MCP server for Abnormal Security — AI-powered threat detection, case management, and email remediation
- ✓Open-source license (Apache-2.0)
- ✓Actively maintained (<30d)
- ✓Clear description
- ✓Topics declared
git clone https://github.com/wyre-technology/abnormal-mcp{
"mcpServers": {
"abnormal-mcp": {
"command": "node",
"args": ["/path/to/abnormal-mcp/dist/index.js"],
"env": {
"ABNORMAL_API_TOKEN": "<abnormal_api_token>"
}
}
}
}ABNORMAL_API_TOKENResumen de MCP Servers
# abnormal-mcp
MCP server for [Abnormal Security](https://abnormalsecurity.com/) — AI-powered threat detection, case management, and email remediation.
## Tools
This server uses a decision-tree architecture. Start by calling `abnormal_navigate` to select a domain, then use the domain-specific tools.
### Navigation
| Tool | Description |
|------|-------------|
| `abnormal_navigate` | Navigate to a domain (threats, messages, remediation, abuse, cases) |
| `abnormal_back` | Return to domain selection |
### Threats domain
| Tool | Description |
|------|-------------|
| `abnormal_threats_list` | List detected threat cases (paginated) |
| `abnormal_threats_get` | Get full details of a specific threat by ID |
### Messages domain
| Tool | Description |
|------|-------------|
| `abnormal_messages_list` | List messages within a threat case |
| `abnormal_messages_get` | Get detailed message analysis (headers, URLs, attachments, AI analysis) |
### Remediation domain
| Tool | Description |
|------|-------------|
| `abnormal_remediation_manage` | Trigger or check remediation actions for a message |
### Abuse domain
| Tool | Description |
|------|-------------|
| `abnormal_abuse_list` | List phishing emails reported via the Abuse Mailbox |
### Cases domain
| Tool | Description |
|------|-------------|
| `abnormal_cases_list` | List active security investigation cases |
| `abnormal_cases_get` | Get details of a specific case |
## Authentication
Abnormal Security uses Bearer token authentication.
### Standalone (env mode)
```bash
export ABNORMAL_API_TOKEN=your-api-token
node dist/index.js
```
Generate your token in the Abnormal portal under **Settings > Integrations > API**.
### Gateway mode
When deployed behind the MCP gateway, set `AUTH_MODE=gateway`. The gateway injects the `Authorization: Bearer {token}` header automatically on each request.
## Running
### stdio (for Claude Desktop)
```bash
npm install
npm run build
node dist/index.js
```
### HTTP Streamable (for hosted/gateway deployment)
```bash
MCP_TRANSPORT=http AUTH_MODE=gateway node dist/index.js
```
### Docker
```bash
docker compose up
```
## Development
```bash
npm install
npm run dev # watch mode
npm test # run tests
npm run typecheck # TypeScript type check
```
## License
Apache-2.0
Lo que la gente pregunta sobre abnormal-mcp
¿Qué es wyre-technology/abnormal-mcp?
+
wyre-technology/abnormal-mcp es mcp servers para el ecosistema de Claude AI. MCP server for Abnormal Security — AI-powered threat detection, case management, and email remediation Tiene 0 estrellas en GitHub y se actualizó por última vez today.
¿Cómo se instala abnormal-mcp?
+
Puedes instalar abnormal-mcp clonando el repositorio (https://github.com/wyre-technology/abnormal-mcp) o siguiendo las instrucciones del README en GitHub. ClaudeWave también te ofrece bloques de instalación rápida en esta misma página.
¿Es seguro usar wyre-technology/abnormal-mcp?
+
Nuestro agente de seguridad ha analizado wyre-technology/abnormal-mcp y le ha asignado un Trust Score de 87/100 (tier: Trusted). Revisa el desglose completo de comprobaciones superadas y flags en esta página.
¿Quién mantiene wyre-technology/abnormal-mcp?
+
wyre-technology/abnormal-mcp es mantenido por wyre-technology. La última actividad registrada en GitHub es de today, con 14 issues abiertos.
¿Hay alternativas a abnormal-mcp?
+
Sí. En ClaudeWave puedes explorar mcp servers similares en /categories/mcp, ordenados por popularidad o actividad reciente.
Despliega abnormal-mcp en tu cloud
Lleva este repo a producción en minutos. Cada plataforma genera su propio entorno con variables de entorno editables.
¿Mantienes este repo? Añade un badge a tu README
Pega el badge en tu README de GitHub para mostrar que está auditado por ClaudeWave. Cada badge enlaza de vuelta a esta página y muestra el Trust Score actual.
[](https://claudewave.com/repo/wyre-technology-abnormal-mcp)<a href="https://claudewave.com/repo/wyre-technology-abnormal-mcp"><img src="https://claudewave.com/api/badge/wyre-technology-abnormal-mcp" alt="Featured on ClaudeWave: wyre-technology/abnormal-mcp" width="320" height="64" /></a>Más MCP Servers
Fair-code workflow automation platform with native AI capabilities. Combine visual building with custom code, self-host or cloud, 400+ integrations.
User-friendly AI Interface (Supports Ollama, OpenAI API, ...)
An open-source AI agent that brings the power of Gemini directly into your terminal.
The fastest path to AI-powered full stack observability, even for lean teams.
🕷️ An adaptive Web Scraping framework that handles everything from a single request to a full-scale crawl!
⭐AI-driven public opinion & trend monitor with multi-platform aggregation, RSS, and smart alerts.🎯 告别信息过载,你的 AI 舆情监控助手与热点筛选工具!聚合多平台热点 + RSS 订阅,支持关键词精准筛选。AI 智能筛选新闻 + AI 翻译 + AI 分析简报直推手机,也支持接入 MCP 架构,赋能 AI 自然语言对话分析、情感洞察与趋势预测等。支持 Docker ,数据本地/云端自持。集成微信/飞书/钉钉/Telegram/邮件/ntfy/bark/slack 等渠道智能推送。