Skip to content
appsgit

OpenOSINT

OpenOSINT is an MCP server that adds developer tools to AI assistants such as Claude Desktop, Claude Code and Cursor. AI-powered OSINT agent & MCP server. 21 tools: email, breach, IP, WHOIS, DNS, Shodan, GitHub & more. It has 1,700 GitHub stars, is released under the MIT license and runs locally with uvx openosint.

github.com/OpenOSINT/OpenOSINT (opens in a new tab)

Install OpenOSINT

Generated from the server's MCP registry entry. Replace your-value with your own values.

Claude Desktop

claude_desktop_config.json
{
  "mcpServers": {
    "openosint": {
      "command": "uvx",
      "args": [
        "openosint"
      ],
      "env": {
        "ANTHROPIC_API_KEY": "your-value",
        "HIBP_API_KEY": "your-value",
        "IPINFO_TOKEN": "your-value",
        "IP2LOCATION_API_KEY": "your-value",
        "ABUSEIPDB_API_KEY": "your-value"
      }
    }
  }
}

Settings > Developer > Edit Config. macOS: ~/Library/Application Support/Claude/, Windows: %APPDATA%\Claude\. Restart Claude Desktop afterwards.

Claude Code

claude mcp add --env ANTHROPIC_API_KEY=your-value --env HIBP_API_KEY=your-value --env IPINFO_TOKEN=your-value --env IP2LOCATION_API_KEY=your-value --env ABUSEIPDB_API_KEY=your-value --transport stdio openosint -- uvx openosint

Cursor

.cursor/mcp.json
{
  "mcpServers": {
    "openosint": {
      "type": "stdio",
      "command": "uvx",
      "args": [
        "openosint"
      ],
      "env": {
        "ANTHROPIC_API_KEY": "your-value",
        "HIBP_API_KEY": "your-value",
        "IPINFO_TOKEN": "your-value",
        "IP2LOCATION_API_KEY": "your-value",
        "ABUSEIPDB_API_KEY": "your-value"
      }
    }
  }
}

Project file; use ~/.cursor/mcp.json to enable it in every project.

VS Code

.vscode/mcp.json
{
  "inputs": [
    {
      "type": "promptString",
      "id": "anthropic_api_key",
      "description": "ANTHROPIC_API_KEY",
      "password": true
    },
    {
      "type": "promptString",
      "id": "hibp_api_key",
      "description": "HIBP_API_KEY",
      "password": true
    },
    {
      "type": "promptString",
      "id": "ipinfo_token",
      "description": "IPINFO_TOKEN",
      "password": true
    },
    {
      "type": "promptString",
      "id": "ip2location_api_key",
      "description": "IP2LOCATION_API_KEY",
      "password": true
    },
    {
      "type": "promptString",
      "id": "abuseipdb_api_key",
      "description": "ABUSEIPDB_API_KEY",
      "password": true
    }
  ],
  "servers": {
    "openosint": {
      "type": "stdio",
      "command": "uvx",
      "args": [
        "openosint"
      ],
      "env": {
        "ANTHROPIC_API_KEY": "${input:anthropic_api_key}",
        "HIBP_API_KEY": "${input:hibp_api_key}",
        "IPINFO_TOKEN": "${input:ipinfo_token}",
        "IP2LOCATION_API_KEY": "${input:ip2location_api_key}",
        "ABUSEIPDB_API_KEY": "${input:abuseipdb_api_key}"
      }
    }
  }
}

Config formats checked against the official docs on Oct 7, 2026: modelcontextprotocol.io (opens in a new tab), code.claude.com (opens in a new tab), cursor.com (opens in a new tab), code.visualstudio.com (opens in a new tab).

Environment variables

Variables the server reads at startup.

NameRequiredDescription
ANTHROPIC_API_KEYsecretYesAnthropic API key — required for the AI agent REPL
HIBP_API_KEYsecretNoHaveIBeenPwned API key for breach detection (search_breach tool)
IPINFO_TOKENsecretNoipinfo.io token for higher IP lookup rate limits (search_ip tool)
IP2LOCATION_API_KEYsecretNoIP2Location API key for enhanced IP intelligence (search_ip2location tool)
ABUSEIPDB_API_KEYsecretNoAbuseIPDB API key for IP abuse reputation checks (search_abuseipdb tool)

Tools (21)

Parsed from the Tools section of the README; check the repository for the current list.

  • search_email

    holehe

  • search_username

    sherlock

  • search_breach

    HaveIBeenPwned v3 API

  • search_whois

    python-whois

  • search_ip

    ipinfo.io

  • search_domain

    sublist3r

  • generate_dorks

    built-in

  • search_paste

    psbdmp.ws

  • search_phone

    phoneinfoga

  • search_shodan

    Shodan API

  • search_virustotal

    VirusTotal API v3

  • search_ip2location

    IP2Location.io API

  • search_censys

    Censys Search API

  • search_abuseipdb

    AbuseIPDB v2 API

  • search_github

    GitHub REST API

  • search_dns

    dnspython (built-in)

  • search_rdap

    RDAP (IANA bootstrap, keyless)

  • search_gdelt_geo

    GDELT GEO 2.0 API

  • search_dorks_live

    Bright Data SERP API

  • scrape_url

    Bright Data Web Unlocker

  • search_footprint

    Bright Data SERP API

About OpenOSINT

OpenOSINT An OSINT (Open Source Intelligence) agent for security researchers and analysts: 21 investigation tools behind a natural-language interface, plus an MCP (Model Context Protocol) server so any MCP-compatible AI client can drive them directly. Use it as a REPL, CLI, MCP server, or browser Web UI. The AI issues hard-stop tool calls; your code executes the real binary — hallucinated findings are structurally impossible.

  • ai-agent
  • anthropic
  • claude
  • cybersecurity
  • osint
  • python
  • security
  • terminal
  • cli
  • holehe

FAQ

OpenOSINT FAQ

Still curious? Email info@appsgit.com.

What is OpenOSINT?

OpenOSINT is an MCP server that adds developer tools to AI assistants such as Claude Desktop, Claude Code and Cursor. AI-powered OSINT agent & MCP server. 21 tools: email, breach, IP, WHOIS, DNS, Shodan, GitHub & more. It has 1,700 GitHub stars, is released under the MIT license and runs locally with uvx openosint. The source code is at github.com/OpenOSINT/OpenOSINT.

How do I install the OpenOSINT MCP server?

Add the command uvx openosint to your MCP client: put it in claude_desktop_config.json for Claude Desktop, run claude mcp add for Claude Code, or add it to .cursor/mcp.json (Cursor) or .vscode/mcp.json (VS Code). The snippets on this page are ready to paste.

Is OpenOSINT free?

The server is open source under the MIT license, so running it is free. It needs credentials (ANTHROPIC_API_KEY, HIBP_API_KEY, IPINFO_TOKEN, IP2LOCATION_API_KEY and ABUSEIPDB_API_KEY) for the service it connects to, which may require a paid account.

Is OpenOSINT actively maintained?

The most recent commit was on Oct 6, 2026. The latest release is v2.31.0, published Oct 6, 2026. appsgit only lists MCP servers with a commit in the last six months and re-checks every server daily.