A safe, read-only, authorized audit of one host you own: DNS, ports, TLS, HTTP hygiene.
Copy the AI prompt to install this server into Claude Code, Cursor, or another agent β or use 1-click editor setup below.
π‘ Paste the JSON block into your client's configuration file under mcpServers, then restart the application.
Voyager's network organ β a safe, read-only, authorized audit of one host or domain you own, so an AI agent can find the falle in your infra and describe the fix.
Voyager penetrates the web (@dir-ai/voyager), the repo
(@dir-ai/voyager-repo), and β here β networks. This is the sense: it finds
problems. Applying fixes ("the hands") is a separate, consent-gated organ, by
design β an AI must never mutate live infrastructure on its own.
ipaddr.js) and any non-public address β loopback, private,
link-local, CGNAT, NAT64, IPv4-mapped IPv6, metadata β is refused.+all (anyone may send) and DMARC p=none (no enforcement) are findings,
not just presence checks. All target-controlled records are injection-framed.connect() with real
states (open / closed / filtered / unreachable β an OS timeout reads as
filtered, not closed), no SYN tricks, no payloads, no range/CIDR sweeps.PING) and reports the service as exposed
only if it answers without asking for credentials. Honest scope: this and the
TLS/HTTP inspectors DO send bytes (a ClientHello, a GET /, a protocol hello) β
the audit is active-but-safe (no writes, no mutation, no exploit), not purely
passive, and it runs only against the host you authorized.max-age, unsafe-inline/wildcard β not just presence), clickjacking
protection, per-cookie Secure/HttpOnly (each cookie evaluated on its own),
CORS wildcard and the dangerous credentials-with-origin case, version-leak,
and HTTPβHTTPS redirect. All pinned to the vetted IP.Findings that name a detected service+version suggest checking it against a CVE feed β voyager-net detects the version; CVE matching stays a lookup, and CVE probing (Nuclei &c.) is out of scope β that is active testing, a separate, more-gated capability, not a read-only sense.
Each finding carries a severity, confidence, and a described fix β e.g.
"certificate expires in 6d β renew and automate ACME", "mysql reachable publicly β
restrict to a private network", "no DMARC β publish v=DMARC1; p=quarantine".
--authorized (CLI) / authorized:true
(MCP) it refuses. You assert you own / may test the target.0 clean Β· 1 high/critical finding(s) Β· 2 tool error / not authorized.Scanning infrastructure you do not own or have explicit permission to test may be illegal in your jurisdiction. This tool is for auditing your own systems.
Tool: scan_host β same audit, fail-closed (authorized defaults off).
Wrap Prowler/Steampipe (cloud config), Trivy (CVE), Hubble (flow) under the same trust contract; attack-path correlation; drift (IaC declared β actual). Then β separately and consent-gated β the remediation "hands".
MIT
No reviews yet β be the first to share how this listing worked for you.
Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.
[](https://allmcps.com/mcp/voyager-net)<a href="https://allmcps.com/mcp/voyager-net"><img src="https://allmcps.com/api/badge/voyager-net?style=directory" alt="Voyager Net on AllMCPs" /></a>