Back to Browse

Looktwice MCP Server

Developer ToolsModerate5.2MCP RegistryLocal
Free

Server data from the Official MCP Registry

Email, EU VAT, IBAN, and domain validation plus evidence-backed U.S. CPSC recall screening.

About

Email, EU VAT, IBAN, and domain validation plus evidence-backed U.S. CPSC recall screening.

Security Report

5.2
Moderate5.2Moderate Risk

This is a well-structured MCP server for the LookTwice validation API with proper authentication, input handling, and error management. The server requires an API key via environment variables and exposes only legitimate validation tools. Permissions are appropriate for the stated purpose of calling a third-party validation API. Supply chain analysis found 3 known vulnerabilities in dependencies (0 critical, 3 high severity). Package verification found 1 issue.

3 files analyzed · 7 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

env_vars

Check that this permission is expected for this type of plugin.

HTTP Network Access

Connects to external APIs or services over the internet.

What You'll Need

Set these up before or after installing:

LookTwice API key; create one at https://looktwice.dev/dashboardRequired

Environment variable: LOOKTWICE_API_KEY

Override the API base URL (defaults to https://api.looktwice.dev)Optional

Environment variable: LOOKTWICE_BASE_URL

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "io-github-eason4kim-rocket-looktwice-mcp": {
      "env": {
        "LOOKTWICE_API_KEY": "your-looktwice-api-key-here",
        "LOOKTWICE_BASE_URL": "your-looktwice-base-url-here"
      },
      "args": [
        "-y",
        "looktwice-mcp"
      ],
      "command": "npx"
    }
  }
}

Documentation

View on GitHub

From the project's GitHub README.

looktwice-mcp

npm version license MCP

MCP (Model Context Protocol) server for the LookTwice API. Validate emails, EU VAT numbers, IBANs, and domains, and screen products against U.S. CPSC recalls and Product Safety Warnings — directly from Claude Desktop, Cursor, or any MCP client.

npx -y looktwice-mcp

Setup

  1. Create a LookTwice account at looktwice.dev — verified accounts receive 100 free API units each month, no credit card required.
  2. Create an API key in the dashboard.
  3. Add the server to your MCP client configuration:
{
  "mcpServers": {
    "looktwice": {
      "command": "npx",
      "args": ["-y", "looktwice-mcp"],
      "env": {
        "LOOKTWICE_API_KEY": "lt_live_..."
      }
    }
  }
}

Tools

ToolWhat it doesCost
email_checkSyntax, MX, disposable, role, free-provider signals (no mailbox probing)2 units
vat_checkLive EU VIES validation with returned business data and request evidence1 unit
iban_checkCountry structure, length, and MOD-97 checksum (no account-existence claim)1 unit
domain_checkDNS, MX, TLS, and RDAP state for a registrable domainFree quota
cpsc_recall_matchEvidence-backed candidate matching against CPSC recalls and warnings3 units
credits_balanceCurrent workspace credit balanceFree

Compared with a single-purpose MCP

Most VAT or email MCP servers wrap one upstream. This server keeps the same evidence rules across email, VIES, IBAN, domain, and CPSC: timestamps, official sources, and no mailbox / account / safety claims.

Honest boundaries

  • email_check never claims a mailbox exists (mailbox_status: not_checked).
  • iban_check never claims an account exists or belongs to a person.
  • cpsc_recall_match returns screening candidates with official sources, not safety, legality, or compliance decisions.

Environment variables

VariableRequiredDefault
LOOKTWICE_API_KEYYes
LOOKTWICE_BASE_URLNohttps://api.looktwice.dev

License

MIT

Reviews

No reviews yet

Be the first to review this server!