Connects MISP to MCP clients, enabling threat indicator lookups and submissions in plain language.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
process.env. You'll be asked to provide them before it can run.MCP_TRANSPORT— e =http -e MCP_HOST=0.0.0.0 \MCP_HOST— e MCP_TRANSPORT=http -e =0.0.0.0 \MCP_PORT— hosted 8080 portMISP_URL— e =https://misp.example.com \MISP_VERIFY_TLS— both true set false only for a self-signed labMISP_SUBMISSION_EVENT_ID— both required for writes event that misp_submit_ioc writes toMISP_MCP_SHOW_RESTRICTED— both true false turns on server-side TLP hidingMISP_MCP_PROTECTED_DOMAINS— both empty your own domains that can never be submittedMISP_MCP_SUBMIT_RATE— both 20 max submissions per key per minuteMISP_MCP_TLS_CERT— / MISP_MCP_TLS_KEY hosted none serve HTTPS directlyMISP_MCP_TLS_KEY— MISP_MCP_TLS_CERT / hosted none serve HTTPS directlyMISP_MCP_ALLOW_INSECURE_BIND— hosted false allow a public plain-HTTP bind (TLS on a proxy)MISP_API_KEY— local required your key (local mode)[](https://m8ven.ai/mcp/indranilroy99-misp-mcp-13kc0r)