{"$schema":"https://wellknown.network/schemas/agent-record-v1.json","schemaVersion":"1","id":"ag_ns46dae32nf6","handle":"echelongraph-mcp","url":"https://wellknown.network/agents/echelongraph-mcp","links":{"self":"https://wellknown.network/agents/echelongraph-mcp/record.json","html":"https://wellknown.network/agents/echelongraph-mcp","markdown":"https://wellknown.network/agents/echelongraph-mcp/record.md","api":"https://wellknown.network/api/v1/agents/echelongraph-mcp","status":"https://wellknown.network/api/v1/agents/echelongraph-mcp/status","claim":"https://wellknown.network/agents/echelongraph-mcp/claim","claimApi":"https://wellknown.network/api/v1/claims","claimDescriptor":"https://wellknown.network/agents/echelongraph-mcp/claim.json","badge":"https://wellknown.network/agents/echelongraph-mcp/badge.svg","openapi":"https://wellknown.network/openapi.json","history":"https://wellknown.network/api/v1/agents/echelongraph-mcp/history","tools":"https://wellknown.network/api/v1/agents/echelongraph-mcp/tools"},"ard":{"identifier":"urn:air:mcp.echelongraph.io:server:echelongraph-mcp","type":"application/mcp-server-card+json"},"kind":"mcp_server","declared":{"name":"EchelonGraph CVE & Exposure","summary":"CVE, KEV, EPSS, SBOM and advisory lookups; per-CVE exposure from Shodan data (© Shodan). Keyless.","description":"CVE, KEV, EPSS, SBOM and advisory lookups; per-CVE exposure from Shodan data (© Shodan). Keyless.","publisher":{"name":"io.echelongraph","url":null},"homepage":"https://echelongraph.io/pulse/mcp","repository":"https://github.com/echelongraph/echelongraph-mcp","version":"2.7.1","license":"MIT","protocols":["mcp"],"tags":["mcp","mcp-server","model-context-protocol","cve","vulnerability","vulnerabilities","security","cybersecurity","kev","cisa-kev","epss","nvd","ghsa","cwe","cvss","sbom","lockfile","sca","security-advisories","threat-intelligence","exposure","echelongraph","claude","cursor"],"pricing":null,"endpoints":[{"url":"https://mcp.echelongraph.io/mcp","type":"mcp_streamable_http","auth":null,"probeable":true},{"url":"npm:echelongraph-mcp","type":"package_npm","auth":null,"probeable":false}],"skills":null,"tools":null,"extra":{"updatedAt":"2026-10-06T11:41:26.804616Z","npmKeywords":["mcp","mcp-server","model-context-protocol","cve","vulnerability","vulnerabilities","security","cybersecurity","kev","cisa-kev","epss","nvd","ghsa","cwe","cvss","sbom","lockfile","sca","security-advisories","threat-intelligence","exposure","echelongraph","claude","cursor"],"publishedAt":"2026-10-06T11:41:26.804616Z","registryName":"io.echelongraph/echelongraph-mcp"},"attribution":{"kind":"mcp_registry","name":"mcp_registry","license":"npm","repoUrl":"mcp_registry","summary":"mcp_registry","version":"mcp_registry","description":"mcp_registry","homepageUrl":"mcp_registry","publisherName":"mcp_registry"}},"derived":{"capabilities":[{"slug":"code.security-review","name":"Security Review","confidence":1,"provenance":"declared"},{"slug":"infra.cloud","name":"Cloud Platforms","confidence":0.554,"provenance":"derived"},{"slug":"research.people-companies","name":"People & Company Research","confidence":0.554,"provenance":"derived"},{"slug":"content.writing","name":"Writing & Editing","confidence":0.51,"provenance":"derived"},{"slug":"dev.package-management","name":"Packages & Dependencies","confidence":0.51,"provenance":"derived"},{"slug":"commerce.ecommerce","name":"E-commerce Operations","confidence":0.51,"provenance":"derived"}],"categories":["code","commerce","content","dev","infra","research"],"language":"en"},"observed":{"status":"live","statusReason":"Responded 5h ago.","lastOkAt":"2026-10-10T05:28:41.081Z","lastProbedAt":"2026-10-10T05:28:41.081Z","statusComputedAt":"2026-10-10T05:30:35.074Z","reliability30d":{"probes":14,"successRate":1,"p50Ms":186,"basis":"service","measures":{"availability":"availability","latency":"response time","tools":"tool surface observed","summary":"Checks reached the service itself."},"checks":{"total":14,"ok":14,"authBoundaryOk":0,"serviceOk":14,"note":"Counted from the observation rows for the window, checks of the server only (HTTP, A2A card, MCP initialize). ok = authBoundaryOk + serviceOk. `probes` is the sum of daily rollups and includes registry checks, so it can differ from `total`."}},"latestObservations":[{"at":"2026-10-10T05:28:41.081Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":160,"error":null,"detail":{"tools":[{"name":"cve_summary","description":"Summary of EchelonGraph's CVE Pulse feed: summary.total active CVEs, their counts by severity band (summary.critical, summary.high, summary.medium, summary.low)"},{"name":"search_cves","description":"Search/list CVEs from EchelonGraph's CVE feed (NVD + MITRE-CNA pre-NVD + CISA-KEV + EPSS + GitHub GHSA, each polled on a schedule). Filter by severity, minimum "},{"name":"get_cve","description":"One CVE's record: description, severity, cvss_v3_score, cvss_v4_score and cvss_v4_severity, echelongraph_score, echelongraph_severity and score_confidence, epss"},{"name":"cve_exposure","description":"Internet-exposure footprint for one CVE from EchelonGraph's KEV-exposure radar: how many internet-facing services (distinct ip:port, returned as exposed_hosts; "},{"name":"exposure_radar","description":"Aggregate totals from EchelonGraph's internet-exposure radars: kev_exposure, internet-facing services running actively-exploited (CISA-KEV) CVEs, plus the ranso"},{"name":"kev_recent","description":"The CVEs CISA has added to its Known Exploited Vulnerabilities (KEV) catalog, newest first, from EchelonGraph's copy of that catalog, which polls CISA's