Use SecurityTrails with your AI.
Connect your account once and let the AI you already use work with it, without building another integration. Uncover IT infrastructure. access DNS history, subdomains, reverse IP lookups, WHOIS data and advanced domain intelligence for ultimate OSINT.
Developed, maintained, and hosted by Vinkius.
MCP VERIFIED · PRODUCTION READY · VINKIUS GUARANTEED
Waiting for input…
Works with modern AI clients that support MCP, including ChatGPT, Claude, Cursor, and more.
Complete set · 10 capabilities
The complete SecurityTrails capability set.
These are the exact actions your AI can choose when you ask it to work with SecurityTrails.
01-04
4 capabilities in this set.
Part of 10 available through SecurityTrails.
- 01
Search dsl
Examples: ipv4="1.1.1.1" AND mx="alt1.aspmx.l.google.com" or whois_email="admin@example.com". Check SecurityTrails docs for full DSL syntax. Advanced search using SecurityTrails DSL
- 02
Get API usage
Check current SecurityTrails API quota usage
- 03
Get dns history
Useful for finding old IPs that might still be hosting vulnerable software, or tracking infrastructure migration over time. Retrieve historical DNS records for a domain
- 04
Get domain tags
Get classification tags for a domain
05-07
3 capabilities in this set.
Part of 10 available through SecurityTrails.
- 05
Get subdomains
Critical for attack surface mapping and asset discovery. Returns both active and inactive subdomains. Discover all subdomains for a given domain
- 06
Get whois
Get current WHOIS information for a domain
- 07
Get domain details
Essential for mapping out a target domain's existing infrastructure. Get complete domain intelligence and current DNS records
08-10
3 capabilities in this set.
Part of 10 available through SecurityTrails.
- 08
Get domains by ip
Essential for understanding shared hosting environments or identifying hidden vhosts. Find all domains pointed to a specific IP address
- 09
Get associated domains
Great for expanding the scope of an investigation. Find other domains associated with a target domain
- 10
Get whois history
Useful for OSINT investigations to uncover historical owners before privacy protection was enabled. Retrieve historical WHOIS records for a domain
Observed, not estimated
905ms average. Fast in production.
SecurityTrails is checked daily against the live service.
- Fastest day
- 756ms
- Slowest day
- 1210ms
- 14-day trend
- Slowing+35%
Connect your client
One URL. Every client.
Activate the Connector, copy your link, and paste it into the client you already use. 10 capabilities arrive ready to run.
Preview access · not provider authentication
The vk_preview_* token belongs to Vinkius preview infrastructure. It lets Claude discover and display the capabilities of SecurityTrails, so you can see the experience inside your AI.
It does not authenticate your account with SecurityTrails. Actions requiring credentials or live account data may not run until you activate the Connector and authorize the service.
SecurityTrails Connector
You're all set. Choose your MCP client and follow the setup instructions.
https://edge.vinkius.com/vk_preview_Xvi5VIh3r6rbbcXeA9BV8BAPrUemqIt0s61pgGAJ/mcpClaude Desktop
Follow the steps below to connect in seconds.
- 1In Claude Desktop, open Settings → Connectors.
- 2Click “Add custom connector” and paste the connector link above as the remote MCP server URL.
- 3Click Add and start a new chat — SecurityTrails capabilities are ready to use.
{
"mcpServers": {
"securitytrails-mcp": {
"url": "https://edge.vinkius.com/vk_preview_Xvi5VIh3r6rbbcXeA9BV8BAPrUemqIt0s61pgGAJ/mcp"
}
}
}
Claude
ChatGPT
Cursor
VS Code
Windsurf
Claude Code
JetBrains
Cline
Step-by-step instructions for each client are in the guide. How to connect
FAQ
Questions SecurityTrails owners ask.
- 01
Is the SecurityTrails API free to use?
SecurityTrails offers a Free Tier API plan which allows 50 API requests per month. This is excellent for specific, targeted OSINT investigations. For automated or large-scale recon, you would need a commercial subscription.
- 02
What is historical DNS good for?
Companies often migrate infrastructure and hide behind WAFs like Cloudflare. Historical DNS reveals the original origin IP addresses used before the WAF was implemented, which might still be active and vulnerable to direct attacks. It's a critical capability in penetration testing.
- 03
How can I find related domains for a target company?
Use the get_associated_domains capability. It uses proprietary correlation to find other domains owned by the same entity. You can also use get_domains_by_ip to find what else is hosted on their IP space.
Explore
More in Security Compliance
IPinfo AI Connector
Enrich IP addresses with geolocation, ASN, and WHOIS data directly from your AI agent using IPinfo's industry-
ViewIPdata AI Connector
Enrich IP addresses with geolocation, ASN, and threat intelligence data directly within your AI agent.
ViewDNSimple AI Connector
Manage domains, DNSSEC, and email forwarding via DNSimple — list accounts, control domains, and manage DS reco
ViewHalo Security AI Connector
Automate attack surface management via Halo Security — monitor assets, scans, and vulnerabilities directly fro
View
Suggestions
IPinfo AI Connector
Geolocate and audit IP addresses — identify ASNs and privacy details via AI.
ViewCensys AI Connector
Search internet-connected hosts, SSL certificates and attack surface — discover exposed services and vulnerabi
ViewCrowdStrike Falcon AI Connector
Detect threats, manage endpoints, investigate incidents, and query telemetry from CrowdStrike Falcon — the #1
ViewNameSilo (Domain Registrar Developer API) AI Connector
Manage your domain portfolio, DNS records, and registrations directly through NameSilo's developer API.
View
