purify-feeds-mcp
Click on "Install Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@purify-feeds-mcpWhich CVEs entered CISA KEV in the last 7 days?"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
purify-feeds-mcp
MCP server for Purify's production security-intelligence feeds. Lets Claude Desktop, Cursor and other MCP clients query live CISA KEV / EPSS / enriched vulnerability feeds — every answer carries an auditable feed version and full per-record provenance.
The feeds behind this server are continuously scheduled, quality-gated and
self-healing. Each record ships with a _purify data passport: where it was
fetched from, when, with which extractor, and the hash of the raw artifact it
came from.
Tools
Tool | Purpose |
| List feeds with record counts and current version (dataset artifact hash) |
| AND filters / sort / up to 50 rows, plus an exact |
| Return a record's |
| Incremental primitive: compare a known hash to detect new feed versions |
Related MCP server: NVD MCP Server
Feeds
Name | Contents |
| CISA Known Exploited Vulnerabilities catalog |
| EPSS high-risk slice (exploit prediction scores) |
| EPSS + KEV joined view with risk bands |
Install
go install github.com/eason4kim-rocket/purify-feeds-mcp@latestOr use the Docker image (no Go toolchain needed):
docker pull ghcr.io/eason4kim-rocket/purify-feeds-mcp:latestOr build from source:
git clone https://github.com/eason4kim-rocket/purify-feeds-mcp
cd purify-feeds-mcp && go build .Configure (Claude Desktop)
~/Library/Application Support/Claude/claude_desktop_config.json:
{
"mcpServers": {
"purify-feeds": {
"command": "/path/to/purify-feeds-mcp",
"env": {
"PURIFY_API_URL": "https://feeds.verifly.pro/feeds-api",
"PURIFY_API_KEY": "<your-api-key>"
}
}
}
}Or with Docker (the image defaults PURIFY_API_URL to the public gateway):
{
"mcpServers": {
"purify-feeds": {
"command": "docker",
"args": ["run", "-i", "--rm", "-e", "PURIFY_API_KEY",
"ghcr.io/eason4kim-rocket/purify-feeds-mcp:latest"],
"env": { "PURIFY_API_KEY": "<your-api-key>" }
}
}
}The public gateway is read-only (GET only, feed whitelist, per-key rate
limits). Health check: https://feeds.verifly.pro/healthz — no key needed.
API keys are issued manually during the pilot — open an issue or
contact the maintainer to get one.
Environment variables
PURIFY_API_URL— feeds API base URL (defaulthttp://127.0.0.1:8091for local/dev use)PURIFY_API_KEY— API key, sent as a bearer token (required for the public gateway)PURIFY_FEEDS— override the built-in feed table:name=spec_id,...
Example prompts
"Which CVEs entered CISA KEV in the last 7 days? Give vendors and remediation due dates."
"How many CVEs have EPSS > 0.99 and are in KEV? Top 5?"
"Where does the data for CVE-2026-45659 come from?" (
get_provenancereturns the full passport)Agent loops: remember
artifact_hash, callcheck_feed_changedfirst on the next run, and only re-triage when the feed actually changed.
License
MIT
This server cannot be installed
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Servers
- AlicenseAqualityAmaintenanceThis MCP server transforms Claude into a comprehensive security analyst by providing access to 27 security tools across 21 APIs for vulnerability intelligence. It enables users to query multiple sources like NVD, EPSS, CISA KEV, and threat intelligence platforms in parallel to get correlated security insights and risk assessments for CVEs.Last updated281,099Apache 2.0
- AlicenseAqualityAmaintenanceMCP server for the NIST National Vulnerability Database — lets AI assistants search CVEs by keyword, severity, CPE, CWE, KEV status, and date range via natural language.Last updated2GPL 3.0
- Alicense-qualityBmaintenanceMCP server to query and manage CISA Known Exploited Vulnerabilities catalog with EPSS overlay, enabling vulnerability checks and remediation deadline tracking.Last updatedMIT
- AlicenseAqualityAmaintenanceUnifies NVD, EPSS, CISA KEV, GitHub Advisory, and OSV into a single MCP server, enabling AI agents to query vulnerability intelligence conversationally with 23 tools for incident response, prioritization, dependency audits, and threat monitoring.Last updated4132418MIT
Related MCP Connectors
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
CVE search, vulnerability database, EPSS exploit prediction, KEV, IP reputation & threat feed.
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/eason4kim-rocket/purify-feeds-mcp'
If you have feedback or need assistance with the MCP directory API, please join our Discord server