SecurityTrails Connector for AI agents.
10 live capabilities
Map out target infrastructure and find hidden subdomains for your OSINT workflows.
Waiting for input…
Why people use SecurityTrails
SecurityTrails for identifying hidden corporate assets
With this Connector, your agent does the heavy lifting for you. You can ask for a full list of subdomains or a history of where a domain used to point in a single request. You get a clear picture of the entire infrastructure without the manual data entry.
What Vinkius changes
You get instant access to massive domain and IP intelligence directly within your chat interface.
Use it from Claude, ChatGPT, Cursor or another AI client you already have.
One account · 5,900+ Connectors
- Real-world use case 01
Mapping a target's attack surface
A researcher wants to see everything a company owns.
- Real-world use case 02
Tracking infrastructure migration
A threat analyst needs to know where a malicious domain used to point.
- Real-world use case 03
Identifying shared hosting risks
A security auditor finds a target IP.
Complete set · 10capabilities
The complete SecurityTrails capability set.
These are the exact actions your AI can choose when you ask it to work with SecurityTrails.
01—04
4 capabilities in this set.
Part of 10 available through SecurityTrails.
- 01 Capability
Get api usage
Check your current SecurityTrails API quota usage. This helps you monitor your remaining credits.
- 02 Capability
Get dns history
Retrieve historical DNS records for a domain. This helps you find old IPs that might still host vulnerable software.
- 03 Capability
Get domain tags
Get classification tags for a specific domain. Use this to see how the domain is categorized in the database.
- 04 Capability
Get subdomains
Discover all subdomains for a given domain. It returns both active and inactive assets for attack surface mapping.
05—07
3 capabilities in this set.
Part of 10 available through SecurityTrails.
- 05 Capability
Get whois
Get current WHOIS information for a domain. This shows you the current owner and registration details.
- 06 Capability
Search dsl
Perform advanced searches using the SecurityTrails DSL. You can query the internet for specific tech stacks or emails.
- 07 Capability
Get domains by ip
Find all domains pointed to a specific IP address. This is great for finding hidden vhosts on shared hosting.
08—10
3 capabilities in this set.
Part of 10 available through SecurityTrails.
- 08 Capability
Get domain details
Get complete domain intelligence and current DNS records. This provides a full overview of a target's infrastructure.
- 09 Capability
Get associated domains
Find other domains associated with your primary target. Use this to expand the scope of your investigation.
- 10 Capability
Get whois history
Retrieve historical WHOIS records for a domain. This helps uncover previous owners before privacy protection was enabled.
Set up in minutes
One URL. Then ask SecurityTrails to work.
Claude and ChatGPT only need the Connector URL. Copy it once, add it in settings, and use SecurityTrails from the conversation.
Choose your client
Live previewAdvanced clients IDE · CLI
Claude · Web + desktop
Connector URL · ready to paste
Streamable HTTPhttps://edge.vinkius.com/vk_preview_Xvi5VIh3r6rbbcXeA9BV8BAPrUemqIt0s61pgGAJ/mcp - Step 01
Open Connectors
In Claude Web or Claude Desktop, open Settings and choose Connectors.
- Step 02
Add the URL
Choose Add custom connector, name it SecurityTrails, and paste the URL above.
- Step 03
Turn it on in chat
Select +, open Connectors, and enable SecurityTrails for the conversation.
ChatGPT · Web + desktop
Connector URL · ready to paste
Streamable HTTPhttps://edge.vinkius.com/vk_preview_Xvi5VIh3r6rbbcXeA9BV8BAPrUemqIt0s61pgGAJ/mcp - Step 01
Open MCP settings
On desktop, open Settings and MCP servers. On web, open your workspace app or connector settings.
- Step 02
Add the URL
Choose Add server with Streamable HTTP, or create a custom MCP app, then paste the SecurityTrails URL.
- Step 03
Save and start
Save the connection and enable SecurityTrails in your conversation. Desktop may ask you to restart once.
Cursor · IDE configuration
Advanced setup
{
"mcpServers": {
"securitytrails": {
"url": "https://edge.vinkius.com/vk_preview_Xvi5VIh3r6rbbcXeA9BV8BAPrUemqIt0s61pgGAJ/mcp"
}
}
} - Step 01
Open MCP Settings
Press Cmd+Shift+P (macOS) or Ctrl+Shift+P (Windows/Linux) → search "MCP Settings"
- Step 02
Add the server config
Paste the JSON configuration above into the mcp.json file that opens
- Step 03
Save the file
Cursor will automatically detect the new Connector
- Step 04
Start using SecurityTrails
Open Agent mode in chat and ask: "Using SecurityTrails, help me...". 10 tools available
VS Code Copilot · IDE configuration
Advanced setup
{
"mcpServers": {
"securitytrails": {
"url": "https://edge.vinkius.com/vk_preview_Xvi5VIh3r6rbbcXeA9BV8BAPrUemqIt0s61pgGAJ/mcp"
}
}
} - Step 01
Create MCP config
Create a .vscode/mcp.json file in your project root
- Step 02
Add the server config
Paste the JSON configuration above
- Step 03
Enable Agent mode
Open GitHub Copilot Chat and switch to Agent mode using the dropdown
- Step 04
Start using SecurityTrails
Ask Copilot: "Using SecurityTrails, help me...". 10 tools available
Windsurf · IDE configuration
Advanced setup
{
"mcpServers": {
"securitytrails": {
"url": "https://edge.vinkius.com/vk_preview_Xvi5VIh3r6rbbcXeA9BV8BAPrUemqIt0s61pgGAJ/mcp"
}
}
} - Step 01
Open MCP Settings
Go to Settings → MCP Configuration or press Cmd+Shift+P and search "MCP"
- Step 02
Add the server
Paste the JSON configuration above into mcp_config.json
- Step 03
Save and reload
Windsurf will detect the new server automatically
- Step 04
Start using SecurityTrails
Open Cascade and ask: "Using SecurityTrails, help me...". 10 tools available
Cline · IDE configuration
Advanced setup
{
"mcpServers": {
"securitytrails": {
"url": "https://edge.vinkius.com/vk_preview_Xvi5VIh3r6rbbcXeA9BV8BAPrUemqIt0s61pgGAJ/mcp"
}
}
} - Step 01
Open Cline MCP Settings
Click the Connectors icon in the Cline sidebar panel
- Step 02
Add remote server
Click "Add Connector" and paste the configuration above
- Step 03
Enable the server
Toggle the server switch to ON
- Step 04
Start using SecurityTrails
Ask Cline: "Using SecurityTrails, help me...". 10 tools available
Claude Code · Terminal command
Advanced setup
claude mcp add securitytrails --transport http "https://edge.vinkius.com/vk_preview_Xvi5VIh3r6rbbcXeA9BV8BAPrUemqIt0s61pgGAJ/mcp" - Step 01
Install Claude Code
Run npm install -g @anthropic-ai/claude-code if not already installed
- Step 02
Add the Connector
Run the command above in your terminal
- Step 03
Verify the connection
Run claude mcp to list connected servers, or type /mcp inside a session
- Step 04
Start using SecurityTrails
Ask Claude: "Using SecurityTrails, show me...". 10 tools are ready
Where the request belongs
Work SecurityTrails can move forward.
