86trust / 100

Security Intel MCP

by security.datakoot.com in Security & trust

MCP serverPassing, checked 6 h ago

CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.

https://security.datakoot.com/mcp

Last 30 days

All checks passedSome failedAll failedNot checked
Uptime
100%
Response time
130 ms typical, 130 ms slowest 5%
Last check
6 h ago
Next check
any minute now

How to call it

Add it to any MCP client that supports remote servers.

{
  "mcpServers": {
    "security-intel-mcp": {
      "type": "http",
      "url": "https://security.datakoot.com/mcp"
    }
  }
}

5 tools

  • cve_lookup

    Look up a CVE by ID and get a compact summary: description, CVSS score & severity, vector, CWE weakness, publish date, references — plus whether it is on the CISA Known-Exploited list (actively exploited in the wild) and its EPSS exploit-probability. Sources: NVD (NIST), CISA KEV

  • known_exploited

    Check whether a CVE is on the CISA Known Exploited Vulnerabilities (KEV) catalog — confirmed exploited in the wild — or list the most recently added exploited vulnerabilities. Pass cve_id to check one; omit it to list recent (optionally filter by vendor/product, or ransomware_onl

  • epss_score

    Get the EPSS exploit-probability score (0-1) and percentile for one or more CVEs — the likelihood each is exploited in the next 30 days. Use it to prioritize patching. Pass cve_id for one, or cve_ids (array or comma-separated) for many. Source: FIRST.org EPSS.

  • package_vulnerabilities

    List known vulnerabilities for a software package (optionally a specific version) via OSV. Ecosystems: npm, pypi, cargo, go, maven, rubygems, nuget, composer, pub, hex.

  • audit_dependencies

    Audit a whole dependency manifest for known vulnerabilities in one call. Paste a package.json (as 'manifest'), or pass a 'dependencies' array of {name, version} objects. Returns per-package findings and a summary. Ecosystem defaults to npm.

Security scan

  • No findings. We scan names, descriptions and tool definitions for hidden instructions and other prompt-injection patterns.

Recent checks

WhenResultHTTPTime
6 h agoPassed200130 ms