AI-driven HTTP security testing toolkit providing low-level HTTP/1.1 and HTTP/2 control with 17 specialized tools.
Copy the AI prompt to install this server into Claude Code, Cursor, or another agent — or use 1-click editor setup below.
One-click editor setup isn’t available for this listing yet — we don’t have a confirmed install command, and we’d rather show nothing than point your editor at the wrong package or host. Follow the project’s own setup instructions, linked above.
Inspect callable tools, capabilities, and parameters exposed to AI agents by Rqwstr.
AI-native HTTP security testing toolkit, shipped as an MCP server. It gives an AI agent low-level control over HTTP/1.1 and HTTP/2 — raw framing, connection pinning, intruder-style fuzzing, request racing, OOB detection, and multi-step chains — on its own Go engine, rather than wrapping a high-level HTTP client.
This repository hosts the release binaries and Claude Desktop .mcpb bundles. The source is proprietary. Docs and sign-up: rqwstr.com.

Real v1.2.0 MCP session against a synthetic loopback fixture: one request, response-side
filtering, stored search, and named retrieval. The capture and renderer are reproducible
from demo/ with an activated free or Pro license; no live target is
involved.
Download the .mcpb for your platform from the latest release and double-click it to add rqwstr as a Claude Desktop extension.
darwin_arm64) or Intel (darwin_amd64)linux_amd64 or linux_arm64windows_amd64Download the binary for your platform from the latest release, then point your MCP client at it:
rqwstr serve runs the MCP server on stdio.
17 HTTP tools:
send · send_h2 · fetch · intruder · race · chain · oob · parallel ·
scope · session · encode · export · save · search · hunt · profile ·
import
The HTTP tools cover:
send (HTTP/1.1), send_h2 (HTTP/2), fetch, import (Burp / HAR), export (curl / python / requests)hunt, scope, save, search, session, profileintruder (sniper, battering ram, pitchfork, cluster bomb), race (single-packet), chain, paralleloob with Interactsh integrationencode (URL, base64, JWT, and more)Agents discover workflows through the rqwstr_docs tool. Per-hunt state lives in SQLite. The free tier is the core toolset; a Pro tier unlocks the heavier offensive tools.
Each release includes checksums.txt. Verify before running:
rqwstr's data collection, usage, storage, sharing, retention, and contact practices are documented in the Privacy Policy.
Proprietary. © Kjøpstad IT. See rqwstr.com for terms.
Factual signals from GitHub, npm, and our automated checks — not a rating.
No reviews yet — be the first to share how this listing worked for you.
Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.
[](https://allmcps.com/mcp/kjopstad-it-rqwstr)<a href="https://allmcps.com/mcp/kjopstad-it-rqwstr"><img src="https://allmcps.com/api/badge/kjopstad-it-rqwstr?style=directory" alt="Rqwstr on AllMCPs" /></a>