Skip to main content
AllMCPs
BrowseBestCategoriesStackCompareToolsGuidesBlog
Log in Submit MCP

Stay in the loop

Get new MCP servers and top picks in your inbox.

AllMCPs

The open directory for discovering and installing Model Context Protocol servers.

AllMCPs on GitHub (opens in a new tab)
Launched onTiny Startupstinystartups.com
Explore
  • Browse servers
  • Best MCP servers
  • Categories
  • MCP clients
  • Agent prompts
  • Stack Builder
  • Compare servers
  • Random discovery New
  • Submit a server
  • Pricing & Boost Boost
Learn
  • Guides hub
  • What is MCP?
  • Install guide
  • Build an MCP server
  • Deploy an MCP server
  • Security guide
  • Troubleshooting
  • MCP for SEO & AEO
  • Protocol versioning
  • Blog & updates
Tools
  • All developer tools
  • Config generator
  • Config validator
  • Config auditor
  • MCP playground
  • Token calculator
  • OpenAPI โ†’ MCP
  • Badge generator
For agents
  • REST API docs
  • Trust & traffic Live
  • Remote MCP server SSE โ†— (opens in a new tab)
  • llms.txt โ†— (opens in a new tab)
  • Catalog JSON โ†— (opens in a new tab)
Company
  • About
  • Advertise Sponsor
  • Contact
  • GitHub โ†— (opens in a new tab)
  • Terms
  • Privacy
AllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZoneAllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZone
ยฉ 2026 Jackalope Digital LLC. All rights reserved.
  1. Home
  2. ๐Ÿ”’ Security
  3. MCP Shodan
MCP Shodan logo
Health: ActiveRecent health check succeeded.Last checked 9/11/2026, 8:32:55 PM

MCP Shodan

User RatingsBe the first to rate and review this MCP server!
View Repository167 GitHub StarsTotal stargazers on GitHub for the source repository (167 stars).Visit Website
shodansecurityvulnerability-managementdnsnetwork-reconnaissance

Queries Shodan for IP, DNS, device, CPE, and vulnerability intelligence through MCP tools.

Quick Install

Automated & IDE Setup

Copy the AI prompt to install this server into Claude Code, Cursor, or another agent โ€” or use 1-click editor setup below.

Add to CursorAdd to VS Code
Not yet automatically verified

We haven't yet run this listing's install command through our automated sandbox check. This isn't a red flag โ€” we're steadily working through the catalog.

Manual Client & Custom JSON ConfigExpand JSON โ–พ

Client Config & Setup

Choose your client or environment
Target File:~/Library/Application Support/Claude/claude_desktop_config.json
claude_desktop_config.json
{
  "mcpServers": {
    "burtthecoder-mcp-shodan": {
      "command": "npx",
      "args": [
        "-y",
        "@burtthecoder/mcp-shodan"
      ]
    }
  }
}

๐Ÿ’ก Paste the JSON block into your client's configuration file under mcpServers, then restart the application.

Install Tool Schemas (22) Directory Badge Claim listing Alternatives๐Ÿ”’ More in Security

Overview

BurtTheCoder/mcp-shodan MCP server exposes Shodan API and Shodan CVEDB queries as MCP tools. It supports IP reconnaissance, device searches, forward and reverse DNS, CVE lookups, CPE searches, and product vulnerability queries. The server runs locally through Node.js and authenticates with a SHODAN_API_KEY. Use it when an MCP-compatible client needs structured Shodan data for security research or network analysis.

Use cases

โ€ขInvestigate IP addresses and exposed services
โ€ขSearch internet-connected devices with Shodan queries
โ€ขResolve hostnames and reverse DNS records
โ€ขReview CVEs affecting a product or CPE
โ€ขFilter vulnerabilities by KEV status or EPSS

Key features

โ€ขIP reconnaissance with service and location details
โ€ขShodan device search
โ€ขForward and reverse DNS lookups
โ€ขCVE and CVEDB queries
โ€ขCPE search with pagination
โ€ขProduct vulnerability filtering

Capabilities & Tool Schemas (22) ~45 tokensApproximate context cost of this serverโ€™s tool schemas (~4 chars/token), before any tool is called. Actual usage depends on your client and model.Self-reported Self-reportedParsed from the repository README, not verified against a live server โ€” may be incomplete or out of date.

