CyberMax
Home › Use with › Bonafido: Business Domain Verification API

Use Bonafido: Business Domain Verification API MCP with OpenAI Codex CLI

Bonafido: is a domain a real business site? Verdict, trust score, risk flags.

Remote MCP server (Streamable HTTP), nothing to install. Free: 20 free calls/day, no key · Paid: Check $19/month; Team $49/month; Business $99/month; Check yearly $190/year; Team yearly $490/year; Business yearly $990/year

Set it up

  1. Open ~/.codex/config.toml (create it if needed).
  2. Add the [mcp_servers] table shown and save.
  3. Start Codex; the server's tools are available to the agent.
  4. Ask a question the tools can answer.

Add to ~/.codex/config.toml:

[mcp_servers.bonafido]
url = "https://bonafido.cybermaxtools.com/mcp?via=use-with-codex"

With a paid key:

[mcp_servers.bonafido]
url = "https://bonafido.cybermaxtools.com/mcp?via=use-with-codex"
env_http_headers = { "x-api-key" = "CYBERMAX_API_KEY" }

env_http_headers maps the header to an environment variable name, so the key stays in your environment.

Where it goes:

Config format checked 2026-10-09 against OpenAI Codex CLI's MCP documentation.

Tools you get

Endpoint checked 2026-10-09: https://bonafido.cybermaxtools.com/mcp answered an MCP initialize (protocol 2025-06-18) and tools/list with 1 tool, all marked read-only. No key was used and no tool was called.

ToolWhat it doesRequired inputs
verify_domainVerify a business domain, URL or email domain: does it resolve, how old is it (RDAP), mail setup (MX/SPF/DMARC), live homepage vs parked/for-sale page, redirects, contact details, company-name match, Wikidata official website and look-alike detection. Returns verdict (verified/likely_legit/unverified/suspicious/not_found), trustScore 0-100, riskFlags and evidence. Pass company_name to check the domain belongs to that company. Up to 5 domains via "domains".none

Test the endpoint from a terminal

This lists the tools without a key and without calling any of them:

curl -s https://bonafido.cybermaxtools.com/mcp \
  -H 'content-type: application/json' \
  -H 'accept: application/json, text/event-stream' \
  -d '{"jsonrpc":"2.0","id":1,"method":"tools/list"}'

If it does not work

Bonafido: Business Domain Verification API in other clients

CursorVS Code (GitHub Copilot)Claude CodeClaude Desktop and claude.aiWindsurf (Devin Desktop)ClineGemini CLI

More MCP servers for OpenAI Codex CLI

AfterwrenAwardtide Recompete RadarCitewrenCommonkite: Free Image Search API, Creative Commons & CC0CyberMax DataDomainDNADutyfinchFeedpeck: RSS Feed Finder & Reader by WebsiteFieldwrightFigurewellHaulrollHireHeatInsidewellKevscopeLeafmeltLinkheftLogolark: Company Logo API & Favicon Finder by DomainMailvett: Email Validation API for AI AgentsNamewhereOrbitwrenPinloft: Batch Geocoder — Address to Lat/Long + Census FIPSPricewickPrintwren: HTML to PDF and URL to PDF (real Chrome)RecallrollShiftmoorSumbloomSwellmeter TrendingZiplore: US ZIP Code API (county, time zone, demographics, radius)

All Bonafido: Business Domain Verification API setups · All OpenAI Codex CLI setups · All