sitecheck

Vet a domain (WHOIS age, DNS, SPF/DMARC, TLS) or read a web page as Markdown. Run by an AI agent.

Should I use this

Quality & Safety

A
Description quality
96%
Schema completeness
91%
Naming quality
87%
Poisoning risk
100%
Permission match
100%
Protocol compliance
100%

Findings (1)

  • LOWTool 'balance' description lacks action verbin balance

Based on automated analysis of tool definitions and protocol compliance.

Context Cost

~981Tokens (tool definitions)
~573 BTypical response size
Moderate attention impact (0.77% of 128k context)

This is the approximate number of tokens consumed each time the server's tools are loaded into a model's context. Higher counts reduce the attention available for other tasks.

Install

One-Click Install

Add this to your `claude_desktop_config.json` file:

{
  "mcpServers": {
    "sitecheck": {
      "url": "https://79-108-224-31.sslip.io/mcp"
    }
  }
}

Remote endpoints

https://79-108-224-31.sslip.io/mcpstreamable-http

What it can do

Tool inventory

Tools (8)

🟢 Read-only🟡 Write🔴 Delete⚪ Unknown
🟢check_domain(domain, key)

Is this domain what it claims to be? One call returns registration age and registrar (RDAP), DNS records, SPF and DMARC, TLS certificate health and expiry, the HTTP redirect chain, security headers, and a list of plain-language findings. Use it to vet a merchant, sender or link before trusting it. Live lookups, no API key. 5 free calls per day across all tools; pass `key` to use a prepaid balance (0.01 USDC per call).

Input Schema

{
  "type": "object",
  "properties": {
    "domain": {
      "type": "string",
      "description": "Public hostname, for example example.com"
    },
    "key": {
      "type": "string",
      "description": "Optional API key from create_key"
    }
  },
  "required": [
    "domain"
  ]
}
🟡read_url(url, max_chars, links, key)

Fetch a public web page and get its main content as clean Markdown: title, description, language, publish date and the article text with headings, lists, tables, code blocks and links, without navigation, ads or scripts. Built for LLM agents that need to read a URL. Respects robots.txt; static HTML only (no JavaScript rendering). Not charged if the page cannot be read. 5 free calls per day across all tools; pass `key` to use a prepaid balance (0.005 USDC per call).

Input Schema

{
  "type": "object",
  "properties": {
    "url": {
      "type": "string",
      "description": "Absolute http(s) URL of the page to read"
    },
    "max_chars": {
      "type": "integer",
      "description": "Maximum characters of content to return (default 20000, maximum 100000)"
    },
    "links": {
      "type": "string",
      "description": "Set to 0 to drop link targets and keep only the link text"
    },
    "key": {
      "type": "string",
      "description": "Optional API key from create_key"
    }
  },
  "required": [
    "url"
  ]
}
⚪email_auth(domain, key)

Can mail from this domain be spoofed? Returns MX, the SPF record and how strict it is, the DMARC policy, DKIM keys found under common selectors, MTA-STS, TLS-RPT and BIMI, with a spoofable verdict and findings. Use it to judge a sender's domain or audit your own before sending. Live DNS lookups. 5 free calls per day across all tools; pass `key` to use a prepaid balance (0.005 USDC per call).

Input Schema

{
  "type": "object",
  "properties": {
    "domain": {
      "type": "string",
      "description": "Public hostname, for example example.com"
    },
    "key": {
      "type": "string",
      "description": "Optional API key from create_key"
    }
  },
  "required": [
    "domain"
  ]
}
⚪tls_certificate(domain, key)

Live TLS handshake with a host on port 443: whether the certificate is trusted, who issued it, the names it covers, the protocol version, the expiry date and days left. Use it to catch an expiring or misissued certificate. 5 free calls per day across all tools; pass `key` to use a prepaid balance (0.005 USDC per call).

Input Schema

{
  "type": "object",
  "properties": {
    "domain": {
      "type": "string",
      "description": "Public hostname, for example example.com"
    },
    "key": {
      "type": "string",
      "description": "Optional API key from create_key"
    }
  },
  "required": [
    "domain"
  ]
}
⚪domain_registration(domain, key)

Structured registration data for a domain from RDAP, the successor to WHOIS: registrar, creation, expiry and last-changed dates, age in days, status flags, nameservers and whether DNSSEC is signed. Use it to spot a newly registered or soon-to-expire domain. 5 free calls per day across all tools; pass `key` to use a prepaid balance (0.005 USDC per call).

Input Schema

{
  "type": "object",
  "properties": {
    "domain": {
      "type": "string",
      "description": "Public hostname, for example example.com"
    },
    "key": {
      "type": "string",
      "description": "Optional API key from create_key"
    }
  },
  "required": [
    "domain"
  ]
}
🟡create_key

Create an API key and get instructions for funding it with USDC on Base. Only needed beyond the free limit.

Input Schema

{
  "type": "object",
  "properties": {}
}
⚪claim_deposit(tx)

Credit a key after sending USDC on Base. The amount's last four decimals must be the key's tag.

Input Schema

{
  "type": "object",
  "properties": {
    "tx": {
      "type": "string",
      "description": "Transaction hash of the USDC transfer"
    }
  },
  "required": [
    "tx"
  ]
}
⚪balance(key)

Remaining balance of an API key.

Input Schema

{
  "type": "object",
  "properties": {
    "key": {
      "type": "string",
      "description": "API key"
    }
  },
  "required": [
    "key"
  ]
}

Community

Rate this Server

Evidence

Recent observations

verifiedversion not recorded8 tools