OpenCTI
This OpenCTI MCP server, developed by zxzinn and Spathodea Network, provides a standardized interface for interacting with the OpenCTI threat intelligence platform. Built with TypeScript and leveraging the Model Context Protocol SDK, it offers a streamlined way to query and manipulate threat intelligence data. The server implements OpenCTI API authentication and endpoint configuration, enabling AI systems to easily access and analyze cyber threat information. This implementation is particularly valuable for security teams and researchers working with threat intelligence, facilitating use cases such as automated threat analysis, indicator enrichment, and integration of threat data into AI-driven security workflows.
Composite of vulnerability cleanliness, spec conformance, provenance, stability, and usage signals — scanned and weighted by Cognium. Human and agent signals are tracked separately.
View full trust & usage report →Metadata
- Version
- 1.0.0
- Skill type
- atomic
- Execution layer
- mcp-remote
- Category
- security
- Source
- PulseMCP
- Repository
- github.com/spathodea-network/opencti-mcp
- Author type
- human
- Updated
- 2026-04-25
Use via MCP
Resolve OpenCTI from your agent
Streamable HTTP transport at https://api.skillsregistry.net/mcp. No auth for read tools. Discovery: .well-known/mcp.json.
One command in your shell — Claude Code wires it up and verifies the connection. Run /mcp in any session to confirm.
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp --scope user for --scope project to commit it to .mcp.json.