Skip to main content
Glama

Server Details

TLPTOracle — 17-tool TIBER-EU TLPT framework: scope, threat intel, scenarios, reports.

Status
Healthy
Last Tested
Transport
Streamable HTTP
URL

Glama MCP Gateway

Connect through Glama MCP Gateway for full control over tool access and complete visibility into every call.

MCP client
Glama
MCP server

Full call logging

Every tool call is logged with complete inputs and outputs, so you can debug issues and audit what your agents are doing.

Tool access control

Enable or disable individual tools per connector, so you decide what your agents can and cannot do.

Managed credentials

Glama handles OAuth flows, token storage, and automatic rotation, so credentials never expire on your clients.

Usage analytics

See which tools your agents call, how often, and when, so you can understand usage patterns and catch anomalies.

100% free. Your data is private.
Tool DescriptionsC

Average 2.7/5 across 14 of 17 tools scored. Lowest: 1.8/5.

Server CoherenceA
Disambiguation4/5

Most tools have distinct purposes, but potential confusion exists between 'auto_simulate' and 'generate_scenarios' (both involve scenario generation) and between 'health_check' and 'ping' (both test connectivity). Descriptions help mitigate but do not eliminate ambiguity.

Naming Consistency3/5

Tool names consistently use snake_case but mix verb-based (generate_scenarios, register_exercise) and noun-based (evidence_bundle, threat_profile) patterns. 'ping' is a single word, breaking the pattern. This inconsistency may confuse agents about whether a tool performs an action or represents a resource.

Tool Count5/5

17 tools cover the breadth of TLPT activities (scoping, simulation, findings, compliance) without being overwhelming. Each tool serves a distinct part of the workflow, making the count well-scoped for domain complexity.

Completeness4/5

The tool set covers major TLPT lifecycle phases: preparation (threat_profile), scenario generation (generate_scenarios, auto_simulate), execution mapping (attack_chain, mitre_map), findings (finding_register, remediation_plan), compliance (obligation_map, sync_to_ampel), and scheduling (test_calendar). Minor gaps like a dedicated reporting tool exist but can be worked around.

Available Tools

17 tools
attack_chainInspect

Generate kill chain for a TIBER-EU scenario with MITRE mapping.

ParametersJSON Schema
NameRequiredDescriptionDefault
scenario_idYesTIBER-01 to TIBER-08
auto_simulateInspect

Autonomous TLPT simulation: generates TIBER-EU scenarios, maps MITRE ATT&CK, creates findings, rates detection. Art. 26.

ParametersJSON Schema
NameRequiredDescriptionDefault
entity_idYes
scenariosNoNumber of scenarios (default: 3)
evidence_bundleInspect

Compile TLPT evidence for authority attestation.

ParametersJSON Schema
NameRequiredDescriptionDefault
exercise_idYes
finding_registerInspect

Log a pentest/TLPT finding.

ParametersJSON Schema
NameRequiredDescriptionDefault
titleYes
severityYes
attack_pathNo
exercise_idNo
recommendationNo
mitre_techniqueNo
system_affectedNo
detection_statusNo
generate_scenariosInspect

List all 8 TIBER-EU scenarios available for autonomous simulation.

ParametersJSON Schema
NameRequiredDescriptionDefault

No parameters

health_checkInspect

Server status.

ParametersJSON Schema
NameRequiredDescriptionDefault

No parameters

mitre_mapInspect

Map MITRE ATT&CK techniques to DORA TLPT. Filter by technique ID or tactic.

ParametersJSON Schema
NameRequiredDescriptionDefault
tacticNo
techniqueNo
obligation_mapInspect

TLPT obligations DORA-TST-06 to TST-10.

ParametersJSON Schema
NameRequiredDescriptionDefault

No parameters

phase_trackerInspect

Track TIBER-EU 8-phase lifecycle.

ParametersJSON Schema
NameRequiredDescriptionDefault
exercise_idYes
phase_statusNo
update_phaseNoPhase 1-8 to update
pingInspect

Connectivity test.

ParametersJSON Schema
NameRequiredDescriptionDefault

No parameters

register_exerciseInspect

Register a TLPT/pentest exercise.

ParametersJSON Schema
NameRequiredDescriptionDefault
notesNo
scopeNo
statusNo
test_typeNo
budget_eurNo
start_dateNo
exercise_idNo
ti_providerNo
exercise_nameYes
target_end_dateNo
red_team_providerNo
authority_notifiedNo
remediation_planInspect

Track remediation of TLPT findings. Set add=true to create.

ParametersJSON Schema
NameRequiredDescriptionDefault
addNo
ownerNo
actionNo
due_dateNo
finding_idNo
exercise_idNo
sync_to_ampelInspect

Push TLPT results to AmpelOracle Art. 26 checks.

ParametersJSON Schema
NameRequiredDescriptionDefault
entity_idYes
team_assignmentInspect

Manage Red/Blue/White/Purple team assignments.

ParametersJSON Schema
NameRequiredDescriptionDefault
red_teamNo
blue_teamNo
white_teamNo
exercise_idYes
purple_teamNo
test_calendarInspect

Annual testing schedule and compliance check.

ParametersJSON Schema
NameRequiredDescriptionDefault
yearNo
threat_profileInspect

Define threat landscape for TLPT scoping.

ParametersJSON Schema
NameRequiredDescriptionDefault
sectorNo
geographyNo
exclusionsNo
exercise_idYes
crown_jewelsNo
threat_actorsNo
attack_scenariosNo
critical_systemsNo
tlpt_readinessInspect

Assess organizational readiness for a TLPT exercise.

ParametersJSON Schema
NameRequiredDescriptionDefault
scope_definedNo
budget_approvedNo
legal_frameworkNo
authority_engagedNo
red_team_selectedNo
white_team_formedNo
ti_provider_selectedNo
crown_jewels_identifiedNo

Discussions

No comments yet. Be the first to start the discussion!

Try in Browser

Your Connectors

Sign in to create a connector for this server.

Resources