run_spiderfoot
Headless multi-module OSINT scanning
How to use it
run_spiderfoot is exposed by the GEMMA By GOOGLE MCP server. Add the server to your MCP client (Claude Desktop, Cursor, Windsurf and others), and the run_spiderfoot tool becomes available to the model automatically. See the full listing for setup details and every tool this server provides.
FULL GEMMA BY GOOGLE LISTINGOther tools in GEMMA By GOOGLE (39)
Subdomain enumeration (passive by default)
Cloud-infrastructure enumeration
Arbitrary command execution
HTTP request testing
XSS scanning (reflected / stored / DOM)
DNS resolution and probing
SMB / Samba enumeration
Sandboxed execution of custom PoC scripts
Recursive content discovery
Web fuzzing
Known URLs from OTX / Wayback / Common Crawl
OSINT for username / IP / phone
Web directory brute forcing
Web screenshotting for visual recon
HTTP probing and fingerprinting
Credential brute forcing
Hash cracking
Web crawling
Fast port discovery
Fast parallel brute forcing
Fire a chosen Metasploit module at a target (human-approved)
Network authentication cracking
Network connection analysis
Web vulnerability scanning
Deep service/version scanning
Template-based vulnerability scanning
Phone-number OSINT
Phone-number OSINT / extraction
recon-ng OSINT framework (non-interactive)
Exploit lookup
Social-engineering toolkit
Username OSINT across 90+ platforms
Internet-exposure intelligence lookups
SQL injection testing
Subdomain enumeration
Passive OSINT — emails, subdomains, hosts
WAF / security-solution fingerprinting
Historical URLs from the Wayback Machine
File retrieval