Nslookup MCP server
DNS lookups, health reports, SSL certs, security scans, GEO scoring, uptime checks
23 stars52 downloads/wk
Reviews
Write oneNobody has reviewed Nslookup yet.
If you have run it, two minutes of your experience saves the next person an afternoon.
Nslookup tools (23, 2 write)
write = sends, deletes, buys or postsbimi_checkFreeCheck only the BIMI (Brand Indicators for Message Identification) DNS record for a domain — faster than bimi_vmc because it skips the VMC certificate download and validation. Returns the BIMI record at default._bimi.<domain>, logo URL, and authority (VMC) URL if declared.
bimi_vmcFreeCheck BIMI (Brand Indicators for Message Identification) and VMC (Verified Mark Certificate) for a domain. Returns BIMI DNS record status, VMC certificate details, logo URL, trademark info, and expiry.
dns_change_reviewFreeReview proposed DNS changes BEFORE applying them. Compares a domain's current public DNS with a proposed future state, returns a diff, deterministic rule-based findings (SPF/DMARC/MX/CAA/DNSSEC pitfalls, dangling records, mail breakage, etc.) with suggested fixes, and an overall 0-100 risk score. Stateless — nothing is stored.
dns_healthwrite actionFreeRun a comprehensive DNS health audit on a domain — 39 checks across 7 categories: DNSSEC (chain of trust, algorithms, validation), MX & email (PTR, MTA-STS, redundancy), DNS hygiene (SPF conflicts, wildcards, apex CNAME), TTL & SOA configuration, nameserver setup (diversity, lame delegation, EDNS0), CAA certificates, and operational maturity (security.txt, abuse mailbox). Returns an overall severity-weighted score (0–100) plus per-category scores.
dns_lookupFreeLook up all common DNS records (A, AAAA, NS, MX, TXT, CNAME, SOA) for a domain. Returns results from a specified DNS server.
dns_propagationFreeCheck DNS propagation for a domain across 18+ global DNS servers (Cloudflare, Google, Quad9, OpenDNS, regional servers, and authoritative nameservers). Shows if DNS changes have propagated worldwide.
dns_recordFreeLook up a specific DNS record type for a domain. Supports 53 record types including A, AAAA, MX, TXT, CNAME, SOA, PTR, CAA, SRV, DNSKEY, DS, TLSA, HTTPS, SPF, and more.
domain_scannerFreeScan a domain's email security posture: SPF, DKIM, DMARC, and BIMI configuration. Returns per-indicator scores and detected issues so you can see how well the domain is protected against spoofing and phishing.
geo_checkerFreeCheck a domain's GEO (Generative Engine Optimization) score — how well the site is optimized for AI search engines like ChatGPT, Gemini, Claude, and Perplexity. Returns three scores (Technical Readiness, Entity Readiness, Answer Readiness), AI crawler access status, structured data analysis, and prioritized recommendations.
hosting_reportFreeFind out who hosts a website. Returns the hosting provider, IP/ASN/network owner, server location, DNS/nameserver provider, CDN or proxy detection (Cloudflare, Fastly, etc.), SSL certificate issuer, and mail servers/provider for a domain in one combined report.
my_certificatesFreeGet an SSL certificate expiry overview for your monitored domains: per-alert-level counts (ok / warning / critical / expired) and every certificate sorted by soonest expiry, highlighting the ones expiring within 30 days. Requires sign-in to your NsLookup.io account (or an API token).
my_dns_changesFreeList recent DNS changes detected on your monitored domains, each with its DNS Change Review risk assessment (0-100 risk score, severity counts, added/removed/modified record counts), plus the latest risk per monitor. Requires sign-in to your NsLookup.io account (or an API token).
my_incidentsFreeList incidents from your NsLookup.io monitoring (downtime, SSL expiry, DNS changes, propagation issues, VMC problems) — open ones by default, or the full recent history — plus a per-status/per-source summary. Requires sign-in to your NsLookup.io account (or an API token).
