{"$schema":"https://wellknown.network/schemas/agent-record-v1.json","schemaVersion":"1","id":"ag_ncyxn3rxkvuk","handle":"aribot","url":"https://wellknown.network/agents/aribot","links":{"self":"https://wellknown.network/agents/aribot/record.json","html":"https://wellknown.network/agents/aribot","markdown":"https://wellknown.network/agents/aribot/record.md","api":"https://wellknown.network/api/v1/agents/aribot","status":"https://wellknown.network/api/v1/agents/aribot/status","claim":"https://wellknown.network/agents/aribot/claim","claimApi":"https://wellknown.network/api/v1/claims","claimDescriptor":"https://wellknown.network/agents/aribot/claim.json","badge":"https://wellknown.network/agents/aribot/badge.svg","openapi":"https://wellknown.network/openapi.json","history":"https://wellknown.network/api/v1/agents/aribot/history","tools":"https://wellknown.network/api/v1/agents/aribot/tools"},"ard":{"identifier":"urn:air:mcp.aribot.ayurak.com:server:aribot","type":"application/mcp-server-card+json"},"kind":"mcp_server","declared":{"name":"aribot","summary":"Threat modeling, code/cloud/pipeline scanning, shadow-AI discovery, compliance checks and fixes.","description":"Threat modeling, code/cloud/pipeline scanning, shadow-AI discovery, compliance checks and fixes.","publisher":{"name":"aristiun","url":null},"homepage":"https://aribot.ayurak.com","repository":"https://github.com/aristiun/aribot-mcp","version":"1.0.0","license":null,"protocols":["mcp"],"tags":[],"pricing":null,"endpoints":[{"url":"https://mcp.aribot.ayurak.com/mcp","type":"mcp_streamable_http","auth":null,"probeable":true}],"skills":null,"tools":null,"extra":{"updatedAt":"2026-07-13T11:26:54.842871Z","publishedAt":"2026-07-13T11:26:54.842871Z","registryName":"io.github.aristiun/aribot"},"attribution":{"kind":"mcp_registry","name":"mcp_registry","repoUrl":"mcp_registry","summary":"mcp_registry","version":"mcp_registry","description":"mcp_registry","homepageUrl":"mcp_registry","publisherName":"mcp_registry"}},"derived":{"capabilities":[{"slug":"code.review","name":"Code Review","confidence":1,"provenance":"derived"},{"slug":"code.security-review","name":"Security Review","confidence":1,"provenance":"derived"},{"slug":"dev.ci-cd","name":"CI/CD & Deploy","confidence":1,"provenance":"derived"},{"slug":"commerce.payments","name":"Payments","confidence":1,"provenance":"derived"},{"slug":"productivity.crm","name":"CRM & Sales","confidence":0.938,"provenance":"derived"},{"slug":"security.identity","name":"Identity & Access","confidence":0.583,"provenance":"derived"},{"slug":"dev.version-control","name":"Version Control","confidence":0.554,"provenance":"derived"},{"slug":"commerce.ecommerce","name":"E-commerce Operations","confidence":0.54,"provenance":"derived"}],"categories":["code","commerce","dev","productivity","security"],"language":"en"},"observed":{"status":"live","statusReason":"Responded 6h ago.","lastOkAt":"2026-10-09T23:30:39.994Z","lastProbedAt":"2026-10-09T23:30:39.994Z","statusComputedAt":"2026-10-09T23:31:23.184Z","reliability30d":{"probes":109,"successRate":1,"p50Ms":354,"basis":"service","measures":{"availability":"availability","latency":"response time","tools":"tool surface observed","summary":"Checks reached the service itself."},"checks":{"total":109,"ok":109,"authBoundaryOk":0,"serviceOk":109,"note":"Counted from the observation rows for the window, checks of the server only (HTTP, A2A card, MCP initialize). ok = authBoundaryOk + serviceOk. `probes` is the sum of daily rollups and includes registry checks, so it can differ from `total`."}},"latestObservations":[{"at":"2026-10-09T23:30:39.994Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":317,"error":null,"detail":{"tools":[{"name":"get_billing","description":"Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasabl"},{"name":"onboard_agents","description":"Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_c"},{"name":"generate_threat_model","description":"Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-genera"},{"name":"verify_threats_in_code","description":"Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise "},{"name":"get_traceability","description":"Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics."},{"name":"get_framework_coverage","description":"Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc."},{"name":"get_remediation","description":"Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gat"},{"name":"compliance_status","description":"Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting."},{"name":"discover_shadow_ai","description":"Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async"},{"name":"get_api_security","description":"API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. C"},{"name":"get_cloud_compliance","description":"Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/reco"},{"name":"code_review_scan","description":"Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline revi"},{"name":"compliance_scan","description":"Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to"},{"name":"apply_remediation","description":"Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flo"},{"name":"get_diagram_summary","description":"The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage."},{"name":"get_insights","description":"Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists."},{"name":"generate_architecture","description":"Generate a multi-tier cloud/AI architecture and auto-synthesize STRIDE/LINDDUN threat models, security requirements, and regulatory control mappings directly fr"},{"name":"run_ai_governance_audit","description":"Audit an architecture diagram or code scan against statutory AI governance frameworks (EU AI Act 2024, EU DORA 2022, NIST AI RMF 1.0, ISO 42001). Evaluates arti"}],"toolCount":18,"toolsHash":"c52fa7c9eccd361b4b7b693003f5d6219d5a8eb0ac028c0dd62000053bbfb739","serverName":"aribot-mcp","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2024-11-05"}},{"at":"2026-10-09T17:27:56.501Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":798,"error":null,"detail":{"tools":[{"name":"get_billing","description":"Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasabl"},{"name":"onboard_agents","description":"Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_c"},{"name":"generate_threat_model","description":"Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-genera"},{"name":"verify_threats_in_code","description":"Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise "},{"name":"get_traceability","description":"Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics."},{"name":"get_framework_coverage","description":"Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc."},{"name":"get_remediation","description":"Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gat"},{"name":"compliance_status","description":"Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting."},{"name":"discover_shadow_ai","description":"Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async"},{"name":"get_api_security","description":"API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. C"},{"name":"get_cloud_compliance","description":"Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/reco"},{"name":"code_review_scan","description":"Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline revi"},{"name":"compliance_scan","description":"Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to"},{"name":"apply_remediation","description":"Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flo"},{"name":"get_diagram_summary","description":"The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage."},{"name":"get_insights","description":"Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists."},{"name":"generate_architecture","description":"Generate a multi-tier cloud/AI architecture and auto-synthesize STRIDE/LINDDUN threat models, security requirements, and regulatory control mappings directly fr"},{"name":"run_ai_governance_audit","description":"Audit an architecture diagram or code scan against statutory AI governance frameworks (EU AI Act 2024, EU DORA 2022, NIST AI RMF 1.0, ISO 42001). Evaluates arti"}],"toolCount":18,"toolsHash":"c52fa7c9eccd361b4b7b693003f5d6219d5a8eb0ac028c0dd62000053bbfb739","serverName":"aribot-mcp","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2024-11-05"}},{"at":"2026-10-09T11:25:56.984Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":309,"error":null,"detail":{"tools":[{"name":"get_billing","description":"Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasabl"},{"name":"onboard_agents","description":"Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_c"},{"name":"generate_threat_model","description":"Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-genera"},{"name":"verify_threats_in_code","description":"Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise "},{"name":"get_traceability","description":"Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics."},{"name":"get_framework_coverage","description":"Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc."},{"name":"get_remediation","description":"Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gat"},{"name":"compliance_status","description":"Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting."},{"name":"discover_shadow_ai","description":"Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async"},{"name":"get_api_security","description":"API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. C"},{"name":"get_cloud_compliance","description":"Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/reco"},{"name":"code_review_scan","description":"Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline revi"},{"name":"compliance_scan","description":"Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to"},{"name":"apply_remediation","description":"Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flo"},{"name":"get_diagram_summary","description":"The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage."},{"name":"get_insights","description":"Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists."},{"name":"generate_architecture","description":"Generate a multi-tier cloud/AI architecture and auto-synthesize STRIDE/LINDDUN threat models, security requirements, and regulatory control mappings directly fr"},{"name":"run_ai_governance_audit","description":"Audit an architecture diagram or code scan against statutory AI governance frameworks (EU AI Act 2024, EU DORA 2022, NIST AI RMF 1.0, ISO 42001). Evaluates arti"}],"toolCount":18,"toolsHash":"c52fa7c9eccd361b4b7b693003f5d6219d5a8eb0ac028c0dd62000053bbfb739","serverName":"aribot-mcp","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2024-11-05"}},{"at":"2026-10-09T04:29:38.909Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":318,"error":null,"detail":{"tools":[{"name":"get_billing","description":"Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasabl"},{"name":"onboard_agents","description":"Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_c"},{"name":"generate_threat_model","description":"Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-genera"},{"name":"verify_threats_in_code","description":"Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise "},{"name":"get_traceability","description":"Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics."