dsh-vulnerability-remediation-proof
dsh-vulnerability-remediation-proof
Офлайн-детерминированное доказательство того, что предоставленная кампания по устранению уязвимостей охватила все заявленные активы, развернула один исправленный артефакт, провела повторное сканирование после развертывания, уложилась в срок устранения и достигла свежего нулевого остаточного закрытия. Входные данные и отчеты содержат только хэши и ограниченные публичные метаданные — никогда не содержат имена хостов, адреса, тела сканирования или секреты.
Это намеренно не сканер и не менеджер исправлений. DeepSec сканирует код DSH, а upstream-radar отслеживает уязвимости зависимостей; операционные платформы развертывают исправления. Этот плагин не выполняет обнаружение, сканирование, установку, смягчение или запросы к живым системам. Он лишь пересчитывает сокращенный вердикт урегулирования на основе явных квитанций.
npm test
npm run check
node bin/dsh-vulnerability-remediation-proof.mjs verify examples/closed.jsonИнструменты DSH: dsh_vulnerability_remediation_inspect и dsh_vulnerability_remediation_verify. MCP предоставляет эквивалентные встроенные инструменты, работающие только с доказательствами. В отчетах явно сохраняются authenticatesReceipts: false, provesAssetSetExhaustive: false и provesAbsenceOfOtherVulnerabilities: false.
Ссылки: NIST SP 800-40 Rev. 4 и NIST SP 1800-31.
Лицензия MIT.
This server cannot be installed
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Servers
- AlicenseAqualityAmaintenanceRead-only ProofRelay MCP verifier for non-confidential evidence bundles. Exposes 22 public-safe tools, 11 resources, and 11 prompts for bundle integrity checks, receipt-chain review, checkpoint recommendations, MCP risk metadata review, and real-estate closing proof-pack readiness.5MIT
- FlicenseNot gradedqualityDmaintenanceEnables spec-driven development acceptance gate with structured receipts, audit logs, and reviewer-ready evidence.
- FlicenseNot gradedqualityBmaintenanceA sovereign compliance engine with 36,195 STIG/CCI/NIST/CMMC mappings and 76 tools, enabling AI assistants to scan systems, generate risk reports, and ensure post-quantum cryptographic attestation—all air-gappable with zero token costs.1
- AlicenseNot gradedqualityCmaintenanceLets users inspect and verify content-addressed schema migration evidence offline, checking idempotence, reversible rollback, required invariants, and explicit lossy-field disclosure without executing migrations or accessing data.MIT
Related MCP Connectors
Read-only CVE intelligence, remediation playbooks, and agent setup guides. Not a scanner.
Verify PyPI and npm packages, symbols, and version diffs against real artifacts. Free, no account.
Verifies AI agent work end to end: real artifacts and outcomes checked, not self-reported success.
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/dongsheng123132/dsh-vulnerability-remediation-proof'
If you have feedback or need assistance with the MCP directory API, please join our Discord server