# Cortex Threat Intelligence

> Use this tool when you need to integrate threat intelligence capabilities into AI assistants for automated security assessments and investigations. It analyzes IP addresses, domains, URLs, and email addresses using popular security services, providing structured reports to aid in security analyses. The Cortex Threat Intelligence tool is ideal for security analysts seeking to automate threat detection and response workflows.

Canonical page: https://skillsregistry.net/skills/gbrigandi-cortex-threat-intelligence  
JSON: https://api.skillsregistry.net/v1/skills/gbrigandi-cortex-threat-intelligence

## Description

MCP Server Cortex is a bridge implementation that exposes Cortex threat intelligence analyzer functionalities as tools for AI models and automation scripts. Developed by Gianluca Brigandi under MIT license, it provides tools for analyzing IP addresses, domains, URLs, and email addresses using popular security services like AbuseIPDB, AbuseFinder, and VirusTotal through a Cortex instance. The server handles the complete workflow of submitting analysis jobs to Cortex, polling for completion, and returning structured reports, making it particularly valuable for security analysts who need to integrate threat intelligence capabilities into AI assistants for automated security assessments and investigations.

## Trust

- **Trust score (0–1):** 0.50
- **Verification tier:** unverified

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** communication
- **Updated:** 2026-04-25

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/gbrigandi-cortex-threat-intelligence)
- **Repository:** <https://github.com/gbrigandi/mcp-server-cortex>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "gbrigandi-cortex-threat-intelligence"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/gbrigandi-cortex-threat-intelligence` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/gbrigandi-cortex-threat-intelligence/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
