Koot by Datakoot
One-call briefings for AI agents: dependency risk (KEV/EPSS), SEC companies, domains, US places.
Should I use this
Quality & Safety
Based on automated analysis of tool definitions and protocol compliance.
Context Cost
This is the approximate number of tokens consumed each time the server's tools are loaded into a model's context. Higher counts reduce the attention available for other tasks.
Install
One-Click Install
Add this to your `claude_desktop_config.json` file:
{
"mcpServers": {
"koot-briefings": {
"url": "https://koot.datakoot.com/mcp"
}
}
}Remote endpoints
https://koot.datakoot.com/mcpstreamable-httpWhat it can do
Tool inventory
Tools (8)
🟢brief_stack(packages, ecosystem, manifest)
One call answers 'is my project safe?'. Checks every package for known vulnerabilities, tells you which are being EXPLOITED IN THE WILD right now (CISA KEV) or likely to be (EPSS), flags abandoned/deprecated packages, and returns a ranked fix-first list. Accepts a package list or a pasted package.json / requirements.txt.
Input Schema
{
"type": "object",
"properties": {
"packages": {
"type": "array",
"items": {
"anyOf": [
{
"type": "string"
},
{
"type": "object",
"properties": {
"name": {
"type": "string"
},
"version": {
"type": "string"
},
"ecosystem": {
"type": "string"
}
},
"required": [
"name"
]
}
]
},
"description": "Packages as 'name' or 'name@version' strings (or {name, version, ecosystem} objects), e.g. [\"[email protected]\", \"express\"]."
},
"ecosystem": {
"type": "string",
"enum": [
"npm",
"pypi",
"cargo",
"go",
"maven",
"rubygems",
"nuget",
"composer"
],
"description": "Registry for string packages (default npm)."
},
"manifest": {
"type": "string",
"description": "Or paste a whole package.json or requirements.txt here."
}
}
}Output Schema
{
"type": "object",
"properties": {
"koot": {
"type": "string",
"description": "Koot's one-line answer."
}
},
"required": [
"koot"
],
"additionalProperties": true
}🟢brief_company(company)
One call briefs you on a US public company: SEC profile, recent filings (8-K material events flagged), insider trades and reported financials. Give a ticker, name or CIK.
Input Schema
{
"type": "object",
"properties": {
"company": {
"type": "string",
"description": "Ticker (TSLA), company name (Tesla) or CIK."
}
},
"required": [
"company"
]
}Output Schema
{
"type": "object",
"properties": {
"koot": {
"type": "string",
"description": "Koot's one-line answer."
}
},
"required": [
"koot"
],
"additionalProperties": true
}🟢brief_domain(domain)
One call checks a domain: registration and DNS, email security (SPF/DKIM/DMARC), tech stack, and subdomains from certificate logs.
Input Schema
{
"type": "object",
"properties": {
"domain": {
"type": "string",
"description": "Domain, e.g. stripe.com."
}
},
"required": [
"domain"
]
}Output Schema
{
"type": "object",
"properties": {
"koot": {
"type": "string",
"description": "Koot's one-line answer."
}
},
"required": [
"koot"
],
"additionalProperties": true
}🟢brief_place(place)
One call briefs you on a US place: current conditions, forecast, active weather alerts for the state, nearby earthquakes and elevation.
Input Schema
{
"type": "object",
"properties": {
"place": {
"type": "string",
"description": "US city or address, e.g. 'Harrisburg, PA'."
}
},
"required": [
"place"
]
}Output Schema
{
"type": "object",
"properties": {
"koot": {
"type": "string",
"description": "Koot's one-line answer."
}
},
"required": [
"koot"
],
"additionalProperties": true
}🟡koot_watch(packages, ecosystem, manifest, companies, notify_url)
PRO. Tell Koot what to watch once: packages (or a pasted package.json) and/or companies (tickers). Koot remembers them and only reports what is NEW: newly exploited or likely-exploited vulnerabilities in your packages, and new SEC filings (8-K material events flagged) from your companies. Add notify_url (Slack or Discord webhook) and Koot posts new items there by itself, daily. Calling again adds to the list.
Input Schema
{
"type": "object",
"properties": {
"packages": {
"type": "array",
"items": {
"anyOf": [
{
"type": "string"
},
{
"type": "object",
"properties": {
"name": {
"type": "string"
},
"version": {
"type": "string"
},
"ecosystem": {
"type": "string"
}
},
"required": [
"name"
]
}
]
},
"description": "Packages as 'name' or 'name@version' strings (or {name, version, ecosystem} objects), e.g. [\"[email protected]\", \"express\"]."
},
"ecosystem": {
"type": "string",
"enum": [
"npm",
"pypi",
"cargo",
"go",
"maven",
"rubygems",
"nuget",
"composer"
],
"description": "Registry for string packages (default npm)."
},
"manifest": {
"type": "string",
"description": "Or paste a whole package.json or requirements.txt here."
},
"companies": {
"type": "array",
"items": {
"type": "string"
},
"description": "US public companies to watch for NEW SEC filings: tickers, names or CIKs, e.g. [\"TSLA\", \"AAPL\"]. Up to 25."
},
"notify_url": {
"type": "string",
"description": "Optional. A Slack or Discord incoming-webhook URL. Koot checks daily and posts there only when something NEW is exploited or likely to be."
}
}
}Output Schema
{
"type": "object",
"properties": {
"koot": {
"type": "string",
"description": "Koot's one-line answer."
}
},
"required": [
"koot"
],
"additionalProperties": true
}⚪koot_whats_new
PRO. Ask 'anything new?' and Koot reports only what changed since the last check: new exploited or likely-exploited issues in your watched packages and new SEC filings from your watched companies. Great to call at the start of every session.
Input Schema
{
"type": "object",
"properties": {}
}Output Schema
{
"type": "object",
"properties": {
"koot": {
"type": "string",
"description": "Koot's one-line answer."
}
},
"required": [
"koot"
],
"additionalProperties": true
}🟢koot_watches
PRO. Lists what Koot is watching for you.
Input Schema
{
"type": "object",
"properties": {}
}Output Schema
{
"type": "object",
"properties": {
"koot": {
"type": "string",
"description": "Koot's one-line answer."
}
},
"required": [
"koot"
],
"additionalProperties": true
}🔴koot_unwatch(packages, companies, all, stop_alerts)
PRO. Stop watching some packages or companies, all: true to stop and forget everything, or stop_alerts: true to turn off Slack/Discord alerts.
Input Schema
{
"type": "object",
"properties": {
"packages": {
"type": "array",
"items": {
"type": "string"
}
},
"companies": {
"type": "array",
"items": {
"type": "string"
}
},
"all": {
"type": "boolean"
},
"stop_alerts": {
"type": "boolean"
}
}
}Output Schema
{
"type": "object",
"properties": {
"koot": {
"type": "string",
"description": "Koot's one-line answer."
}
},
"required": [
"koot"
],
"additionalProperties": true
}Community
Evidence