feed ev"},{"name":"epss_history","description":"How one CVE's EPSS score (FIRST's exploit-prediction probability, 0 to 1, with its percentile) has changed, as EchelonGraph recorded it: points, oldest first, e"},{"name":"check_affected","description":"Whether a product or package at a given version is affected by known CVEs, from the same matcher as echelongraph.io/am-i-affected. The CPE path takes product (a"},{"name":"check_sbom","description":"Check a dependency list against EchelonGraph's advisory corpus, one verdict per component. For container images and Kubernetes pods, the input is an SBOM of eac"},{"name":"scan_manifest","description":"Check a project's lockfile or pinned manifest against EchelonGraph's advisory corpus, one verdict per dependency. Pass files: 1 to 20 of filename and content, u"},{"name":"cve_intel","description":"Weakness, public exploit code, affected packages and fixed versions for one CVE, from EchelonGraph's per-CVE enrichment. Returns cwes (each cwe_id with name and"},{"name":"cve_remediation","description":"How one CVE is fixed, as its sources state it, in one answer. Every text is relayed as stated by its source; EchelonGraph has not tested it. An empty list or a "},{"name":"get_cwe","description":"One CWE (weakness class) and the CVEs classified under it. Returns cwe_id, name and description (from the MITRE CWE catalog EchelonGraph embeds, version catalog"},{"name":"vendor_advisories_for_cve","description":"The vendor-published advisories that name one CVE, newest first, at most 20: for each, vendor, vendor_display_name, vendor_advisory_id, title, severity and cvss"},{"name":"get_vendor_advisory","description":"One vendor advisory in full, by vendor and the vendor's advisory ID (the vendor and vendor_advisory_id of a vendor advisory row): title, description, severity, "},{"name":"search_vendor_advisories","description":"Search or list vendor-published advisories, newest first. A query of 3 or more characters is matched case-insensitively as a substring of each advisory's title,"}],"toolCount":16,"toolsHash":"6c8c877b8b608350911fb55e6e508195e4df426551be4166401c6eb771d650d4","serverName":"echelongraph-mcp","capabilities":["tools","prompts","resources"],"serverVersion":"2.7.1","protocolVersion":"2025-06-18"}},{"at":"2026-10-09T22:28:04.678Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":182,"error":null,"detail":{"tools":[{"name":"cve_summary","description":"Summary of EchelonGraph's CVE Pulse feed: summary.total active CVEs, their counts by severity band (summary.critical, summary.high, summary.medium, summary.low)"},{"name":"search_cves","description":"Search/list CVEs from EchelonGraph's CVE feed (NVD + MITRE-CNA pre-NVD + CISA-KEV + EPSS + GitHub GHSA, each polled on a schedule). Filter by severity, minimum "},{"name":"get_cve","description":"One CVE's record: description, severity, cvss_v3_score, cvss_v4_score and cvss_v4_severity, echelongraph_score, echelongraph_severity and score_confidence, epss"},{"name":"cve_exposure","description":"Internet-exposure footprint for one CVE from EchelonGraph's KEV-exposure radar: how many internet-facing services (distinct ip:port, returned as exposed_hosts; "},{"name":"exposure_radar","description":"Aggregate totals from EchelonGraph's internet-exposure radars: kev_exposure, internet-facing services running actively-exploited (CISA-KEV) CVEs, plus the ranso"},{"name":"kev_recent","description":"The CVEs CISA has added to its Known Exploited Vulnerabilities (KEV) catalog, newest first, from EchelonGraph's copy of that catalog, which polls CISA's feed ev"},{"name":"epss_history","description":"How one CVE's EPSS score (FIRST's exploit-prediction probability, 0 to 1, with its percentile) has changed, as EchelonGraph recorded it: points, oldest first, e"},{"name":"check_affected","description":"Whether a product or package at a given version is affected by known CVEs, from the same matcher as echelongraph.io/am-i-affected. The CPE path takes product (a"},{"name":"check_sbom","description":"Check a dependency list against EchelonGraph's advisory corpus, one verdict per component. For container images and Kubernetes pods, the input is an SBOM of eac"},{"name":"scan_manifest","description":"Check a project's lockfile or pinned manifest against EchelonGraph's advisory corpus, one verdict per dependency. Pass files: 1 to 20 of filename and content, u"},{"name":"cve_intel","description":"Weakness, public exploit code, affected packages and fixed versions for one CVE, from EchelonGraph's per-CVE enrichment. Returns cwes (each cwe_id with name and"},{"name":"cve_remediation","description":"How one CVE is fixed, as its sources state it, in one answer. Every text is relayed as stated by its source; EchelonGraph has not tested it. An empty list or a "},{"name":"get_cwe","description":"One CWE (weakness class) and the CVEs classified under it. Returns cwe_id, name and description (from the MITRE CWE catalog EchelonGraph embeds, version catalog"},{"name":"vendor_advisories_for_cve","description":"The vendor-published advisories that name one CVE, newest first, at most 20: for each, vendor, vendor_display_name, vendor_advisory_id, title, severity and cvss"},{"name":"get_vendor_advisory","description":"One vendor advisory in full, by vendor and the vendor's advisory ID (the vendor and vendor_advisory_id of a vendor advisory row): title, description, severity, "},{"name":"search_vendor_advisories","description":"Search or list vendor-published advisories, newest first. A query of 3 or more characters is matched case-insensitively as a substring of each advisory's