Featured

Deploy OpenClaw in 60 seconds — 20% off logoDeploy OpenClaw in 60 seconds — 20% off

Launch OpenClaw on Hostinger in about 60 seconds and keep your agent live 24/7. Our referral link gives you 20% off, no coupon code needed.

Launch on Hostinger
Run your Hermes agent on Hostinger, fully managed logoRun your Hermes agent on Hostinger, fully managed

Launch Hermes on Hostinger in one click, fully managed, no VPS knowledge needed. Use code ZACAARON10 for 10% off.

Launch on Hostinger
Crawl and scrape any site into clean data, 10% off logoCrawl and scrape any site into clean data, 10% off

Firecrawl crawls and scrapes any site into clean markdown for your agent. Get 1,000 free credits, and new users get 10% off their first purchase.

Try Firecrawl free
6,000+ web scrapers for your AI agent, start free logo6,000+ web scrapers for your AI agent, start free

Apify gives your agent live web data: 6,000+ prebuilt scrapers and actors, MCP-ready. Sign up free with $5 in usage credits.

Try Apify free
One API to scrape, enrich, and extract the internet. logoOne API to scrape, enrich, and extract the internet.

Context.dev gives your agents a single API to scrape, enrich, and extract live web data — no proxies, no parsers, no maintenance.

Start building free
SetupClaw: done-for-you OpenClaw for founders & exec teams logoSetupClaw: done-for-you OpenClaw for founders & exec teams

White-glove OpenClaw for founders and exec teams (4–50+ employees): we install, harden, integrate your tools, and maintain it — secured from day one.

Get it set up for you
SEO data APIs for your agent, $1 free credit logoSEO data APIs for your agent, $1 free credit

DataForSEO gives your agent live access to SERP results, keyword data, backlinks, and on-page SEO data through one API. New accounts get a $1 credit, good for up to 20,000 keyword or backlink lookups.

Try DataForSEO free
Reach 48,000+ AI builders

A flat monthly placement in front of developers actively installing AI tools. No lock-in, cancel anytime.

Advertise here

Works with

Claude CodeClaude DesktopCursorVS CodeClineCodex CLIOpenClaw+ any MCP client

Install to Claude Code

This server doesn't publish a one-line install command. Follow the setup in the source repository.

Summary

MCP server for the Axur cybersecurity platform, providing read-only access to ticket data for searching, inspecting, and analyzing security incidents.

README.md

Axur MCP Server

A Model Context Protocol (MCP) server for the Axur cybersecurity platform. Provides read-only access to ticket data, enabling AI assistants to search, inspect, and analyze security incidents.

Features

  • Ticket Search & Retrieval — filter, paginate, and fetch tickets by key
  • Ticket Details — field values, comments, snapshots, attachments, lifecycle state, takedown options
  • Ticket Statistics — counts by status, incidents by threat type, takedown/treatment metrics, uptime analysis, global and market-segment benchmarks

Tools

tickets

Search and retrieve tickets.

| Action | Description | |--------|-------------| | list | Search/filter tickets with pagination and sorting | | get | Get a single ticket by key | | bulk_get | Get multiple tickets by comma-separated keys | | history | Get ticket change history | | types | List all supported ticket types |

ticket_details

Get detailed information for a specific ticket.

| Action | Description | |--------|-------------| | fields | Ticket field values (status, type, domain, IP, etc.) | | texts | Comments, descriptions, evidence messages | | snapshots | Detection snapshots (domain info, ISP, content, digital location) | | attachments | List attachments for a detection | | lifecycle | Available state transitions | | takedown | Takedown options and eligibility | | timeline | Full ticket timeline |

ticket_stats

Retrieve ticket statistics and metrics.

| Action | Description | |--------|-------------| | count_by_status | Ticket count by status (requires from, to, status) | | incident_by_type | Incidents grouped by threat type | | takedown_metrics | Takedown success rate, median time to notification | | internal_treatment | Internal treatment success rate and metrics | | takedown_uptime | Resolution uptime distribution (buckets: <1d, 2d, 5d, etc.) | | treatment_uptime | Treatment uptime distribution | | global_median | Median incidents across all Axur customers (13-month trend) | | global_mean | Mean incidents across all Axur customers | | segment_median | Median incidents for your market segment | | segment_mean | Mean incidents for your market segment |

Setup

Prerequisites

Install

git clone https://github.com/Just5ky/axur-mcp.git
cd axur-mcp
npm install
npm run build

Configure

cp .env.example .env
# Edit .env and add your Axur API token

Usage with Claude Desktop

Add to your Claude Desktop config (~/Library/Application Support/Claude/claude_desktop_config.json):

{
  "mcpServers": {
    "axur": {
      "command": "node",
      "args": ["/path/to/axur-mcp/dist/index.js"],
      "env": {
        "AXUR_API_TOKEN": "your_token_here"
      }
    }
  }
}

Usage with other MCP clients

# Run directly
AXUR_API_TOKEN=your_token node dist/index.js

Example Queries

Once connected to an AI assistant:

  • "Show me all open phishing tickets from this month"
  • "Get details for ticket h7dw97"
  • "What are the takedown metrics for the last 30 days?"
  • "How do our incident numbers compare to the market segment median?"
  • "List all ticket types supported by the platform"

API Coverage

This server covers the read-only Axur Platform ticket APIs:

  • tickets-api — ticket search, retrieval, stats
  • tickets-core — field values, ticket types
  • tickets-texts — textual data (comments, evidence)
  • tickets-snapshots — detection snapshots
  • tickets-attachments — attachment listing
  • tickets-lifecycle — lifecycle state inspection
  • tickets-takedown — takedown status inspection
  • tickets-timeline — timeline history

Rate Limits

The Axur API enforces a rate limit of 60 requests per minute on stats endpoints. The server surfaces 429 errors directly — plan queries accordingly.

License

MIT

See related servers & alternatives →

Related MCP servers

Browse all →

Related guides

Hand-picked reading to help you choose and use Search servers.