MCP Recon
Related Servers
Alternatives to MCP Recon
No user-submitted related servers found.
Related Servers
- FlicenseNot gradedqualityDmaintenanceMCP server to perform various OSINT tasks by leveraging common network reconnaissance tools.48-

operant-mcpofficial
AlicenseAqualityFmaintenanceA comprehensive security testing MCP server providing 51 tools for penetration testing, network forensics, memory analysis, and vulnerability assessment. It enables automated security audits and technical investigations across web applications, cloud environments, and network captures.5136 npm23MIT- AlicenseAqualityBmaintenanceAn MCP server that provides passive and low-impact active reconnaissance tools for authorized bug bounty and security assessments, enabling LLMs to perform structured recon and generate reports.11Apache 2.0
- AlicenseNot gradedqualityCmaintenanceMCP server for web application security scanning with Nikto, Nuclei, Wapiti, and shcheck integration.8BSD 3-Clause
- AlicenseNot gradedqualityCmaintenanceMCP server for passive domain reconnaissance and attack surface monitoring. It scans subdomains, security headers, TLS certs, and tech stack, detects subdomain takeovers, and reports changes since the last scan.2MIT
- AlicenseDqualityDmaintenanceA comprehensive MCP server providing tools for IP, domain, email, and image-based open-source intelligence. It integrates services like Shodan, VirusTotal, and HaveIBeenPwned to facilitate advanced security research and data gathering.5652 npmISC
TDQS
Scored across 13 tools
Each tool targets a distinct aspect of reconnaissance (WHOIS, DNS, subdomains, IP, ports, TLS, headers, tech detection, URL extraction), with clear descriptions preventing overlap. The active/passive subdomain tools are differentiated by method.
All tool names follow a consistent snake_case verb_noun pattern (e.g., whois_info, dns_records, port_scan, detect_technologies), with no mixing of conventions or vague verbs.
13 tools is well-scoped for a reconnaissance server, covering essential operations without being overwhelming. Each tool serves a clear purpose and earns its place.
The tool set covers all major reconnaissance areas (domain, DNS, subdomains, IP, network, TLS, HTTP, technology) with both active and passive methods. Minor gaps like email harvesting or web screenshot are not essential for a general-purpose recon server.