Skip to main content
Glama

Server Configuration

Describes the environment variables required to run the server.

NameRequiredDescriptionDefault
OPENAI_API_KEYNoFallback OpenAI API key if TBMCP_OPENAI_API_KEY is not set.
TBMCP_SECRET_KEYNoFlask secret key for session signing.dev-secret-key-change-me
TBMCP_OPENAI_MODELNoOpenAI model for agent tasks.gpt-4o-mini
TBMCP_MCP_SERVER_URLNoMCP server JSON-RPC endpoint used by the web app proxy.http://localhost:5002/mcp
TBMCP_OPENAI_API_KEYNoPrimary OpenAI API key used by agent endpoints.
TBMCP_MCP_SERVER_TOKENNoShared secret token between web app and MCP server.tbmcp-mcp-token

Capabilities

Features and capabilities supported by this server

CapabilityDetails
tools
{
  "listChanged": false
}
prompts
{
  "listChanged": false
}
resources
{
  "subscribe": false,
  "listChanged": false
}
experimental
{}

Tools

Functions exposed to the LLM to take actions

NameDescription
cases.createC

Create a new security case.

cases.listC

List cases. Accepts optional owner_id.

cases.list_allC

List all cases.

cases.getC

Get a case by id (ownership not enforced).

cases.renameC

Rename a case by id.

cases.set_statusC

Set case status (open | resolved | closed).

cases.deleteB

Delete a case by id.

notes.createC

Create a note for a case.

notes.listC

List notes for a case.

notes.updateC

Update a note by id (ownership not enforced).

notes.deleteB

Delete a note by id (ownership not enforced).

files.uploadC

Upload a file as base64.

files.listC

List files for a case.

files.getC

Get a file by id (returns base64).

files.read_pathC

Read a filesystem path.

indicators.searchC

Search mock IOC dataset.

agent.summarize_caseD

Summarize case notes.

agent.run_taskC

Run an analyst task over case context.

tools.registry.listB

List registered tools available to the agent.

tools.registry.registerC

Register or update a tool definition via schema JSON.

tools.registry.deleteC

Delete a registered tool by name.

tools.builtin.listB

List built-in tools bundled with the server.

Prompts

Interactive templates invoked by user choice

NameDescription

No prompts

Resources

Contextual data attached and managed by the client

NameDescription

No resources

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/anotherik/ThreatByte-MCP'

If you have feedback or need assistance with the MCP directory API, please join our Discord server