Endpoints: 28,729MCP servers: 18,413Payout addresses: 2,071Paid calls: 1,539Letters: 14Defects: 1,323counted just now
teppi

Server definition

Hash
sha256:27698744d7e5bbb2140840404d00aee1a9c14d270b1aecab6be5b5ec542d2768
What it is
What a remote MCP server returned when asked what it offers: 16 tools

The blob, as servednamed by its sha256

{ "instructions": null, "tools": [ { "description": "Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flow. If your policy requires approval it returns 'requires_approval' rather than acting.", "inputSchema": { "additionalProperties": false, "properties": { "resource_context": { "description": "provider/resource_id/region/account_id/metadata", "type": "object" }, "rule_id": { "description": "Policy/rule id (e.g. AWS_S3_PUBLIC_ACCESS)", "type": "string" }, "threat_id": { "description": "Threat id/code to remediate", "type": "string" } }, "required": [ "threat_id", "rule_id" ], "type": "object" }, "name": "apply_remediation", "outputSchema": null }, { "description": "Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline review and the traceability matrix.", "inputSchema": { "additionalProperties": false, "properties": { "scan_id": { "description": "Id of an existing code-review scan to (re)run", "type": "string" } }, "required": [ "scan_id" ], "type": "object" }, "name": "code_review_scan", "outputSchema": null }, { "description": "Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to poll.", "inputSchema": { "additionalProperties": false, "properties": { "account_id": { "description": "Cloud account id (account-scoped scans)", "type": "string" }, "diagram_id": { "description": "Diagram id/uuid (diagram-scoped scans)", "type": "string" }, "frameworks": { "description": "Optional standard/framework ids to scope the scan", "items": { "type": "string" }, "type": "array" }, "scan_type": { "description": "platform | compliance | pipeline | sbom", "enum": [ "platform", "compliance", "pipeline", "sbom", "diagram", "account" ], "type": "string" }, "severity_filter": { "description": "Optional severity levels to include", "items": { "type": "string" }, "type": "array" }, "simulation_mode": { "description": "Dry-run the scan without side effects", "type": "boolean" }, "source": { "description": "Scan source (default: hybrid)", "type": "string" } }, "required": [ "scan_type" ], "type": "object" }, "name": "compliance_scan", "outputSchema": null }, { "description": "Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting.", "inputSchema": { "additionalProperties": false, "properties": { "diagram_id": { "description": "Optional diagram id filter", "type": "string" }, "scan_id": { "description": "Optional scan id filter", "type": "string" } }, "required": [], "type": "object" }, "name": "compliance_status", "outputSchema": null }, { "description": "Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async).", "inputSchema": { "additionalProperties": false, "properties": { "scan_id": { "description": "Scan id with uploaded code or repository", "type": "string" } }, "required": [ "scan_id" ], "type": "object" }, "name": "discover_shadow_ai", "outputSchema": null }, { "description": "Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-generates threats. Returns the diagram id.", "inputSchema": { "additionalProperties": false, "properties": { "edges": { "description": "ReactFlow edges", "items": { "type": "object" }, "type": "array" }, "name": { "description": "Threat model name", "type": "string" }, "nodes": { "description": "ReactFlow nodes (each: id, position, data.label)", "items": { "type": "object" }, "type": "array" } }, "required": [ "nodes" ], "type": "object" }, "name": "generate_threat_model", "outputSchema": null }, { "description": "API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. Company-wide or one scan with `scan_id`. Reads code_review ApiEndpointDiscovery.", "inputSchema": { "additionalProperties": false, "properties": { "limit": { "default": 20, "description": "Max endpoints to return", "type": "integer" }, "scan_id": { "description": "Optional CodeReviewScan id; company-wide if omitted", "type": "string" } }, "required": [], "type": "object" }, "name": "get_api_security", "outputSchema": null }, { "description": "Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasable plans, and any approved-but-unpaid plans. Pass `checkout_request_id` to get a hosted Stripe Checkout URL to COMPLETE an approved plan, `topup_amount` (EUR) to get one to TOP UP the wallet, or `request_plan` (starter|pay_per_use|pro|max|enterprise) to REQUEST a plan (files a request for super-admin approval — never grants). Use this to view or RESOLVE a 402 without leaving the connector.", "inputSchema": { "additionalProperties": false, "properties": { "checkout_request_id": { "description": "Approved