MCP server for the Thinkst Canary Console API -- manage Birds, Canarytokens, and incidents from any MCP-compatible client.
View on GitHub ↗An MCP (Model Context Protocol) server for the Thinkst Canary Console API. It exposes your Canary Console as a set of tools that any MCP-compatible client (e.g. Claude Desktop) can call in natural language.
Official API Reference: docs.canary.tools Knowledge Base: help.canary.tools
- A Thinkst Canary Console with the API enabled (see Enabling the API) - One of: - Docker (recommended) -- Docker Engine 20.10+ or Docker Desktop - Python -- Python 3.8+ with pip install mcp requests
Before using this server you need to enable the API on your Console and generate an API key.
1. Log in to your Console. 2. Click the Gear Icon and select Global Settings. 3. Click API in the left menu, then click Enable API. 4. Click + to create a new API key and choose a key type (see API Key Types). 5. Copy the Domain Hash and the Auth Token.
Full instructions are available in the Thinkst knowledge base article.
Type Permissions ------------------- Read-Only View data across the Console only Analyst View data, acknowledge/unacknowledge/delete incidents Admin Full access -- configure Birds, create tokens, manage users, etc.
For most operations in this MCP server you will need an Admin key. A Read-Only key is sufficient for list and query tools. Thinkst recommends using separate keys for different operations (e.g. a dedicated Analyst key for your SIEM integration). See the API settings docs for more.
Security note: The Console API enforces TLS 1.2 or higher. Connections using TLS 1.1 or lower will be rejected.
From the project README.
Add the radar badge to your README — it shows your project was picked up by MCP Radar and links to this page:
[](https://mcp.liqiwa.com/s/AlloySecureGroup--CanaryConsoleMCP.html)
Turn scattered notes, docs and transcripts into a queryable Markdown wiki — an LLM knowledge-base compiler with MCP access, no embeddings, self-hosted.
alxgntv/substack-api-mcpMCP server for Substack posts (FastMCP + substack-api-client)
sm18lr88/STT-MCPFast, local speech-to-text MCP server
simonw/mcp-explorerCLI tool for exploring an MCP server
sandeepbazar/ocm-mcp-serverAn MCP server that lets AI agents operate a multi-cluster Kubernetes fleet through an Open Cluster Management hub, with policy, approval, and audit between the model and your clusters.
Vladimir-Human/ru-marketplace-mcpДевять российских маркетплейсов и китайский Taobao как MCP-серверы: Wildberries, Ozon, Яндекс Маркет, Детский мир, Авито, Мегамаркет, Lamoda, DNS, Ситилинк. Плюс сравнение цен по всем сразу. Только чт
The top new MCP servers of the week, every Monday. No spam, unsubscribe anytime.