← Index

io.github.thomasxm/crowdsentinel-mcp-server

io.github.thomasxm/crowdsentinel-mcp-server·v0.5.6·Search

AI-powered threat hunting and incident response MCP server for Elasticsearch/OpenSearch

Trust verdict · v1 advisory · method
NOT YET SCREENEDno verdict on file

Verdict not yet evaluated for this tool. The semantic screen takes adversarial cases first; coverage rolls out as the corpus expands (15/150 labels to graduation). The deterministic conformance probe is built but has not yet run on the public corpus, so a recorded verdict here is REVIEW or UNVERIFIED, never a clearing ALLOW. Until a verdict is recorded, an agent should treat this tool as not-yet-cleared and fall back to its own checks. Method: the eval, four-state verdict, honest limits.

Own this server? Screen its description →

Environment variables
ELASTICSEARCH_HOSTS

Comma-separated Elasticsearch hosts. Supports HTTP/HTTPS, local/remote/cloud (e.g., http://localhost:9200, https://es.prod.example.com:9200)

ELASTICSEARCH_CLOUD_ID

Elastic Cloud deployment ID (alternative to ELASTICSEARCH_HOSTS for cloud deployments)

ELASTICSEARCH_API_KEY
secret

API key for authentication (recommended for production and Elastic Cloud)

ELASTICSEARCH_USERNAME

Username for basic authentication (alternative to API key)

ELASTICSEARCH_PASSWORD
secret

Password for basic authentication (used with ELASTICSEARCH_USERNAME)

ELASTICSEARCH_BEARER_TOKEN
secret

Bearer/service token for authentication (alternative to API key)

VERIFY_CERTS

TLS certificate verification: true (verify CA — production), false (skip — dev/test), or /path/to/ca.crt (custom CA)

REQUEST_TIMEOUT

Request timeout in seconds (e.g., 60 or 10.5)

MCP quality score · maturity, not trust · methodology
freshness
20
completeness
10
installability
25
documentation
15
stability
5
Alternatives in Search