io.github.troyhunt/hibp

MCPcommunautéen ligne
v1.0.0io.github.troyhuntUnknownMis à jour il y a 2 mois

Breach intelligence API: email search, domain monitoring, passwords and stealer logs.

État de l’endpointen ligne
vérifié il y a 6 jours · 353 ms
100 % des dernières 5 vérifications ont atteint cet endpoint
Fonctionne dans
ClaudeCursorCopilotChatGPTGemini

Déduit des transports déclarés par cette annonce (streamable-http). Un client absent de cette liste n’est pas écarté pour autant — c’est simplement quelque chose que Forge ne peut pas confirmer.

Indexé automatiquement depuis des sources publiques. Pas encore vérifié par son développeur sur Forge.Revendiquer cette annonce →
il y a 2 moisDernière mise à jour
Paquet
Auteurio.github.troyhunt
LicenceUnknown
Version1.0.0
Sourcemcp-registry
Statut de confiance
B
60/100Bon
✓Listé dans l’index Forge+10/10
—Identité de l’éditeur vérifiée+0/30
→ Éditeur : aucune référence de dépôt n’est enregistrée pour cette annonce, `forge publish` ne peut donc pas vérifier la propriété automatiquement. Utilisez « Revendiquer cette annonce » ci-dessus — Forge les examine à la main.
—Vérification de domaine+0/10
→ Actuellement indisponible pour ce type d’annonce — la vérification de domaine ne s’exécute aujourd’hui que pour les paquets adossés à npm, cette ligne ne peut donc pas encore être obtenue ici, quel que soit le contenu hébergé sur le domaine.
✓Analyse d’injection de prompt · propre+30/30
✓Analyse d’obfuscation / exfiltration · propre+20/20
StatutIndexé par la communauté
ÉditeurNon vérifié
SignatureNon signé
Domaine—
Provenance—
DépendancesNon audité
Surface d’outils17 outils · aucun privilégié
Analyse de sécurité✓ Proprevlive · il y a 16 jQuelle est l’efficacité de cette analyse ?
ÉvaluationsAucune
Indexé23 juil. 2026

La vérification confirme l’identité de l’éditeur (la propriété du dépôt), pas la sûreté du code. L’analyse de sécurité couvre les CVE connues et les scripts d’installation suspects.

Outils

17 outils · aucun privilégié
Observé en direct depuis l’endpoint du fournisseur16d ago

Lu depuis un véritable échange MCP initialize → tools/list contre l’endpoint déclaré. Aucun outil n’a été invoqué — tools/list est l’appel d’introspection en lecture seule que le protocole prévoit pour cela. Cela reflète ce que le serveur annonçait à cet instant ; un endpoint hébergé n’est figé sur aucune version et peut changer sans préavis.

  • https://haveibeenpwned.com/mcp17 outils · 139 ms
hibp_list_breachesList public HIBP breaches, optionally filtered by domain, spam-list flag, and verification status.

List public HIBP breaches, optionally filtered by domain, spam-list flag, and verification status.

ParamètreTypeDescription
domainstringFilter to breaches for a specific domain.
isSpamListbooleanFilter to breaches that are or are not flagged as spam lists.
includeUnverifiedbooleanInclude unverified breaches. Defaults to true.
limitintegerMaximum number of items to include in the response. Defaults to 25.
offsetintegerNumber of items to skip before returning results. Defaults to 0.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_get_breachLook up a single public HIBP breach by its canonical breach name, such as Adobe.

Look up a single public HIBP breach by its canonical breach name, such as Adobe.

ParamètreTypeDescription
name*stringThe breach name to retrieve, for example Adobe.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_get_latest_breachReturn the most recently added public breach currently loaded into HIBP.

Return the most recently added public breach currently loaded into HIBP.

ParamètreTypeDescription
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_list_data_classesList the data classes used across public HIBP breach models, such as email addresses or passwords.

List the data classes used across public HIBP breach models, such as email addresses or passwords.

