Use CrowdSec with your AI.
Connect your account once and let the AI you already use work with it, without building another integration. Automate threat intelligence via CrowdSec. query local decisions, stream security updates, and check global IP reputation directly from any AI agent.
Developed, maintained, and hosted by Vinkius.
MCP VERIFIED · PRODUCTION READY · VINKIUS GUARANTEED
Waiting for input…
Works with modern AI clients that support MCP, including ChatGPT, Claude, Cursor, and more.
Complete set · 3 capabilities
The complete CrowdSec capability set.
These are the exact actions your AI can choose when you ask it to work with CrowdSec.
01-03
3 capabilities in this set.
Part of 3 available through CrowdSec.
- 01
Get decisions stream
Poll for new and deleted decisions from LAPI
- 02
Get cti smoke
Get CTI reputation for an IP
- 03
Get decisions
Query CrowdSec LAPI for decisions
Observed, not estimated
916ms average. Fast in production.
CrowdSec is checked daily against the live service.
- Fastest day
- 714ms
- Slowest day
- 1137ms
- 14-day trend
- Slowing+42%
Connect your client
One URL. Every client.
Activate the Connector, copy your link, and paste it into the client you already use. 3 capabilities arrive ready to run.
Preview access · not provider authentication
The vk_preview_* token belongs to Vinkius preview infrastructure. It lets Claude discover and display the capabilities of CrowdSec, so you can see the experience inside your AI.
It does not authenticate your account with CrowdSec. Actions requiring credentials or live account data may not run until you activate the Connector and authorize the service.
CrowdSec Connector
You're all set. Choose your MCP client and follow the setup instructions.
https://edge.vinkius.com/vk_preview_2elfrol73nICZiMR18YQg2LgVuwctPXwaxqoZfA4/mcpClaude Desktop
Follow the steps below to connect in seconds.
- 1In Claude Desktop, open Settings → Connectors.
- 2Click “Add custom connector” and paste the connector link above as the remote MCP server URL.
- 3Click Add and start a new chat — CrowdSec capabilities are ready to use.
{
"mcpServers": {
"crowdsec-mcp": {
"url": "https://edge.vinkius.com/vk_preview_2elfrol73nICZiMR18YQg2LgVuwctPXwaxqoZfA4/mcp"
}
}
}
Claude
ChatGPT
Cursor
VS Code
Windsurf
Claude Code
JetBrains
Cline
Step-by-step instructions for each client are in the guide. How to connect
FAQ
Questions CrowdSec owners ask.
- 01
Can I check if a specific IP address is currently blocked in my local CrowdSec instance?
Yes! Use the get_decisions capability providing the IP address. Your agent will query your Local API and return any active decisions, including the reason and duration of the block.
- 02
How do I see the latest security threats detected by my server in real-time?
You can use the get_decisions_stream capability. This allows your agent to poll for new and deleted decisions, giving you a clear view of recent security activity on your infrastructure.
- 03
Can I verify an IP's global reputation even if it hasn't attacked my server yet?
Absolutely. The get_cti_smoke capability queries the global CrowdSec CTI network. It provides background information, attack behaviors, and risk scores for any IP based on community data.
Explore
More in Fort Knox
Censys AI Connector
Search internet-connected hosts, SSL certificates and attack surface — discover exposed services and vulnerabi
ViewHalo Security AI Connector
Automate attack surface management via Halo Security — monitor assets, scans, and vulnerabilities directly fro
ViewAbuseIPDB AI Connector
Audit IP addresses — check abuse scores and reports via AI.
ViewCrowdStrike Falcon AI Connector
Detect threats, manage endpoints, investigate incidents, and query telemetry from CrowdStrike Falcon — the #1
View
Suggestions
Cortex XSIAM AI Connector
Connect Cortex XSIAM to any AI agent via MCP.
ViewIPinfo AI Connector
Geolocate and audit IP addresses — identify ASNs and privacy details via AI.
ViewSecurityTrails AI Connector
Uncover IT infrastructure — access DNS history, subdomains, reverse IP lookups, WHOIS data and advanced domain
ViewAppDynamics (Application Performance Monitor API) AI Connector
Monitor application performance, business transactions, and infrastructure health rules directly from your AI
View
