How to integrate AlienVault Open Threat Exchange (OTX) using MCP
Investigate threat indicators with OTX. This guide creates an MCP server from Arthur's AlienVault Open Threat Exchange (OTX) template — tools preconfigured against https://otx.alienvault.com/api/v1 — and finishes by sharing the server's MCP swagger documentation.
Steps
Open the Secrets vault and create a secret named
ALIENVAULT_OTX_API_KEYholding your API key. Copy the API key from your OTX account and send it in the X-OTX-API-KEY header.


Go to the REST API Templates gallery and search for AlienVault Open Threat Exchange (OTX).


Click Use template on the AlienVault Open Threat Exchange (OTX) card to open the server-creation dialog.


Review the server name and select
ALIENVAULT_OTX_API_KEYin the credential field — the dialog only accepts vault secrets, and it lists every tool that will be created.


Click Create server. Arthur creates the server, applies the authentication, and generates all the tools.





Open the server's Tools tab to review the generated tools.

Open the server's Connect section and click Share the MCP swagger documentation — Arthur generates the public documentation link and QR code for this server.



Confirm it worked
The server appears with 1 preconfigured tool(s): get_ipv4_intelligence. The Connect section offers the MCP swagger documentation — a shareable page with setup instructions for any AI client.
Good to know
- Retrieve the general Open Threat Exchange intelligence known for an IPv4 indicator.
- This integration requires a credential (api-key). Get one at https://otx.alienvault.com/accounts/signup.
- Official API documentation: https://otx.alienvault.com/api
- Editing a tool later never changes the template — templates are starting points, and the server is fully yours after creation.
Related
Tutorial video