Inspect callable tools, capabilities, and parameters exposed to AI agents by MCP Shodan.

ip_lookup

Callable MCP tool function

ip

Callable MCP tool function

shodan_search

Callable MCP tool function

query

Callable MCP tool function

max_results

Callable MCP tool function

cve_lookup

Callable MCP tool function

How MCP Shodan works

What BurtTheCoder/mcp-shodan MCP server does

BurtTheCoder/mcp-shodan MCP server gives MCP clients access to selected Shodan network intelligence and vulnerability database operations. It can retrieve information about an IP address, search Shodan's indexed internet-connected devices, resolve DNS records, and query vulnerability data from Shodan CVEDB.

IP lookups can include organization, ISP, ASN, location, open ports, service banners, SSL certificates, hostnames, tags, and cloud provider information when available. Device searches accept Shodan search queries and can return result totals, country distributions, and device or service details. The CVE functions expose identifiers, publication data, CVSS and EPSS information, KEV status, affected CPEs, mitigations, references, and ransomware associations where provided by the source.

How it works

The BurtTheCoder/mcp-shodan MCP server runs as a local Node.js process and communicates with the MCP client over standard input/output. Requests are forwarded to Shodan using the API key supplied through the environment. Responses are formatted as structured results for analysis by the client.

The server provides separate operations for IP lookup, Shodan search, CVE lookup, DNS lookup, reverse DNS lookup, CPE lookup, and CVE searches by product. DNS lookup accepts multiple hostnames, while reverse DNS accepts multiple IP addresses. CPE and product-CVE queries support pagination through skip and limit values. Product-CVE searches can also filter by publication dates, restrict results to KEV entries, and sort by EPSS score. A CVE search must use either a product name or a CPE 2.3 identifier, not both.

Setup and configuration

The BurtTheCoder/mcp-shodan MCP server requires Node.js v20 or later and a valid Shodan API key. The documented npm command is:

Terminal
npx -y @burtthecoder/mcp-shodan

Configure the process with the SHODAN_API_KEY environment variable. For Claude Desktop, the README shows a server entry using mcp-shodan as the command after a global npm installation, or node with the built source file when running from a clone. The source workflow installs dependencies with npm, builds the project, and runs build/index.js.

Shodan account credits and permissions affect which operations succeed. A missing or invalid key can produce a 401 response, exhausted query credits can produce 402, and rate limits can produce 429. The project recommends checking the Shodan account dashboard and testing a simple DNS query when troubleshooting authentication.

Tools and capabilities

  • Look up IP addresses and associated services.
  • Search Shodan's device database with a query and result limit.
  • Retrieve detailed records for a CVE identifier.
  • Resolve hostnames to IP addresses and IP addresses to hostnames.
  • Search CPE entries by product with optional counts and pagination.
  • Find CVEs by product or CPE, with KEV, EPSS, date, count, and pagination options.

Limitations and notes

The server depends on Shodan availability, API permissions, query credits, and rate limits. Inputs must follow the expected formats, including CVE identifiers, CPE 2.3 values, and date filters formatted as YYYY-MM-DDTHH:MM:SS. The material documents Claude Desktop, Claude Code, Codex CLI, Gemini CLI, and Smithery setup paths, but does not establish compatibility with every MCP client.

Read the full README โ†’View source on GitHub โ†’

Related MCP Servers

View all in Security View all alternatives
  • MCP Virustotal logoMCP Virustotal

    MCP server for querying the VirusTotal API. This server provides tools for scanning URLs, analyzing file hashes, and retrieving IP address reports.

    ๐Ÿ”’ Security2 views
    Compare vs MCP Virustotal โ†’
  • Apktool MCP Server logoApktool MCP Server

    APKTool MCP Server is a MCP server for the Apk Tool to provide automation in reverse engineering of Android APKs.

