Security & Testing
defaultprivacy.com
Search and compare privacy-focused tools and services from a curated directory.
ENDPOINT 1
https://defaultprivacy.com/api/privacy/mcp
Known tools 33
search_privacy_toolsSearch the Default Privacy directory of privacy-focused tools and services.
get_tool_detailsFetch the full Privacy Protocol record for one tool by slug.
compare_toolsCompare 2–5 privacy tools side-by-side across privacy attributes, trust signals, payment options, and red-flag count.
get_categoriesList every privacy-tool category in the directory with a tool count per category.
get_alternativesFind privacy-respecting alternatives to a mainstream service or named tool.
check_red_flagsCheck the directory's record of known concerns about a specific privacy tool.
get_default_privacy_servicesGet Default Privacy's first-party services: LLC formation (Wyoming and New Mexico, anonymous structure available in all 50 states), crypto checkout, SSN-free EIN on the Ghost tier and above, and Dead Drop document delivery.
start_anonymous_llcStart a privacy-structured LLC formation flow with a prefilled intake URL and execution-readiness checklist.
suggest_llc_entity_namesGenerate neutral LLC entity-name suggestions optimized for privacy formation.
get_formation_preflight_checklistPre-checkout review of every field about to be submitted on a formation intake: entity name, jurisdiction, package tier, EIN option, and any flagged combinations (e.g.
check_llc_name_availabilityProvide DIY entity-name verification links for Wyoming / New Mexico / Delaware.
create_formation_draft_sessionCreate a scoped browser-token draft session that lets the user review and pay for the formation in their browser without re-entering everything.
get_member_intake_coachPost-payment guidance for the member/manager intake step: privacy placeholders, consent copy, signing options, and child-entity handling (when this formation is owned by another entity).
design_entity_bundleDesign a multi-entity bundle (NM holding LLC + WY operating LLC, or a Series LLC variant) and return a prefill URL for the bundle checkout.
search_guidesSearch Default Privacy's library of guides and playbooks by topic, category, or tags.
get_guideFetch a full Default Privacy guide by slug: title, description, body content, category, tags, and the canonical attribution-tagged URL.
search_glossarySearch Default Privacy's glossary of privacy + LLC terminology.
get_glossary_termFetch one glossary term by slug: full definition, aliases, related terms, and the canonical attribution-tagged URL.
run_policy_analyzerAnalyze a website's privacy policy text and return a summary, score, and lists of red flags + positives.
run_privacy_architecture_assessmentTake answers from the Privacy Architecture Assessment (the multi-step questionnaire that maps user situation → recommended LLC structure) and return a structure recommendation with rationale.
run_decision_quizDetermine which Default Privacy product family fits the user (formation, directory tool, diagnostic workflow, consultation) based on decision-quiz answers.
get_llc_public_records_checklistReturn a scoring checklist + verification links to help the user audit how much of their identity is exposed on their LLC's public Secretary of State record (registered agent, member names, addresses, beneficial-ownership reporting).
check_domain_whoisCheck whether a domain's public WHOIS / RDAP registration exposes the registrant's personal identity (name, email, phone, address).
check_email_securityCheck the SPF, DKIM, and DMARC DNS records for a domain.
check_domain_breachesCheck whether a BUSINESS domain appears in public HIBP breach catalogs.
get_account_breach_check_guideGuide the user through checking whether their PERSONAL email was exposed in a data breach (Have I Been Pwned).
get_browser_exposure_guideExplain what a browser/connection leaks (IP, fingerprint, DNS resolution, WebRTC ICE candidates) and link the user to the client-side `/exposed` check that runs entirely in their browser.
run_domain_privacy_auditComposite: run WHOIS + email-security + breach checks against one domain and return a single graded audit with combined findings and fix links.
request_consultationSubmit a consultation request to the Default Privacy team.
start_data_broker_scanLink the user into the data-broker-removal funnel with MCP-attribution tracking.
list_audiencesList every audience-specific privacy guide Default Privacy publishes — currently 22 (doctors, accountants, realtors, content creators, high-net-worth individuals, OnlyFans creators, etc.).
get_audienceFetch the full audience guide for one slug — the same content rendered on `https://defaultprivacy.com/for/<slug>`.
recommend_entity_structureComposite: in one call, recommend the best LLC structure for a user's situation.
ENDPOINT 2
https://defaultprivacy.com/api/mcp
Known tools 14
dp_search_toolsSearch the Default Privacy directory of vetted privacy tools (VPNs, email, browsers, messengers, password managers, etc.).
dp_get_toolFetch a single privacy tool's full Privacy Protocol record by slug — description, ADO score, jurisdiction, encryption, PII requirements, red flags, platforms, and audit status.
dp_list_categoriesList the privacy tool directory's category groups and subcategories with tool counts.
dp_find_alternativesGiven a mainstream or privacy-hostile product/service (e.g.
dp_get_related_toolsGiven a directory tool slug, return other tools in the SAME category ranked by ADO score — a shortlist of peers/alternatives within the directory.
dp_compare_toolsFetch the full Privacy Protocol records for 2–5 tools by slug for side-by-side comparison (ADO score, jurisdiction, encryption, PII requirements, red flags, audit status).
dp_search_guidesSearch Default Privacy's long-form guides and playbooks (self-hosting, hardening, privacy how-tos).
dp_get_guideFetch a single guide's full markdown content and metadata by slug.
dp_search_glossarySearch the privacy & security glossary for defined terms.
dp_get_glossary_termFetch a single glossary term's full definition and content by slug.
dp_check_email_securityCheck a domain's email authentication posture — SPF, DKIM, and DMARC DNS records — and return an A–F grade with explanations.
dp_check_whois_privacyLook up a domain's public WHOIS/RDAP registration record and flag exposed personal identity fields (registrant name, email, phone, address).
dp_check_domain_breachesCheck whether a domain appears in known public data breaches (via the Have I Been Pwned breach catalog).
dp_check_password_pwnedCheck whether a password has appeared in known breaches using HIBP k-anonymity.