my_monitorsFreeList all monitors in your NsLookup.io account across every type — uptime, API, DNS, WHOIS, DNS propagation, SSL certificates, and BIMI/VMC — with their configuration and latest known state. Requires sign-in to your NsLookup.io account (or an API token).
my_overviewFreeGet an account health snapshot for your NsLookup.io monitoring: an aggregated 0-100 health score with per-subsystem breakdown (uptime, SSL, DNS, propagation, VMC, WHOIS) plus your current product limits/quota. Requires sign-in to your NsLookup.io account (or an API token).
my_uptime_historyFreeGet uptime and response-time history for one of your NsLookup.io uptime monitors: availability stats plus hourly buckets over the requested window. Identify the monitor by id or by URL. Requires sign-in to your NsLookup.io account (or an API token).
rdap_lookupFreeLook up registration data (RDAP — the successor to WHOIS) for an IP address, AS number, or domain name. The query type is detected automatically. Returns the owning organization, network range/CIDR, RIR (ARIN, RIPE, APNIC, LACNIC, AFRINIC), country, status, registration/last-changed dates, nameservers, and abuse/registrant contacts, plus the raw RDAP JSON.
security_scanwrite actionFreeRun a security scan on a domain to detect DNS misconfigurations, missing SPF/DKIM/DMARC records, cookie security issues, and other web security vulnerabilities. Returns findings with severity levels (critical, high, medium, low, info).
ssl_certificateFreeCheck the SSL/TLS certificate for a domain. Returns issuer, expiry date, days until expiry, certificate chain validity, cipher strength, SAN domains, fingerprint, and TLS protocol version.
status_pageFreeRead a public status page hosted on nslookup.io status pages. Returns the page name, overall status, per-component status and uptime, and active incidents/maintenance. Look up by slug (pages served at hosted.nslookup.io/<slug>) or by the custom domain the page is served on. Provide exactly one of slug or domain.
uptime_checkFreePerform a one-time HTTP uptime check on a URL from a single location. Returns whether the site is up or down, HTTP status code, and response time in milliseconds. For multi-location checks, use uptime_check_multi instead.
uptime_check_multiFreeCheck if a website is up or down from 7 global locations simultaneously: Amsterdam, Sydney, London, Frankfurt, Delhi, Warsaw, and South Carolina. Returns status, response time, and HTTP status code for each location.
webserversFreeGet the IP addresses (both IPv4 and IPv6) for a domain by looking up A and AAAA records. Also returns the punycode and unicode domain representations.
Public scan report
scanner v0.1.9 · 2026-09-25 · same rubric, same numbers if you re-run it
- Code scan15 source files scanned25/25
- Live reliabilityremote reachable in 1712ms20/20
- Tool poisoning23 tool descriptions checked15/15
- Auth qualityopen endpoint exposes 2 write-action tools with no auth3/15
- Maintenancelast push 70 days ago12/15
- Maintainer identitynamespace and repository owner differ4/10
Findings (1)
- highWrite-action tools reachable without authentication
auth.open-write
What the publisher says
From the Nslookup repository's README, as published. We do not edit it. Read it on GitHub
MCP Server for nslookup.io DNS lookups, SSL certificate checks, security scanning, GEO (AI readiness) scoring, domain intelligence, and your own monitoring account — via the Model Context Protocol.
Website · API Docs · npm · Contact
What is this?
The nslookup.io MCP server gives any MCP-capable AI assistant (Claude, ChatGPT, Cursor, Windsurf, …) direct access to nslookup.io's DNS, certificate, security, and monitoring tools. Ask in plain language — "Run a DNS health check on github.com" or "Which of my SSL certificates expire soonest?" — and the assistant calls the right tool for you.
23 tools total, in two groups:
- 17 public tools — DNS, SSL, security, GEO, and domain-intelligence lookups that work anonymously, with no account and no API key.
