Remote MCP server for email verification. RFC 5321 syntax, MX lookup, 160k disposable-domain blacklist and role-account detection. DNS-only and compliant by default; SMTP handshake is opt-in. Zero third-party API fees.
verify_signup_email prompt: reusable accept/reject decision template for signup flows.
Hosted mode (HOSTED_MODE=1): Streamable HTTP transport with Bearer auth, per-key rate limiting, and DNS-rebinding protection (mitigates CVE-2025-66414).
Smithery smithery.yaml for one-command discovery.
Bilingual README (中文 / English).
Compliance note
Default verification is DNS-only (no outbound SMTP). SMTP handshake is opt-in and documented as potentially subject to recipient-server anti-scanning policies; it must be enabled only from infrastructure the operator controls. This keeps the default distribution compliant.