Joe Sandbox Cloud
This Joe Sandbox Cloud MCP server by Joe Security LLC provides AI agents with malware analysis capabilities through the Joe Sandbox Cloud API, offering tools for file and URL submission, analysis querying, IOC extraction (domains, IPs, URLs, signatures), AI-powered threat summaries, and artifact downloads (unpacked files, PCAP network captures). Built with Python using FastMCP and featuring async report caching, XML parsing for detailed analysis data, process tree extraction, and comprehensive error handling, the implementation supports both immediate and polling-based analysis workflows with configurable parameters for sandbox environments. The server integrates with Claude Desktop through API key authentication and Terms & Conditions acceptance, making it valuable for threat intelligence gathering, malware research, incident response automation, and building AI assistants that need professional-grade dynamic and static malware analysis capabilities with detailed behavioral insights.
Composite of vulnerability cleanliness, spec conformance, provenance, stability, and usage signals — scanned and weighted by Cognium. Human and agent signals are tracked separately. Last scanned 2026-09-28.
Scan details: Circle-IR · 2026-09-28 · Appeal
View full trust & usage report →Metadata
- Version
- 1.0.0
- Skill type
- atomic
- Execution layer
- mcp-remote
- Category
- media
- Source
- PulseMCP
- Repository
- github.com/joesecurity/joesandboxmcp
- Author type
- human
- Last scanned
- 2026-09-28
- Updated
- 2026-09-28
Use via MCP
Resolve Joe Sandbox Cloud from your agent
Streamable HTTP transport at https://api.skillsregistry.net/mcp. No auth for read tools. Discovery: .well-known/mcp.json.
One command in your shell — Claude Code wires it up and verifies the connection. Run /mcp in any session to confirm.
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp --scope user for --scope project to commit it to .mcp.json.