# Immunefi

> Use this tool when you need to access and analyze bug bounty program data, such as searching programs, retrieving assets in scope, and filtering by language or bounty ranges. It solves problems for security researchers conducting reconnaissance and analyzing reward structures across different protocols. The API provides cached data with 6-hour refreshes, accepting project IDs and other filters as inputs and outputting detailed program information.

Canonical page: https://skillsregistry.net/skills/infosec-us-team-immunefi  
JSON: https://api.skillsregistry.net/v1/skills/infosec-us-team-immunefi

## Description

Built by the infosec-us-team using FastMCP, this server provides cached access to Immunefi bug bounty program data through an API that refreshes every 6 hours. It offers 15 specialized tools for searching programs, retrieving assets in scope, bounty amounts, rewards structures, impact categories, KYC requirements, launch dates, and filtering by language, ecosystem, or bounty ranges. The implementation includes GitHub repository extraction from program data, robust input validation with alphanumeric project ID checks, and detailed error handling, making it valuable for security researchers conducting reconnaissance on bug bounty programs, analyzing reward structures across different protocols, and identifying potential targets based on specific criteria.

## Trust

- **Trust score (0–1):** 0.89
- **Verification tier:** verified
- **Last scanned:** 2026-09-28

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** version-control
- **Updated:** 2026-09-28

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/infosec-us-team-immunefi)
- **Repository:** <https://github.com/infosec-us-team/immunefi-mcp-server-unofficial>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "infosec-us-team-immunefi"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/infosec-us-team-immunefi` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/infosec-us-team-immunefi/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