ParamètreTypeDescription
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_get_pwned_passwords_rangeQuery the public Pwned Passwords k-anonymity API with a 5-character SHA-1 or NTLM prefix and return matching suffixes with prevalence counts.

Query the public Pwned Passwords k-anonymity API with a 5-character SHA-1 or NTLM prefix and return matching suffixes with prevalence counts.

ParamètreTypeDescription
prefix*stringThe first 5 hexadecimal characters of a SHA-1 or NTLM hash.
modestringUse SHA-1 by default or NTLM when mode is set to ntlm.
addPaddingbooleanSend the Add-Padding header and discard padded zero-count entries.
limitintegerMaximum number of items to include in the response. Defaults to 25.
offsetintegerNumber of items to skip before returning results. Defaults to 0.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_get_breached_accountSearch HIBP for breaches affecting a single email address. Requires an OAuth bearer token linked to an active HIBP API subscription; use domain and verification filters to refine the result.

Search HIBP for breaches affecting a single email address. Requires an OAuth bearer token linked to an active HIBP API subscription; use domain and verification filters to refine the result.

ParamètreTypeDescription
account*stringThe email address to search for.
domainstringFilter results to a specific breach domain.
includeUnverifiedbooleanInclude unverified breaches. Defaults to true.
responseModestringChoose full breach objects, truncated objects, or breach names.
limitintegerMaximum number of items to include in the response. Defaults to 25.
offsetintegerNumber of items to skip before returning results. Defaults to 0.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_get_breached_account_rangeQuery the authenticated HIBP k-anonymity breached-account range endpoint with the first 6 characters of a SHA-1 email hash. Requires a subscription with k-anonymity access; compare each returned suffix with the remaining hash characters locally because a prefix alone cannot identify an account.

Query the authenticated HIBP k-anonymity breached-account range endpoint with the first 6 characters of a SHA-1 email hash. Requires a subscription with k-anonymity access; compare each returned suffix with the remaining hash characters locally because a prefix alone cannot identify an account.

ParamètreTypeDescription
prefix*stringThe first 6 hexadecimal characters of the SHA-1 hash of an email address. Compare each returned suffix with the remaining 34 characters locally; a prefix alone…
limitintegerMaximum number of items to include in the response. Defaults to 25.
offsetintegerNumber of items to skip before returning results. Defaults to 0.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_get_paste_accountSearch for public pastes containing a single email address. Requires an OAuth bearer token linked to an active HIBP API subscription; run this separately from breached-account lookup.

Search for public pastes containing a single email address. Requires an OAuth bearer token linked to an active HIBP API subscription; run this separately from breached-account lookup.

ParamètreTypeDescription
account*stringThe email address to search for pastes.
limitintegerMaximum number of items to include in the response. Defaults to 25.
offsetintegerNumber of items to skip before returning results. Defaults to 0.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_get_breached_domainReturn breached aliases for a verified domain. This tool requires an authorized subscription via OAuth bearer token.

Return breached aliases for a verified domain. This tool requires an authorized subscription via OAuth bearer token.

ParamètreTypeDescription
domain*stringThe verified domain to search.
limitintegerMaximum number of items to include in the response. Defaults to 25.
offsetintegerNumber of items to skip before returning results. Defaults to 0.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_list_subscribed_domainsList the domains associated with the authenticated HIBP subscription.

List the domains associated with the authenticated HIBP subscription.

ParamètreTypeDescription
limitintegerMaximum number of items to include in the response. Defaults to 25.
offsetintegerNumber of items to skip before returning results. Defaults to 0.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_get_subscription_statusReturn the current plan, quotas, rate limits, expiry, and feature flags for the active HIBP API subscription linked to the authenticated OAuth connection. Use it to confirm access before feature-dependent lookups.

Return the current plan, quotas, rate limits, expiry, and feature flags for the active HIBP API subscription linked to the authenticated OAuth connection. Use it to confirm access before feature-dependent lookups.

