lookup-disclose-io

Find the right security-disclosure contact for any internet asset (domain, IP, package, repo, app).

使うべきか

品質と安全性

A
説明の品質
100%
スキーマの完全性
100%
命名の品質
80%
ポイズニングのリスク
100%
権限の一致
100%
プロトコルへの準拠
100%

ツール定義とプロトコルへの準拠に関する自動分析に基づいています。

コンテキストコスト

~440トークン数(ツール定義)
~1.5 KB一般的なレスポンスサイズ
注意への影響は最小限(128k コンテキストの 0.34%)

これは、サーバーのツールがモデルのコンテキストに読み込まれるたびに消費されるおおよそのトークン数です。数が多いほど、ほかのタスクに使える注意が減ります。

インストール

ワンクリックインストール

これを `claude_desktop_config.json` ファイルに追加してください:

{
  "mcpServers": {
    "lookup-disclose-io": {
      "url": "https://lookup.disclose.io/mcp"
    }
  }
}

リモートエンドポイント

https://lookup.disclose.io/mcpstreamable-http

できること

ツール一覧

ツール(2)

🟢 読み取り専用🟡 書き込み🔴 削除⚪ 不明
🟢lookup_security_contact(asset, asset_type)

Find security reporting channels for responsible vulnerability disclosure. Takes a domain, IP, URL, package name, repository, container image, mobile app, hardware device, browser extension, desktop app, or organization name. Returns bug bounty programs, security.txt contacts, VDP links, abuse contacts, and national/global CERT fallbacks ordered by applicability to the queried owner and asset. This is informational only — not legal advice.

入力スキーマ

{
  "type": "object",
  "properties": {
    "asset": {
      "type": "string",
      "description": "The asset to look up. Examples: \"cloudflare.com\", \"8.8.8.8\", \"npm:express\", \"gh:facebook/react\", \"app:WhatsApp\", \"hw:Cisco ASA 5505\""
    },
    "asset_type": {
      "description": "Force a specific asset type. Auto-detected if omitted.",
      "type": "string",
      "enum": [
        "domain",
        "ipv4",
        "ipv6",
        "url",
        "email",
        "cidr",
        "asn",
        "package",
        "repository",
        "container",
        "cloud-resource",
        "mobile-app",
        "hardware",
        "extension",
        "desktop-app",
        "organization"
      ]
    }
  },
  "required": [
    "asset"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢classify_asset(input, asset_type)

Classify an input as a domain, IP, package, repository, etc. No network calls — instant response. Useful for understanding what an asset is before performing a full lookup.

入力スキーマ

{
  "type": "object",
  "properties": {
    "input": {
      "type": "string",
      "description": "The input to classify"
    },
    "asset_type": {
      "description": "Interpret as this asset type, preserving the same normalization as lookup.",
      "type": "string",
      "enum": [
        "domain",
        "ipv4",
        "ipv6",
        "url",
        "email",
        "cidr",
        "asn",
        "package",
        "repository",
        "container",
        "cloud-resource",
        "mobile-app",
        "hardware",
        "extension",
        "desktop-app",
        "organization"
      ]
    }
  },
  "required": [
    "input"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}

コミュニティ

このサーバーを評価する

エビデンス

最近の観測

検証済みバージョンは記録されていませんツール 2 件
検証済みバージョンは記録されていませんツール 2 件
検証済みバージョンは記録されていませんツール 2 件