io.github.WYRE-AI/avanan-mcp

MCPcommunity
v2.2.3io.github.WYRE-AIUnknownUpdated 1mo agoGitHub

MCP server for Check Point Harmony Email & Collaboration (Avanan) email security.

Automatically indexed from public sources. Not yet verified by the developer on Forge.Claim this listing →
1mo agoLast update
Needs 1 credential before it runs
  • AVANAN_CLIENT_SECRETOAuth apprequired

    Avanan / Harmony Email API client secret

Declared by the author in the official MCP registry. Forge does not store, broker, or ever see these values — the config below is scaffolded with placeholders you fill in locally.

Package
Authorio.github.WYRE-AI
LicenseUnknown
Version2.2.3
Sourcemcp-registry
Trust Status
B
60/100Good
✓Listed in Forge index+10/10
—Publisher identity verified+0/30
→ Publisher: run `forge publish` from the repo to claim ownership
—Domain verification+0/10
→ Not currently available for this listing type — the domain-verification check only runs for npm-backed packages today, so this row cannot be earned here yet regardless of what's hosted at the domain.
✓Prompt-injection scan · clean+30/30
✓Obfuscation / exfil scan · clean+20/20
Paste into Claude Code, Cursor, or any AI assistant to fix all gaps
StatusCommunity-indexed
PublisherUnverified
SignatureUnsigned
Domain—
Provenance—
DependenciesNot audited
Tool surface13 tools · 1 privileged
Security scan✓ CleanvHEAD · 1d agoHow well does this scan work?
EvalsNone
IndexedAug 27, 2026

Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.

Tools

13 tools · 1 privileged
Statically extracted from the published packagevHEAD · 1d ago

Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.

hec_quarantine_events⚠ HIGH-IMPACT. Quarantine one or more security events by event ID.

⚠ HIGH-IMPACT. Quarantine one or more security events by event ID.

No input schema was published for this tool.

hec_restore_eventsRestore one or more previously quarantined events by event ID. Returns task IDs to track progress.

Restore one or more previously quarantined events by event ID. Returns task IDs to track progress.

No input schema was published for this tool.

hec_quarantine_emails⚠ HIGH-IMPACT. Quarantine specific email entities by entity ID.

⚠ HIGH-IMPACT. Quarantine specific email entities by entity ID.

No input schema was published for this tool.

hec_restore_emailsRestore specific quarantined email entities by entity ID.

Restore specific quarantined email entities by entity ID.

No input schema was published for this tool.

hec_get_task_statusCheck the status of an action task (quarantine/restore). Use the taskId returned by quarantine or restore tools.

Check the status of an action task (quarantine/restore). Use the taskId returned by quarantine or restore tools.

No input schema was published for this tool.

hec_query_eventsQuery Checkpoint Harmony Email security events (phishing, malware, DLP, anomaly, shadow IT, etc.). Supports filtering by type, state, severity, date range, and SaaS platform. Returns events with available remediation actions.

Query Checkpoint Harmony Email security events (phishing, malware, DLP, anomaly, shadow IT, etc.). Supports filtering by type, state, severity, date range, and SaaS platform. Returns events with available remediation actions.

No input schema was published for this tool.

hec_get_eventGet full details for a specific security event by ID.

Get full details for a specific security event by ID.

No input schema was published for this tool.

hec_list_exceptionsList whitelist or blacklist entries in Checkpoint Harmony Email.

List whitelist or blacklist entries in Checkpoint Harmony Email.

No input schema was published for this tool.

hec_add_exceptionAdd an entry to the whitelist or blacklist. At least one match field (senderEmail, senderDomain, subject, attachmentMd5, recipient) must be provided.

Add an entry to the whitelist or blacklist. At least one match field (senderEmail, senderDomain, subject, attachmentMd5, recipient) must be provided.

No input schema was published for this tool.

hec_update_exceptionUpdate an existing whitelist or blacklist entry by its entity ID.

Update an existing whitelist or blacklist entry by its entity ID.

No input schema was published for this tool.

hec_delete_exceptionprivileged⚠ DESTRUCTIVE — IRREVERSIBLE. Delete a whitelist or blacklist entry by its entity ID.

⚠ DESTRUCTIVE — IRREVERSIBLE. Delete a whitelist or blacklist entry by its entity ID.

No input schema was published for this tool.

hec_search_emailsSearch email and SaaS entities in Checkpoint Harmony Email. Filter by sender, recipient, subject, SaaS platform, and date range. Use extended filters for precise attribute matching (contains, startsWith, isEmpty, etc.).

Search email and SaaS entities in Checkpoint Harmony Email. Filter by sender, recipient, subject, SaaS platform, and date range. Use extended filters for precise attribute matching (contains, startsWith, isEmpty, etc.).

No input schema was published for this tool.

hec_get_emailGet full details for a specific email entity by its entity ID.

Get full details for a specific email entity by its entity ID.

No input schema was published for this tool.

13 of 13 tools published a description.

Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.

About

MCP server for Check Point Harmony Email & Collaboration (Avanan) email security.

Keywords
mcp
Alternatives
Comparing tool surfaces…

No dependency coverage

This entry publishes no npm package, so Forge has no dependency tree for it. That is a gap in coverage — not a statement that it has no dependencies.