Strider MCP

Strider's hosted Model Context Protocol server, published at app.striderintel.com/app-api/mcp. It advertises itself by name ("Strider MCP") in an RFC 9728 protected-resource metadata document and is protected by an OAuth 2.1 authorization server with PKCE (S256), refresh tokens and RFC 7591 dynamic client registration. Anonymous tools/list returns 401 MCP_UNAUTHENTICATED with a WWW-Authenticate challenge pointing at the resource metadata, so the live tool set and input schemas require an authenticated Strider customer session.

API entry from apis.yml

apis.yml Raw ↑
name: Strider MCP
description: Strider's hosted Model Context Protocol server, published at app.striderintel.com/app-api/mcp.
  It advertises itself by name ("Strider MCP") in an RFC 9728 protected-resource metadata document and
  is protected by an OAuth 2.1 authorization server with PKCE (S256), refresh tokens and RFC 7591 dynamic
  client registration. Anonymous tools/list returns 401 MCP_UNAUTHENTICATED with a WWW-Authenticate challenge
  pointing at the resource metadata, so the live tool set and input schemas require an authenticated Strider
  customer session.
humanURL: https://app.striderintel.com/
baseURL: https://app.striderintel.com/app-api/mcp
tags:
- MCP
- Agent
- Threat Intelligence
properties:
- type: MCPServer
  url: mcp/strider-mcp.yml
- type: Authentication
  url: authentication/strider-authentication.yml
x-evidence:
  fetched: '2026-08-05'
  url: https://app.striderintel.com/.well-known/oauth-protected-resource/app-api/mcp
  http_status: 200
  note: POST tools/list to the baseURL returns HTTP 401 {"error":"Authentication required","code":"MCP_UNAUTHENTICATED"};
    a control path /mcp returns 404, so the 401 is a real gated endpoint rather than a catch-all.