# mcp-otx

> mcp-otx — w0h1v-mcp-otx. Use this tool when you need to integrate with AlienVault OTX or LevelBlue Open Threat Exchange for threat intelligence, leveraging 29 DirectConnect API tools with flexible transport options via stdio and streamable HTTP. It provides read-only access by default, ensuring secure interaction with the threat exchange platform. Ideal for use cases requiring automated threat data ingestion and analysis, with support for git version control.

Canonical page: https://skillsregistry.net/skills/w0h1v-mcp-otx  
JSON: https://api.skillsregistry.net/v1/skills/w0h1v-mcp-otx

## Description

MCP server for AlienVault OTX / LevelBlue Open Threat Exchange — complete DirectConnect API coverage (29 tools), stdio + streamable HTTP transports, read-only by default. Built on MCP SDK 2.x

## Trust

- **Trust score (0–1):** 0.50
- **Verification tier:** unverified

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** container
- **Runtime environment:** vm
- **Updated:** 2026-09-28

## Source

- **Source listing:** [GitHub](https://github.com/w0h1v/mcp-otx)

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "w0h1v-mcp-otx"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/w0h1v-mcp-otx` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/w0h1v-mcp-otx/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
