</>MCP Agents Market
MCP Server

powerview.py

by aniqfakhrul995PythonUpdated 2026-09-03

Powerview on steroids

Claude DesktopCursor

PowerView.py is an MCP server that exposes Active Directory reconnaissance and enumeration capabilities to AI agents through the Model Context Protocol. Built as a Python reimplementation of the original PowerShell PowerView tool, it provides persistent LDAP sessions for querying users, computers, groups, GPOs, domain trusts, ADCS templates, and identifying security vulnerabilities. The MCP server runs via HTTP transport, allowing AI assistants like Claude Desktop and Cursor to interact with AD environments through natural language queries that translate to LDAP operations. Security professionals can leverage AI agents to perform domain reconnaissance, privilege escalation research, and misconfiguration detection without repeatedly authenticating.

Key Features

MCP server exposing 100+ Active Directory enumeration commands (Get-DomainUser, Get-DomainComputer, Get-DomainGPO, etc.) as AI agent tools
Persistent LDAP/LDAPS/ADWS connections with keepalive support to maintain session state across queries
Integrated vulnerability detection engine with custom rule support for identifying AD misconfigurations
JSON output mode for structured data extraction compatible with AI processing pipelines
LDAP query obfuscation using ldapx-py to vary observable patterns while preserving query intent
Support for Kerberos, NTLM, certificate-based (schannel), and relay authentication modes
Query caching and plugin system with before/after hooks for extending functionality
Remote computer enumeration via MS-SRVS, MS-WKST, MS-EVEN6, MS-SCMR, and MS-TSTS protocols

Use Cases

  • 01AI-assisted Active Directory security assessments where agents enumerate users, groups, and misconfigurations through natural language
  • 02Automated privilege escalation path discovery by having AI agents chain domain queries to identify attack vectors
  • 03Penetration testing reconnaissance where AI assistants map domain trusts, find weak GPO configurations, and locate service accounts
  • 04Security monitoring and compliance auditing with AI agents checking for vulnerable ADCS templates and RBCD configurations
  • 05Red team operations using AI to interactively query AD, perform Kerberoasting, and identify shadow credentials
  • 06Blue team defense research where AI agents analyze domain objects for indicators of compromise or weak security policies

Related MCP Servers

View more

powerview.py — FAQ

What is the PowerView.py MCP server?+

PowerView.py is an MCP server that exposes Active Directory enumeration and reconnaissance capabilities to AI agents through the Model Context Protocol. It provides tools for querying domain users, computers, groups, GPOs, trusts, ADCS templates, and detecting security vulnerabilities via standardized MCP tool interfaces.

How do I install and start the MCP server?+

Install with pip3 install powerview[mcp], then start the server with powerview domain.local/user:pass@dc-ip --mcp --mcp-host 0.0.0.0 --mcp-port 8888. For Claude Desktop, use mcp-proxy since it doesn't support HTTP transport directly. For Cursor, configure the MCP URL in settings.

Which AI clients work with this MCP server?+

Claude Desktop (via mcp-proxy), Cursor, and any MCP-compatible client supporting HTTP transport. Claude Desktop requires the mcp-proxy bridge because it only supports stdio transport currently.

What are the prerequisites and credentials needed?+

You need valid Active Directory credentials (username/password, Kerberos ticket, or certificate) and network access to a domain controller. The server supports LDAP, LDAPS, Global Catalog, and ADWS protocols. No API keys are required as it connects directly to AD infrastructure.

Is PowerView.py MCP server free to use?+

Yes, PowerView.py is open source and free to use. However, be aware that when connecting to public AI models (Claude, GPT), your AD data may be transmitted to third-party services according to their data handling policies.

What commands can AI agents execute through this MCP server?+

Agents can execute 100+ PowerView commands including domain enumeration (Get-DomainUser, Get-DomainComputer), group queries, GPO analysis, trust mapping, ADCS template retrieval, vulnerability detection, and object modification (Set-DomainObject, Add-DomainUser). Most read operations are supported; destructive actions require appropriate privileges.

How do I install powerview.py?+

Open the source repository on GitHub and follow its README. powerview.py is a mcp server — MCP Agents Market links you directly to the official repo.

Is powerview.py free?+

powerview.py is an open-source project hosted on GitHub. Check the repository for its license and any usage requirements.

Related searches