How to integrate Abuselpdb MCP with Atomic Agent

Connect Atomic Agent to Abuselpdb MCP. Check if this ip is blacklisted, report multiple suspicious ips from csv, and more using natural language, with authentication handled for you.

Abuselpdb logoAbuselpdb
Api Key

Abuselpdb is a central database for reporting and checking IPs linked to malicious online activity. Use it to quickly identify and report suspicious or abusive IP addresses.

6 Tools

Introduction

Atomic Agent is an open-source AI agent that runs on your machine and supports local models through llama.cpp. Connect it to 1,500+ apps through Composio, including Abuselpdb.

This guide uses Atomic Agent's built-in Composio integration. You need Atomic Agent v0.5.6 or later, your own Composio API key, and a Abuselpdb account. See the Atomic Agent documentation for installation instructions.

Also integrate Abuselpdb with

How Atomic Agent connects to Abuselpdb

Atomic Agent connects to Composio's Tool Router over Streamable HTTP MCP. It discovers the tools needed for your request, and Composio handles account authentication.

Execution and account-connection tools follow Atomic Agent's configured approval policy. Review any approval prompt before allowing an action on your connected account.

Connect Abuselpdb to Atomic Agent

  1. Sign up or sign in to the Composio dashboard. Copy your API key.
  2. In Atomic Agent, open the Integrations tab and select Composio. Select API key, press e, paste the key, and press Enter. The tools become available immediately, without a restart.
  3. Ask Atomic Agent to do something in Abuselpdb. It searches Composio for the right tool.
  4. On first use, open the sign-in link returned in the chat. Connect your Abuselpdb account, then return to Atomic Agent to continue.

Headless setup

Add the following line to ~/.atomic-agent/.env, replacing YOUR_COMPOSIO_API_KEY with your key. Start Atomic Agent after saving the file.

bash
COMPOSIO_API_KEY=YOUR_COMPOSIO_API_KEY

What is the Abuselpdb MCP server, and what's possible with it?

The Abuselpdb MCP server is an implementation of the Model Context Protocol that connects your AI agent and assistants like Claude, Cursor, etc directly to your AbuseIPDB account. It provides structured and secure access to threat intelligence data, so your agent can check IP reputations, manage abuse reports, analyze network blocks, bulk report malicious activity, and retrieve blacklists on your behalf.

  • IP reputation checking: Instantly determine if an IP address has been reported for abusive or malicious activity within a specific timeframe.
  • Fetching historic abuse reports: Retrieve detailed reports for any IP address, including filtering by status, date range, and reporter for in-depth threat analysis.
  • Network block analysis: Assess the reputation of all IPs within a CIDR range to identify compromised or risky segments in your network.
  • Bulk abuse reporting: Submit multiple abuse reports at once by uploading CSV files, streamlining incident response workflows for security teams.
  • Blacklist generation and management: Quickly pull a list of the most reported IPs to create dynamic blocklists and strengthen your network defenses.

Use Abuselpdb from Atomic Agent

With your account connected, ask Atomic Agent to work with Abuselpdb in natural language. You can connect more apps through the same Composio integration as you need them.

Visit the Atomic Agent website or inspect the Atomic Agent source code.

Troubleshooting

Why is my API key rejected?

Copy the key directly from the Composio dashboard. Atomic Agent requires ASCII characters because it sends the key in an HTTP header. Remove any extra characters introduced when copying.

Why are Composio tools unavailable after saving a key?

Check that you use Atomic Agent v0.5.6 or later and that Composio is enabled in your configuration. A "composio": { "enabled": false } setting disables the integration while keeping the saved key on disk.

Does Composio have a free plan?

The Hobby plan includes 100,000 tool calls per month. Composio-managed OAuth apps have a lower included allowance. See Composio pricing for the current limits that apply to your connection.

TOOLS

Supported Tools

Every Abuselpdb action and event your agent gets out of the box.

Retrieve IP Blacklist

Retrieves a list of the most reported malicious IP addresses from AbuseIPDB's database.

Bulk Report

Submit multiple IP abuse reports to AbuseIPDB in bulk via CSV upload.

Check Block

Tool to check the reputation of all IP addresses in a CIDR range.

Check IP Reputation

Tool to check the reputation of an IP address.

Clear Address Reports

Tool to remove all reports associated with a specific IP address.

Get Abuse Reports

Retrieve abuse reports for a specific IP address from AbuseIPDB.

FAQ

Frequently asked questions

With a standalone Abuselpdb MCP server, the agents and LLMs can only access a fixed set of Abuselpdb tools tied to that server. However, with the Composio Tool Router, agents can dynamically load tools from Abuselpdb and many other apps based on the task at hand, all through a single MCP endpoint.

Yes, you can. Atomic Agent fully supports MCP integration. You get structured tool calling, message history handling, and model orchestration while Tool Router takes care of discovering and serving the right Abuselpdb tools.

Yes, absolutely. You can configure which Abuselpdb scopes and actions are allowed when connecting your account to Composio. You can also bring your own OAuth credentials or API configuration so you keep full control over what the agent can do.

All sensitive data such as tokens, keys, and configuration is fully encrypted at rest and in transit. Composio is SOC 2 Type 2 compliant and follows strict security practices so your Abuselpdb data and credentials are handled as safely as possible.

Start with Abuselpdb.It takes 30 seconds.

Managed auth, hosted MCP servers, and every Abuselpdb tool your agent needs.Free to start.

Start building