Local-first supply-chain CVE scanner. Scans project deps, system packages (Homebrew/apt), and IDE extensions (VS Code, JetBrains) via OSV, NVD, GHSA, EPSS, and CISA KEV. Listed in the official MCP Registry as io.github.DevInder1/tridentchain-security.
A local MCP server that scans repository dependencies for known vulnerabilities (CVEs) using OSV.dev, enriches findings with NVD and CISA KEV data, and supports triage, remediation, and accepted risk management directly from an AI coding assistant.
An MCP server that scans your lockfiles (npm, PyPI, Go, Rust, Ruby, PHP) for known vulnerabilities, enriches with EPSS exploit probability scores, and recommends fix versions. $14/mo — not per-seat.