title,"}],"toolCount":16,"toolsHash":"6c8c877b8b608350911fb55e6e508195e4df426551be4166401c6eb771d650d4","serverName":"echelongraph-mcp","capabilities":["tools","prompts","resources"],"serverVersion":"2.7.1","protocolVersion":"2025-06-18"}},{"at":"2026-10-09T16:33:56.906Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":161,"error":null,"detail":{"tools":[{"name":"cve_summary","description":"Summary of EchelonGraph's CVE Pulse feed: summary.total active CVEs, their counts by severity band (summary.critical, summary.high, summary.medium, summary.low)"},{"name":"search_cves","description":"Search/list CVEs from EchelonGraph's CVE feed (NVD + MITRE-CNA pre-NVD + CISA-KEV + EPSS + GitHub GHSA, each polled on a schedule). Filter by severity, minimum "},{"name":"get_cve","description":"One CVE's record: description, severity, cvss_v3_score, cvss_v4_score and cvss_v4_severity, echelongraph_score, echelongraph_severity and score_confidence, epss"},{"name":"cve_exposure","description":"Internet-exposure footprint for one CVE from EchelonGraph's KEV-exposure radar: how many internet-facing services (distinct ip:port, returned as exposed_hosts; "},{"name":"exposure_radar","description":"Aggregate totals from EchelonGraph's internet-exposure radars: kev_exposure, internet-facing services running actively-exploited (CISA-KEV) CVEs, plus the ranso"},{"name":"kev_recent","description":"The CVEs CISA has added to its Known Exploited Vulnerabilities (KEV) catalog, newest first, from EchelonGraph's copy of that catalog, which polls CISA's feed ev"},{"name":"epss_history","description":"How one CVE's EPSS score (FIRST's exploit-prediction probability, 0 to 1, with its percentile) has changed, as EchelonGraph recorded it: points, oldest first, e"},{"name":"check_affected","description":"Whether a product or package at a given version is affected by known CVEs, from the same matcher as echelongraph.io/am-i-affected. The CPE path takes product (a"},{"name":"check_sbom","description":"Check a dependency list against EchelonGraph's advisory corpus, one verdict per component. For container images and Kubernetes pods, the input is an SBOM of eac"},{"name":"scan_manifest","description":"Check a project's lockfile or pinned manifest against EchelonGraph's advisory corpus, one verdict per dependency. Pass files: 1 to 20 of filename and content, u"},{"name":"cve_intel","description":"Weakness, public exploit code, affected packages and fixed versions for one CVE, from EchelonGraph's per-CVE enrichment. Returns cwes (each cwe_id with name and"},{"name":"cve_remediation","description":"How one CVE is fixed, as its sources state it, in one answer. Every text is relayed as stated by its source; EchelonGraph has not tested it. An empty list or a "},{"name":"get_cwe","description":"One CWE (weakness class) and the CVEs classified under it. Returns cwe_id, name and description (from the MITRE CWE catalog EchelonGraph embeds, version catalog"},{"name":"vendor_advisories_for_cve","description":"The vendor-published advisories that name one CVE, newest first, at most 20: for each, vendor, vendor_display_name, vendor_advisory_id, title, severity and cvss"},{"name":"get_vendor_advisory","description":"One vendor advisory in full, by vendor and the vendor's advisory ID (the vendor and vendor_advisory_id of a vendor advisory row): title, description, severity, "},{"name":"search_vendor_advisories","description":"Search or list vendor-published advisories, newest first. A query of 3 or more characters is matched case-insensitively as a substring of each advisory's title,"}],"toolCount":16,"toolsHash":"6c8c877b8b608350911fb55e6e508195e4df426551be4166401c6eb771d650d4","serverName":"echelongraph-mcp","capabilities":["tools","prompts","resources"],"serverVersion":"2.7.1","protocolVersion":"2025-06-18"}},{"at":"2026-10-09T10:23:30.013Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":220,"error":null,"detail":{"tools":[{"name":"cve_summary","description":"Summary of EchelonGraph's CVE Pulse feed: summary.total active CVEs, their counts by severity band (summary.critical, summary.high, summary.medium, summary.low)"},{"name":"search_cves","description":"Search/list CVEs from EchelonGraph's CVE feed (NVD + MITRE-CNA pre-NVD + CISA-KEV + EPSS + GitHub GHSA, each polled on a schedule). Filter by severity, minimum "},{"name":"get_cve","description":"One CVE's record: description, severity, cvss_v3_score, cvss_v4_score and cvss_v4_severity, echelongraph_score, echelongraph_severity and score_confidence, epss"},{"name":"cve_exposure","description":"Internet-exposure footprint for one CVE from EchelonGraph's KEV-exposure radar: how many internet-facing services (distinct ip:port, returned as exposed_hosts; "},{"name":"exposure_radar","description":"Aggregate totals from EchelonGraph's internet-exposure radars: kev_exposure, internet-facing services running actively-exploited (CISA-KEV) CVEs, plus the ranso"},{"name":"kev_recent","description":"The CVEs CISA has added to its Known Exploited Vulnerabilities (KEV) catalog, newest first, from EchelonGraph's copy of that catalog, which polls CISA's feed ev"},{"name":"epss_history","description":"How one CVE's EPSS score (FIRST's exploit-prediction probability, 0 to 1, with its percentile) has changed, as EchelonGraph recorded it: points, oldest first, e"},{"name":"check_affected","description":"Whether a product or package at a given version is affected by known CVEs, from the same matcher as echelongraph.io/am-i-affected. The CPE path takes product (a"},{"name":"check_sbom","description":"Check a dependency list against