    ๐Ÿ”’ Security3 views
    Compare vs Apktool MCP Server โ†’
  • Dechonet MCP logoDechonet MCP

    Domain security reconnaissance for AI agents. 13 tools โ€” DNS + DNSSEC, SSL/TLS chain & grade, HTTP security headers, SPF/DKIM/DMARC email auth, TCP port scan, ASN, RDAP/WHOIS โ€” plus a one-shot securityscan returning a 0-100 Health Score (Aโ€“F). Free, no API key. npx -y dechonet-mcp

    ๐Ÿ”’ Security3 views
    Compare vs Dechonet MCP โ†’
  • MCP Server Dns logoMCP Server Dns

    DNS lookups, reverse DNS, WHOIS, and domain availability checks. Zero auth, zero config.

    ๐Ÿ”’ Security2 views
    Compare vs MCP Server Dns โ†’

Adoption & maintenance

Factual signals from GitHub, npm, and our automated checks โ€” not a rating.

GitHub stars
167
Stargazers on the source repository.
npm downloads
1.4k
Package downloads in the last 30 days.
Last commit
5mo ago
Most recent push to the default branch.
Tools exposed
22
Callable tools this server registers over MCP.
Directory activity
3 views
Config copies, upvotes, and views on AllMCPs.

Reviews

No reviews yet โ€” be the first to share how this listing worked for you.

Frequently Asked Questions about MCP Shodan

Install it with Node.js and run `npx -y @burtthecoder/mcp-shodan`, or install the npm package globally and configure the resulting `mcp-shodan` command.

AllMCPs Directory Badge

Full Badge Customizer

Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.

Badge Style:
Live Dynamic SVG PreviewMCP Shodan AllMCPs Directory Badge
Markdown (GitHub README)
[![AllMCPs](https://allmcps.com/api/badge/burtthecoder-mcp-shodan?style=directory)](https://allmcps.com/mcp/burtthecoder-mcp-shodan)
HTML Embed
<a href="https://allmcps.com/mcp/burtthecoder-mcp-shodan"><img src="https://allmcps.com/api/badge/burtthecoder-mcp-shodan?style=directory" alt="MCP Shodan on AllMCPs" /></a>

Technical Specs & Signals

Category๐Ÿ”’Security
PricingBring your own API key (usage-based cost)
More technical detailsExpand โ–พ
TransportSTDIO
RuntimeNode.js
AuthAPI key
ClientsClaude Desktop
Last updatedSep 7, 2026
Views3
Unique ViewsTotal visits recorded for this listing page on AllMCPs.
Installs0
Installs & Copy ActionsTotal times users copied install commands or configuration snippets for this server.
GitHub stars167
GitHub Star CountTotal stargazers on GitHub representing community popularity (167 stars).
Last commit5mo ago
Last Repository CommitThe most recent commit or push recorded for this server's GitHub repository.Last commit on Mar 31, 2026
npm downloads1,402/mo
Monthly npm DownloadsAverage monthly package installs recorded from npm registry statistics.
61Quality signal: Good ยท 61/100How this signal is calculated โ–พ
Server availabilityNot measured

Not scored for repo-hosted servers โ€” we can't reach the running server, only its GitHub page. Hosted MCP endpoints are health-checked live.

Verified ownership10/20
Documentation & tools28/30
Adoption & activity8/15
Community engagement0/10

A guidance signal from public completeness & health data โ€” not a user rating. New listings start lower and rise as they add docs, get verified, and grow adoption. Signals we can't observe for a listing are skipped, not counted against it.

Supply-chain signal

No high-severity advisories surfaced by our automated scan.

Critical 0High 0Medium 0Low 0

Scanned 21d ago via OSV.dev ยท @burtthecoder/mcp-shodan (npm)

โ˜… FeaturedMoxie Docs MCP logo

Moxie Docs MCP

MCP & Agent Skills for Automated Documentation, and codebase conventions + context

Explore Server โ†’

Own this project?

This directory is pre-filled from public sources. Claim via GitHub README, site badge, or DNS TXT to unlock edit access and the Official badge โ€” proof is checked automatically, then reviewed by our team.

Free dofollow backlink: add your website and place the AllMCPs badge on it โ€” no claim needed. We detect it automatically and keep it verified as long as the badge stays live.

Claim & get free dofollow

Share & Embed

Add our SVG badge (dark/light directory styles) or embeddable widget to your site.

Explore more

More in ๐Ÿ”’ Security โ†’Best MCP servers for Security โ†’Alternatives to MCP Shodan โ†’Install in Claude DesktopInstall in CursorInstall in VS Code