MCP Hub
Back to servers

ScamVerify

AI-powered threat verification across 6 channels: phone numbers, URLs, text messages, emails, documents, and QR codes. Analyzes threats against 10M+ intelligence records from FTC, FCC, URLhaus, ThreatFox, and community reports, returning risk scores, verdicts, and detailed signals.

glama
Forks
1
Updated
Mar 24, 2026

ScamVerify MCP Server

AI-powered scam and threat verification MCP server. Verify phone numbers, URLs, text messages, emails, documents, and QR codes against 8M+ threat intelligence records from FTC, FCC, URLhaus, ThreatFox, and community reports.

Server URL: https://scamverify.ai/api/mcp

Transport: Streamable HTTP (stateless)

Authentication: OAuth 2.1 (PKCE) or API key

Tools (10)

ToolDescription
check_phoneLook up a US phone number for scam reports, carrier info, robocall flags, and community reports. Returns risk score (0-100), verdict, and detailed signals from FTC, FCC, carrier, and community data.
check_urlCheck a website URL for safety. Analyzes domain age, SSL certificate, redirect chains, brand impersonation, Google Web Risk, URLhaus, ThreatFox, and community reports.
check_textAnalyze a text/SMS message for scam indicators. Extracts and cross-references embedded phone numbers and URLs. AI identifies scam type, red flags, and risk level.
check_emailAnalyze an email for phishing indicators. Checks sender domain, email headers (SPF/DKIM/DMARC), brand impersonation, embedded URLs and phone numbers.
check_documentAnalyze a document image for scam indicators. Uses vision AI to extract entities (addresses, officials, citations, phone numbers) and verifies them against government databases.
check_qrScan a QR code image and verify its contents. Decodes the QR code server-side and, if it contains a URL, runs full URL verification.
batch_phoneLook up multiple phone numbers in a single request (max 100).
batch_urlCheck multiple URLs in a single request (max 100).
get_usageCheck your current API usage quota and rate limits for the billing period.
get_statusCheck the operational status of ScamVerify API services. No authentication required.

Prompts (4)

PromptDescription
investigate_phoneInvestigate a suspicious phone number for scam indicators and provide a safety recommendation.
verify_urlCheck if a website URL is safe to visit and provide a detailed safety assessment.
analyze_textAnalyze a suspicious text message for scam indicators and explain the findings.
check_emailAnalyze a suspicious email for phishing indicators and provide a safety assessment.

Data Sources

  • FTC Do Not Call Complaints - 7.8M+ records with scam type classification
  • FCC Consumer Complaints - 440K+ telecom violation reports
  • URLhaus - 74K+ active malicious URL indicators
  • ThreatFox - 60K+ IOCs (indicators of compromise)
  • Carrier Intelligence - Line type, CNAM, VoIP detection, high-risk carrier flagging
  • Community Reports - User-submitted scam reports with verification

Setup

Claude Desktop

Add to your claude_desktop_config.json:

{
  "mcpServers": {
    "scamverify": {
      "type": "streamable-http",
      "url": "https://scamverify.ai/api/mcp",
      "headers": {
        "Authorization": "Bearer YOUR_API_KEY"
      }
    }
  }
}

Claude Desktop (OAuth)

{
  "mcpServers": {
    "scamverify": {
      "type": "streamable-http",
      "url": "https://scamverify.ai/api/mcp"
    }
  }
}

When using without an API key, Claude Desktop will initiate the OAuth 2.1 flow. You'll be redirected to sign in at scamverify.ai and authorize access.

ChatGPT

ScamVerify is available as a ChatGPT connector. Add it through the ChatGPT plugin/connector settings using:

  • MCP URL: https://scamverify.ai/api/mcp
  • Auth: OAuth

Cursor / Windsurf / Other MCP Clients

Use the streamable HTTP endpoint with either authentication method:

{
  "type": "streamable-http",
  "url": "https://scamverify.ai/api/mcp",
  "headers": {
    "Authorization": "Bearer YOUR_API_KEY"
  }
}

API Key Authentication

  1. Sign up at scamverify.ai
  2. Go to Settings > API Keys
  3. Generate a key (prefix: sv_live_ for production, sv_test_ for testing)
  4. Pass it in the Authorization: Bearer sv_live_... header

OAuth 2.1 Authentication

The server supports OAuth 2.1 with PKCE (S256). Discovery endpoints:

  • Authorization Server: https://scamverify.ai/.well-known/oauth-authorization-server
  • Protected Resource: https://scamverify.ai/.well-known/oauth-protected-resource

OAuth scopes: phone:lookup, url:lookup, text:analyze, email:analyze, usage:read

Pricing

A free tier (50 lookups/month) is automatically provisioned on first OAuth login or API key creation.

PlanMonthly PriceLookups/moRate Limit
Free$05010 RPM
Starter$19/mo1,00030 RPM
Growth$49/mo5,00060 RPM
Pro$149/mo25,000120 RPM
Scale$499/mo100,000300 RPM
EnterpriseCustomCustomCustom

Full API documentation: docs.scamverify.ai

Links

License

MIT

Reviews

No reviews yet

Sign in to write a review