Agentβ™₯︎Age
Catalog

GhostFree

Official

by shane-js Β· TypeScript

MCP server that scans your repo's dependencies for security vulnerabilities based on published CVEs.

MCP server that scans a repo’s dependencies for security vulnerabilities based on published CVEs. It uses OSV.dev to detect issues, enriches findings with NVD and CISA KEV data for triage, and supports managing accepted risks from within an AI coding assistant.

πŸ› οΈ Key Features

  • Scans repository dependencies for known vulnerabilities tied to CVEs
  • Uses OSV.dev as the CVE source
  • Enriches findings with NVD and CISA KEV information
  • Enables acceptance/risk management for findings

πŸš€ Use Cases

  • Identify dependency vulnerabilities in a code repository
  • Triage vulnerability findings using NVD and CISA KEV enrichment
  • Record and manage accepted risks while remediating issues

⚑ Developer Benefits

  • Helps surface CVE-based dependency issues in the workflow of an AI coding assistant
  • Provides enriched context (NVD, CISA KEV) to support decision-making

⚠️ Limitations

  • Documentation excerpt provided does not describe setup details, scanning scope options, or output format.

Related servers

More in Security