Skip to main content
Glama
jeneric
by jeneric

Related Servers

Alternatives to stig-mcp

No user-submitted related servers found.

    Related Servers

    • A
      license
      A
      quality
      D
      maintenance
      Enables AI-native access to the MITRE ATT\&CK framework, allowing LLMs and agents to query techniques, threat groups, software, and generate ATT\&CK Navigator layers for threat intelligence and security workflows.
      65
      54 npm
      5
      Apache 2.0
    • F
      license
      Not graded
      quality
      D
      maintenance
      Enables querying the MITRE ATT\&CK framework for adversarial tactics, techniques, mitigations, and detection methods through natural language, supporting both ID-based and fuzzy name-based searches.
      3
      -
    • F
      license
      Not graded
      quality
      D
      maintenance
      Provides search, detail lookup, and gap listing tools for a security control inventory, enabling natural language queries about control status and gaps.
      -
    • A
      license
      Not graded
      quality
      B
      maintenance
      Enables querying MITRE ATT&CK STIX data, including adversary tactics, techniques, and procedures, via an MCP server connected to the Pipeworx gateway.
      185 npm
      MIT

    TDQS

    A4.1/5.0

    Scored across 8 tools

    Disambiguation4/5

    Tools are largely distinct: search_techniques finds ATT&CK techniques, mitigations_for_technique maps a technique, techniques_for_actor maps an actor, and finding_details fetches check/fix text. Minor overlap exists between mitigations_for_technique and techniques_for_actor with include_mitigations, and resolve_system vs list_stigs both surface STIGs, but the descriptions differentiate them well.

    Naming Consistency3/5

    All names use snake_case, but the set mixes verb_noun names (search_techniques, resolve_system, list_stigs, install_knowledge_base, check_sources) with noun_phrase names (mitigations_for_technique, techniques_for_actor, finding_details). The pattern is readable but not a single predictable convention.

    Tool Count5/5

    Eight tools is well within the 3-15 range and each has a clear role: discovery, mapping, detail retrieval, system resolution, STIG listing, and knowledge-base lifecycle. No tool feels redundant or missing from a count perspective.

    Completeness4/5

    The surface covers the primary workflow: find technique or actor, get mapped controls/findings, then fetch DISA check/fix text, plus STIG discovery and KB install/check. Some reverse-lookup or bulk-finding operations are absent, such as control-to-technique lookup or all findings for a STIG, but agents can work around these via existing mapping and detail tools.

    Maintenance

    ActivityMaintained
    ResponsivenessNo issues