EchelonGraph's advisory corpus, one verdict per component. For container images and Kubernetes pods, the input is an SBOM of eac"},{"name":"scan_manifest","description":"Check a project's lockfile or pinned manifest against EchelonGraph's advisory corpus, one verdict per dependency. Pass files: 1 to 20 of filename and content, u"},{"name":"cve_intel","description":"Weakness, public exploit code, affected packages and fixed versions for one CVE, from EchelonGraph's per-CVE enrichment. Returns cwes (each cwe_id with name and"},{"name":"cve_remediation","description":"How one CVE is fixed, as its sources state it, in one answer. Every text is relayed as stated by its source; EchelonGraph has not tested it. An empty list or a "},{"name":"get_cwe","description":"One CWE (weakness class) and the CVEs classified under it. Returns cwe_id, name and description (from the MITRE CWE catalog EchelonGraph embeds, version catalog"},{"name":"vendor_advisories_for_cve","description":"The vendor-published advisories that name one CVE, newest first, at most 20: for each, vendor, vendor_display_name, vendor_advisory_id, title, severity and cvss"},{"name":"get_vendor_advisory","description":"One vendor advisory in full, by vendor and the vendor's advisory ID (the vendor and vendor_advisory_id of a vendor advisory row): title, description, severity, "},{"name":"search_vendor_advisories","description":"Search or list vendor-published advisories, newest first. A query of 3 or more characters is matched case-insensitively as a substring of each advisory's title,"}],"toolCount":16,"toolsHash":"6c8c877b8b608350911fb55e6e508195e4df426551be4166401c6eb771d650d4","serverName":"echelongraph-mcp","capabilities":["tools","prompts","resources"],"serverVersion":"2.7.1","protocolVersion":"2025-06-18"}},{"at":"2026-10-09T04:29:15.978Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":172,"error":null,"detail":{"tools":[{"name":"cve_summary","description":"Summary of EchelonGraph's CVE Pulse feed: summary.total active CVEs, their counts by severity band (summary.critical, summary.high, summary.medium, summary.low)"},{"name":"search_cves","description":"Search/list CVEs from EchelonGraph's CVE feed (NVD + MITRE-CNA pre-NVD + CISA-KEV + EPSS + GitHub GHSA, each polled on a schedule). Filter by severity, minimum "},{"name":"get_cve","description":"One CVE's record: description, severity, cvss_v3_score, cvss_v4_score and cvss_v4_severity, echelongraph_score, echelongraph_severity and score_confidence, epss"},{"name":"cve_exposure","description":"Internet-exposure footprint for one CVE from EchelonGraph's KEV-exposure radar: how many internet-facing services (distinct ip:port, returned as exposed_hosts; "},{"name":"exposure_radar","description":"Aggregate totals from EchelonGraph's internet-exposure radars: kev_exposure, internet-facing services running actively-exploited (CISA-KEV) CVEs, plus the ranso"},{"name":"kev_recent","description":"The CVEs CISA has added to its Known Exploited Vulnerabilities (KEV) catalog, newest first, from EchelonGraph's copy of that catalog, which polls CISA's feed ev"},{"name":"epss_history","description":"How one CVE's EPSS score (FIRST's exploit-prediction probability, 0 to 1, with its percentile) has changed, as EchelonGraph recorded it: points, oldest first, e"},{"name":"check_affected","description":"Whether a product or package at a given version is affected by known CVEs, from the same matcher as echelongraph.io/am-i-affected. The CPE path takes product (a"},{"name":"check_sbom","description":"Check a dependency list against EchelonGraph's advisory corpus, one verdict per component. For container images and Kubernetes pods, the input is an SBOM of eac"},{"name":"scan_manifest","description":"Check a project's lockfile or pinned manifest against EchelonGraph's advisory corpus, one verdict per dependency. Pass files: 1 to 20 of filename and content, u"},{"name":"cve_intel","description":"Weakness, public exploit code, affected packages and fixed versions for one CVE, from EchelonGraph's per-CVE enrichment. Returns cwes (each cwe_id with name and"},{"name":"cve_remediation","description":"How one CVE is fixed, as its sources state it, in one answer. Every text is relayed as stated by its source; EchelonGraph has not tested it. An empty list or a "},{"name":"get_cwe","description":"One CWE (weakness class) and the CVEs classified under it. Returns cwe_id, name and description (from the MITRE CWE catalog EchelonGraph embeds, version catalog"},{"name":"vendor_advisories_for_cve","description":"The vendor-published advisories that name one CVE, newest first, at most 20: for each, vendor, vendor_display_name, vendor_advisory_id, title, severity and cvss"},{"name":"get_vendor_advisory","description":"One vendor advisory in full, by vendor and the vendor's advisory ID (the vendor and vendor_advisory_id of a vendor advisory row): title, description, severity, "},{"name":"search_vendor_advisories","description":"Search or list vendor-published advisories, newest first. A query of 3 or more characters is matched case-insensitively as a substring of each advisory's title,"}],"toolCount":16,"toolsHash":"6c8c877b8b608350911fb55e6e508195e4df426551be4166401c6eb771d650d4","serverName":"echelongraph-mcp","capabilities":["tools","prompts","resources"],"serverVersion":"2.7.1","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T22:24:22.659Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":190,"error":null,"detail":{"tools":[{"name":"cve_summary","description":"Summary of EchelonGraph's CVE Pulse feed: summary.total active CVEs, their