Security Intel MCP
Server Details
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
Glama couldn't complete the latest health check. If this server requires authentication, missing or expired test credentials may be the cause. A test profile lets Glama authenticate for health checks and discover tools; it is separate from your personal connections.
If you are the author, claim ownership, then add or update a test profile under Admin → Test Profile.
- Status
- Unhealthy
- Uptime
- 0.0% over 44 days
- Last Tested
- Transport
- Streamable HTTP
- URL
- Repository
- datakoot/security-intel-mcp
- GitHub Stars
- 0
- Server Listing
- Security Intel MCP
TDQS
Scored across 3 tools
The three tools have clearly distinct purposes: auditing a dependency manifest, looking up a specific CVE by ID, and listing vulnerabilities for a particular package. No overlaps or ambiguous boundaries exist.
Tool names are readable but not consistently patterned. 'audit_dependencies' uses verb_noun, 'cve_lookup' is noun_verb, and 'package_vulnerabilities' is a noun phrase, mixing conventions without being chaotic.
Three tools is on the smaller side but appropriate for a focused security intelligence server. Each tool provides a distinct and necessary function, and the count feels lean rather than insufficient.
The domain of vulnerability intelligence is well-covered with manifest auditing, CVE details, and package lookups. Minor gaps exist (e.g., no search or advisory listing), but core workflows are supported without dead ends.
Tool Schema Changelog
Recent tool additions, removals, and schema changes observed during successful MCP inspections.
5 tool updates
- Changed
audit_dependencies5 fields changed- added
Input schema / properties / dependenciesAdded value: +{ + "description": "[{name, version}] entries", + "items": { + "type": "object" + }, + "type": "array" +} - added
Input schema / properties / ecosystemAdded value: +{ + "description": "Default npm", + "type": "string" +} - removed
Input schema / properties / formatRemoved value: -{ - "description": "Optional: npm | pypi | go. Auto-detected if omitted.", - "type": "string" -} - changed
Input schema / properties / manifest / descriptionPrevious value: -"Full contents of a package.json, requirements.txt, or go.mod file"New value: +"Raw package.json contents" - changed
Input schema / requiredPrevious value: -[ - "manifest" -]New value: +[]
- Changed
cve_lookup2 fields changed- changed
Input schema / properties / cve_id / descriptionPrevious value: -"CVE identifier, e.g. CVE-2021-44228"New value: +"e.g. CVE-2021-44228" - removed
Input schema / properties / cve_id / patternRemoved value: -"^CVE-\\d{4}-\\d{4,}$"
- Removed
ip_reputation - Changed
package_vulnerabilities3 fields changed- removed
Input schema / properties / ecosystem / descriptionRemoved value: -"Package ecosystem: npm, PyPI, Go, Maven, crates.io, RubyGems, Packagist, NuGet, Hex, Pub, Debian, Alpine" - removed
Input schema / properties / name / descriptionRemoved value: -"Package name, e.g. lodash or org.apache.logging.log4j:log4j-core" - changed
Input schema / properties / version / descriptionPrevious value: -"Exact version to check (optional; omit to list all known vulns)"New value: +"Optional; if given, only vulns affecting that version are returned"
- Removed
url_check
1 tool update
- Added
audit_dependencies
4 tool updates
- First observed
cve_lookup - First observed
ip_reputation - First observed
package_vulnerabilities - First observed
url_check
Related MCP Connectors
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
Trust-check any dependency for agents: OpenSSF Scorecard, licenses, CVEs, deps. 7 ecosystems.
Pay-per-call cybersecurity for AI agents: vuln scans, threat intel, compliance, code security.
Search and audit NIST NVD CVEs by keyword, severity, CWE, CISA KEV status, and CPE.
Related MCP Servers
- AlicenseAqualityFmaintenanceDependency security & health auditing for AI agents with no account or API key required.22MIT
- AlicenseNot gradedqualityCmaintenanceProvides CVE lookup, search, and exploit intelligence from public vulnerability sources (NVD, CISA KEV, EPSS) for AI agents to produce remediation guidance without consuming LLM tokens for data fetching.1MIT
- AlicenseNot gradedqualityCmaintenanceProvides security checks for AI agents, including secret scanning, CVE lookup, and dependency vulnerability scanning, all running locally except for CVE lookups.MIT

Fetter MCPofficial
FlicenseNot gradedqualityDmaintenanceProvides real-time Python package vulnerability data, enabling AI agents to check CVEs, CVSS scores, and safe versions for informed dependency decisions.1-
Glama MCP Gateway
Add one secure layer between your agents and this server.