# Cyber Sentinel

> Use this tool when you need to aggregate threat intelligence from multiple security sources, analyze security indicators, and detect vulnerabilities in code, dependencies, and configurations. It solves problems for security analysts, incident response teams, and DevOps teams by providing unified threat intelligence queries, rapid IOC analysis, and automated security scanning. The tool takes in security indicators such as IPs, domains, hashes, and URLs, and outputs visual security reports with confidence scoring and vulnerability detection.

Canonical page: https://skillsregistry.net/skills/cyber-sentinel  
JSON: https://api.skillsregistry.net/v1/skills/cyber-sentinel

## Description

This MCP server provides AI assistants with threat intelligence aggregation capabilities across multiple security sources including VirusTotal, AbuseIPDB, URLhaus, Shodan, ThreatFox, and MalwareBazaar, built by Zeng Junxiang using Python with FastMCP and asyncio for concurrent processing. The implementation offers seven core tools for analyzing security indicators (IPs, domains, hashes, URLs) with automatic type detection and confidence scoring, checking API status across configured sources, performing code security analysis with vulnerability detection, scanning project dependencies for known security issues, analyzing Docker configurations for security best practices, scanning Kubernetes manifests for security risks, and generating visual security reports with Mermaid charts. Built with intelligent caching, rate limiting, error recovery mechanisms, and zero data storage for privacy protection, it serves security analysts needing unified threat intelligence queries across multiple sources, incident response teams requiring rapid IOC analysis, and DevOps teams wanting to integrate security scanning into AI-assisted workflows with automated vulnerability detection and reporting.

## Trust

- **Trust score (0–1):** 0.58
- **Verification tier:** scanned
- **Last scanned:** 2026-09-19

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** cloud-infra
- **Updated:** 2026-09-19

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/cyber-sentinel)
- **Repository:** <https://github.com/jx888-max/cyber-sentinel-mcp>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "cyber-sentinel"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/cyber-sentinel` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/cyber-sentinel/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
