MCP serverio.github.megabrainee/sectora
Threat intel + your scans/findings/Shield posture.
Read more
Threat intel + your scans/findings/Shield posture. CVE, EPSS, KEV, package vuln lookup, DAST.Overview
Score?
UNRATED 0.771
of what a free look can see, on 32 looks
Looks
36
last 4 hr ago
Tools
14
More info
URL
mcp.sectora.io/mcp
streamable-http
Says it is
sectora-mcp-server 1.0.0
protocol 2025-03-26
In the record since
32 days ago
Among servers18,413 with a card
0median 0.606 · this server 0.771 · highest on record 0.8561
Toolsfrom sha256:36a17d04c7…6803c6
| Tool | Schema |
|---|---|
| assess_dependency Check a single package@version for known vulnerabilities via OSV.dev (npm, PyPI, Go, Maven, NuGet, RubyGems, Packagist, crates.io, etc.). Returns advisories with CVE IDs, severity, |
input · no output |
| assess_tech_risk Assess security risk for a list of technologies. Returns known CVEs affecting each technology with severity breakdown. Input: comma-separated technology names only. |
input · no output |
| get_kev_recent Get recently added entries to the CISA Known Exploited Vulnerabilities (KEV) catalog. |
input · no output |
| get_my_posture Get Shield WAF posture score and breakdown for a domain registered under this account. Returns 0-100 score, letter grade, per-component breakdown (origin lock, virtual patching, TL |
input · no output |
| get_scan Get a scan with all its findings (full detail: title, description, evidence, remediation, CVSS). Requires API key. |
input · no output |
| get_threat_stats Get statistics about the Sectora threat intelligence database including counts of EPSS scores, KEV entries, Nuclei templates, and exploits. No input required. |
input · no output |
| get_trending_cves Get currently trending CVEs based on recent KEV additions, high EPSS scores, and exploit availability. |
input · no output |
| get_weaponization_score Get the weaponization score (0-100) for a CVE. Factors in EPSS, KEV status, exploit availability, Nuclei templates, and CVSS. Input must be a valid CVE ID. |
input · no output |
| list_my_findings List the API key owner's open security findings across all scans. Use this to answer "what's my current exposure?" Filter by severity, status, or domain. Returns finding summaries; |
input · no output |
| list_my_scans List the API key owner's recent scans with summary counts. Requires API key. |
input · no output |
| lookup_cve Get full threat intelligence enrichment for a CVE including EPSS score, CISA KEV status, public exploits, Nuclei templates, risk level, and risk factors. Input must be a valid CVE |
input · no output |
| lookup_ip_reputation Look up community IP reputation from Sectora Shield WAF network. Shows if an IP has been reported for attacks. Accepts IPv4 or IPv6 (the Shield network sees both). |
input · no output |
| scan_url Kick off a DAST security scan against a public URL the API key owner controls. Two-step flow: first call returns a preview (target, profile, ETA, quota remaining); confirm by calli |
input · no output |
| search_cves Search for CVEs by keyword, severity, or other filters. Query must be alphanumeric text. |
input · no output |
Verify it yourself
npx teppi-check https://mcp.sectora.io/mcpcurl -s https://api.teppi.xyz/v1/trust/mcp/mcs_01M1FZ2J9W8KYQY1TZG4T1E5NC