ParamètreTypeDescription
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_get_stealer_logs_by_emailReturn website domains historically observed in stealer logs for an email address. Requires an OAuth-linked active subscription with the stealer-log feature; results do not establish current account access.

Return website domains historically observed in stealer logs for an email address. Requires an OAuth-linked active subscription with the stealer-log feature; results do not establish current account access.

ParamètreTypeDescription
email*stringThe email address to search for in stealer logs.
limitintegerMaximum number of items to include in the response. Defaults to 25.
offsetintegerNumber of items to skip before returning results. Defaults to 0.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_get_stealer_logs_by_website_domainReturn email addresses historically observed in stealer logs for a website domain. Requires an OAuth-linked active subscription with the stealer-log feature; results do not establish current account access.

Return email addresses historically observed in stealer logs for a website domain. Requires an OAuth-linked active subscription with the stealer-log feature; results do not establish current account access.

ParamètreTypeDescription
domain*stringThe website domain to search for in stealer logs.
limitintegerMaximum number of items to include in the response. Defaults to 25.
offsetintegerNumber of items to skip before returning results. Defaults to 0.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_get_stealer_logs_by_email_domainReturn email aliases and associated website domains historically observed in stealer logs for an email domain. Requires an OAuth-linked active subscription with the stealer-log feature; results do not establish current account access.

Return email aliases and associated website domains historically observed in stealer logs for an email domain. Requires an OAuth-linked active subscription with the stealer-log feature; results do not establish current account access.

ParamètreTypeDescription
domain*stringThe email domain to search for in stealer logs.
limitintegerMaximum number of items to include in the response. Defaults to 25.
offsetintegerNumber of items to skip before returning results. Defaults to 0.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_generate_domain_verification_dns_tokenGenerate the TXT record value required to verify domain control via DNS, creating or reusing the private HIBP domain-verification records needed for the request. Requires an authenticated subscription with domain-verification access.

Generate the TXT record value required to verify domain control via DNS, creating or reusing the private HIBP domain-verification records needed for the request. Requires an authenticated subscription with domain-verification access.

ParamètreTypeDescription
domain*stringThe domain to generate a verification token for.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_verify_domain_verification_dns_tokenComplete domain verification by checking the expected HIBP TXT record on the target domain. Requires an authenticated subscription with domain-verification access.

Complete domain verification by checking the expected HIBP TXT record on the target domain. Requires an authenticated subscription with domain-verification access.

ParamètreTypeDescription
domain*stringThe domain to verify by DNS.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.
hibp_send_domain_verification_emailSend a domain verification email to an approved alias such as admin or security. Requires an authenticated subscription with domain-verification access.

Send a domain verification email to an approved alias such as admin or security. Requires an authenticated subscription with domain-verification access.

ParamètreTypeDescription
domain*stringThe domain to verify by email.
emailAlias*stringThe approval alias to send the verification email to, for example admin.
response_formatstringFormat only the text content as markdown (default) or a JSON string. The same machine-readable data is always returned in structuredContent.

17 outils sur 17 ont publié une description.

Les noms et descriptions d’outils sont écrits par l’éditeur et affichés tels quels, comme du texte inerte. Ce sont les chaînes qu’un client MCP transmet à un modèle, alors Forge y recherche des motifs d’injection de prompt — tout constat apparaît avec l’analyse de sécurité ci-dessus. « Privilégié » est une correspondance de mot-clé sur le nom de l’outil, pas un audit de ce qu’il fait : un nom anodin peut tout de même tout faire.

À propos

Breach intelligence API: email search, domain monitoring, passwords and stealer logs.

Mots-clés
mcp
Alternatives
Comparaison des surfaces d’outils…

Aucune couverture des dépendances

Cette entrée ne publie aucun paquet npm : Forge n'a donc pas d'arbre de dépendances pour elle. C'est une lacune de couverture — pas une affirmation qu'elle n'a aucune dépendance.