This is for security pros who need to find hidden assets fast. It solves the problem of manual recon and helps you find the infrastructure that others miss.
Bug Bounty Hunter
Uses the capability to find forgotten subdomains and out-of-scope assets that belong to a target company.
Threat Intelligence Analyst
Correlates IPs and historical WHOIS data to track down the infrastructure used by threat actors.
Security Researcher
Maps out the external footprint of a target during a penetration test or security audit.
Brand Protection Specialist
Identifies typosquatting and malicious domains that are targeting their organization's brand.
Build the capability set
Add more capabilities.
Each Connector adds new actions and data without changing how you work.
Browse ConnectorsCensys
Search internet-connected hosts, SSL certificates and attack surface. discover exposed services and vulnerabilities.
WhoisXML
Access comprehensive domain intelligence, WHOIS records, IP geolocation, and email verification directly from your AI agent.
Nmap Online
Perform network discovery and security auditing via Nmap. track port scans, DNS lookups, and traceroutes directly from your AI agent.
CrowdSec
Automate threat intelligence via CrowdSec. query local decisions, stream security updates, and check global IP reputation directly from any AI agent.
Shodan
Search for internet-connected devices, analyze open ports, discover vulnerabilities and explore the IoT landscape.
Intruder
Automate vulnerability scanning and security monitoring via Intruder.io API.
Bring your own AI
Change the model, client or framework. Keep SecurityTrails connected.
-
Claude -
ChatGPT -
Gemini -
Cursor -
VS Code -
Windsurf -
ZCode -
Cline -
Zed -
Continue -
Kiro -
Roo Code -
Zencoder -
Goose -
Void -
Augment Code -
Amp -
Qodo -
Tabnine -
Pieces -
Sourcegraph Cody -
JetBrains -
Warp -
Amazon Q -
Antigravity -
BoltAI -
Raycast -
Jan -
LM Studio -
AnythingLLM -
Open WebUI -
Msty -
Cherry Studio -
LibreChat -
TypingMind -
Chorus -
5ire -
n8n -
LangChain -
LlamaIndex -
CrewAI -
Vercel AI SDK
Before you connect
Questions about SecurityTrails.
The practical details behind the request, access and result.
Can the SecurityTrails MCP find hidden subdomains?
Yes, it pulls both active and inactive subdomains for a target, which helps you find forgotten assets that might still be running.
How does SecurityTrails MCP help with bug bounties?
It helps you find out-of-scope assets and forgotten subdomains by querying a massive database of domain and IP records.
Can I see who owned a domain in 2019 with SecurityTrails MCP?
Yes, you can pull historical WHOIS records to see previous owners and registration details even if they are currently private.
Can SecurityTrails MCP find all sites on an IP?
Yes, it can perform reverse IP lookups to show you every domain hosted on a specific IP address, which is great for identifying shared hosting.
Does SecurityTrails MCP support complex queries?
Yes, it supports a custom search language that lets you query the internet for specific tech stacks, emails, or other complex criteria.
Is there a free way to use SecurityTrails MCP?
SecurityTrails offers a free tier, so you can get started with basic domain and IP intelligence without an upfront cost.
Is the SecurityTrails API free to use?
SecurityTrails offers a Free Tier API plan which allows 50 API requests per month. This is excellent for specific, targeted OSINT investigations. For automated or large-scale recon, you would need a commercial subscription.
What is historical DNS good for?
Companies often migrate infrastructure and hide behind WAFs like Cloudflare. Historical DNS reveals the original origin IP addresses used before the WAF was implemented, which might still be active and vulnerable to direct attacks. It's a critical capability in penetration testing.
How can I find related domains for a target company?
Use the get_associated_domains capability. It uses proprietary correlation to find other domains owned by the same entity. You can also use get_domains_by_ip to find what else is hosted on their IP space.
One connection away
Give your agent a direct line to SecurityTrails.
Connect SecurityTrails once. Keep it beside 5,900+ managed Connectors when the next task needs more.
Explore every Connector No credit card required · Free tier available