pycti-mcp

ckane/pycti-mcp

3.4

If you are the rightful owner of pycti-mcp and would like to certify it and/or have it hosted online, please leave a comment on the right or send an email to henry@mcphub.com.

An MCP server front-end for pycti, designed to condense, normalize, and consolidate data from OpenCTI into JSON for LLM consumption.

Tools

Functions exposed to the LLM to take actions

opencti_observable_lookup

Performs an exact-match lookup in OpenCTI for a given observable value.

opencti_adversary_lookup

Searches for adversaries in OpenCTI by name or alias.

opencti_report_lookup

Looks up threat reports in OpenCTI based on search terms and date filters.

Prompts

Interactive templates invoked by user choice

No prompts

Resources

Contextual data attached and managed by the client

No resources