Skip to main content
Glama
dmc5179

Red Hat Security Data API MCP Server

by dmc5179

Red Hat Security Data API MCP Server

A Model Context Protocol (MCP) server that gives LLMs like Claude access to the Red Hat Security Data API. Query CSAF advisories, CVEs, and OVAL stream data through natural language.

What It Does

This server exposes six tools that wrap the Red Hat Security Data API v1.0:

Tool

Description

search_csaf

Search CSAF advisory documents by date, severity, CVE, package, or RHSA ID

get_csaf_details

Get the full CSAF document for a specific advisory

search_cves

Search CVEs by date, severity, CVSS score, CWE, package, or product

get_cve_details

Get full CVE details including affected releases and mitigations

list_oval_streams

List available OVAL v2 stream files

get_oval_stream

Get OVAL stream data for a specific product (e.g. RHEL9)

Quick Start

npm install
npm run build
npm start

The server runs over stdio using the MCP protocol. See the docs below for connecting it to Claude Desktop or other MCP clients.

Documentation

Project Structure

src/
  index.ts          MCP server entry point and tool registration
  api-client.ts     HTTP client for the Red Hat Security Data API
  tools/
    csaf.ts         search_csaf, get_csaf_details
    cve.ts          search_cves, get_cve_details
    oval.ts         list_oval_streams, get_oval_stream
Containerfile       Multi-stage production build
build.sh            Container image build script (Podman)
podman-compose.yml  Local testing configuration (podman compose)

License

See LICENSE.