license_request_id to complete payment for (returns a hosted Checkout URL)", "type": "string" }, "request_plan": { "description": "Optional plan key to request (pro|max|…) — files a request for super-admin approval; does not grant or charge", "type": "string" }, "topup_amount": { "description": "Optional EUR amount to top up the credit wallet (returns a hosted Checkout URL)", "type": "number" } }, "required": [], "type": "object" }, "name": "get_billing", "outputSchema": null }, { "description": "Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/records, status — plus a company rollup. Reads customers.Account.latest_scan -> compliances.ScanResults.", "inputSchema": { "additionalProperties": false, "properties": { "account_id": { "description": "Optional single cloud Account id; all company accounts if omitted", "type": "string" } }, "required": [], "type": "object" }, "name": "get_cloud_compliance", "outputSchema": null }, { "description": "The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage.", "inputSchema": { "additionalProperties": false, "properties": { "diagram_id": { "description": "Diagram id/uuid", "type": "string" } }, "required": [ "diagram_id" ], "type": "object" }, "name": "get_diagram_summary", "outputSchema": null }, { "description": "Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc.", "inputSchema": { "additionalProperties": false, "properties": { "diagram_id": { "description": "Diagram id/uuid", "type": "string" }, "framework": { "description": "Optional framework filter (e.g. eu-ai-act, dora, nist, iso)", "type": "string" }, "include_graph": { "description": "Include crossmap relationship graph", "type": "boolean" } }, "required": [ "diagram_id" ], "type": "object" }, "name": "get_framework_coverage", "outputSchema": null }, { "description": "Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists.", "inputSchema": { "additionalProperties": false, "properties": { "diagram_id": { "description": "Diagram id/uuid", "type": "string" } }, "required": [ "diagram_id" ], "type": "object" }, "name": "get_insights", "outputSchema": null }, { "description": "Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gates, and returns the proposed steps.", "inputSchema": { "additionalProperties": false, "properties": { "resource_context": { "description": "provider/resource_id/region/account_id/metadata", "type": "object" }, "rule_id": { "description": "Policy/rule id (e.g. AWS_S3_PUBLIC_ACCESS)", "type": "string" }, "threat_id": { "description": "Threat id/code to remediate", "type": "string" } }, "required": [ "threat_id", "rule_id" ], "type": "object" }, "name": "get_remediation", "outputSchema": null }, { "description": "Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics.", "inputSchema": { "additionalProperties": false, "properties": { "scan_id": { "description": "Code-review scan id", "type": "string" } }, "required": [ "scan_id" ], "type": "object" }, "name": "get_traceability", "outputSchema": null }, { "description": "Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_cards` (name/url/provider/version/protocolVersion), or MCP client descriptors, under an optional `cohort` + shared auto-suspend policy. Idempotent. Requires the agent_governance licence + a manage:agents grant (or a first-party super-admin). Agents also self-onboard on first token/call.", "inputSchema": { "additionalProperties": false, "properties": { "agent_cards": { "description": "A2A 1.0 Agent Cards ({name, url, provider, version, protocolVersion, ...})", "items": { "type": "object" }, "type": "array" }, "agents": { "description": "Agent ids or descriptors ({agent_id, display?, cohort?})", "items": {}, "type": "array" }, "auto_suspend_threshold": { "description": "Optional 0..1 auto-suspend deviation threshold for the cohort policy", "type": "number" }, "cohort": { "description": "Optional shared cohort (provider/model/deployment group)", "type": "string" } }, "required": [], "type": "object" }, "name": "onboard_agents", "outputSchema": null }, { "description": "Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise dispatches batch verification across all diagram threats.", "inputSchema": { "additionalProperties": false, "properties": { "code_content": { "description": "Optional inline code snippet to verify", "type": "string" }, "repository_id": { "description": "Optional repository id", "type": "string" }, "scan_id": { "description": "Code review scan id", "type": "string" }, "threat_id": { "description": "Optional specific threat id/code to verify", "type": "string" } }, "required": [ "scan_id" ], "type": "object" }, "name": "verify_threats_in_code", "outputSchema": null } ] }
Verify it yourselfcurl -s https://api.teppi.xyz/v1/evidence/sha256:27698744d7e5bbb2140840404d00aee1a9c14d270b1aecab6be5b5ec542d2768 | sha256sum