Datakoot Domain & Company Intel MCP Server. Remote MCP server (Streamable HTTP, stateless) for Cloudflare Workers. Zero dependencies, zero API keys. All data from free public sources. Provides domain registration intelligence, DNS lookups, email deliverability assessment, technology stack fingerprinting, and subdomain discovery.
Six tools with complete input schemas and strong, action-oriented descriptions (avg 180 chars). Naming follows verb_noun pattern (domain_*, dns_*, email_*, tech_*, subdomains). All parameters have type and description. No output schemas documented. Error handling present but minimal guidance. Missing tool annotations (readOnlyHint, idempotentHint). No pagination support despite potential for large result sets (subdomains). Overall solid foundation with gaps in output documentation and error recovery guidance.
Look up DNS records for a domain via Cloudflare DNS-over-HTTPS. Returns A, AAAA, MX, NS, TXT, CNAME, and SOA records. Use to see where a domain is hosted, who runs its mail and DNS, and what verification/policy TXT records it publishes.
Registration intelligence for a domain via RDAP (the modern WHOIS). Returns registrar, creation/expiration/last-changed dates, domain age in years, EPP status codes, nameservers, DNSSEC state, and abuse contact. Use to vet a company, assess a lead, or judge how established a domain is.
One-call full dossier on a domain: registration (RDAP), DNS records, email deliverability, and website tech stack, combined into a single report. Use for fast lead qualification, company research, or recon without four separate calls.
Assess whether a domain (or the domain of an email address) can receive mail and how strong its sender authentication is. Returns MX presence, SPF and DMARC policy, whether it's a free consumer provider (gmail, etc.) or a known disposable/temp-mail provider, and an overall verdict. Use to qualify leads and flag throwaway signups.
Discover subdomains of a domain from public Certificate Transparency logs (crt.sh). Useful for mapping a company's public surface (app., api., staging., etc.). Best-effort: crt.sh can be slow; returns a note if unavailable.
No output schemas documented. LLMs cannot plan downstream tool calls or extract fields without knowing response structure. Baseline: 100% of A+ tools document return types.
Missing tool annotations (readOnlyHint, idempotentHint). All six tools are read-only and idempotent but do not declare this via MCP tool annotations. Agents cannot infer safety properties.
subdomains tool lacks pagination or result limit guidance. Certificate Transparency logs can return hundreds of subdomains; no cap or cursor documented. Risk of context window exhaustion.
| Scored | Grade | Overall | Spec posture | Rubric |
|---|---|---|---|---|
| 2026-09-23 | B | 70 | 2026-07-28+ | v2 |
Fingerprint the technology behind a website by fetching its homepage. Detects web server, CMS/framework (WordPress, Shopify, Next.js, etc.), CDN, analytics, and returns the page title, final URL after redirects, and key response headers. Use for competitive research and lead enrichment.
Error handling minimal. UserError class exists but recovery guidance sparse. E.g., 'Invalid domain' error does not suggest how to fix or what format is expected. Baseline: errors should guide LLM to next action.
Parameter descriptions lack format/constraint details. E.g., 'domain' param says 'Domain name, e.g. stripe.com' but does not state: no scheme, lowercase, valid TLD required. Baseline: constraints should be explicit in description text.