mcp-defectdojo
Related Servers
Alternatives to mcp-defectdojo
No user-submitted related servers found.
Related Servers
- AlicenseCqualityBmaintenanceA Model Context Protocol (MCP) server that provides comprehensive access to DefectDojo vulnerability management platform.78MIT
- AlicenseBqualityDmaintenanceProvides a Model Context Protocol server implementation that allows AI agents and other MCP clients to programmatically interact with DefectDojo, a vulnerability management tool, for managing findings, products, and engagements.1163 PyPI16MIT
- FlicenseNot gradedqualityDmaintenanceA Model Context Protocol server for automated security vulnerability assessment, combining OWASP Dependency-Check dependency scanning with custom code vulnerability detection, and generating detailed HTML and JSON reports.-
- AlicenseAqualityBmaintenanceMCP server for offensive-security tooling, enabling AI agents to run reconnaissance, CVE intelligence, JavaScript analysis, HTTP probing, and port scanning against authorized targets.10MIT
- FlicenseNot gradedqualityDmaintenanceA lightweight MCP server that wraps OWASP ZAP's REST API as Model Context Protocol tools, enabling AI agents to perform automated security scanning.-
- AlicenseNot gradedqualityDmaintenanceAn MCP server that exposes the pentest reporting and automation features of SysReptor as programmable tools for AI agents and automated workflows. It enables users to manage findings, projects, and templates through a standardized interface by wrapping the reptor CLI.10MIT
TDQS
Scored across 24 tools
Each tool targets a distinct entity and action (e.g., product, engagement, test, finding, tags, scans). Detailed descriptions and unique argument sets prevent confusion. No two tools overlap in purpose.
All tool names follow a consistent verb_noun snake_case pattern (e.g., create_product, list_findings, close_finding). Even health_check fits the pattern. No mixing of styles or ambiguous verbs.
24 tools is slightly above the ideal range but still reasonable given the breadth of DefectDojo's API (products, engagements, tests, findings, notes, tags, scans). Each tool serves a clear need; no superfluous tools.
The toolset covers CRUD for findings and basic operations for products, engagements, and tests. However, missing update endpoints for product and engagement, and no delete operations anywhere, which are notable gaps for full lifecycle management.