Skip to main content
Glama

Related Servers

Alternatives to nist-mcp

No user-submitted related servers found.

    Related Servers

    • A
      license
      Not graded
      quality
      D
      maintenance
      Provides comprehensive access to NIST cybersecurity frameworks and controls, enabling AI assistants and applications to query, analyze, and manage NIST security controls through a standardized interface.
      10
      MIT
    • A
      license
      Not graded
      quality
      B
      maintenance
      Enables users to look up, search, and browse NIST 800-53 and 800-171 security controls, including full control text, guidance, and related controls. Supports natural-language queries and control-family exploration for compliance and security research.
      2 npm
      MIT
    • A
      license
      Not graded
      quality
      C
      maintenance
      Enables querying CVE vulnerability data from the NIST National Vulnerability Database, including CVE lookup, product/version search via CPE filters, CVSS severity scores, and recent high-severity disclosures.
      2 npm
      MIT
    • A
      license
      A
      quality
      D
      maintenance
      Provides live CVE data from NVD and EPSS without API key, enabling AI assistants to look up CVSS scores, search vulnerabilities, and check product CVEs.
      3
      MIT
    • A
      license
      A
      quality
      C
      maintenance
      Enables AI agents to search, retrieve, and analyze vulnerability data from the NIST National Vulnerability Database through a comprehensive Model Context Protocol server.
      8
      8
      MIT
    • A
      license
      B
      quality
      D
      maintenance
      Provides conversational access to a local CVE (Common Vulnerabilities and Exposures) database, enabling natural language queries to search vulnerabilities, retrieve detailed CVE information, and view security statistics.
      3
      MIT

    TDQS

    A4.1/5.0

    Scored across 20 tools

    Disambiguation4/5

    Most tools have distinct purposes with clear boundaries, such as get_control for detailed control information versus search_controls for finding controls. However, some overlap exists between search_nist and domain-specific search tools, which could cause confusion about which to use first, though descriptions help clarify their roles.

    Naming Consistency5/5

    Tool names follow a highly consistent verb_noun pattern throughout, such as get_control, search_cves, and update_database. This predictability makes it easy for agents to understand and navigate the toolset without naming confusion.

    Tool Count4/5

    With 20 tools, the count is slightly high but reasonable for the broad scope of NIST cybersecurity data, covering publications, controls, vulnerabilities, and frameworks. It might feel heavy, but each tool appears to serve a specific function without obvious redundancy.

    Completeness5/5

    The toolset provides comprehensive coverage for the NIST cybersecurity domain, including CRUD-like operations (e.g., get, search, update), cross-referencing, and content retrieval. No significant gaps are apparent, supporting full agent workflows from discovery to detailed analysis.

    Maintenance

    ActivityInactive
    ResponsivenessNo issues