dsh-vulnerability-remediation-proof
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@dsh-vulnerability-remediation-proofverify my closure receipt for deadline compliance and zero-residual closure"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
dsh-vulnerability-remediation-proof
Offline, deterministic evidence that a supplied vulnerability-remediation campaign covered every declared asset, deployed one fixed artifact, rescanned after deployment, met its remediation deadline and reached fresh zero-residual closure. Inputs and reports contain hashes and bounded public metadata only—never hostnames, addresses, scan bodies or secrets.
This is deliberately not a scanner or patch manager. DeepSec scans DSH code and upstream-radar monitors dependency vulnerabilities; operational platforms deploy patches. This plugin performs no discovery, scanning, installation, mitigation or live-system query. It only recomputes a redacted settlement verdict from explicit receipts.
npm test
npm run check
node bin/dsh-vulnerability-remediation-proof.mjs verify examples/closed.jsonDSH tools: dsh_vulnerability_remediation_inspect and dsh_vulnerability_remediation_verify. MCP exposes equivalent proof-only inline tools. Reports explicitly retain authenticatesReceipts: false, provesAssetSetExhaustive: false, and provesAbsenceOfOtherVulnerabilities: false.
References: NIST SP 800-40 Rev. 4 and NIST SP 1800-31.
MIT licensed.
This server cannot be deployed
Maintenance
Related MCP Connectors
Read-only verifier for 25 ProofRelay MCP tools and non-confidential evidence bundles.
Read-only CVE intelligence, remediation playbooks, and agent setup guides. Not a scanner.
Verify Seal AI decision receipts: signed evidence anyone can check, no account needed.
Read-only AI coding tools for change verification, release readiness, capacity, and guidance.
Related MCP Servers
- AlicenseAqualityFmaintenanceRead-only ProofRelay MCP verifier for non-confidential evidence bundles. Exposes 22 public-safe tools, 11 resources, and 11 prompts for bundle integrity checks, receipt-chain review, checkpoint recommendations, MCP risk metadata review, and real-estate closing proof-pack readiness.5MIT
- FlicenseNot gradedqualityDmaintenanceEnables spec-driven development acceptance gate with structured receipts, audit logs, and reviewer-ready evidence.-
- FlicenseNot gradedqualityBmaintenanceA sovereign compliance engine with 36,195 STIG/CCI/NIST/CMMC mappings and 76 tools, enabling AI assistants to scan systems, generate risk reports, and ensure post-quantum cryptographic attestation—all air-gappable with zero token costs.1-
- AlicenseNot gradedqualityCmaintenanceLets users inspect and verify content-addressed schema migration evidence offline, checking idempotence, reversible rollback, required invariants, and explicit lossy-field disclosure without executing migrations or accessing data.MIT