Fleet Scan
fleet_scanScan a list of MCP server names against the security metadata registry to assess per-server risk. Returns match status, risk category, known CVEs, and verdict.
Instructions
Batch-scan a list of MCP server names against the security metadata registry.
Designed for fleet inventory data (EDR, SIEM, CSV exports) where
you have server names but not versions. Returns per-server risk assessment
with registry match status, risk category, tools, credentials, known CVEs,
and a verdict (known-high-risk, known-medium, known-low, unknown-unvetted).
Risk levels are category-derived (filesystem=high, database=medium,
search=low), not made-up threat scores. Every field is traceable to a source.
Returns:
JSON with summary (total, matched, unmatched, risk breakdown)
and per-server details.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| servers | Yes | Comma-separated or newline-separated list of MCP server names to scan. E.g. '@modelcontextprotocol/server-filesystem, brave-search, glean, 50 sleep'. |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| result | Yes |