counts by severity band (summary.critical, summary.high, summary.medium, summary.low)"},{"name":"search_cves","description":"Search/list CVEs from EchelonGraph's CVE feed (NVD + MITRE-CNA pre-NVD + CISA-KEV + EPSS + GitHub GHSA, each polled on a schedule). Filter by severity, minimum "},{"name":"get_cve","description":"One CVE's record: description, severity, cvss_v3_score, cvss_v4_score and cvss_v4_severity, echelongraph_score, echelongraph_severity and score_confidence, epss"},{"name":"cve_exposure","description":"Internet-exposure footprint for one CVE from EchelonGraph's KEV-exposure radar: how many internet-facing services (distinct ip:port, returned as exposed_hosts; "},{"name":"exposure_radar","description":"Aggregate totals from EchelonGraph's internet-exposure radars: kev_exposure, internet-facing services running actively-exploited (CISA-KEV) CVEs, plus the ranso"},{"name":"kev_recent","description":"The CVEs CISA has added to its Known Exploited Vulnerabilities (KEV) catalog, newest first, from EchelonGraph's copy of that catalog, which polls CISA's feed ev"},{"name":"epss_history","description":"How one CVE's EPSS score (FIRST's exploit-prediction probability, 0 to 1, with its percentile) has changed, as EchelonGraph recorded it: points, oldest first, e"},{"name":"check_affected","description":"Whether a product or package at a given version is affected by known CVEs, from the same matcher as echelongraph.io/am-i-affected. The CPE path takes product (a"},{"name":"check_sbom","description":"Check a dependency list against EchelonGraph's advisory corpus, one verdict per component. For container images and Kubernetes pods, the input is an SBOM of eac"},{"name":"scan_manifest","description":"Check a project's lockfile or pinned manifest against EchelonGraph's advisory corpus, one verdict per dependency. Pass files: 1 to 20 of filename and content, u"},{"name":"cve_intel","description":"Weakness, public exploit code, affected packages and fixed versions for one CVE, from EchelonGraph's per-CVE enrichment. Returns cwes (each cwe_id with name and"},{"name":"cve_remediation","description":"How one CVE is fixed, as its sources state it, in one answer. Every text is relayed as stated by its source; EchelonGraph has not tested it. An empty list or a "},{"name":"get_cwe","description":"One CWE (weakness class) and the CVEs classified under it. Returns cwe_id, name and description (from the MITRE CWE catalog EchelonGraph embeds, version catalog"},{"name":"vendor_advisories_for_cve","description":"The vendor-published advisories that name one CVE, newest first, at most 20: for each, vendor, vendor_display_name, vendor_advisory_id, title, severity and cvss"},{"name":"get_vendor_advisory","description":"One vendor advisory in full, by vendor and the vendor's advisory ID (the vendor and vendor_advisory_id of a vendor advisory row): title, description, severity, "},{"name":"search_vendor_advisories","description":"Search or list vendor-published advisories, newest first. A query of 3 or more characters is matched case-insensitively as a substring of each advisory's title,"}],"toolCount":16,"toolsHash":"6c8c877b8b608350911fb55e6e508195e4df426551be4166401c6eb771d650d4","serverName":"echelongraph-mcp","capabilities":["tools","prompts","resources"],"serverVersion":"2.7.1","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T15:24:18.067Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":203,"error":null,"detail":{"tools":[{"name":"cve_summary","description":"Summary of EchelonGraph's CVE Pulse feed: summary.total active CVEs, their counts by severity band (summary.critical, summary.high, summary.medium, summary.low)"},{"name":"search_cves","description":"Search/list CVEs from EchelonGraph's CVE feed (NVD + MITRE-CNA pre-NVD + CISA-KEV + EPSS + GitHub GHSA, each polled on a schedule). Filter by severity, minimum "},{"name":"get_cve","description":"One CVE's record: description, severity, cvss_v3_score, cvss_v4_score and cvss_v4_severity, echelongraph_score, echelongraph_severity and score_confidence, epss"},{"name":"cve_exposure","description":"Internet-exposure footprint for one CVE from EchelonGraph's KEV-exposure radar: how many internet-facing services (distinct ip:port, returned as exposed_hosts; "},{"name":"exposure_radar","description":"Aggregate totals from EchelonGraph's internet-exposure radars: kev_exposure, internet-facing services running actively-exploited (CISA-KEV) CVEs, plus the ranso"},{"name":"kev_recent","description":"The CVEs CISA has added to its Known Exploited Vulnerabilities (KEV) catalog, newest first, from EchelonGraph's copy of that catalog, which polls CISA's feed ev"},{"name":"epss_history","description":"How one CVE's EPSS score (FIRST's exploit-prediction probability, 0 to 1, with its percentile) has changed, as EchelonGraph recorded it: points, oldest first, e"},{"name":"check_affected","description":"Whether a product or package at a given version is affected by known CVEs, from the same matcher as echelongraph.io/am-i-affected. The CPE path takes product (a"},{"name":"check_sbom","description":"Check a dependency list against EchelonGraph's advisory corpus, one verdict per component. For container images and Kubernetes pods, the input is an SBOM of eac"},{"name":"scan_manifest","description":"Check a project's lockfile or pinned manifest against EchelonGraph's advisory corpus, one verdict per dependency. Pass files: 1 to 20 of filename and content, u"},{"name":"cve_intel","description":"Weakness, public exploit code, affected packages and fixed versions for one CVE, from EchelonGraph's per-CVE enrichment. Returns cwes (each cwe_id with name and"},{"name":"cve_remediation","description":"How one CVE is fixed, as its sources state it, in one answer. Every text is relayed as stated by its source; EchelonGraph has not tested it. An empty list or a "},{"name":"get_cwe","description":"One CWE (weakness class) and the CVEs classified under it. Returns cwe_id, name and description (from the MITRE CWE catalog EchelonGraph embeds, version catalog"},{"name":"vendor_advisories_for_cve","description":"The vendor-published advisories that name one CVE, newest first, at most 20: for each, vendor, vendor_display_name, vendor_advisory_id, title, severity and cvss"},{"name":"get_vendor_advisory","description":"One vendor advisory in full, by vendor and the vendor's advisory ID (the vendor and vendor_advisory_id of a vendor advisory row): title, description, severity, "},{"name":"search_vendor_advisories","description":"Search or list vendor-published advisories, newest first. A query of 3 or more characters is matched case-insensitively as a substring of each advisory's title,"}],"toolCount":16,"toolsHash":"6c8c877b8b608350911fb55e6e508195e4df426551be4166401c6eb771d650d4","serverName":"echelongraph-mcp","capabilities":["tools","prompts","resources"],"serverVersion":"2.7.1","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T09:23:06.450Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":204,"error":null,"detail":{"tools":[{"name":"cve_summary","description":"Summary of EchelonGraph's CVE Pulse feed: summary.total active CVEs, their counts by severity band (summary.critical, summary.high, summary.medium, summary.low)"},{"name":"search_cves","description":"Search/list CVEs from EchelonGraph's CVE feed (NVD + MITRE-CNA pre-NVD + CISA-KEV + EPSS + GitHub GHSA, each polled on a schedule). Filter by severity, minimum "},{"name":"get_cve","description":"One CVE's record: description, severity, cvss_v3_score, cvss_v4_score and cvss_v4_severity, echelongraph_score, echelongraph_severity and score_confidence, epss"},{"name":"cve_exposure","description":"Internet-exposure footprint for one CVE from EchelonGraph's KEV-exposure radar: how many internet-facing services (distinct ip:port, returned as exposed_hosts; "},{"name":"exposure_radar","description":"Aggregate totals from EchelonGraph's internet-exposure radars: kev_exposure, internet-facing services running actively-exploited (CISA-KEV) CVEs, plus the ranso"},{"name":"kev_recent","description":"The CVEs CISA has added to its Known Exploited Vulnerabilities (KEV) catalog, newest first, from EchelonGraph's copy of that catalog, which polls CISA's feed ev"},{"name":"epss_history","description":"How one CVE's EPSS score (FIRST's exploit-prediction probability, 0 to 1, with its percentile) has changed, as EchelonGraph recorded it: points, oldest first, e"},{"name":"check_affected","description":"Whether a product or package at a given version is affected by known CVEs, from the same matcher as echelongraph.io/am-i-affected. The CPE path takes product (a"},{"name":"check_sbom","description":"Check a dependency list against EchelonGraph's advisory corpus, one verdict per component. For container images and Kubernetes pods, the input is an SBOM of eac"},{"name":"scan_manifest","description":"Check a project's lockfile or pinned manifest against EchelonGraph's advisory corpus, one verdict per dependency. Pass files: 1 to 20 of filename and content, u"},{"name":"cve_intel","description":"Weakness, public exploit code, affected packages and fixed versions for one CVE, from EchelonGraph's per-CVE enrichment. Returns cwes (each cwe_id with name and"},{"name":"cve_remediation","description":"How one CVE is fixed, as its sources state it, in one answer. Every text is relayed as stated by its source; EchelonGraph has not tested it. An empty list or a "},{"name":"get_cwe","description":"One CWE (weakness class) and the CVEs classified under it. Returns cwe_id, name and description (from the MITRE CWE catalog EchelonGraph embeds, version catalog"},{"name":"vendor_advisories_for_cve","description":"The vendor-published advisories that name one CVE, newest first, at most 20: for each, vendor, vendor_display_name, vendor_advisory_id, title, severity and cvss"},{"name":"get_vendor_advisory","description":"One vendor advisory in full, by vendor and the vendor's advisory ID (the vendor and vendor_advisory_id of a vendor advisory row): title, description, severity, "},{"name":"search_vendor_advisories","description":"Search or list vendor-published advisories, newest first. A query of 3 or more characters is matched case-insensitively as a substring of each advisory's title,"}],"toolCount":16,"toolsHash":"6c8c877b8b608350911fb55e6e508195e4df426551be4166401c6eb771d650d4","serverName":"echelongraph-mcp","capabilities":["tools","prompts","resources"],"serverVersion":"2.7.1","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T03:24:38.011Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":267,"error":null,"detail":{"tools":[{"name":"cve_summary","description":"Summary of EchelonGraph's CVE Pulse feed: summary.total active CVEs, their counts by severity band (summary.critical, summary.high, summary.medium, summary.low)"},{"name":"search_cves","description":"Search/list CVEs from EchelonGraph's CVE feed (NVD + MITRE-CNA pre-NVD + CISA-KEV + EPSS + GitHub GHSA, each polled on a schedule). Filter by severity, minimum "},{"name":"get_cve","description":"One CVE's record: description, severity, cvss_v3_score, cvss_v4_score and cvss_v4_severity, echelongraph_score, echelongraph_severity and score_confidence, epss"},{"name":"cve_exposure","description":"Internet-exposure footprint for one CVE from EchelonGraph's KEV-exposure radar: how many internet-facing services (distinct ip:port, returned as exposed_hosts; "},{"name":"exposure_radar","description":"Aggregate totals from EchelonGraph's internet-exposure radars: kev_exposure, internet-facing services running actively-exploited (CISA-KEV) CVEs, plus the ranso"},{"name":"kev_recent","description":"The CVEs CISA has added to its Known Exploited Vulnerabilities (KEV) catalog, newest first, from EchelonGraph's copy of that catalog, which polls CISA's feed ev"},{"name":"epss_history","description":"How one CVE's EPSS score (FIRST's exploit-prediction probability, 0 to 1, with its percentile) has changed, as EchelonGraph recorded it: points, oldest first, e"},{"name":"check_affected","description":"Whether a product or package at a given version is affected by known CVEs, from the same matcher as echelongraph.io/am-i-affected. The CPE path takes product (a"},{"name":"check_sbom","description":"Check a dependency list against EchelonGraph's advisory corpus, one verdict per component. For container images and Kubernetes pods, the input is an SBOM of eac"},{"name":"scan_manifest","description":"Check a project's lockfile or pinned manifest against EchelonGraph's advisory corpus, one verdict per dependency. Pass files: 1 to 20 of filename and content, u"},{"name":"cve_intel","description":"Weakness, public exploit code, affected packages and fixed versions for one CVE, from EchelonGraph's per-CVE enrichment. Returns cwes (each cwe_id with name and"},{"name":"cve_remediation","description":"How one CVE is fixed, as its sources state it, in one answer. Every text is relayed as stated by its source; EchelonGraph has not tested it. An empty list or a "},{"name":"get_cwe","description":"One CWE (weakness class) and the CVEs classified under it. Returns cwe_id, name and description (from the MITRE CWE catalog EchelonGraph embeds, version catalog"},{"name":"vendor_advisories_for_cve","description":"The vendor-published advisories that name one CVE, newest first, at most 20: for each, vendor, vendor_display_name, vendor_advisory_id, title, severity and cvss"},{"name":"get_vendor_advisory","description":"One vendor advisory in full, by vendor and the vendor's advisory ID (the vendor and vendor_advisory_id of a vendor advisory row): title, description, severity, "},{"name":"search_vendor_advisories","description":"Search or list vendor-published advisories, newest first. A query of 3 or more characters is matched case-insensitively as a substring of each advisory's title,"}],"toolCount":16,"toolsHash":"6c8c877b8b608350911fb55e6e508195e4df426551be4166401c6eb771d650d4","serverName":"echelongraph-mcp","capabilities":["tools","prompts","resources"],"serverVersion":"2.7.1","protocolVersion":"2025-06-18"}},{"at":"2026-10-07T20:30:38.117Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":198,"error":null,"detail":{"tools":[{"name":"cve_summary","description":"Summary of EchelonGraph's CVE Pulse feed: summary.total active CVEs, their counts by severity band (summary.critical, summary.high, summary.medium, summary.low)"},{"name":"search_cves","description":"Search/list CVEs from EchelonGraph's CVE feed (NVD + MITRE-CNA pre-NVD + CISA-KEV + EPSS + GitHub GHSA, each polled on a schedule). Filter by severity, minimum "},{"name":"get_cve","description":"One CVE's record: description, severity, cvss_v3_score, cvss_v4_score and cvss_v4_severity, echelongraph_score, echelongraph_severity and score_confidence, epss"},{"name":"cve_exposure","description":"Internet-exposure footprint for one CVE from EchelonGraph's KEV-exposure radar: how many internet-facing services (distinct ip:port, returned as exposed_hosts; "},{"name":"exposure_radar","description":"Aggregate totals from EchelonGraph's internet-exposure radars: kev_exposure, internet-facing services running actively-exploited (CISA-KEV) CVEs, plus the ranso"},{"name":"kev_recent","description":"The CVEs CISA has added to its Known Exploited Vulnerabilities (KEV) catalog, newest first, from EchelonGraph's copy of that catalog, which polls CISA's feed ev"},{"name":"epss_history","description":"How one CVE's EPSS score (FIRST's exploit-prediction probability, 0 to 1, with its percentile) has changed, as EchelonGraph recorded it: points, oldest first, e"},{"name":"check_affected","description":"Whether a product or package at a given version is affected by known CVEs, from the same matcher as echelongraph.io/am-i-affected. The CPE path takes product (a"},{"name":"check_sbom","description":"Check a dependency list against EchelonGraph's advisory corpus, one verdict per component. For container images and Kubernetes pods, the input is an SBOM of eac"},{"name":"scan_manifest","description":"Check a project's lockfile or pinned manifest against EchelonGraph's advisory corpus, one verdict per dependency. Pass files: 1 to 20 of filename and content, u"},{"name":"cve_intel","description":"Weakness, public exploit code, affected packages and fixed versions for one CVE, from EchelonGraph's per-CVE enrichment. Returns cwes (each cwe_id with name and"},{"name":"cve_remediation","description":"How one CVE is fixed, as its sources state it, in one answer. Every text is relayed as stated by its source; EchelonGraph has not tested it. An empty list or a "},{"name":"get_cwe","description":"One CWE (weakness class) and the CVEs classified under it. Returns cwe_id, name and description (from the MITRE CWE catalog EchelonGraph embeds, version catalog"},{"name":"vendor_advisories_for_cve","description":"The vendor-published advisories that name one CVE, newest first, at most 20: for each, vendor, vendor_display_name, vendor_advisory_id, title, severity and cvss"},{"name":"get_vendor_advisory","description":"One vendor advisory in full, by vendor and the vendor's advisory ID (the vendor and vendor_advisory_id of a vendor advisory row): title, description, severity, "},{"name":"search_vendor_advisories","description":"Search or list vendor-published advisories, newest first. A query of 3 or more characters is matched case-insensitively as a substring of each advisory's title,"}],"toolCount":16,"toolsHash":"6c8c877b8b608350911fb55e6e508195e4df426551be4166401c6eb771d650d4","serverName":"echelongraph-mcp","capabilities":["tools","prompts","resources"],"serverVersion":"2.7.1","protocolVersion":"2025-06-18"}}],"tools":[{"name":"cve_summary","description":"Summary of EchelonGraph's CVE Pulse feed: summary.total active CVEs, their counts by severity band (summary.critical, summary.high, summary.medium, summary.low)"},{"name":"search_cves","description":"Search/list CVEs from EchelonGraph's CVE feed (NVD + MITRE-CNA pre-NVD + CISA-KEV + EPSS + GitHub GHSA, each polled on a schedule). Filter by severity, minimum "},{"name":"get_cve","description":"One CVE's record: description, severity, cvss_v3_score, cvss_v4_score and cvss_v4_severity, echelongraph_score, echelongraph_severity and score_confidence, epss"},{"name":"cve_exposure","description":"Internet-exposure footprint for one CVE from EchelonGraph's KEV-exposure radar: how many internet-facing services (distinct ip:port, returned as exposed_hosts; "},{"name":"exposure_radar","description":"Aggregate totals from EchelonGraph's internet-exposure radars: kev_exposure, internet-facing services running actively-exploited (CISA-KEV) CVEs, plus the ranso"},{"name":"kev_recent","description":"The CVEs CISA has added to its Known Exploited Vulnerabilities (KEV) catalog, newest first, from EchelonGraph's copy of that catalog, which polls CISA's feed ev"},{"name":"epss_history","description":"How one CVE's EPSS score (FIRST's exploit-prediction probability, 0 to 1, with its percentile) has changed, as EchelonGraph recorded it: points, oldest first, e"},{"name":"check_affected","description":"Whether a product or package at a given version is affected by known CVEs, from the same matcher as echelongraph.io/am-i-affected. The CPE path takes product (a"},{"name":"check_sbom","description":"Check a dependency list against EchelonGraph's advisory corpus, one verdict per component. For container images and Kubernetes pods, the input is an SBOM of eac"},{"name":"scan_manifest","description":"Check a project's lockfile or pinned manifest against EchelonGraph's advisory corpus, one verdict per dependency. Pass files: 1 to 20 of filename and content, u"},{"name":"cve_intel","description":"Weakness, public exploit code, affected packages and fixed versions for one CVE, from EchelonGraph's per-CVE enrichment. Returns cwes (each cwe_id with name and"},{"name":"cve_remediation","description":"How one CVE is fixed, as its sources state it, in one answer. Every text is relayed as stated by its source; EchelonGraph has not tested it. An empty list or a "},{"name":"get_cwe","description":"One CWE (weakness class) and the CVEs classified under it. Returns cwe_id, name and description (from the MITRE CWE catalog EchelonGraph embeds, version catalog"},{"name":"vendor_advisories_for_cve","description":"The vendor-published advisories that name one CVE, newest first, at most 20: for each, vendor, vendor_display_name, vendor_advisory_id, title, severity and cvss"},{"name":"get_vendor_advisory","description":"One vendor advisory in full, by vendor and the vendor's advisory ID (the vendor and vendor_advisory_id of a vendor advisory row): title, description, severity, "},{"name":"search_vendor_advisories","description":"Search or list vendor-published advisories, newest first. A query of 3 or more characters is matched case-insensitively as a substring of each advisory's title,"}],"package":{"name":"echelongraph-mcp","registry":"npm","observedAt":"2026-10-10T05:31:24.568Z","publishedAt":"2026-10-06T11:34:58.085Z","latestVersion":"2.7.1","weeklyDownloads":2585},"toolSurface":{"id":"ts_9p352562nj54","endpointId":"ep_ng4cemn4t3wy","hash":"6c8c877b8b608350911fb55e6e508195e4df426551be4166401c6eb771d650d4","toolCount":16,"serverName":"echelongraph-mcp","serverVersion":"2.7.1","protocolVersion":"2025-06-18","firstSeenAt":"2026-10-06T19:31:14.646Z","lastSeenAt":"2026-10-10T05:28:41.071Z","observations":14,"toolNames":["cve_summary","search_cves","get_cve","cve_exposure","exposure_radar","kev_recent","epss_history","check_affected","check_sbom","scan_manifest","cve_intel","cve_remediation","get_cwe","vendor_advisories_for_cve","get_vendor_advisory","search_vendor_advisories"],"distinctSurfaces":1},"endpointFacts":[]},"verification":{"claimed":false,"claimedAt":null,"proofs":[]},"provenance":{"sources":[{"source":"npm","key":"echelongraph-mcp","url":"https://www.npmjs.com/package/echelongraph-mcp","firstSeenAt":"2026-09-28T21:17:08.737Z","fetchedAt":"2026-10-10T04:21:16.336Z","normalizedAt":"2026-10-10T04:21:16.336Z"},{"source":"mcp_registry","key":"io.echelongraph/echelongraph-mcp","url":"https://registry.modelcontextprotocol.io/v0/servers/io.echelongraph%2Fechelongraph-mcp","firstSeenAt":"2026-10-03T21:22:59.605Z","fetchedAt":"2026-10-09T16:20:09.190Z","normalizedAt":"2026-10-09T16:20:09.190Z"}]},"firstSeenAt":"2026-09-28T21:17:08.737Z","updatedAt":"2026-10-10T05:31:24.568Z"}