Attestd MCP
UnclaimedOfficial MCP server for Attestd. Use Attestd supply chain and CVE signals directly in Claude Code, Cursor, and Windsurf.
Unclaimed listing
Is this your MCP server?
This listing was auto-indexed from the public record. Claim it to edit the page, set compatibility and unlock growth tools. Takes under two minutes.
Claim this serverTools (27)
activelyExploited
CISA KEV signal
affectedProducts
Attestd product slugs affected by this CVE
authenticationRequired
true only when all matching CVEs require authentication
check_batch_vulnerabilities
check_package_vulnerability
confidence
Synthesis confidence 0.0–1.0
count
Number of bundled infrastructure products
cve_id
string
cveId
CVE identifier
cveIds
CVE IDs contributing to the risk assessment
cveProducts
CVE infrastructure slugs with display names
description
NVD description text
found
true when the CVE is in Attestd's database; false on 404 (not an error)
get_cve_details
items
array
list_covered_products
No arguments. With an API key, returns live JSON from GET /v1/products:
message
Explanation when outsideCoverage is true
outsideCoverage
true if the product is not covered. Unknown risk, not safe.
product
string
products
Array of { slug, display } entries
remoteExploitable
true if any matching CVE is remotely exploitable
riskState
critical \
source
"live" when fetched from the API
supplyChainPackages
Monitored PyPI/npm packages
total
Combined count of CVE products and supply chain packages
typosquat
Package name integrity: typosquat or AI-hallucinated name (kind, resembles, likelyintended)
version
string