},{"name":"get_framework_coverage","description":"Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc."},{"name":"get_remediation","description":"Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gat"},{"name":"compliance_status","description":"Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting."},{"name":"discover_shadow_ai","description":"Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async"},{"name":"get_api_security","description":"API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. C"},{"name":"get_cloud_compliance","description":"Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/reco"},{"name":"code_review_scan","description":"Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline revi"},{"name":"compliance_scan","description":"Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to"},{"name":"apply_remediation","description":"Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flo"},{"name":"get_diagram_summary","description":"The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage."},{"name":"get_insights","description":"Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists."},{"name":"generate_architecture","description":"Generate a multi-tier cloud/AI architecture and auto-synthesize STRIDE/LINDDUN threat models, security requirements, and regulatory control mappings directly fr"},{"name":"run_ai_governance_audit","description":"Audit an architecture diagram or code scan against statutory AI governance frameworks (EU AI Act 2024, EU DORA 2022, NIST AI RMF 1.0, ISO 42001). Evaluates arti"}],"toolCount":18,"toolsHash":"c52fa7c9eccd361b4b7b693003f5d6219d5a8eb0ac028c0dd62000053bbfb739","serverName":"aribot-mcp","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2024-11-05"}},{"at":"2026-10-08T22:23:59.825Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":319,"error":null,"detail":{"tools":[{"name":"get_billing","description":"Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasabl"},{"name":"onboard_agents","description":"Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_c"},{"name":"generate_threat_model","description":"Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-genera"},{"name":"verify_threats_in_code","description":"Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise "},{"name":"get_traceability","description":"Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics."},{"name":"get_framework_coverage","description":"Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc."},{"name":"get_remediation","description":"Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gat"},{"name":"compliance_status","description":"Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting."},{"name":"discover_shadow_ai","description":"Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async"},{"name":"get_api_security","description":"API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. C"},{"name":"get_cloud_compliance","description":"Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/reco"},{"name":"code_review_scan","description":"Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline revi"},{"name":"compliance_scan","description":"Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to"},{"name":"apply_remediation","description":"Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flo"},{"name":"get_diagram_summary","description":"The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage."},{"name":"get_insights","description":"Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists."},{"name":"generate_architecture","description":"Generate a multi-tier cloud/AI architecture and auto-synthesize STRIDE/LINDDUN threat models, security requirements, and regulatory control mappings directly fr"},{"name":"run_ai_governance_audit","description":"Audit an architecture diagram or code scan against statutory AI governance frameworks (EU AI Act 2024, EU DORA 2022, NIST AI RMF 1.0, ISO 42001). Evaluates arti"}],"toolCount":18,"toolsHash":"c52fa7c9eccd361b4b7b693003f5d6219d5a8eb0ac028c0dd62000053bbfb739","serverName":"aribot-mcp","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2024-11-05"}},{"at":"2026-10-08T15:24:48.851Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":316,"error":null,"detail":{"tools":[{"name":"get_billing","description":"Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasabl"},{"name":"onboard_agents","description":"Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_c"},{"name":"generate_threat_model","description":"Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-genera"},{"name":"verify_threats_in_code","description":"Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise "},{"name":"get_traceability","description":"Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics."},{"name":"get_framework_coverage","description":"Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc."},{"name":"get_remediation","description":"Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gat"},{"name":"compliance_status","description":"Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting."},{"name":"discover_shadow_ai","description":"Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async"},{"name":"get_api_security","description":"API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. C"},{"name":"get_cloud_compliance","description":"Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/reco"},{"name":"code_review_scan","description":"Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline revi"},{"name":"compliance_scan","description":"Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to"},{"name":"apply_remediation","description":"Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flo"},{"name":"get_diagram_summary","description":"The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage."},{"name":"get_insights","description":"Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists."},{"name":"generate_architecture","description":"Generate a multi-tier cloud/AI architecture and auto-synthesize STRIDE/LINDDUN threat models, security requirements, and regulatory control mappings directly fr"},{"name":"run_ai_governance_audit","description":"Audit an architecture diagram or code scan against statutory AI governance frameworks (EU AI Act 2024, EU DORA 2022, NIST AI RMF 1.0, ISO 42001). Evaluates arti"}],"toolCount":18,"toolsHash":"c52fa7c9eccd361b4b7b693003f5d6219d5a8eb0ac028c0dd62000053bbfb739","serverName":"aribot-mcp","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2024-11-05"}},{"at":"2026-10-08T09:23:08.425Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":316,"error":null,"detail":{"tools":[{"name":"get_billing","description":"Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasabl"},{"name":"onboard_agents","description":"Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_c"},{"name":"generate_threat_model","description":"Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-genera"},{"name":"verify_threats_in_code","description":"Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise "},{"name":"get_traceability","description":"Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics."},{"name":"get_framework_coverage","description":"Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc."},{"name":"get_remediation","description":"Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gat"},{"name":"compliance_status","description":"Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting."},{"name":"discover_shadow_ai","description":"Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async"},{"name":"get_api_security","description":"API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. C"},{"name":"get_cloud_compliance","description":"Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/reco"},{"name":"code_review_scan","description":"Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline revi"},{"name":"compliance_scan","description":"Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to"},{"name":"apply_remediation","description":"Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flo"},{"name":"get_diagram_summary","description":"The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage."},{"name":"get_insights","description":"Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists."},{"name":"generate_architecture","description":"Generate a multi-tier cloud/AI architecture and auto-synthesize STRIDE/LINDDUN threat models, security requirements, and regulatory control mappings directly fr"},{"name":"run_ai_governance_audit","description":"Audit an architecture diagram or code scan against statutory AI governance frameworks (EU AI Act 2024, EU DORA 2022, NIST AI RMF 1.0, ISO 42001). Evaluates arti"}],"toolCount":18,"toolsHash":"c52fa7c9eccd361b4b7b693003f5d6219d5a8eb0ac028c0dd62000053bbfb739","serverName":"aribot-mcp","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2024-11-05"}},{"at":"2026-10-08T02:21:34.923Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":323,"error":null,"detail":{"tools":[{"name":"get_billing","description":"Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasabl"},{"name":"onboard_agents","description":"Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_c"},{"name":"generate_threat_model","description":"Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-genera"},{"name":"verify_threats_in_code","description":"Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise "},{"name":"get_traceability","description":"Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics."},{"name":"get_framework_coverage","description":"Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc."},{"name":"get_remediation","description":"Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gat"},{"name":"compliance_status","description":"Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting."},{"name":"discover_shadow_ai","description":"Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async"},{"name":"get_api_security","description":"API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. C"},{"name":"get_cloud_compliance","description":"Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/reco"},{"name":"code_review_scan","description":"Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline revi"},{"name":"compliance_scan","description":"Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to"},{"name":"apply_remediation","description":"Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flo"},{"name":"get_diagram_summary","description":"The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage."},{"name":"get_insights","description":"Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists."},{"name":"generate_architecture","description":"Generate a multi-tier cloud/AI architecture and auto-synthesize STRIDE/LINDDUN threat models, security requirements, and regulatory control mappings directly fr"},{"name":"run_ai_governance_audit","description":"Audit an architecture diagram or code scan against statutory AI governance frameworks (EU AI Act 2024, EU DORA 2022, NIST AI RMF 1.0, ISO 42001). Evaluates arti"}],"toolCount":18,"toolsHash":"c52fa7c9eccd361b4b7b693003f5d6219d5a8eb0ac028c0dd62000053bbfb739","serverName":"aribot-mcp","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2024-11-05"}},{"at":"2026-10-07T19:23:59.836Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":315,"error":null,"detail":{"tools":[{"name":"get_billing","description":"Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasabl"},{"name":"onboard_agents","description":"Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_c"},{"name":"generate_threat_model","description":"Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-genera"},{"name":"verify_threats_in_code","description":"Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise "},{"name":"get_traceability","description":"Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics."},{"name":"get_framework_coverage","description":"Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc."},{"name":"get_remediation","description":"Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gat"},{"name":"compliance_status","description":"Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting."},{"name":"discover_shadow_ai","description":"Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async"},{"name":"get_api_security","description":"API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. C"},{"name":"get_cloud_compliance","description":"Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/reco"},{"name":"code_review_scan","description":"Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline revi"},{"name":"compliance_scan","description":"Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to"},{"name":"apply_remediation","description":"Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flo"},{"name":"get_diagram_summary","description":"The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage."},{"name":"get_insights","description":"Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists."},{"name":"generate_architecture","description":"Generate a multi-tier cloud/AI architecture and auto-synthesize STRIDE/LINDDUN threat models, security requirements, and regulatory control mappings directly fr"},{"name":"run_ai_governance_audit","description":"Audit an architecture diagram or code scan against statutory AI governance frameworks (EU AI Act 2024, EU DORA 2022, NIST AI RMF 1.0, ISO 42001). Evaluates arti"}],"toolCount":18,"toolsHash":"c52fa7c9eccd361b4b7b693003f5d6219d5a8eb0ac028c0dd62000053bbfb739","serverName":"aribot-mcp","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2024-11-05"}},{"at":"2026-10-07T12:29:38.391Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":322,"error":null,"detail":{"tools":[{"name":"get_billing","description":"Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasabl"},{"name":"onboard_agents","description":"Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_c"},{"name":"generate_threat_model","description":"Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-genera"},{"name":"verify_threats_in_code","description":"Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise "},{"name":"get_traceability","description":"Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics."},{"name":"get_framework_coverage","description":"Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc."},{"name":"get_remediation","description":"Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gat"},{"name":"compliance_status","description":"Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting."},{"name":"discover_shadow_ai","description":"Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async"},{"name":"get_api_security","description":"API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. C"},{"name":"get_cloud_compliance","description":"Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/reco"},{"name":"code_review_scan","description":"Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline revi"},{"name":"compliance_scan","description":"Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to"},{"name":"apply_remediation","description":"Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flo"},{"name":"get_diagram_summary","description":"The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage."},{"name":"get_insights","description":"Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists."},{"name":"generate_architecture","description":"Generate a multi-tier cloud/AI architecture and auto-synthesize STRIDE/LINDDUN threat models, security requirements, and regulatory control mappings directly fr"},{"name":"run_ai_governance_audit","description":"Audit an architecture diagram or code scan against statutory AI governance frameworks (EU AI Act 2024, EU DORA 2022, NIST AI RMF 1.0, ISO 42001). Evaluates arti"}],"toolCount":18,"toolsHash":"c52fa7c9eccd361b4b7b693003f5d6219d5a8eb0ac028c0dd62000053bbfb739","serverName":"aribot-mcp","capabilities":["tools"],"serverVersion":"1.0.0","protocolVersion":"2024-11-05"}}],"tools":[{"name":"get_billing","description":"Billing status + self-service payment for your company: credit-wallet balance, pay-per-use flag, license tier / annual commitment, per-action prices, purchasabl"},{"name":"onboard_agents","description":"Bulk-onboard agent identities to the governed fleet (Agent Governance). Accepts plain ids or {agent_id} descriptors in `agents`, A2A 1.0 Agent Cards in `agent_c"},{"name":"generate_threat_model","description":"Create a threat model from a normalized architecture (ReactFlow nodes + edges). Ingests components via the shared Stage-0 service; the pipeline then auto-genera"},{"name":"verify_threats_in_code","description":"Verify whether modelled STRIDE/LINDDUN threats are mitigated in a scan's uploaded code or AST. If threat_id is provided, returns synchronous verdict; otherwise "},{"name":"get_traceability","description":"Return the diagram→threat→finding→control→requirement→remediation traceability matrix for a scan in your scope, with coverage metrics."},{"name":"get_framework_coverage","description":"Get real ControlCodeMap-backed coverage percentages, gap counts, and mapped controls for EU AI Act, DORA, NIST AI RMF, ISO 27001, SOC 2, etc."},{"name":"get_remediation","description":"Compute a remediation plan for a threat/finding WITHOUT applying it (mode=dry_run). Runs the same governed engine as apply_remediation, including the patent gat"},{"name":"compliance_status","description":"Company-level compliance posture rollup across all frameworks (EU AI Act, DORA, NIST, ISO, SOC 2) suitable for CI gates and executive reporting."},{"name":"discover_shadow_ai","description":"Scan connected repositories and network traffic for unmanaged LLMs, foundational model endpoints, vector databases, agent frameworks, and leaked API keys (async"},{"name":"get_api_security","description":"API security inventory (part of Code Security): discovered API endpoints with authentication status, risk level and risk factors, plus method/risk breakdowns. C"},{"name":"get_cloud_compliance","description":"Cloud security & compliance posture (Cloud Compliance): per connected cloud account, the latest CIS/NIST cloud-policy scan — compliance %, failing policies/reco"},{"name":"code_review_scan","description":"Start (or re-run) a code-security scan for an existing scan/repository in your scope. Returns a poll pointer; results include SAST, secrets, deps, pipeline revi"},{"name":"compliance_scan","description":"Run a cloud/platform or compliance scan against an account or diagram in your scope (async). scan_type ∈ platform|compliance|pipeline|sbom. Returns a task id to"},{"name":"apply_remediation","description":"Apply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flo"},{"name":"get_diagram_summary","description":"The canonical diagram summary every badge/card/header reads: threat counts by severity, risk value, compliance and framework coverage."},{"name":"get_insights","description":"Threat/control matrix metrics + framework coverage for a diagram, joined with its latest code-security scan when one exists."},{"name":"generate_architecture","description":"Generate a multi-tier cloud/AI architecture and auto-synthesize STRIDE/LINDDUN threat models, security requirements, and regulatory control mappings directly fr"},{"name":"run_ai_governance_audit","description":"Audit an architecture diagram or code scan against statutory AI governance frameworks (EU AI Act 2024, EU DORA 2022, NIST AI RMF 1.0, ISO 42001). Evaluates arti"}],"package":null,"toolSurface":{"id":"ts_9bu9jnzrzq9c","endpointId":"ep_xy2b93jbjwtb","hash":"c52fa7c9eccd361b4b7b693003f5d6219d5a8eb0ac028c0dd62000053bbfb739","toolCount":18,"serverName":"aribot-mcp","serverVersion":"1.0.0","protocolVersion":"2024-11-05","firstSeenAt":"2026-10-04T15:30:45.892Z","lastSeenAt":"2026-10-09T23:30:39.984Z","observations":21,"toolNames":["get_billing","onboard_agents","generate_threat_model","verify_threats_in_code","get_traceability","get_framework_coverage","get_remediation","compliance_status","discover_shadow_ai","get_api_security","get_cloud_compliance","code_review_scan","compliance_scan","apply_remediation","get_diagram_summary","get_insights","generate_architecture","run_ai_governance_audit"],"distinctSurfaces":3},"endpointFacts":[{"id":"ep_xy2b93jbjwtb","url":"https://mcp.aribot.ayurak.com/mcp","type":"mcp_streamable_http","factsCheckedAt":"2026-10-07T12:29:38.400Z","auth":{"observedAt":"2026-10-07T12:29:43.418Z","authRequired":false,"scheme":null,"resourceMetadata":null,"authorizationServer":null,"conformance":{"dpop":false,"rfc8414":false,"rfc9728":false,"pkceS256":false,"clientIdMetadataDocument":false,"dynamicClientRegistration":false}},"tls":{"observedAt":"2026-10-07T12:29:43.992Z","protocol":"TLSv1.3","chainValid":true,"chainError":null,"hostMatches":true,"subject":"mcp.aribot.ayurak.com","issuer":{"commonName":"YR2","organization":"Let's Encrypt"},"validFrom":"2026-08-24T12:43:36.000Z","validTo":"2026-11-22T12:43:35.000Z","daysToExpiry":43,"sanCount":1,"fingerprint256":"3C:6A:11:AA:A5:6F:2E:71:14:52:24:04:44:64:97:5D:70:2A:1A:69:A3:62:6E:62:7B:B4:F5:AE:70:A9:84:08"}}]},"verification":{"claimed":false,"claimedAt":null,"proofs":[]},"provenance":{"sources":[{"source":"mcp_registry","key":"io.github.aristiun/aribot","url":"https://registry.modelcontextprotocol.io/v0/servers/io.github.aristiun%2Faribot","firstSeenAt":"2026-09-06T10:20:23.323Z","fetchedAt":"2026-10-07T06:21:27.098Z","normalizedAt":"2026-10-07T06:21:27.098Z"}]},"firstSeenAt":"2026-09-06T10:20:23.323Z","updatedAt":"2026-10-09T23:32:28.858Z"}