- 6 my account tools — read your own nslookup.io monitoring account (uptime, DNS, WHOIS, SSL, propagation, BIMI/VMC monitors). These are always listed but require signing in**.
Jump to Connect to get set up, or the Tool reference for the full list.
Connect
There are two ways to connect. Pick one — see the note below.
Use the hosted endpoint if you want your own monitoring data — it's the only mode where the my_ account tools sign in for you, right in the browser. The local mode is great for the 17 public tools with zero setup.
Connect for your account (portal) tools
To use your own NsLookup.io monitoring data (the 6 my account tools), add the hosted connector and sign in. There is no API key** — authentication is a one-time browser sign-in (OAuth) against your nslookup.io account.
Claude Code (CLI)
claude mcp add --transport http nslookup https://mcp.nslookup.io/mcpThen invoke an account tool — e.g. ask "show my monitoring overview". A browser sign-in window appears; after you sign in once, all 6 my_ tools work (the client remembers it).
Claude Desktop / claude.ai — add a custom connector with URL https://mcp.nslookup.io/mcp, then sign in when prompted.
.mcp.json (project) or any HTTP-capable client:
{ "mcpServers": { "nslookup": { "type": "http", "url": "https://mcp.nslookup.io/mcp" } } }The 17 public tools work immediately over this same endpoint — you only sign in the first time you reach for your own data.
Hosted (recommended)
The hosted endpoint is a remote Streamable-HTTP server. Public tools work immediately; the first time you call a my_ tool, an OAuth-capable client opens a browser window to sign in to your nslookup.io account (see Signing in).
Claude Code (CLI)
claude mcp add --transport http nslookup https://mcp.nslookup.io/mcpClaude Desktop / claude.ai (custom connector)
- Open Settings → Connectors
- Click Add custom connector
- Name: nslookup — URL: https://mcp.nslookup.io/mcp
- Click Add
Or drop it into an .mcp.json (project) / your client's MCP config:
Shortened. The full README is on GitHub.
Nothing above is checked by us. What we check is on the safety report.
Install directly
claude mcp add --transport http nslookup https://mcp.nslookup.io/mcp
Nslookup: common questions
- Is Nslookup MCP server safe?
- Mostly: it is graded B (79/100). Read the Nslookup safety report
- How do I install Nslookup?
- It runs remotely at mcp.nslookup.io. Add it to Claude Code, Claude Desktop or Cursor with the snippets above, or call it through the mcp.market gateway without installing anything.
- Does Nslookup need an API key?
- Not as far as the registry entry and our scan can tell: no credentials are declared or required.
- Is Nslookup maintained?
- The last commit was 71 days ago (2026-07-17). The latest release is v1.6.0.
- Is Nslookup up?
- 100% of our last 28 checks got an answer. We check remote servers about four times a day.
- What can I use instead of Nslookup?
- Servers from other publishers that do the same job: France Data MCP server, Phoenix Zero — L2 Health Oracle MCP server and AEO/GEO by VibeSEO MCP server. Compare all Nslookup alternatives.
Alternatives to Nslookup
Same job from other publishers: the closest match first, then the best rated.
- France DataFrench public-data MCP: cross-ref health, demographics, business, geo & real-estate.not reviewedGrowingA
- Phoenix Zero — L2 Health OraclePre-flight L2 health check using kernel-level eBPF telemetry. PASS/DEGRADED/FAIL verdict.not reviewedGrowingA
- AEO/GEO by VibeSEOTrack brand visibility in ChatGPT, Gemini and Google AI answers: competitors, cited sources, checks.not reviewedGrowingA
- Netcafe Live DataLive data: weather, air quality, FX, CN/HK/US stocks, IP geo, domain, SSL, China reachability.not reviewedNewA
- MCP ServerEnable your AI agents to scrape and parse web content dynamically, including geo-restricted sitesnot reviewedGrowingA