See llms.txt for all machine-readable content.
Unlock the full potential of mlab.sh and n8n’s automation platform by connecting Sn0wAlice’s capabilities with over 1,000 apps, data sources, services, and n8n’s built-in AI features.
Need something that’s not covered yet?
Use n8n’s pre-authenticated HTTP Request node to create new connections, giving you the flexibility to build powerful automations on any stack.


Created by
Sn0wAlice
Last update
5 days ago
mlab.sh integration
is built and maintained by our partners at Sn0wAlice and verified by n8n. That means it’s solid, safe, and ready to help you tap into some great capabilities.
Add mlab.sh security data to any workflow. One node scans domains, IPs, crypto addresses and files, searches CVEs (with EPSS, KEV and severity filters) and retrieves threat-actor intelligence, including reverse CVE-to-actor lookups. Public APIs, with an API key only for core scans.

Lookup
Check sanctions, labels and risk score for a crypto address
Bulk Lookup
Look up to 100 addresses in one request
Search
Search vulnerabilities by keyword, vendor or product
Get
Retrieve full details for a CVE (including EPSS and KEV data)
Get Latest
Fetch vulnerabilities from the last 7 days
Capture Network Requests
Load a URL in a headless browser and list every request it makes. Counts as one domain scan.
Get Results
Get SSL Certificates
Certificates seen for the domain in certificate transparency logs
Get Status
Scan
Launch a domain scan and (optionally) wait for the results
Analyze
Mailbox type, spoofability of the domain and risk score
Upload
Upload a file (max 10MB) and launch analysis
Get Results
Fetch analysis results by SHA-256 hash
Get Tool Output
Raw output of a single tool listed in the results
Lookup
Known-good / known-malicious verdict for an MD5, SHA-1 or SHA-256
Bulk Lookup
Look up to 500 hashes in one request
Extract
Pull every indicator out of raw text, with optional SMS threat scoring
Lookup
Resolve geolocation, ASN and ownership for an IP address
Lookup
Vendor, randomization, virtualization and every notation
Analyze
Validity, line type, allocated operator and scam shapes
Get
Get the remaining daily quota for a scan type
List / Search
List actors with optional filters (origin, motivation, sector)
Get
Get a single actor by slug, including aliases, tools, CVEs and techniques
Get by CVE
Reverse lookup: which actors are known to exploit a given CVE
Analyze
Phishing shapes, embedded redirects and what mlab knows about the host
Verified nodes need a quick setup by an instance owner first, but after that, everyone on the instance can start using them in their workflows. Learn more here.
Sign in to n8n, open the editor, and click + in the top right to open the Nodes panel

AI agents and workflows for technical teams at