differentiated with minimal ambiguity.

    Naming Consistency5/5

    All tool names follow a consistent verb_noun pattern using snake_case, such as get_computer_info, list_saved_queries, and run_cypher_query. There are no deviations in naming conventions, making the set predictable and easy to navigate. This uniformity enhances usability and reduces cognitive load for agents.

    Tool Count2/5

    With 79 tools, the count is excessive for a single server, likely overwhelming for agents and increasing the risk of misselection. While the domain of BloodHound (Active Directory security analysis) is complex, this many tools suggests poor scoping or fragmentation, as many functions could be consolidated into more generic queries or parameters. It far exceeds the typical well-scoped range of 3-15 tools.

    Completeness5/5

    The tool set provides comprehensive coverage for BloodHound's domain, including CRUD operations for saved queries, detailed queries for various Active Directory objects (users, computers, groups, GPOs, OUs, domains, certificates), and advanced analysis tools like get_shortest_path and get_edge_composition. There are no obvious gaps; agents can perform reconnaissance, attack path analysis, and security assessments effectively.

    Maintenance

    ActivityMaintained
    ResponsivenessNo issues