Is com.blackveilsecurity/dns up? Live MCP status
Yes, it is up. It answered an MCP initialize with no credential and negotiated protocol 2025-06-18.
A stock client connected with no credential and negotiated 2025-06-18. Use it.
| Outcome | usable |
|---|---|
| HTTP status | 200 |
| Protocol version | 2025-06-18 |
| Server says it is | Blackveil DNS 3.98.2 |
| Answered in | 1361 ms |
| Endpoint checked | https://dns-mcp.blackveilsecurity.com/mcp |
| Checked |
One MCP handshake with the listed endpoint (server/discover at 2026-07-28, then initialize for a server on the older revision), with no credential and no retry, identifying itself as agentwares-mcp-liveness/0.1 (+https://agentwares-agentcheck.vercel.app/bot). It runs when this page is requested and the result is reused for 10 minutes, so the time above is when it was taken.
Live status every few hours: Wellknown
Email me when this server changes
That was one look. To hear when it stops answering or its tools change, leave an address.
Free, no password or GitHub: one confirmation email first, then a check every hour and an email when it stops answering or its tools change. Every email has a link to stop. More about it.
Monthly census, 6 October 2026
The census sends the same request to every remote listing in the official registry once a month. On 6 October 2026 this one answered a stock client with no credential. Every listing’s result: index.ndjson (what the files hold: index.meta.json).
Agent discovery documents at this origin
| A2A agent card | Not published (HTTP 404)./.well-known/agent-card.json |
|---|---|
| MCP server card (SEP-2127) | Not published (HTTP 404).https://dns-mcp.blackveilsecurity.com/mcp/server-card |
| MCP server card (SEP-1649 location) | Not published (HTTP 404)./.well-known/mcp/server-card.json — SEP-1649, a draft superseded by SEP-2127 on 21 January 2026 |
| Web Bot Auth key directory | Not published (HTTP 404)./.well-known/http-message-signatures-directory |
Read at https://dns-mcp.blackveilsecurity.com with the monthly census on 9 October 2026: one GET each, no credential, never a signed request. A2A against v1.0.1, the server card against the MCP Server Card schema (SEP-2127), the card at SEP-1649’s location against the shape it has, the key directory against the Web Bot Auth draft of 1 September 2026. Who publishes them.
Tool changes between snapshots
In the 2026-10 snapshot it listed 81 tools: analyze_drift, assess_spoofability, batch_scan, batch_scan_findings, batch_scan_start, batch_scan_status, brand_audit_batch_start, brand_audit_get_report, brand_audit_single, brand_audit_status, check_agent_discovery, check_authoritative_dns_infra, check_bimi, check_caa, check_dane, check_dane_https, check_dbl, check_dkim, check_dmarc, check_dnskey_strength, check_dnssec, check_dnssec_chain, check_fast_flux, check_http_security, check_llms_txt, check_lookalikes, check_mta_sts, check_mx, check_mx_reputation, check_ns, check_nsec_walkability, check_ptr, check_rbl, check_realtime_threat_feed, check_resolver_consistency, check_root_server_set, check_shadow_domains, check_spf, check_srv, check_ssl, check_subdomailing, check_subdomain_takeover, check_svcb_https, check_tlsrpt, check_txt_hygiene, check_zone_hygiene, compare_baseline, compare_domains, cymru_asn, delete_brand_audit_watch, discover_brand_domains, discover_brand_domains_findings, discover_brand_domains_start, discover_brand_domains_status, discover_subdomains, explain_finding, generate, get_benchmark, get_domain_rank, get_provider_insights, list_brand_audit_watches, map_compliance, map_supply_chain, osint_investigate_domain_start, osint_investigate_email_start, osint_investigate_infrastructure_start, osint_investigate_supply_chain_start, osint_investigate_username_start, osint_investigation_report, osint_investigation_status, prioritize_portfolio_leads, rdap_lookup, register_brand_audit_watch, resolve_spf_chain, scan_buckets_findings, scan_buckets_start, scan_buckets_status, scan_domain, sge_quickscan, simulate_attack_paths, validate_fix.
Its tools changed between 2026-09 and 2026-10:
- Added (2):
check_llms_txt,sge_quickscan brand_audit_batch_start: output schema changedbrand_audit_get_report: output schema changedbrand_audit_single: output schema changedbrand_audit_status: output schema changedcheck_agent_discovery: output schema changedcheck_authoritative_dns_infra: description, output schema changedcheck_bimi: output schema changedcheck_caa: output schema changedcheck_dane: description, output schema changedcheck_dane_https: output schema changedcheck_dbl: output schema changedcheck_dkim: output schema changedcheck_dmarc: output schema changedcheck_dnskey_strength: output schema changedcheck_dnssec: output schema changedcheck_dnssec_chain: output schema changedcheck_fast_flux: output schema changedcheck_http_security: output schema changedcheck_lookalikes: output schema changedcheck_mta_sts: output schema changedcheck_mx: output schema changedcheck_mx_reputation: output schema changedcheck_ns: output schema changedcheck_nsec_walkability: output schema changedcheck_ptr: output schema changedcheck_rbl: output schema changedcheck_realtime_threat_feed: output schema changedcheck_root_server_set: description, output schema changedcheck_shadow_domains: output schema changedcheck_spf: output schema changedcheck_srv: output schema changedcheck_ssl: output schema changedcheck_subdomailing: output schema changedcheck_subdomain_takeover: output schema changedcheck_svcb_https: output schema changedcheck_tlsrpt: output schema changedcheck_txt_hygiene: output schema changedcheck_zone_hygiene: output schema changedcymru_asn: output schema changeddelete_brand_audit_watch: output schema changeddiscover_brand_domains: output schema changedlist_brand_audit_watches: output schema changedosint_investigate_domain_start: description changedosint_investigate_infrastructure_start: description changedosint_investigate_supply_chain_start: description changedosint_investigation_report: description changedosint_investigation_status: description changedrdap_lookup: output schema changedregister_brand_audit_watch: output schema changedscan_buckets_findings: description changedscan_buckets_start: description changedscan_buckets_status: description changed
Which tools were added or removed, and whose description or schemas changed, from content hashes in the monthly snapshots. Per tool, as JSON: /v1/drift.
The listing
| Registry name | com.blackveilsecurity/dns |
|---|---|
| Title | BlackVeil DNS & Email Security Scanner |
| Description | DNS and email security scanner with 81 MCP tools for SPF, DMARC, DNSSEC, SSL, and brand audits. |
| Endpoint | https://dns-mcp.blackveilsecurity.com/mcp |
| Publisher repository | https://github.com/MadaBurns/bv-mcp |
| Version | 3.98.2 |
| Listing updated |
Also
The full check by name, as JSON (on a 401 it also follows the OAuth discovery chain) · Watch it · Check another server · llms.txt