Securitytrails for AI agents
SecurityTrails provides domain, IP, DNS, and WHOIS intelligence, including historical records, used by security teams for threat hunting and brand protection. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in Securitytrails.
Look up a domain's DNS history
Pulls historical DNS records for a domain to investigate infrastructure changes over time.
Search for associated IPs
Finds IP addresses associated with a company as part of an attack surface review.
Check SSL details before flagging
Reads a domain's current SSL certificate details as a read-only check before escalating a finding.
12 Securitytrails actions, graded by risk.
Every Securitytrails action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
6Look things up. Allowed by default.
- securitytrails.get_domainGet Domain Details
- securitytrails.search_ipsSearch IPs
- securitytrails.list_projectsList ASI Projects
- securitytrails.get_domain_sslGet Domain SSL
- securitytrails.get_company_associated_ipsGet Company Associated IPs
- securitytrails.pingPing
write
6Create and change things. Allow, or ask the user first.
- securitytrails.scrollScroll Results
- securitytrails.ip_search_statisticsIP Search Statistics
- securitytrails.sql_api_execute_querySQL API Execute Query
- securitytrails.sql_api_scroll_resultsSQL API Scroll Results
- securitytrails.bulk_static_asset_rulesBulk Static Asset Rules
- securitytrails.temp_scrape_securitytrails_usageTemp Scrape Securitytrails Usage
destructive
0Delete, cancel or archive. Ask first, or deny outright.
- No destructive actions.
Securitytrails in three steps.
- 01Your users connect SecuritytrailsThey add their Securitytrails api key on Arc0 Connect, under your brand. It goes straight into the vault.
- 02You set the rulesReads run, and writes like “scroll Results” can wait for the user to approve.
- 03Any agent can actYour agent calls Securitytrails through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('securitytrails', { read: 'allow', write: 'ask', // scroll destructive: 'deny', }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How Securitytrails connects.
Users add their Securitytrails api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.
The same Securitytrails connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- API key
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use Securitytrails from any agent.
More security and identity apps.
Securitytrails and Arc0, answered.
Can I use Securitytrails with Claude, ChatGPT or Cursor?
Yes. Connect Securitytrails to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Securitytrails actions you allow.
How do users connect Securitytrails?
Users add their Securitytrails api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.
Which Securitytrails actions can my agent take?
12 in total: 6 read, 6 write and 0 destructive, such as “scroll Results”. Your policies decide which of them each agent may call.
Can I make my agent read-only in Securitytrails?
Yes. Allow read actions and deny writes in the Securitytrails policy. Your agent can still look things up, and any write it attempts is blocked and logged.
Can my own backend call Securitytrails too?
Yes. The same Securitytrails connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug Securitytrails into your agent.
Your users connect Securitytrails once, under your brand. Your agent gets 12 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan