{"$schema":"https://wellknown.network/schemas/agent-record-v1.json","schemaVersion":"1","id":"ag_jbywywm2u2vz","handle":"security-recipes","url":"https://wellknown.network/agents/security-recipes","links":{"self":"https://wellknown.network/agents/security-recipes/record.json","html":"https://wellknown.network/agents/security-recipes","markdown":"https://wellknown.network/agents/security-recipes/record.md","api":"https://wellknown.network/api/v1/agents/security-recipes","status":"https://wellknown.network/api/v1/agents/security-recipes/status","claim":"https://wellknown.network/agents/security-recipes/claim","claimApi":"https://wellknown.network/api/v1/claims","claimDescriptor":"https://wellknown.network/agents/security-recipes/claim.json","badge":"https://wellknown.network/agents/security-recipes/badge.svg","openapi":"https://wellknown.network/openapi.json","history":"https://wellknown.network/api/v1/agents/security-recipes/history","tools":"https://wellknown.network/api/v1/agents/security-recipes/tools"},"ard":{"identifier":"urn:air:security-recipes.ai:server:security-recipes","type":"application/mcp-server-card+json"},"kind":"mcp_server","declared":{"name":"Security Recipes","summary":"Read-only CVE intelligence, remediation playbooks, and agent setup guides. Not a scanner.","description":"Read-only CVE intelligence, remediation playbooks, and agent setup guides. Not a scanner.","publisher":{"name":"stevologic","url":null},"homepage":"https://security-recipes.ai","repository":"https://github.com/stevologic/security-recipes.ai","version":"1.0.0","license":null,"protocols":["mcp"],"tags":[],"pricing":null,"endpoints":[{"url":"https://security-recipes.ai/mcp","type":"mcp_streamable_http","auth":null,"probeable":true}],"skills":null,"tools":null,"extra":{"updatedAt":"2026-08-26T22:07:50.723665Z","publishedAt":"2026-08-26T22:07:50.723665Z","registryName":"io.github.stevologic/security-recipes"},"attribution":{"kind":"mcp_registry","name":"mcp_registry","repoUrl":"mcp_registry","summary":"mcp_registry","version":"mcp_registry","description":"mcp_registry","homepageUrl":"mcp_registry","publisherName":"mcp_registry"}},"derived":{"capabilities":[{"slug":"security.identity","name":"Identity & Access","confidence":1,"provenance":"derived"},{"slug":"ai.evaluation","name":"Evaluation & Benchmarks","confidence":0.992,"provenance":"derived"},{"slug":"security.scanning","name":"Security Scanning","confidence":0.984,"provenance":"derived"},{"slug":"code.security-review","name":"Security Review","confidence":0.807,"provenance":"derived"},{"slug":"automation.orchestration","name":"Agent Orchestration","confidence":0.554,"provenance":"derived"},{"slug":"content.writing","name":"Writing & Editing","confidence":0.54,"provenance":"derived"},{"slug":"documents.contracts","name":"Contracts & Legal","confidence":0.525,"provenance":"derived"},{"slug":"ai.prompting","name":"Prompt Management","confidence":0.525,"provenance":"derived"}],"categories":["ai","automation","code","content","documents","security"],"language":"en"},"observed":{"status":"live","statusReason":"Responded 4h ago.","lastOkAt":"2026-10-10T14:26:20.595Z","lastProbedAt":"2026-10-10T14:26:20.595Z","statusComputedAt":"2026-10-10T14:27:26.212Z","reliability30d":{"probes":111,"successRate":1,"p50Ms":170,"basis":"service","measures":{"availability":"availability","latency":"response time","tools":"tool surface observed","summary":"Checks reached the service itself."},"checks":{"total":109,"ok":109,"authBoundaryOk":0,"serviceOk":109,"note":"Counted from the observation rows for the window, checks of the server only (HTTP, A2A card, MCP initialize). ok = authBoundaryOk + serviceOk. `probes` is the sum of daily rollups and includes registry checks, so it can differ from `total`."}},"latestObservations":[{"at":"2026-10-10T14:26:20.595Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":158,"error":null,"detail":{"tools":[{"name":"recipes_server_info","description":"Return MCP server metadata and source-index configuration."},{"name":"recipes_mcp_upstream_servers","description":"List optional upstream MCP servers configured for this Security Recipes server."},{"name":"recipes_mcp_servers_list","description":"Search the bundled catalog of publicly documented MCP servers and ecosystems."},{"name":"recipes_mcp_server_get","description":"Return one publicly documented MCP server with official setup and safety guidance."},{"name":"recipes_mcp_upstream_tools","description":"List tools exposed by a configured upstream MCP server and show local allow decisions."},{"name":"recipes_mcp_upstream_call","description":"Call an allowed read-only tool on a configured upstream MCP server."},{"name":"recipes_mcp_upstream_context","description":"Collect bounded context from configured upstream MCP servers for a remediation query."},{"name":"recipes_refresh","description":"Refresh the in-memory copy of recipes-index.json."},{"name":"recipes_search","description":"Full-text search over security-recipes documents."},{"name":"recipes_list","description":"List recipes with optional metadata filtering."},{"name":"recipes_get","description":"Get a full recipe record by slug or path."},{"name":"recipes_playbooks_list","description":"List concise remediation playbook records, optionally filtered by query or category."},{"name":"recipes_playbook_get","description":"Get one complete remediation workflow, evidence, output, and Python contract."},{"name":"recipes_playbook_plan","description":"Build a deterministic, read-only phase, gate, and evidence checklist for a finding."},{"name":"recipes_cve_catalog_info","description":"Return the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts."},{"name":"recipes_cve_search","description":"Search every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details."},{"name":"recipes_cve_get","description":"Get evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE."},{"name":"recipes_quality_report","description":"Summarize recipe quality tiers and list recipes missing world-class signals."},{"name":"recipes_workflow_control_plane","description":"Return workflow control-plane policy for agents, reviewers, and MCP gateways."},{"name":"recipes_mcp_gateway_policy","description":"Return generated MCP gateway policy for scoped tool access and runtime controls."},{"name":"recipes_agentic_assurance_pack","description":"Return enterprise assurance controls, workflow evidence, and AI/Agent BOM seed."},{"name":"recipes_agent_identity_ledger","description":"Return agent non-human identity, delegation, scope, and audit contracts."},{"name":"recipes_agentic_entitlement_review_pack","description":"Return expiring agent entitlement leases, access reviews, and scope evidence."},{"name":"recipes_agentic_approval_receipt_pack","description":"Return scope-bound approval receipt profiles, workflow requirements, and evidence."},{"name":"recipes_mcp_connector_trust_pack","description":"Return MCP connector trust tiers, controls, evidence, and workflow namespace coverage."},{"name":"recipes_mcp_connector_intake_pack","description":"Return MCP connector intake decisions, risk findings, gaps, and promotion plans."},{"name":"recipes_mcp_stdio_launch_boundary_pack","description":"Return MCP STDIO launch boundaries, profiles, decisions, and evidence."},{"name":"recipes_mcp_authorization_conformance_pack","description":"Return MCP authorization conformance, scope-drift, and token-boundary evidence."},{"name":"recipes_mcp_elicitation_boundary_pack","description":"Return MCP form-mode and URL-mode elicitation boundary evidence."},{"name":"recipes_mcp_tool_risk_contract","description":"Return MCP tool annotation, trust, and session-combination risk evidence."},{"name":"recipes_mcp_tool_surface_drift_pack","description":"Return pinned MCP tool descriptions, schemas, annotations, and drift evidence."},{"name":"recipes_agentic_red_team_drill_pack","description":"Return adversarial drills for agentic remediation workflows and MCP controls."},{"name":"recipes_agentic_red_team_replay_harness","description":"Return replay fixtures, expected decisions, and evidence gates for red-team drills."},{"name":"recipes_agentic_readiness_scorecard","description":"Return generated scale, pilot, gate, or block decisions for agentic workflows."},{"name":"recipes_agent_capability_risk_register","description":"Return capability-based residual risk scores for agentic workflows."},{"name":"recipes_agent_memory_boundary_pack","description":"Return agent memory classes, workflow profiles, TTLs, and persistence decisions."},{"name":"recipes_agent_skill_supply_chain_pack","description":"Return agent skill provenance, permission, isolation, and supply-chain decisions."},{"name":"recipes_agent_handoff_boundary_pack","description":"Return agent handoff boundary profiles, protocol controls, and workflow maps."},{"name":"recipes_a2a_agent_card_trust_profile","description":"Return A2A Agent Card intake profiles, trust controls, and sample decisions."},{"name":"recipes_agentic_system_bom","description":"Return the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence."},{"name":"recipes_agentic_run_receipt_pack","description":"Return agent run receipt templates for identity, context, tools, egress, approval, and evidence."},{"name":"recipes_secure_context_trust_pack","description":"Return context provenance, retrieval policy, source hashes, and workflow context packages."},{"name":"recipes_secure_context_attestation_pack","description":"Return secure-context attestation subjects, verification policy, and recertification state."},{"name":"recipes_secure_context_lineage_ledger","description":"Return context lineage, reuse policy, stage requirements, hashes, and workflow envelopes."},{"name":"recipes_secure_context_eval_pack","description":"Return scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs."},{"name":"recipes_context_poisoning_guard_pack","description":"Return context-poisoning scan results for registered secure-context sources."},{"name":"recipes_context_egress_boundary_pack","description":"Return context egress data classes, destination classes, and workflow boundary policy."},{"name":"recipes_agentic_threat_radar","description":"Return current source-backed agentic AI threat signals and product priorities."},{"name":"recipes_agentic_standards_crosswalk","description":"Return standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance."},{"name":"recipes_agentic_source_freshness_watch","description":"Return source-freshness and standards-drift evidence for SecurityRecipes."},{"name":"recipes_mcp_risk_coverage_pack","description":"Return OWASP MCP and agentic-skill risk coverage mapped to generated evidence."},{"name":"recipes_agentic_protocol_conformance_pack","description":"Return MCP/A2A protocol conformance evidence and buyer-ready drift controls."},{"name":"recipes_agentic_control_plane_blueprint","description":"Return the acquisition-ready agentic control plane architecture and buyer evidence map."},{"name":"recipes_agentic_exposure_graph","description":"Return risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence."},{"name":"recipes_agentic_posture_snapshot","description":"Return the generated enterprise posture snapshot for agentic AI and MCP operations."},{"name":"recipes_agentic_aivss_risk_scoring_pack","description":"Return AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges."},{"name":"recipes_agentic_app_intake_pack","description":"Return generated agentic app launch-review profiles and decisions."},{"name":"recipes_model_provider_routing_pack","description":"Return model-provider route profiles, workflow mappings, and required evidence."},{"name":"recipes_agentic_catastrophic_risk_annex","description":"Return the severe-risk annex for high-impact agentic AI runtime decisions."},{"name":"recipes_critical_infrastructure_secure_context_pack","description":"Return the generated critical-infrastructure secure-context profile."},{"name":"recipes_agentic_incident_response_pack","description":"Return agentic incident response classes, phases, workflow matrix, and evidence."},{"name":"recipes_agentic_action_runtime_pack","description":"Return action classes, workflow action envelopes, runtime policy, and evidence."},{"name":"recipes_agent_trust_fabric_pack","description":"Return Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof."},{"name":"recipes_browser_agent_boundary_pack","description":"Return browser-agent workspace classes, task profiles, controls, and evidence."},{"name":"recipes_agentic_measurement_probe_pack","description":"Return measurement probes for agentic workflow traceability and readiness."},{"name":"recipes_agentic_telemetry_contract","description":"Return the OpenTelemetry-aligned agentic telemetry and redaction contract."},{"name":"recipes_agentic_soc_detection_pack","description":"Return SIEM-ready detections for agentic AI and MCP telemetry."},{"name":"recipes_enterprise_trust_center_export","description":"Return the bundled enterprise trust-center export for buyer and platform diligence."},{"name":"recipes_secure_context_value_model","description":"Return the secure context value model for buyer, ROI, and acquisition diligence."},{"name":"recipes_design_partner_pilot_pack","description":"Return the design partner pilot motion for buyer proof and hosted MCP validation."},{"name":"recipes_secure_context_buyer_diligence_brief","description":"Return buyer and acquirer diligence evidence for the secure context layer."},{"name":"recipes_secure_context_customer_proof_pack","description":"Return the customer proof contract for design partner and acquisition evidence."},{"name":"recipes_secure_context_evidence_contract","description":"Return the secure context evidence API and release contract."},{"name":"recipes_hosted_mcp_readiness_pack","description":"Return the hosted MCP readiness plan for enterprise product rollout."},{"name":"recipes_match_finding","description":"Heuristic matcher that suggests best-fit recipes for a security finding."}],"toolCount":75,"toolsHash":"c90f7991b60d4904ad7d46f2554a36b85bd6bd5281d3d67879bcaeebb78909a9","serverName":"security-recipes-mcp","capabilities":["logging","prompts","resources","tools"],"serverVersion":"4.0.10","protocolVersion":"2025-06-18"}},{"at":"2026-10-10T07:25:29.143Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":170,"error":null,"detail":{"tools":[{"name":"recipes_server_info","description":"Return MCP server metadata and source-index configuration."},{"name":"recipes_mcp_upstream_servers","description":"List optional upstream MCP servers configured for this Security Recipes server."},{"name":"recipes_mcp_servers_list","description":"Search the bundled catalog of publicly documented MCP servers and ecosystems."},{"name":"recipes_mcp_server_get","description":"Return one publicly documented MCP server with official setup and safety guidance."},{"name":"recipes_mcp_upstream_tools","description":"List tools exposed by a configured upstream MCP server and show local allow decisions."},{"name":"recipes_mcp_upstream_call","description":"Call an allowed read-only tool on a configured upstream MCP server."},{"name":"recipes_mcp_upstream_context","description":"Collect bounded context from configured upstream MCP servers for a remediation query."},{"name":"recipes_refresh","description":"Refresh the in-memory copy of recipes-index.json."},{"name":"recipes_search","description":"Full-text search over security-recipes documents."},{"name":"recipes_list","description":"List recipes with optional metadata filtering."},{"name":"recipes_get","description":"Get a full recipe record by slug or path."},{"name":"recipes_playbooks_list","description":"List concise remediation playbook records, optionally filtered by query or category."},{"name":"recipes_playbook_get","description":"Get one complete remediation workflow, evidence, output, and Python contract."},{"name":"recipes_playbook_plan","description":"Build a deterministic, read-only phase, gate, and evidence checklist for a finding."},{"name":"recipes_cve_catalog_info","description":"Return the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts."},{"name":"recipes_cve_search","description":"Search every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details."},{"name":"recipes_cve_get","description":"Get evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE."},{"name":"recipes_quality_report","description":"Summarize recipe quality tiers and list recipes missing world-class signals."},{"name":"recipes_workflow_control_plane","description":"Return workflow control-plane policy for agents, reviewers, and MCP gateways."},{"name":"recipes_mcp_gateway_policy","description":"Return generated MCP gateway policy for scoped tool access and runtime controls."},{"name":"recipes_agentic_assurance_pack","description":"Return enterprise assurance controls, workflow evidence, and AI/Agent BOM seed."},{"name":"recipes_agent_identity_ledger","description":"Return agent non-human identity, delegation, scope, and audit contracts."},{"name":"recipes_agentic_entitlement_review_pack","description":"Return expiring agent entitlement leases, access reviews, and scope evidence."},{"name":"recipes_agentic_approval_receipt_pack","description":"Return scope-bound approval receipt profiles, workflow requirements, and evidence."},{"name":"recipes_mcp_connector_trust_pack","description":"Return MCP connector trust tiers, controls, evidence, and workflow namespace coverage."},{"name":"recipes_mcp_connector_intake_pack","description":"Return MCP connector intake decisions, risk findings, gaps, and promotion plans."},{"name":"recipes_mcp_stdio_launch_boundary_pack","description":"Return MCP STDIO launch boundaries, profiles, decisions, and evidence."},{"name":"recipes_mcp_authorization_conformance_pack","description":"Return MCP authorization conformance, scope-drift, and token-boundary evidence."},{"name":"recipes_mcp_elicitation_boundary_pack","description":"Return MCP form-mode and URL-mode elicitation boundary evidence."},{"name":"recipes_mcp_tool_risk_contract","description":"Return MCP tool annotation, trust, and session-combination risk evidence."},{"name":"recipes_mcp_tool_surface_drift_pack","description":"Return pinned MCP tool descriptions, schemas, annotations, and drift evidence."},{"name":"recipes_agentic_red_team_drill_pack","description":"Return adversarial drills for agentic remediation workflows and MCP controls."},{"name":"recipes_agentic_red_team_replay_harness","description":"Return replay fixtures, expected decisions, and evidence gates for red-team drills."},{"name":"recipes_agentic_readiness_scorecard","description":"Return generated scale, pilot, gate, or block decisions for agentic workflows."},{"name":"recipes_agent_capability_risk_register","description":"Return capability-based residual risk scores for agentic workflows."},{"name":"recipes_agent_memory_boundary_pack","description":"Return agent memory classes, workflow profiles, TTLs, and persistence decisions."},{"name":"recipes_agent_skill_supply_chain_pack","description":"Return agent skill provenance, permission, isolation, and supply-chain decisions."},{"name":"recipes_agent_handoff_boundary_pack","description":"Return agent handoff boundary profiles, protocol controls, and workflow maps."},{"name":"recipes_a2a_agent_card_trust_profile","description":"Return A2A Agent Card intake profiles, trust controls, and sample decisions."},{"name":"recipes_agentic_system_bom","description":"Return the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence."},{"name":"recipes_agentic_run_receipt_pack","description":"Return agent run receipt templates for identity, context, tools, egress, approval, and evidence."},{"name":"recipes_secure_context_trust_pack","description":"Return context provenance, retrieval policy, source hashes, and workflow context packages."},{"name":"recipes_secure_context_attestation_pack","description":"Return secure-context attestation subjects, verification policy, and recertification state."},{"name":"recipes_secure_context_lineage_ledger","description":"Return context lineage, reuse policy, stage requirements, hashes, and workflow envelopes."},{"name":"recipes_secure_context_eval_pack","description":"Return scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs."},{"name":"recipes_context_poisoning_guard_pack","description":"Return context-poisoning scan results for registered secure-context sources."},{"name":"recipes_context_egress_boundary_pack","description":"Return context egress data classes, destination classes, and workflow boundary policy."},{"name":"recipes_agentic_threat_radar","description":"Return current source-backed agentic AI threat signals and product priorities."},{"name":"recipes_agentic_standards_crosswalk","description":"Return standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance."},{"name":"recipes_agentic_source_freshness_watch","description":"Return source-freshness and standards-drift evidence for SecurityRecipes."},{"name":"recipes_mcp_risk_coverage_pack","description":"Return OWASP MCP and agentic-skill risk coverage mapped to generated evidence."},{"name":"recipes_agentic_protocol_conformance_pack","description":"Return MCP/A2A protocol conformance evidence and buyer-ready drift controls."},{"name":"recipes_agentic_control_plane_blueprint","description":"Return the acquisition-ready agentic control plane architecture and buyer evidence map."},{"name":"recipes_agentic_exposure_graph","description":"Return risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence."},{"name":"recipes_agentic_posture_snapshot","description":"Return the generated enterprise posture snapshot for agentic AI and MCP operations."},{"name":"recipes_agentic_aivss_risk_scoring_pack","description":"Return AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges."},{"name":"recipes_agentic_app_intake_pack","description":"Return generated agentic app launch-review profiles and decisions."},{"name":"recipes_model_provider_routing_pack","description":"Return model-provider route profiles, workflow mappings, and required evidence."},{"name":"recipes_agentic_catastrophic_risk_annex","description":"Return the severe-risk annex for high-impact agentic AI runtime decisions."},{"name":"recipes_critical_infrastructure_secure_context_pack","description":"Return the generated critical-infrastructure secure-context profile."},{"name":"recipes_agentic_incident_response_pack","description":"Return agentic incident response classes, phases, workflow matrix, and evidence."},{"name":"recipes_agentic_action_runtime_pack","description":"Return action classes, workflow action envelopes, runtime policy, and evidence."},{"name":"recipes_agent_trust_fabric_pack","description":"Return Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof."},{"name":"recipes_browser_agent_boundary_pack","description":"Return browser-agent workspace classes, task profiles, controls, and evidence."},{"name":"recipes_agentic_measurement_probe_pack","description":"Return measurement probes for agentic workflow traceability and readiness."},{"name":"recipes_agentic_telemetry_contract","description":"Return the OpenTelemetry-aligned agentic telemetry and redaction contract."},{"name":"recipes_agentic_soc_detection_pack","description":"Return SIEM-ready detections for agentic AI and MCP telemetry."},{"name":"recipes_enterprise_trust_center_export","description":"Return the bundled enterprise trust-center export for buyer and platform diligence."},{"name":"recipes_secure_context_value_model","description":"Return the secure context value model for buyer, ROI, and acquisition diligence."},{"name":"recipes_design_partner_pilot_pack","description":"Return the design partner pilot motion for buyer proof and hosted MCP validation."},{"name":"recipes_secure_context_buyer_diligence_brief","description":"Return buyer and acquirer diligence evidence for the secure context layer."},{"name":"recipes_secure_context_customer_proof_pack","description":"Return the customer proof contract for design partner and acquisition evidence."},{"name":"recipes_secure_context_evidence_contract","description":"Return the secure context evidence API and release contract."},{"name":"recipes_hosted_mcp_readiness_pack","description":"Return the hosted MCP readiness plan for enterprise product rollout."},{"name":"recipes_match_finding","description":"Heuristic matcher that suggests best-fit recipes for a security finding."}],"toolCount":75,"toolsHash":"c90f7991b60d4904ad7d46f2554a36b85bd6bd5281d3d67879bcaeebb78909a9","serverName":"security-recipes-mcp","capabilities":["logging","prompts","resources","tools"],"serverVersion":"4.0.10","protocolVersion":"2025-06-18"}},{"at":"2026-10-10T01:24:11.821Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":155,"error":null,"detail":{"tools":[{"name":"recipes_server_info","description":"Return MCP server metadata and source-index configuration."},{"name":"recipes_mcp_upstream_servers","description":"List optional upstream MCP servers configured for this Security Recipes server."},{"name":"recipes_mcp_servers_list","description":"Search the bundled catalog of publicly documented MCP servers and ecosystems."},{"name":"recipes_mcp_server_get","description":"Return one publicly documented MCP server with official setup and safety guidance."},{"name":"recipes_mcp_upstream_tools","description":"List tools exposed by a configured upstream MCP server and show local allow decisions."},{"name":"recipes_mcp_upstream_call","description":"Call an allowed read-only tool on a configured upstream MCP server."},{"name":"recipes_mcp_upstream_context","description":"Collect bounded context from configured upstream MCP servers for a remediation query."},{"name":"recipes_refresh","description":"Refresh the in-memory copy of recipes-index.json."},{"name":"recipes_search","description":"Full-text search over security-recipes documents."},{"name":"recipes_list","description":"List recipes with optional metadata filtering."},{"name":"recipes_get","description":"Get a full recipe record by slug or path."},{"name":"recipes_playbooks_list","description":"List concise remediation playbook records, optionally filtered by query or category."},{"name":"recipes_playbook_get","description":"Get one complete remediation workflow, evidence, output, and Python contract."},{"name":"recipes_playbook_plan","description":"Build a deterministic, read-only phase, gate, and evidence checklist for a finding."},{"name":"recipes_cve_catalog_info","description":"Return the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts."},{"name":"recipes_cve_search","description":"Search every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details."},{"name":"recipes_cve_get","description":"Get evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE."},{"name":"recipes_quality_report","description":"Summarize recipe quality tiers and list recipes missing world-class signals."},{"name":"recipes_workflow_control_plane","description":"Return workflow control-plane policy for agents, reviewers, and MCP gateways."},{"name":"recipes_mcp_gateway_policy","description":"Return generated MCP gateway policy for scoped tool access and runtime controls."},{"name":"recipes_agentic_assurance_pack","description":"Return enterprise assurance controls, workflow evidence, and AI/Agent BOM seed."},{"name":"recipes_agent_identity_ledger","description":"Return agent non-human identity, delegation, scope, and audit contracts."},{"name":"recipes_agentic_entitlement_review_pack","description":"Return expiring agent entitlement leases, access reviews, and scope evidence."},{"name":"recipes_agentic_approval_receipt_pack","description":"Return scope-bound approval receipt profiles, workflow requirements, and evidence."},{"name":"recipes_mcp_connector_trust_pack","description":"Return MCP connector trust tiers, controls, evidence, and workflow namespace coverage."},{"name":"recipes_mcp_connector_intake_pack","description":"Return MCP connector intake decisions, risk findings, gaps, and promotion plans."},{"name":"recipes_mcp_stdio_launch_boundary_pack","description":"Return MCP STDIO launch boundaries, profiles, decisions, and evidence."},{"name":"recipes_mcp_authorization_conformance_pack","description":"Return MCP authorization conformance, scope-drift, and token-boundary evidence."},{"name":"recipes_mcp_elicitation_boundary_pack","description":"Return MCP form-mode and URL-mode elicitation boundary evidence."},{"name":"recipes_mcp_tool_risk_contract","description":"Return MCP tool annotation, trust, and session-combination risk evidence."},{"name":"recipes_mcp_tool_surface_drift_pack","description":"Return pinned MCP tool descriptions, schemas, annotations, and drift evidence."},{"name":"recipes_agentic_red_team_drill_pack","description":"Return adversarial drills for agentic remediation workflows and MCP controls."},{"name":"recipes_agentic_red_team_replay_harness","description":"Return replay fixtures, expected decisions, and evidence gates for red-team drills."},{"name":"recipes_agentic_readiness_scorecard","description":"Return generated scale, pilot, gate, or block decisions for agentic workflows."},{"name":"recipes_agent_capability_risk_register","description":"Return capability-based residual risk scores for agentic workflows."},{"name":"recipes_agent_memory_boundary_pack","description":"Return agent memory classes, workflow profiles, TTLs, and persistence decisions."},{"name":"recipes_agent_skill_supply_chain_pack","description":"Return agent skill provenance, permission, isolation, and supply-chain decisions."},{"name":"recipes_agent_handoff_boundary_pack","description":"Return agent handoff boundary profiles, protocol controls, and workflow maps."},{"name":"recipes_a2a_agent_card_trust_profile","description":"Return A2A Agent Card intake profiles, trust controls, and sample decisions."},{"name":"recipes_agentic_system_bom","description":"Return the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence."},{"name":"recipes_agentic_run_receipt_pack","description":"Return agent run receipt templates for identity, context, tools, egress, approval, and evidence."},{"name":"recipes_secure_context_trust_pack","description":"Return context provenance, retrieval policy, source hashes, and workflow context packages."},{"name":"recipes_secure_context_attestation_pack","description":"Return secure-context attestation subjects, verification policy, and recertification state."},{"name":"recipes_secure_context_lineage_ledger","description":"Return context lineage, reuse policy, stage requirements, hashes, and workflow envelopes."},{"name":"recipes_secure_context_eval_pack","description":"Return scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs."},{"name":"recipes_context_poisoning_guard_pack","description":"Return context-poisoning scan results for registered secure-context sources."},{"name":"recipes_context_egress_boundary_pack","description":"Return context egress data classes, destination classes, and workflow boundary policy."},{"name":"recipes_agentic_threat_radar","description":"Return current source-backed agentic AI threat signals and product priorities."},{"name":"recipes_agentic_standards_crosswalk","description":"Return standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance."},{"name":"recipes_agentic_source_freshness_watch","description":"Return source-freshness and standards-drift evidence for SecurityRecipes."},{"name":"recipes_mcp_risk_coverage_pack","description":"Return OWASP MCP and agentic-skill risk coverage mapped to generated evidence."},{"name":"recipes_agentic_protocol_conformance_pack","description":"Return MCP/A2A protocol conformance evidence and buyer-ready drift controls."},{"name":"recipes_agentic_control_plane_blueprint","description":"Return the acquisition-ready agentic control plane architecture and buyer evidence map."},{"name":"recipes_agentic_exposure_graph","description":"Return risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence."},{"name":"recipes_agentic_posture_snapshot","description":"Return the generated enterprise posture snapshot for agentic AI and MCP operations."},{"name":"recipes_agentic_aivss_risk_scoring_pack","description":"Return AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges."},{"name":"recipes_agentic_app_intake_pack","description":"Return generated agentic app launch-review profiles and decisions."},{"name":"recipes_model_provider_routing_pack","description":"Return model-provider route profiles, workflow mappings, and required evidence."},{"name":"recipes_agentic_catastrophic_risk_annex","description":"Return the severe-risk annex for high-impact agentic AI runtime decisions."},{"name":"recipes_critical_infrastructure_secure_context_pack","description":"Return the generated critical-infrastructure secure-context profile."},{"name":"recipes_agentic_incident_response_pack","description":"Return agentic incident response classes, phases, workflow matrix, and evidence."},{"name":"recipes_agentic_action_runtime_pack","description":"Return action classes, workflow action envelopes, runtime policy, and evidence."},{"name":"recipes_agent_trust_fabric_pack","description":"Return Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof."},{"name":"recipes_browser_agent_boundary_pack","description":"Return browser-agent workspace classes, task profiles, controls, and evidence."},{"name":"recipes_agentic_measurement_probe_pack","description":"Return measurement probes for agentic workflow traceability and readiness."},{"name":"recipes_agentic_telemetry_contract","description":"Return the OpenTelemetry-aligned agentic telemetry and redaction contract."},{"name":"recipes_agentic_soc_detection_pack","description":"Return SIEM-ready detections for agentic AI and MCP telemetry."},{"name":"recipes_enterprise_trust_center_export","description":"Return the bundled enterprise trust-center export for buyer and platform diligence."},{"name":"recipes_secure_context_value_model","description":"Return the secure context value model for buyer, ROI, and acquisition diligence."},{"name":"recipes_design_partner_pilot_pack","description":"Return the design partner pilot motion for buyer proof and hosted MCP validation."},{"name":"recipes_secure_context_buyer_diligence_brief","description":"Return buyer and acquirer diligence evidence for the secure context layer."},{"name":"recipes_secure_context_customer_proof_pack","description":"Return the customer proof contract for design partner and acquisition evidence."},{"name":"recipes_secure_context_evidence_contract","description":"Return the secure context evidence API and release contract."},{"name":"recipes_hosted_mcp_readiness_pack","description":"Return the hosted MCP readiness plan for enterprise product rollout."},{"name":"recipes_match_finding","description":"Heuristic matcher that suggests best-fit recipes for a security finding."}],"toolCount":75,"toolsHash":"c90f7991b60d4904ad7d46f2554a36b85bd6bd5281d3d67879bcaeebb78909a9","serverName":"security-recipes-mcp","capabilities":["logging","prompts","resources","tools"],"serverVersion":"4.0.10","protocolVersion":"2025-06-18"}},{"at":"2026-10-09T18:26:36.695Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":170,"error":null,"detail":{"tools":[{"name":"recipes_server_info","description":"Return MCP server metadata and source-index configuration."},{"name":"recipes_mcp_upstream_servers","description":"List optional upstream MCP servers configured for this Security Recipes server."},{"name":"recipes_mcp_servers_list","description":"Search the bundled catalog of publicly documented MCP servers and ecosystems."},{"name":"recipes_mcp_server_get","description":"Return one publicly documented MCP server with official setup and safety guidance."},{"name":"recipes_mcp_upstream_tools","description":"List tools exposed by a configured upstream MCP server and show local allow decisions."},{"name":"recipes_mcp_upstream_call","description":"Call an allowed read-only tool on a configured upstream MCP server."},{"name":"recipes_mcp_upstream_context","description":"Collect bounded context from configured upstream MCP servers for a remediation query."},{"name":"recipes_refresh","description":"Refresh the in-memory copy of recipes-index.json."},{"name":"recipes_search","description":"Full-text search over security-recipes documents."},{"name":"recipes_list","description":"List recipes with optional metadata filtering."},{"name":"recipes_get","description":"Get a full recipe record by slug or path."},{"name":"recipes_playbooks_list","description":"List concise remediation playbook records, optionally filtered by query or category."},{"name":"recipes_playbook_get","description":"Get one complete remediation workflow, evidence, output, and Python contract."},{"name":"recipes_playbook_plan","description":"Build a deterministic, read-only phase, gate, and evidence checklist for a finding."},{"name":"recipes_cve_catalog_info","description":"Return the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts."},{"name":"recipes_cve_search","description":"Search every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details."},{"name":"recipes_cve_get","description":"Get evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE."},{"name":"recipes_quality_report","description":"Summarize recipe quality tiers and list recipes missing world-class signals."},{"name":"recipes_workflow_control_plane","description":"Return workflow control-plane policy for agents, reviewers, and MCP gateways."},{"name":"recipes_mcp_gateway_policy","description":"Return generated MCP gateway policy for scoped tool access and runtime controls."},{"name":"recipes_agentic_assurance_pack","description":"Return enterprise assurance controls, workflow evidence, and AI/Agent BOM seed."},{"name":"recipes_agent_identity_ledger","description":"Return agent non-human identity, delegation, scope, and audit contracts."},{"name":"recipes_agentic_entitlement_review_pack","description":"Return expiring agent entitlement leases, access reviews, and scope evidence."},{"name":"recipes_agentic_approval_receipt_pack","description":"Return scope-bound approval receipt profiles, workflow requirements, and evidence."},{"name":"recipes_mcp_connector_trust_pack","description":"Return MCP connector trust tiers, controls, evidence, and workflow namespace coverage."},{"name":"recipes_mcp_connector_intake_pack","description":"Return MCP connector intake decisions, risk findings, gaps, and promotion plans."},{"name":"recipes_mcp_stdio_launch_boundary_pack","description":"Return MCP STDIO launch boundaries, profiles, decisions, and evidence."},{"name":"recipes_mcp_authorization_conformance_pack","description":"Return MCP authorization conformance, scope-drift, and token-boundary evidence."},{"name":"recipes_mcp_elicitation_boundary_pack","description":"Return MCP form-mode and URL-mode elicitation boundary evidence."},{"name":"recipes_mcp_tool_risk_contract","description":"Return MCP tool annotation, trust, and session-combination risk evidence."},{"name":"recipes_mcp_tool_surface_drift_pack","description":"Return pinned MCP tool descriptions, schemas, annotations, and drift evidence."},{"name":"recipes_agentic_red_team_drill_pack","description":"Return adversarial drills for agentic remediation workflows and MCP controls."},{"name":"recipes_agentic_red_team_replay_harness","description":"Return replay fixtures, expected decisions, and evidence gates for red-team drills."},{"name":"recipes_agentic_readiness_scorecard","description":"Return generated scale, pilot, gate, or block decisions for agentic workflows."},{"name":"recipes_agent_capability_risk_register","description":"Return capability-based residual risk scores for agentic workflows."},{"name":"recipes_agent_memory_boundary_pack","description":"Return agent memory classes, workflow profiles, TTLs, and persistence decisions."},{"name":"recipes_agent_skill_supply_chain_pack","description":"Return agent skill provenance, permission, isolation, and supply-chain decisions."},{"name":"recipes_agent_handoff_boundary_pack","description":"Return agent handoff boundary profiles, protocol controls, and workflow maps."},{"name":"recipes_a2a_agent_card_trust_profile","description":"Return A2A Agent Card intake profiles, trust controls, and sample decisions."},{"name":"recipes_agentic_system_bom","description":"Return the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence."},{"name":"recipes_agentic_run_receipt_pack","description":"Return agent run receipt templates for identity, context, tools, egress, approval, and evidence."},{"name":"recipes_secure_context_trust_pack","description":"Return context provenance, retrieval policy, source hashes, and workflow context packages."},{"name":"recipes_secure_context_attestation_pack","description":"Return secure-context attestation subjects, verification policy, and recertification state."},{"name":"recipes_secure_context_lineage_ledger","description":"Return context lineage, reuse policy, stage requirements, hashes, and workflow envelopes."},{"name":"recipes_secure_context_eval_pack","description":"Return scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs."},{"name":"recipes_context_poisoning_guard_pack","description":"Return context-poisoning scan results for registered secure-context sources."},{"name":"recipes_context_egress_boundary_pack","description":"Return context egress data classes, destination classes, and workflow boundary policy."},{"name":"recipes_agentic_threat_radar","description":"Return current source-backed agentic AI threat signals and product priorities."},{"name":"recipes_agentic_standards_crosswalk","description":"Return standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance."},{"name":"recipes_agentic_source_freshness_watch","description":"Return source-freshness and standards-drift evidence for SecurityRecipes."},{"name":"recipes_mcp_risk_coverage_pack","description":"Return OWASP MCP and agentic-skill risk coverage mapped to generated evidence."},{"name":"recipes_agentic_protocol_conformance_pack","description":"Return MCP/A2A protocol conformance evidence and buyer-ready drift controls."},{"name":"recipes_agentic_control_plane_blueprint","description":"Return the acquisition-ready agentic control plane architecture and buyer evidence map."},{"name":"recipes_agentic_exposure_graph","description":"Return risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence."},{"name":"recipes_agentic_posture_snapshot","description":"Return the generated enterprise posture snapshot for agentic AI and MCP operations."},{"name":"recipes_agentic_aivss_risk_scoring_pack","description":"Return AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges."},{"name":"recipes_agentic_app_intake_pack","description":"Return generated agentic app launch-review profiles and decisions."},{"name":"recipes_model_provider_routing_pack","description":"Return model-provider route profiles, workflow mappings, and required evidence."},{"name":"recipes_agentic_catastrophic_risk_annex","description":"Return the severe-risk annex for high-impact agentic AI runtime decisions."},{"name":"recipes_critical_infrastructure_secure_context_pack","description":"Return the generated critical-infrastructure secure-context profile."},{"name":"recipes_agentic_incident_response_pack","description":"Return agentic incident response classes, phases, workflow matrix, and evidence."},{"name":"recipes_agentic_action_runtime_pack","description":"Return action classes, workflow action envelopes, runtime policy, and evidence."},{"name":"recipes_agent_trust_fabric_pack","description":"Return Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof."},{"name":"recipes_browser_agent_boundary_pack","description":"Return browser-agent workspace classes, task profiles, controls, and evidence."},{"name":"recipes_agentic_measurement_probe_pack","description":"Return measurement probes for agentic workflow traceability and readiness."},{"name":"recipes_agentic_telemetry_contract","description":"Return the OpenTelemetry-aligned agentic telemetry and redaction contract."},{"name":"recipes_agentic_soc_detection_pack","description":"Return SIEM-ready detections for agentic AI and MCP telemetry."},{"name":"recipes_enterprise_trust_center_export","description":"Return the bundled enterprise trust-center export for buyer and platform diligence."},{"name":"recipes_secure_context_value_model","description":"Return the secure context value model for buyer, ROI, and acquisition diligence."},{"name":"recipes_design_partner_pilot_pack","description":"Return the design partner pilot motion for buyer proof and hosted MCP validation."},{"name":"recipes_secure_context_buyer_diligence_brief","description":"Return buyer and acquirer diligence evidence for the secure context layer."},{"name":"recipes_secure_context_customer_proof_pack","description":"Return the customer proof contract for design partner and acquisition evidence."},{"name":"recipes_secure_context_evidence_contract","description":"Return the secure context evidence API and release contract."},{"name":"recipes_hosted_mcp_readiness_pack","description":"Return the hosted MCP readiness plan for enterprise product rollout."},{"name":"recipes_match_finding","description":"Heuristic matcher that suggests best-fit recipes for a security finding."}],"toolCount":75,"toolsHash":"c90f7991b60d4904ad7d46f2554a36b85bd6bd5281d3d67879bcaeebb78909a9","serverName":"security-recipes-mcp","capabilities":["logging","prompts","resources","tools"],"serverVersion":"4.0.10","protocolVersion":"2025-06-18"}},{"at":"2026-10-09T11:27:20.143Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":302,"error":null,"detail":{"tools":[{"name":"recipes_server_info","description":"Return MCP server metadata and source-index configuration."},{"name":"recipes_mcp_upstream_servers","description":"List optional upstream MCP servers configured for this Security Recipes server."},{"name":"recipes_mcp_servers_list","description":"Search the bundled catalog of publicly documented MCP servers and ecosystems."},{"name":"recipes_mcp_server_get","description":"Return one publicly documented MCP server with official setup and safety guidance."},{"name":"recipes_mcp_upstream_tools","description":"List tools exposed by a configured upstream MCP server and show local allow decisions."},{"name":"recipes_mcp_upstream_call","description":"Call an allowed read-only tool on a configured upstream MCP server."},{"name":"recipes_mcp_upstream_context","description":"Collect bounded context from configured upstream MCP servers for a remediation query."},{"name":"recipes_refresh","description":"Refresh the in-memory copy of recipes-index.json."},{"name":"recipes_search","description":"Full-text search over security-recipes documents."},{"name":"recipes_list","description":"List recipes with optional metadata filtering."},{"name":"recipes_get","description":"Get a full recipe record by slug or path."},{"name":"recipes_playbooks_list","description":"List concise remediation playbook records, optionally filtered by query or category."},{"name":"recipes_playbook_get","description":"Get one complete remediation workflow, evidence, output, and Python contract."},{"name":"recipes_playbook_plan","description":"Build a deterministic, read-only phase, gate, and evidence checklist for a finding."},{"name":"recipes_cve_catalog_info","description":"Return the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts."},{"name":"recipes_cve_search","description":"Search every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details."},{"name":"recipes_cve_get","description":"Get evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE."},{"name":"recipes_quality_report","description":"Summarize recipe quality tiers and list recipes missing world-class signals."},{"name":"recipes_workflow_control_plane","description":"Return workflow control-plane policy for agents, reviewers, and MCP gateways."},{"name":"recipes_mcp_gateway_policy","description":"Return generated MCP gateway policy for scoped tool access and runtime controls."},{"name":"recipes_agentic_assurance_pack","description":"Return enterprise assurance controls, workflow evidence, and AI/Agent BOM seed."},{"name":"recipes_agent_identity_ledger","description":"Return agent non-human identity, delegation, scope, and audit contracts."},{"name":"recipes_agentic_entitlement_review_pack","description":"Return expiring agent entitlement leases, access reviews, and scope evidence."},{"name":"recipes_agentic_approval_receipt_pack","description":"Return scope-bound approval receipt profiles, workflow requirements, and evidence."},{"name":"recipes_mcp_connector_trust_pack","description":"Return MCP connector trust tiers, controls, evidence, and workflow namespace coverage."},{"name":"recipes_mcp_connector_intake_pack","description":"Return MCP connector intake decisions, risk findings, gaps, and promotion plans."},{"name":"recipes_mcp_stdio_launch_boundary_pack","description":"Return MCP STDIO launch boundaries, profiles, decisions, and evidence."},{"name":"recipes_mcp_authorization_conformance_pack","description":"Return MCP authorization conformance, scope-drift, and token-boundary evidence."},{"name":"recipes_mcp_elicitation_boundary_pack","description":"Return MCP form-mode and URL-mode elicitation boundary evidence."},{"name":"recipes_mcp_tool_risk_contract","description":"Return MCP tool annotation, trust, and session-combination risk evidence."},{"name":"recipes_mcp_tool_surface_drift_pack","description":"Return pinned MCP tool descriptions, schemas, annotations, and drift evidence."},{"name":"recipes_agentic_red_team_drill_pack","description":"Return adversarial drills for agentic remediation workflows and MCP controls."},{"name":"recipes_agentic_red_team_replay_harness","description":"Return replay fixtures, expected decisions, and evidence gates for red-team drills."},{"name":"recipes_agentic_readiness_scorecard","description":"Return generated scale, pilot, gate, or block decisions for agentic workflows."},{"name":"recipes_agent_capability_risk_register","description":"Return capability-based residual risk scores for agentic workflows."},{"name":"recipes_agent_memory_boundary_pack","description":"Return agent memory classes, workflow profiles, TTLs, and persistence decisions."},{"name":"recipes_agent_skill_supply_chain_pack","description":"Return agent skill provenance, permission, isolation, and supply-chain decisions."},{"name":"recipes_agent_handoff_boundary_pack","description":"Return agent handoff boundary profiles, protocol controls, and workflow maps."},{"name":"recipes_a2a_agent_card_trust_profile","description":"Return A2A Agent Card intake profiles, trust controls, and sample decisions."},{"name":"recipes_agentic_system_bom","description":"Return the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence."},{"name":"recipes_agentic_run_receipt_pack","description":"Return agent run receipt templates for identity, context, tools, egress, approval, and evidence."},{"name":"recipes_secure_context_trust_pack","description":"Return context provenance, retrieval policy, source hashes, and workflow context packages."},{"name":"recipes_secure_context_attestation_pack","description":"Return secure-context attestation subjects, verification policy, and recertification state."},{"name":"recipes_secure_context_lineage_ledger","description":"Return context lineage, reuse policy, stage requirements, hashes, and workflow envelopes."},{"name":"recipes_secure_context_eval_pack","description":"Return scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs."},{"name":"recipes_context_poisoning_guard_pack","description":"Return context-poisoning scan results for registered secure-context sources."},{"name":"recipes_context_egress_boundary_pack","description":"Return context egress data classes, destination classes, and workflow boundary policy."},{"name":"recipes_agentic_threat_radar","description":"Return current source-backed agentic AI threat signals and product priorities."},{"name":"recipes_agentic_standards_crosswalk","description":"Return standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance."},{"name":"recipes_agentic_source_freshness_watch","description":"Return source-freshness and standards-drift evidence for SecurityRecipes."},{"name":"recipes_mcp_risk_coverage_pack","description":"Return OWASP MCP and agentic-skill risk coverage mapped to generated evidence."},{"name":"recipes_agentic_protocol_conformance_pack","description":"Return MCP/A2A protocol conformance evidence and buyer-ready drift controls."},{"name":"recipes_agentic_control_plane_blueprint","description":"Return the acquisition-ready agentic control plane architecture and buyer evidence map."},{"name":"recipes_agentic_exposure_graph","description":"Return risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence."},{"name":"recipes_agentic_posture_snapshot","description":"Return the generated enterprise posture snapshot for agentic AI and MCP operations."},{"name":"recipes_agentic_aivss_risk_scoring_pack","description":"Return AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges."},{"name":"recipes_agentic_app_intake_pack","description":"Return generated agentic app launch-review profiles and decisions."},{"name":"recipes_model_provider_routing_pack","description":"Return model-provider route profiles, workflow mappings, and required evidence."},{"name":"recipes_agentic_catastrophic_risk_annex","description":"Return the severe-risk annex for high-impact agentic AI runtime decisions."},{"name":"recipes_critical_infrastructure_secure_context_pack","description":"Return the generated critical-infrastructure secure-context profile."},{"name":"recipes_agentic_incident_response_pack","description":"Return agentic incident response classes, phases, workflow matrix, and evidence."},{"name":"recipes_agentic_action_runtime_pack","description":"Return action classes, workflow action envelopes, runtime policy, and evidence."},{"name":"recipes_agent_trust_fabric_pack","description":"Return Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof."},{"name":"recipes_browser_agent_boundary_pack","description":"Return browser-agent workspace classes, task profiles, controls, and evidence."},{"name":"recipes_agentic_measurement_probe_pack","description":"Return measurement probes for agentic workflow traceability and readiness."},{"name":"recipes_agentic_telemetry_contract","description":"Return the OpenTelemetry-aligned agentic telemetry and redaction contract."},{"name":"recipes_agentic_soc_detection_pack","description":"Return SIEM-ready detections for agentic AI and MCP telemetry."},{"name":"recipes_enterprise_trust_center_export","description":"Return the bundled enterprise trust-center export for buyer and platform diligence."},{"name":"recipes_secure_context_value_model","description":"Return the secure context value model for buyer, ROI, and acquisition diligence."},{"name":"recipes_design_partner_pilot_pack","description":"Return the design partner pilot motion for buyer proof and hosted MCP validation."},{"name":"recipes_secure_context_buyer_diligence_brief","description":"Return buyer and acquirer diligence evidence for the secure context layer."},{"name":"recipes_secure_context_customer_proof_pack","description":"Return the customer proof contract for design partner and acquisition evidence."},{"name":"recipes_secure_context_evidence_contract","description":"Return the secure context evidence API and release contract."},{"name":"recipes_hosted_mcp_readiness_pack","description":"Return the hosted MCP readiness plan for enterprise product rollout."},{"name":"recipes_match_finding","description":"Heuristic matcher that suggests best-fit recipes for a security finding."}],"toolCount":75,"toolsHash":"c90f7991b60d4904ad7d46f2554a36b85bd6bd5281d3d67879bcaeebb78909a9","serverName":"security-recipes-mcp","capabilities":["logging","prompts","resources","tools"],"serverVersion":"4.0.10","protocolVersion":"2025-06-18"}},{"at":"2026-10-09T05:24:56.435Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":209,"error":null,"detail":{"tools":[{"name":"recipes_server_info","description":"Return MCP server metadata and source-index configuration."},{"name":"recipes_mcp_upstream_servers","description":"List optional upstream MCP servers configured for this Security Recipes server."},{"name":"recipes_mcp_servers_list","description":"Search the bundled catalog of publicly documented MCP servers and ecosystems."},{"name":"recipes_mcp_server_get","description":"Return one publicly documented MCP server with official setup and safety guidance."},{"name":"recipes_mcp_upstream_tools","description":"List tools exposed by a configured upstream MCP server and show local allow decisions."},{"name":"recipes_mcp_upstream_call","description":"Call an allowed read-only tool on a configured upstream MCP server."},{"name":"recipes_mcp_upstream_context","description":"Collect bounded context from configured upstream MCP servers for a remediation query."},{"name":"recipes_refresh","description":"Refresh the in-memory copy of recipes-index.json."},{"name":"recipes_search","description":"Full-text search over security-recipes documents."},{"name":"recipes_list","description":"List recipes with optional metadata filtering."},{"name":"recipes_get","description":"Get a full recipe record by slug or path."},{"name":"recipes_playbooks_list","description":"List concise remediation playbook records, optionally filtered by query or category."},{"name":"recipes_playbook_get","description":"Get one complete remediation workflow, evidence, output, and Python contract."},{"name":"recipes_playbook_plan","description":"Build a deterministic, read-only phase, gate, and evidence checklist for a finding."},{"name":"recipes_cve_catalog_info","description":"Return the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts."},{"name":"recipes_cve_search","description":"Search every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details."},{"name":"recipes_cve_get","description":"Get evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE."},{"name":"recipes_quality_report","description":"Summarize recipe quality tiers and list recipes missing world-class signals."},{"name":"recipes_workflow_control_plane","description":"Return workflow control-plane policy for agents, reviewers, and MCP gateways."},{"name":"recipes_mcp_gateway_policy","description":"Return generated MCP gateway policy for scoped tool access and runtime controls."},{"name":"recipes_agentic_assurance_pack","description":"Return enterprise assurance controls, workflow evidence, and AI/Agent BOM seed."},{"name":"recipes_agent_identity_ledger","description":"Return agent non-human identity, delegation, scope, and audit contracts."},{"name":"recipes_agentic_entitlement_review_pack","description":"Return expiring agent entitlement leases, access reviews, and scope evidence."},{"name":"recipes_agentic_approval_receipt_pack","description":"Return scope-bound approval receipt profiles, workflow requirements, and evidence."},{"name":"recipes_mcp_connector_trust_pack","description":"Return MCP connector trust tiers, controls, evidence, and workflow namespace coverage."},{"name":"recipes_mcp_connector_intake_pack","description":"Return MCP connector intake decisions, risk findings, gaps, and promotion plans."},{"name":"recipes_mcp_stdio_launch_boundary_pack","description":"Return MCP STDIO launch boundaries, profiles, decisions, and evidence."},{"name":"recipes_mcp_authorization_conformance_pack","description":"Return MCP authorization conformance, scope-drift, and token-boundary evidence."},{"name":"recipes_mcp_elicitation_boundary_pack","description":"Return MCP form-mode and URL-mode elicitation boundary evidence."},{"name":"recipes_mcp_tool_risk_contract","description":"Return MCP tool annotation, trust, and session-combination risk evidence."},{"name":"recipes_mcp_tool_surface_drift_pack","description":"Return pinned MCP tool descriptions, schemas, annotations, and drift evidence."},{"name":"recipes_agentic_red_team_drill_pack","description":"Return adversarial drills for agentic remediation workflows and MCP controls."},{"name":"recipes_agentic_red_team_replay_harness","description":"Return replay fixtures, expected decisions, and evidence gates for red-team drills."},{"name":"recipes_agentic_readiness_scorecard","description":"Return generated scale, pilot, gate, or block decisions for agentic workflows."},{"name":"recipes_agent_capability_risk_register","description":"Return capability-based residual risk scores for agentic workflows."},{"name":"recipes_agent_memory_boundary_pack","description":"Return agent memory classes, workflow profiles, TTLs, and persistence decisions."},{"name":"recipes_agent_skill_supply_chain_pack","description":"Return agent skill provenance, permission, isolation, and supply-chain decisions."},{"name":"recipes_agent_handoff_boundary_pack","description":"Return agent handoff boundary profiles, protocol controls, and workflow maps."},{"name":"recipes_a2a_agent_card_trust_profile","description":"Return A2A Agent Card intake profiles, trust controls, and sample decisions."},{"name":"recipes_agentic_system_bom","description":"Return the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence."},{"name":"recipes_agentic_run_receipt_pack","description":"Return agent run receipt templates for identity, context, tools, egress, approval, and evidence."},{"name":"recipes_secure_context_trust_pack","description":"Return context provenance, retrieval policy, source hashes, and workflow context packages."},{"name":"recipes_secure_context_attestation_pack","description":"Return secure-context attestation subjects, verification policy, and recertification state."},{"name":"recipes_secure_context_lineage_ledger","description":"Return context lineage, reuse policy, stage requirements, hashes, and workflow envelopes."},{"name":"recipes_secure_context_eval_pack","description":"Return scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs."},{"name":"recipes_context_poisoning_guard_pack","description":"Return context-poisoning scan results for registered secure-context sources."},{"name":"recipes_context_egress_boundary_pack","description":"Return context egress data classes, destination classes, and workflow boundary policy."},{"name":"recipes_agentic_threat_radar","description":"Return current source-backed agentic AI threat signals and product priorities."},{"name":"recipes_agentic_standards_crosswalk","description":"Return standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance."},{"name":"recipes_agentic_source_freshness_watch","description":"Return source-freshness and standards-drift evidence for SecurityRecipes."},{"name":"recipes_mcp_risk_coverage_pack","description":"Return OWASP MCP and agentic-skill risk coverage mapped to generated evidence."},{"name":"recipes_agentic_protocol_conformance_pack","description":"Return MCP/A2A protocol conformance evidence and buyer-ready drift controls."},{"name":"recipes_agentic_control_plane_blueprint","description":"Return the acquisition-ready agentic control plane architecture and buyer evidence map."},{"name":"recipes_agentic_exposure_graph","description":"Return risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence."},{"name":"recipes_agentic_posture_snapshot","description":"Return the generated enterprise posture snapshot for agentic AI and MCP operations."},{"name":"recipes_agentic_aivss_risk_scoring_pack","description":"Return AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges."},{"name":"recipes_agentic_app_intake_pack","description":"Return generated agentic app launch-review profiles and decisions."},{"name":"recipes_model_provider_routing_pack","description":"Return model-provider route profiles, workflow mappings, and required evidence."},{"name":"recipes_agentic_catastrophic_risk_annex","description":"Return the severe-risk annex for high-impact agentic AI runtime decisions."},{"name":"recipes_critical_infrastructure_secure_context_pack","description":"Return the generated critical-infrastructure secure-context profile."},{"name":"recipes_agentic_incident_response_pack","description":"Return agentic incident response classes, phases, workflow matrix, and evidence."},{"name":"recipes_agentic_action_runtime_pack","description":"Return action classes, workflow action envelopes, runtime policy, and evidence."},{"name":"recipes_agent_trust_fabric_pack","description":"Return Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof."},{"name":"recipes_browser_agent_boundary_pack","description":"Return browser-agent workspace classes, task profiles, controls, and evidence."},{"name":"recipes_agentic_measurement_probe_pack","description":"Return measurement probes for agentic workflow traceability and readiness."},{"name":"recipes_agentic_telemetry_contract","description":"Return the OpenTelemetry-aligned agentic telemetry and redaction contract."},{"name":"recipes_agentic_soc_detection_pack","description":"Return SIEM-ready detections for agentic AI and MCP telemetry."},{"name":"recipes_enterprise_trust_center_export","description":"Return the bundled enterprise trust-center export for buyer and platform diligence."},{"name":"recipes_secure_context_value_model","description":"Return the secure context value model for buyer, ROI, and acquisition diligence."},{"name":"recipes_design_partner_pilot_pack","description":"Return the design partner pilot motion for buyer proof and hosted MCP validation."},{"name":"recipes_secure_context_buyer_diligence_brief","description":"Return buyer and acquirer diligence evidence for the secure context layer."},{"name":"recipes_secure_context_customer_proof_pack","description":"Return the customer proof contract for design partner and acquisition evidence."},{"name":"recipes_secure_context_evidence_contract","description":"Return the secure context evidence API and release contract."},{"name":"recipes_hosted_mcp_readiness_pack","description":"Return the hosted MCP readiness plan for enterprise product rollout."},{"name":"recipes_match_finding","description":"Heuristic matcher that suggests best-fit recipes for a security finding."}],"toolCount":75,"toolsHash":"c90f7991b60d4904ad7d46f2554a36b85bd6bd5281d3d67879bcaeebb78909a9","serverName":"security-recipes-mcp","capabilities":["logging","prompts","resources","tools"],"serverVersion":"4.0.10","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T22:24:23.937Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":157,"error":null,"detail":{"tools":[{"name":"recipes_server_info","description":"Return MCP server metadata and source-index configuration."},{"name":"recipes_mcp_upstream_servers","description":"List optional upstream MCP servers configured for this Security Recipes server."},{"name":"recipes_mcp_servers_list","description":"Search the bundled catalog of publicly documented MCP servers and ecosystems."},{"name":"recipes_mcp_server_get","description":"Return one publicly documented MCP server with official setup and safety guidance."},{"name":"recipes_mcp_upstream_tools","description":"List tools exposed by a configured upstream MCP server and show local allow decisions."},{"name":"recipes_mcp_upstream_call","description":"Call an allowed read-only tool on a configured upstream MCP server."},{"name":"recipes_mcp_upstream_context","description":"Collect bounded context from configured upstream MCP servers for a remediation query."},{"name":"recipes_refresh","description":"Refresh the in-memory copy of recipes-index.json."},{"name":"recipes_search","description":"Full-text search over security-recipes documents."},{"name":"recipes_list","description":"List recipes with optional metadata filtering."},{"name":"recipes_get","description":"Get a full recipe record by slug or path."},{"name":"recipes_playbooks_list","description":"List concise remediation playbook records, optionally filtered by query or category."},{"name":"recipes_playbook_get","description":"Get one complete remediation workflow, evidence, output, and Python contract."},{"name":"recipes_playbook_plan","description":"Build a deterministic, read-only phase, gate, and evidence checklist for a finding."},{"name":"recipes_cve_catalog_info","description":"Return the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts."},{"name":"recipes_cve_search","description":"Search every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details."},{"name":"recipes_cve_get","description":"Get evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE."},{"name":"recipes_quality_report","description":"Summarize recipe quality tiers and list recipes missing world-class signals."},{"name":"recipes_workflow_control_plane","description":"Return workflow control-plane policy for agents, reviewers, and MCP gateways."},{"name":"recipes_mcp_gateway_policy","description":"Return generated MCP gateway policy for scoped tool access and runtime controls."},{"name":"recipes_agentic_assurance_pack","description":"Return enterprise assurance controls, workflow evidence, and AI/Agent BOM seed."},{"name":"recipes_agent_identity_ledger","description":"Return agent non-human identity, delegation, scope, and audit contracts."},{"name":"recipes_agentic_entitlement_review_pack","description":"Return expiring agent entitlement leases, access reviews, and scope evidence."},{"name":"recipes_agentic_approval_receipt_pack","description":"Return scope-bound approval receipt profiles, workflow requirements, and evidence."},{"name":"recipes_mcp_connector_trust_pack","description":"Return MCP connector trust tiers, controls, evidence, and workflow namespace coverage."},{"name":"recipes_mcp_connector_intake_pack","description":"Return MCP connector intake decisions, risk findings, gaps, and promotion plans."},{"name":"recipes_mcp_stdio_launch_boundary_pack","description":"Return MCP STDIO launch boundaries, profiles, decisions, and evidence."},{"name":"recipes_mcp_authorization_conformance_pack","description":"Return MCP authorization conformance, scope-drift, and token-boundary evidence."},{"name":"recipes_mcp_elicitation_boundary_pack","description":"Return MCP form-mode and URL-mode elicitation boundary evidence."},{"name":"recipes_mcp_tool_risk_contract","description":"Return MCP tool annotation, trust, and session-combination risk evidence."},{"name":"recipes_mcp_tool_surface_drift_pack","description":"Return pinned MCP tool descriptions, schemas, annotations, and drift evidence."},{"name":"recipes_agentic_red_team_drill_pack","description":"Return adversarial drills for agentic remediation workflows and MCP controls."},{"name":"recipes_agentic_red_team_replay_harness","description":"Return replay fixtures, expected decisions, and evidence gates for red-team drills."},{"name":"recipes_agentic_readiness_scorecard","description":"Return generated scale, pilot, gate, or block decisions for agentic workflows."},{"name":"recipes_agent_capability_risk_register","description":"Return capability-based residual risk scores for agentic workflows."},{"name":"recipes_agent_memory_boundary_pack","description":"Return agent memory classes, workflow profiles, TTLs, and persistence decisions."},{"name":"recipes_agent_skill_supply_chain_pack","description":"Return agent skill provenance, permission, isolation, and supply-chain decisions."},{"name":"recipes_agent_handoff_boundary_pack","description":"Return agent handoff boundary profiles, protocol controls, and workflow maps."},{"name":"recipes_a2a_agent_card_trust_profile","description":"Return A2A Agent Card intake profiles, trust controls, and sample decisions."},{"name":"recipes_agentic_system_bom","description":"Return the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence."},{"name":"recipes_agentic_run_receipt_pack","description":"Return agent run receipt templates for identity, context, tools, egress, approval, and evidence."},{"name":"recipes_secure_context_trust_pack","description":"Return context provenance, retrieval policy, source hashes, and workflow context packages."},{"name":"recipes_secure_context_attestation_pack","description":"Return secure-context attestation subjects, verification policy, and recertification state."},{"name":"recipes_secure_context_lineage_ledger","description":"Return context lineage, reuse policy, stage requirements, hashes, and workflow envelopes."},{"name":"recipes_secure_context_eval_pack","description":"Return scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs."},{"name":"recipes_context_poisoning_guard_pack","description":"Return context-poisoning scan results for registered secure-context sources."},{"name":"recipes_context_egress_boundary_pack","description":"Return context egress data classes, destination classes, and workflow boundary policy."},{"name":"recipes_agentic_threat_radar","description":"Return current source-backed agentic AI threat signals and product priorities."},{"name":"recipes_agentic_standards_crosswalk","description":"Return standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance."},{"name":"recipes_agentic_source_freshness_watch","description":"Return source-freshness and standards-drift evidence for SecurityRecipes."},{"name":"recipes_mcp_risk_coverage_pack","description":"Return OWASP MCP and agentic-skill risk coverage mapped to generated evidence."},{"name":"recipes_agentic_protocol_conformance_pack","description":"Return MCP/A2A protocol conformance evidence and buyer-ready drift controls."},{"name":"recipes_agentic_control_plane_blueprint","description":"Return the acquisition-ready agentic control plane architecture and buyer evidence map."},{"name":"recipes_agentic_exposure_graph","description":"Return risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence."},{"name":"recipes_agentic_posture_snapshot","description":"Return the generated enterprise posture snapshot for agentic AI and MCP operations."},{"name":"recipes_agentic_aivss_risk_scoring_pack","description":"Return AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges."},{"name":"recipes_agentic_app_intake_pack","description":"Return generated agentic app launch-review profiles and decisions."},{"name":"recipes_model_provider_routing_pack","description":"Return model-provider route profiles, workflow mappings, and required evidence."},{"name":"recipes_agentic_catastrophic_risk_annex","description":"Return the severe-risk annex for high-impact agentic AI runtime decisions."},{"name":"recipes_critical_infrastructure_secure_context_pack","description":"Return the generated critical-infrastructure secure-context profile."},{"name":"recipes_agentic_incident_response_pack","description":"Return agentic incident response classes, phases, workflow matrix, and evidence."},{"name":"recipes_agentic_action_runtime_pack","description":"Return action classes, workflow action envelopes, runtime policy, and evidence."},{"name":"recipes_agent_trust_fabric_pack","description":"Return Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof."},{"name":"recipes_browser_agent_boundary_pack","description":"Return browser-agent workspace classes, task profiles, controls, and evidence."},{"name":"recipes_agentic_measurement_probe_pack","description":"Return measurement probes for agentic workflow traceability and readiness."},{"name":"recipes_agentic_telemetry_contract","description":"Return the OpenTelemetry-aligned agentic telemetry and redaction contract."},{"name":"recipes_agentic_soc_detection_pack","description":"Return SIEM-ready detections for agentic AI and MCP telemetry."},{"name":"recipes_enterprise_trust_center_export","description":"Return the bundled enterprise trust-center export for buyer and platform diligence."},{"name":"recipes_secure_context_value_model","description":"Return the secure context value model for buyer, ROI, and acquisition diligence."},{"name":"recipes_design_partner_pilot_pack","description":"Return the design partner pilot motion for buyer proof and hosted MCP validation."},{"name":"recipes_secure_context_buyer_diligence_brief","description":"Return buyer and acquirer diligence evidence for the secure context layer."},{"name":"recipes_secure_context_customer_proof_pack","description":"Return the customer proof contract for design partner and acquisition evidence."},{"name":"recipes_secure_context_evidence_contract","description":"Return the secure context evidence API and release contract."},{"name":"recipes_hosted_mcp_readiness_pack","description":"Return the hosted MCP readiness plan for enterprise product rollout."},{"name":"recipes_match_finding","description":"Heuristic matcher that suggests best-fit recipes for a security finding."}],"toolCount":75,"toolsHash":"c90f7991b60d4904ad7d46f2554a36b85bd6bd5281d3d67879bcaeebb78909a9","serverName":"security-recipes-mcp","capabilities":["logging","prompts","resources","tools"],"serverVersion":"4.0.10","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T16:27:46.460Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":166,"error":null,"detail":{"tools":[{"name":"recipes_server_info","description":"Return MCP server metadata and source-index configuration."},{"name":"recipes_mcp_upstream_servers","description":"List optional upstream MCP servers configured for this Security Recipes server."},{"name":"recipes_mcp_servers_list","description":"Search the bundled catalog of publicly documented MCP servers and ecosystems."},{"name":"recipes_mcp_server_get","description":"Return one publicly documented MCP server with official setup and safety guidance."},{"name":"recipes_mcp_upstream_tools","description":"List tools exposed by a configured upstream MCP server and show local allow decisions."},{"name":"recipes_mcp_upstream_call","description":"Call an allowed read-only tool on a configured upstream MCP server."},{"name":"recipes_mcp_upstream_context","description":"Collect bounded context from configured upstream MCP servers for a remediation query."},{"name":"recipes_refresh","description":"Refresh the in-memory copy of recipes-index.json."},{"name":"recipes_search","description":"Full-text search over security-recipes documents."},{"name":"recipes_list","description":"List recipes with optional metadata filtering."},{"name":"recipes_get","description":"Get a full recipe record by slug or path."},{"name":"recipes_playbooks_list","description":"List concise remediation playbook records, optionally filtered by query or category."},{"name":"recipes_playbook_get","description":"Get one complete remediation workflow, evidence, output, and Python contract."},{"name":"recipes_playbook_plan","description":"Build a deterministic, read-only phase, gate, and evidence checklist for a finding."},{"name":"recipes_cve_catalog_info","description":"Return the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts."},{"name":"recipes_cve_search","description":"Search every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details."},{"name":"recipes_cve_get","description":"Get evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE."},{"name":"recipes_quality_report","description":"Summarize recipe quality tiers and list recipes missing world-class signals."},{"name":"recipes_workflow_control_plane","description":"Return workflow control-plane policy for agents, reviewers, and MCP gateways."},{"name":"recipes_mcp_gateway_policy","description":"Return generated MCP gateway policy for scoped tool access and runtime controls."},{"name":"recipes_agentic_assurance_pack","description":"Return enterprise assurance controls, workflow evidence, and AI/Agent BOM seed."},{"name":"recipes_agent_identity_ledger","description":"Return agent non-human identity, delegation, scope, and audit contracts."},{"name":"recipes_agentic_entitlement_review_pack","description":"Return expiring agent entitlement leases, access reviews, and scope evidence."},{"name":"recipes_agentic_approval_receipt_pack","description":"Return scope-bound approval receipt profiles, workflow requirements, and evidence."},{"name":"recipes_mcp_connector_trust_pack","description":"Return MCP connector trust tiers, controls, evidence, and workflow namespace coverage."},{"name":"recipes_mcp_connector_intake_pack","description":"Return MCP connector intake decisions, risk findings, gaps, and promotion plans."},{"name":"recipes_mcp_stdio_launch_boundary_pack","description":"Return MCP STDIO launch boundaries, profiles, decisions, and evidence."},{"name":"recipes_mcp_authorization_conformance_pack","description":"Return MCP authorization conformance, scope-drift, and token-boundary evidence."},{"name":"recipes_mcp_elicitation_boundary_pack","description":"Return MCP form-mode and URL-mode elicitation boundary evidence."},{"name":"recipes_mcp_tool_risk_contract","description":"Return MCP tool annotation, trust, and session-combination risk evidence."},{"name":"recipes_mcp_tool_surface_drift_pack","description":"Return pinned MCP tool descriptions, schemas, annotations, and drift evidence."},{"name":"recipes_agentic_red_team_drill_pack","description":"Return adversarial drills for agentic remediation workflows and MCP controls."},{"name":"recipes_agentic_red_team_replay_harness","description":"Return replay fixtures, expected decisions, and evidence gates for red-team drills."},{"name":"recipes_agentic_readiness_scorecard","description":"Return generated scale, pilot, gate, or block decisions for agentic workflows."},{"name":"recipes_agent_capability_risk_register","description":"Return capability-based residual risk scores for agentic workflows."},{"name":"recipes_agent_memory_boundary_pack","description":"Return agent memory classes, workflow profiles, TTLs, and persistence decisions."},{"name":"recipes_agent_skill_supply_chain_pack","description":"Return agent skill provenance, permission, isolation, and supply-chain decisions."},{"name":"recipes_agent_handoff_boundary_pack","description":"Return agent handoff boundary profiles, protocol controls, and workflow maps."},{"name":"recipes_a2a_agent_card_trust_profile","description":"Return A2A Agent Card intake profiles, trust controls, and sample decisions."},{"name":"recipes_agentic_system_bom","description":"Return the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence."},{"name":"recipes_agentic_run_receipt_pack","description":"Return agent run receipt templates for identity, context, tools, egress, approval, and evidence."},{"name":"recipes_secure_context_trust_pack","description":"Return context provenance, retrieval policy, source hashes, and workflow context packages."},{"name":"recipes_secure_context_attestation_pack","description":"Return secure-context attestation subjects, verification policy, and recertification state."},{"name":"recipes_secure_context_lineage_ledger","description":"Return context lineage, reuse policy, stage requirements, hashes, and workflow envelopes."},{"name":"recipes_secure_context_eval_pack","description":"Return scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs."},{"name":"recipes_context_poisoning_guard_pack","description":"Return context-poisoning scan results for registered secure-context sources."},{"name":"recipes_context_egress_boundary_pack","description":"Return context egress data classes, destination classes, and workflow boundary policy."},{"name":"recipes_agentic_threat_radar","description":"Return current source-backed agentic AI threat signals and product priorities."},{"name":"recipes_agentic_standards_crosswalk","description":"Return standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance."},{"name":"recipes_agentic_source_freshness_watch","description":"Return source-freshness and standards-drift evidence for SecurityRecipes."},{"name":"recipes_mcp_risk_coverage_pack","description":"Return OWASP MCP and agentic-skill risk coverage mapped to generated evidence."},{"name":"recipes_agentic_protocol_conformance_pack","description":"Return MCP/A2A protocol conformance evidence and buyer-ready drift controls."},{"name":"recipes_agentic_control_plane_blueprint","description":"Return the acquisition-ready agentic control plane architecture and buyer evidence map."},{"name":"recipes_agentic_exposure_graph","description":"Return risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence."},{"name":"recipes_agentic_posture_snapshot","description":"Return the generated enterprise posture snapshot for agentic AI and MCP operations."},{"name":"recipes_agentic_aivss_risk_scoring_pack","description":"Return AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges."},{"name":"recipes_agentic_app_intake_pack","description":"Return generated agentic app launch-review profiles and decisions."},{"name":"recipes_model_provider_routing_pack","description":"Return model-provider route profiles, workflow mappings, and required evidence."},{"name":"recipes_agentic_catastrophic_risk_annex","description":"Return the severe-risk annex for high-impact agentic AI runtime decisions."},{"name":"recipes_critical_infrastructure_secure_context_pack","description":"Return the generated critical-infrastructure secure-context profile."},{"name":"recipes_agentic_incident_response_pack","description":"Return agentic incident response classes, phases, workflow matrix, and evidence."},{"name":"recipes_agentic_action_runtime_pack","description":"Return action classes, workflow action envelopes, runtime policy, and evidence."},{"name":"recipes_agent_trust_fabric_pack","description":"Return Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof."},{"name":"recipes_browser_agent_boundary_pack","description":"Return browser-agent workspace classes, task profiles, controls, and evidence."},{"name":"recipes_agentic_measurement_probe_pack","description":"Return measurement probes for agentic workflow traceability and readiness."},{"name":"recipes_agentic_telemetry_contract","description":"Return the OpenTelemetry-aligned agentic telemetry and redaction contract."},{"name":"recipes_agentic_soc_detection_pack","description":"Return SIEM-ready detections for agentic AI and MCP telemetry."},{"name":"recipes_enterprise_trust_center_export","description":"Return the bundled enterprise trust-center export for buyer and platform diligence."},{"name":"recipes_secure_context_value_model","description":"Return the secure context value model for buyer, ROI, and acquisition diligence."},{"name":"recipes_design_partner_pilot_pack","description":"Return the design partner pilot motion for buyer proof and hosted MCP validation."},{"name":"recipes_secure_context_buyer_diligence_brief","description":"Return buyer and acquirer diligence evidence for the secure context layer."},{"name":"recipes_secure_context_customer_proof_pack","description":"Return the customer proof contract for design partner and acquisition evidence."},{"name":"recipes_secure_context_evidence_contract","description":"Return the secure context evidence API and release contract."},{"name":"recipes_hosted_mcp_readiness_pack","description":"Return the hosted MCP readiness plan for enterprise product rollout."},{"name":"recipes_match_finding","description":"Heuristic matcher that suggests best-fit recipes for a security finding."}],"toolCount":75,"toolsHash":"c90f7991b60d4904ad7d46f2554a36b85bd6bd5281d3d67879bcaeebb78909a9","serverName":"security-recipes-mcp","capabilities":["logging","prompts","resources","tools"],"serverVersion":"4.0.10","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T09:22:58.459Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":160,"error":null,"detail":{"tools":[{"name":"recipes_server_info","description":"Return MCP server metadata and source-index configuration."},{"name":"recipes_mcp_upstream_servers","description":"List optional upstream MCP servers configured for this Security Recipes server."},{"name":"recipes_mcp_servers_list","description":"Search the bundled catalog of publicly documented MCP servers and ecosystems."},{"name":"recipes_mcp_server_get","description":"Return one publicly documented MCP server with official setup and safety guidance."},{"name":"recipes_mcp_upstream_tools","description":"List tools exposed by a configured upstream MCP server and show local allow decisions."},{"name":"recipes_mcp_upstream_call","description":"Call an allowed read-only tool on a configured upstream MCP server."},{"name":"recipes_mcp_upstream_context","description":"Collect bounded context from configured upstream MCP servers for a remediation query."},{"name":"recipes_refresh","description":"Refresh the in-memory copy of recipes-index.json."},{"name":"recipes_search","description":"Full-text search over security-recipes documents."},{"name":"recipes_list","description":"List recipes with optional metadata filtering."},{"name":"recipes_get","description":"Get a full recipe record by slug or path."},{"name":"recipes_playbooks_list","description":"List concise remediation playbook records, optionally filtered by query or category."},{"name":"recipes_playbook_get","description":"Get one complete remediation workflow, evidence, output, and Python contract."},{"name":"recipes_playbook_plan","description":"Build a deterministic, read-only phase, gate, and evidence checklist for a finding."},{"name":"recipes_cve_catalog_info","description":"Return the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts."},{"name":"recipes_cve_search","description":"Search every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details."},{"name":"recipes_cve_get","description":"Get evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE."},{"name":"recipes_quality_report","description":"Summarize recipe quality tiers and list recipes missing world-class signals."},{"name":"recipes_workflow_control_plane","description":"Return workflow control-plane policy for agents, reviewers, and MCP gateways."},{"name":"recipes_mcp_gateway_policy","description":"Return generated MCP gateway policy for scoped tool access and runtime controls."},{"name":"recipes_agentic_assurance_pack","description":"Return enterprise assurance controls, workflow evidence, and AI/Agent BOM seed."},{"name":"recipes_agent_identity_ledger","description":"Return agent non-human identity, delegation, scope, and audit contracts."},{"name":"recipes_agentic_entitlement_review_pack","description":"Return expiring agent entitlement leases, access reviews, and scope evidence."},{"name":"recipes_agentic_approval_receipt_pack","description":"Return scope-bound approval receipt profiles, workflow requirements, and evidence."},{"name":"recipes_mcp_connector_trust_pack","description":"Return MCP connector trust tiers, controls, evidence, and workflow namespace coverage."},{"name":"recipes_mcp_connector_intake_pack","description":"Return MCP connector intake decisions, risk findings, gaps, and promotion plans."},{"name":"recipes_mcp_stdio_launch_boundary_pack","description":"Return MCP STDIO launch boundaries, profiles, decisions, and evidence."},{"name":"recipes_mcp_authorization_conformance_pack","description":"Return MCP authorization conformance, scope-drift, and token-boundary evidence."},{"name":"recipes_mcp_elicitation_boundary_pack","description":"Return MCP form-mode and URL-mode elicitation boundary evidence."},{"name":"recipes_mcp_tool_risk_contract","description":"Return MCP tool annotation, trust, and session-combination risk evidence."},{"name":"recipes_mcp_tool_surface_drift_pack","description":"Return pinned MCP tool descriptions, schemas, annotations, and drift evidence."},{"name":"recipes_agentic_red_team_drill_pack","description":"Return adversarial drills for agentic remediation workflows and MCP controls."},{"name":"recipes_agentic_red_team_replay_harness","description":"Return replay fixtures, expected decisions, and evidence gates for red-team drills."},{"name":"recipes_agentic_readiness_scorecard","description":"Return generated scale, pilot, gate, or block decisions for agentic workflows."},{"name":"recipes_agent_capability_risk_register","description":"Return capability-based residual risk scores for agentic workflows."},{"name":"recipes_agent_memory_boundary_pack","description":"Return agent memory classes, workflow profiles, TTLs, and persistence decisions."},{"name":"recipes_agent_skill_supply_chain_pack","description":"Return agent skill provenance, permission, isolation, and supply-chain decisions."},{"name":"recipes_agent_handoff_boundary_pack","description":"Return agent handoff boundary profiles, protocol controls, and workflow maps."},{"name":"recipes_a2a_agent_card_trust_profile","description":"Return A2A Agent Card intake profiles, trust controls, and sample decisions."},{"name":"recipes_agentic_system_bom","description":"Return the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence."},{"name":"recipes_agentic_run_receipt_pack","description":"Return agent run receipt templates for identity, context, tools, egress, approval, and evidence."},{"name":"recipes_secure_context_trust_pack","description":"Return context provenance, retrieval policy, source hashes, and workflow context packages."},{"name":"recipes_secure_context_attestation_pack","description":"Return secure-context attestation subjects, verification policy, and recertification state."},{"name":"recipes_secure_context_lineage_ledger","description":"Return context lineage, reuse policy, stage requirements, hashes, and workflow envelopes."},{"name":"recipes_secure_context_eval_pack","description":"Return scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs."},{"name":"recipes_context_poisoning_guard_pack","description":"Return context-poisoning scan results for registered secure-context sources."},{"name":"recipes_context_egress_boundary_pack","description":"Return context egress data classes, destination classes, and workflow boundary policy."},{"name":"recipes_agentic_threat_radar","description":"Return current source-backed agentic AI threat signals and product priorities."},{"name":"recipes_agentic_standards_crosswalk","description":"Return standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance."},{"name":"recipes_agentic_source_freshness_watch","description":"Return source-freshness and standards-drift evidence for SecurityRecipes."},{"name":"recipes_mcp_risk_coverage_pack","description":"Return OWASP MCP and agentic-skill risk coverage mapped to generated evidence."},{"name":"recipes_agentic_protocol_conformance_pack","description":"Return MCP/A2A protocol conformance evidence and buyer-ready drift controls."},{"name":"recipes_agentic_control_plane_blueprint","description":"Return the acquisition-ready agentic control plane architecture and buyer evidence map."},{"name":"recipes_agentic_exposure_graph","description":"Return risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence."},{"name":"recipes_agentic_posture_snapshot","description":"Return the generated enterprise posture snapshot for agentic AI and MCP operations."},{"name":"recipes_agentic_aivss_risk_scoring_pack","description":"Return AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges."},{"name":"recipes_agentic_app_intake_pack","description":"Return generated agentic app launch-review profiles and decisions."},{"name":"recipes_model_provider_routing_pack","description":"Return model-provider route profiles, workflow mappings, and required evidence."},{"name":"recipes_agentic_catastrophic_risk_annex","description":"Return the severe-risk annex for high-impact agentic AI runtime decisions."},{"name":"recipes_critical_infrastructure_secure_context_pack","description":"Return the generated critical-infrastructure secure-context profile."},{"name":"recipes_agentic_incident_response_pack","description":"Return agentic incident response classes, phases, workflow matrix, and evidence."},{"name":"recipes_agentic_action_runtime_pack","description":"Return action classes, workflow action envelopes, runtime policy, and evidence."},{"name":"recipes_agent_trust_fabric_pack","description":"Return Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof."},{"name":"recipes_browser_agent_boundary_pack","description":"Return browser-agent workspace classes, task profiles, controls, and evidence."},{"name":"recipes_agentic_measurement_probe_pack","description":"Return measurement probes for agentic workflow traceability and readiness."},{"name":"recipes_agentic_telemetry_contract","description":"Return the OpenTelemetry-aligned agentic telemetry and redaction contract."},{"name":"recipes_agentic_soc_detection_pack","description":"Return SIEM-ready detections for agentic AI and MCP telemetry."},{"name":"recipes_enterprise_trust_center_export","description":"Return the bundled enterprise trust-center export for buyer and platform diligence."},{"name":"recipes_secure_context_value_model","description":"Return the secure context value model for buyer, ROI, and acquisition diligence."},{"name":"recipes_design_partner_pilot_pack","description":"Return the design partner pilot motion for buyer proof and hosted MCP validation."},{"name":"recipes_secure_context_buyer_diligence_brief","description":"Return buyer and acquirer diligence evidence for the secure context layer."},{"name":"recipes_secure_context_customer_proof_pack","description":"Return the customer proof contract for design partner and acquisition evidence."},{"name":"recipes_secure_context_evidence_contract","description":"Return the secure context evidence API and release contract."},{"name":"recipes_hosted_mcp_readiness_pack","description":"Return the hosted MCP readiness plan for enterprise product rollout."},{"name":"recipes_match_finding","description":"Heuristic matcher that suggests best-fit recipes for a security finding."}],"toolCount":75,"toolsHash":"c90f7991b60d4904ad7d46f2554a36b85bd6bd5281d3d67879bcaeebb78909a9","serverName":"security-recipes-mcp","capabilities":["logging","prompts","resources","tools"],"serverVersion":"4.0.10","protocolVersion":"2025-06-18"}},{"at":"2026-10-08T02:21:40.277Z","kind":"mcp_initialize","ok":true,"httpStatus":200,"latencyMs":271,"error":null,"detail":{"tools":[{"name":"recipes_server_info","description":"Return MCP server metadata and source-index configuration."},{"name":"recipes_mcp_upstream_servers","description":"List optional upstream MCP servers configured for this Security Recipes server."},{"name":"recipes_mcp_servers_list","description":"Search the bundled catalog of publicly documented MCP servers and ecosystems."},{"name":"recipes_mcp_server_get","description":"Return one publicly documented MCP server with official setup and safety guidance."},{"name":"recipes_mcp_upstream_tools","description":"List tools exposed by a configured upstream MCP server and show local allow decisions."},{"name":"recipes_mcp_upstream_call","description":"Call an allowed read-only tool on a configured upstream MCP server."},{"name":"recipes_mcp_upstream_context","description":"Collect bounded context from configured upstream MCP servers for a remediation query."},{"name":"recipes_refresh","description":"Refresh the in-memory copy of recipes-index.json."},{"name":"recipes_search","description":"Full-text search over security-recipes documents."},{"name":"recipes_list","description":"List recipes with optional metadata filtering."},{"name":"recipes_get","description":"Get a full recipe record by slug or path."},{"name":"recipes_playbooks_list","description":"List concise remediation playbook records, optionally filtered by query or category."},{"name":"recipes_playbook_get","description":"Get one complete remediation workflow, evidence, output, and Python contract."},{"name":"recipes_playbook_plan","description":"Build a deterministic, read-only phase, gate, and evidence checklist for a finding."},{"name":"recipes_cve_catalog_info","description":"Return the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts."},{"name":"recipes_cve_search","description":"Search every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details."},{"name":"recipes_cve_get","description":"Get evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE."},{"name":"recipes_quality_report","description":"Summarize recipe quality tiers and list recipes missing world-class signals."},{"name":"recipes_workflow_control_plane","description":"Return workflow control-plane policy for agents, reviewers, and MCP gateways."},{"name":"recipes_mcp_gateway_policy","description":"Return generated MCP gateway policy for scoped tool access and runtime controls."},{"name":"recipes_agentic_assurance_pack","description":"Return enterprise assurance controls, workflow evidence, and AI/Agent BOM seed."},{"name":"recipes_agent_identity_ledger","description":"Return agent non-human identity, delegation, scope, and audit contracts."},{"name":"recipes_agentic_entitlement_review_pack","description":"Return expiring agent entitlement leases, access reviews, and scope evidence."},{"name":"recipes_agentic_approval_receipt_pack","description":"Return scope-bound approval receipt profiles, workflow requirements, and evidence."},{"name":"recipes_mcp_connector_trust_pack","description":"Return MCP connector trust tiers, controls, evidence, and workflow namespace coverage."},{"name":"recipes_mcp_connector_intake_pack","description":"Return MCP connector intake decisions, risk findings, gaps, and promotion plans."},{"name":"recipes_mcp_stdio_launch_boundary_pack","description":"Return MCP STDIO launch boundaries, profiles, decisions, and evidence."},{"name":"recipes_mcp_authorization_conformance_pack","description":"Return MCP authorization conformance, scope-drift, and token-boundary evidence."},{"name":"recipes_mcp_elicitation_boundary_pack","description":"Return MCP form-mode and URL-mode elicitation boundary evidence."},{"name":"recipes_mcp_tool_risk_contract","description":"Return MCP tool annotation, trust, and session-combination risk evidence."},{"name":"recipes_mcp_tool_surface_drift_pack","description":"Return pinned MCP tool descriptions, schemas, annotations, and drift evidence."},{"name":"recipes_agentic_red_team_drill_pack","description":"Return adversarial drills for agentic remediation workflows and MCP controls."},{"name":"recipes_agentic_red_team_replay_harness","description":"Return replay fixtures, expected decisions, and evidence gates for red-team drills."},{"name":"recipes_agentic_readiness_scorecard","description":"Return generated scale, pilot, gate, or block decisions for agentic workflows."},{"name":"recipes_agent_capability_risk_register","description":"Return capability-based residual risk scores for agentic workflows."},{"name":"recipes_agent_memory_boundary_pack","description":"Return agent memory classes, workflow profiles, TTLs, and persistence decisions."},{"name":"recipes_agent_skill_supply_chain_pack","description":"Return agent skill provenance, permission, isolation, and supply-chain decisions."},{"name":"recipes_agent_handoff_boundary_pack","description":"Return agent handoff boundary profiles, protocol controls, and workflow maps."},{"name":"recipes_a2a_agent_card_trust_profile","description":"Return A2A Agent Card intake profiles, trust controls, and sample decisions."},{"name":"recipes_agentic_system_bom","description":"Return the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence."},{"name":"recipes_agentic_run_receipt_pack","description":"Return agent run receipt templates for identity, context, tools, egress, approval, and evidence."},{"name":"recipes_secure_context_trust_pack","description":"Return context provenance, retrieval policy, source hashes, and workflow context packages."},{"name":"recipes_secure_context_attestation_pack","description":"Return secure-context attestation subjects, verification policy, and recertification state."},{"name":"recipes_secure_context_lineage_ledger","description":"Return context lineage, reuse policy, stage requirements, hashes, and workflow envelopes."},{"name":"recipes_secure_context_eval_pack","description":"Return scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs."},{"name":"recipes_context_poisoning_guard_pack","description":"Return context-poisoning scan results for registered secure-context sources."},{"name":"recipes_context_egress_boundary_pack","description":"Return context egress data classes, destination classes, and workflow boundary policy."},{"name":"recipes_agentic_threat_radar","description":"Return current source-backed agentic AI threat signals and product priorities."},{"name":"recipes_agentic_standards_crosswalk","description":"Return standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance."},{"name":"recipes_agentic_source_freshness_watch","description":"Return source-freshness and standards-drift evidence for SecurityRecipes."},{"name":"recipes_mcp_risk_coverage_pack","description":"Return OWASP MCP and agentic-skill risk coverage mapped to generated evidence."},{"name":"recipes_agentic_protocol_conformance_pack","description":"Return MCP/A2A protocol conformance evidence and buyer-ready drift controls."},{"name":"recipes_agentic_control_plane_blueprint","description":"Return the acquisition-ready agentic control plane architecture and buyer evidence map."},{"name":"recipes_agentic_exposure_graph","description":"Return risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence."},{"name":"recipes_agentic_posture_snapshot","description":"Return the generated enterprise posture snapshot for agentic AI and MCP operations."},{"name":"recipes_agentic_aivss_risk_scoring_pack","description":"Return AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges."},{"name":"recipes_agentic_app_intake_pack","description":"Return generated agentic app launch-review profiles and decisions."},{"name":"recipes_model_provider_routing_pack","description":"Return model-provider route profiles, workflow mappings, and required evidence."},{"name":"recipes_agentic_catastrophic_risk_annex","description":"Return the severe-risk annex for high-impact agentic AI runtime decisions."},{"name":"recipes_critical_infrastructure_secure_context_pack","description":"Return the generated critical-infrastructure secure-context profile."},{"name":"recipes_agentic_incident_response_pack","description":"Return agentic incident response classes, phases, workflow matrix, and evidence."},{"name":"recipes_agentic_action_runtime_pack","description":"Return action classes, workflow action envelopes, runtime policy, and evidence."},{"name":"recipes_agent_trust_fabric_pack","description":"Return Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof."},{"name":"recipes_browser_agent_boundary_pack","description":"Return browser-agent workspace classes, task profiles, controls, and evidence."},{"name":"recipes_agentic_measurement_probe_pack","description":"Return measurement probes for agentic workflow traceability and readiness."},{"name":"recipes_agentic_telemetry_contract","description":"Return the OpenTelemetry-aligned agentic telemetry and redaction contract."},{"name":"recipes_agentic_soc_detection_pack","description":"Return SIEM-ready detections for agentic AI and MCP telemetry."},{"name":"recipes_enterprise_trust_center_export","description":"Return the bundled enterprise trust-center export for buyer and platform diligence."},{"name":"recipes_secure_context_value_model","description":"Return the secure context value model for buyer, ROI, and acquisition diligence."},{"name":"recipes_design_partner_pilot_pack","description":"Return the design partner pilot motion for buyer proof and hosted MCP validation."},{"name":"recipes_secure_context_buyer_diligence_brief","description":"Return buyer and acquirer diligence evidence for the secure context layer."},{"name":"recipes_secure_context_customer_proof_pack","description":"Return the customer proof contract for design partner and acquisition evidence."},{"name":"recipes_secure_context_evidence_contract","description":"Return the secure context evidence API and release contract."},{"name":"recipes_hosted_mcp_readiness_pack","description":"Return the hosted MCP readiness plan for enterprise product rollout."},{"name":"recipes_match_finding","description":"Heuristic matcher that suggests best-fit recipes for a security finding."}],"toolCount":75,"toolsHash":"c90f7991b60d4904ad7d46f2554a36b85bd6bd5281d3d67879bcaeebb78909a9","serverName":"security-recipes-mcp","capabilities":["logging","prompts","resources","tools"],"serverVersion":"4.0.10","protocolVersion":"2025-06-18"}}],"tools":[{"name":"recipes_server_info","description":"Return MCP server metadata and source-index configuration."},{"name":"recipes_mcp_upstream_servers","description":"List optional upstream MCP servers configured for this Security Recipes server."},{"name":"recipes_mcp_servers_list","description":"Search the bundled catalog of publicly documented MCP servers and ecosystems."},{"name":"recipes_mcp_server_get","description":"Return one publicly documented MCP server with official setup and safety guidance."},{"name":"recipes_mcp_upstream_tools","description":"List tools exposed by a configured upstream MCP server and show local allow decisions."},{"name":"recipes_mcp_upstream_call","description":"Call an allowed read-only tool on a configured upstream MCP server."},{"name":"recipes_mcp_upstream_context","description":"Collect bounded context from configured upstream MCP servers for a remediation query."},{"name":"recipes_refresh","description":"Refresh the in-memory copy of recipes-index.json."},{"name":"recipes_search","description":"Full-text search over security-recipes documents."},{"name":"recipes_list","description":"List recipes with optional metadata filtering."},{"name":"recipes_get","description":"Get a full recipe record by slug or path."},{"name":"recipes_playbooks_list","description":"List concise remediation playbook records, optionally filtered by query or category."},{"name":"recipes_playbook_get","description":"Get one complete remediation workflow, evidence, output, and Python contract."},{"name":"recipes_playbook_plan","description":"Build a deterministic, read-only phase, gate, and evidence checklist for a finding."},{"name":"recipes_cve_catalog_info","description":"Return the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts."},{"name":"recipes_cve_search","description":"Search every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details."},{"name":"recipes_cve_get","description":"Get evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE."},{"name":"recipes_quality_report","description":"Summarize recipe quality tiers and list recipes missing world-class signals."},{"name":"recipes_workflow_control_plane","description":"Return workflow control-plane policy for agents, reviewers, and MCP gateways."},{"name":"recipes_mcp_gateway_policy","description":"Return generated MCP gateway policy for scoped tool access and runtime controls."},{"name":"recipes_agentic_assurance_pack","description":"Return enterprise assurance controls, workflow evidence, and AI/Agent BOM seed."},{"name":"recipes_agent_identity_ledger","description":"Return agent non-human identity, delegation, scope, and audit contracts."},{"name":"recipes_agentic_entitlement_review_pack","description":"Return expiring agent entitlement leases, access reviews, and scope evidence."},{"name":"recipes_agentic_approval_receipt_pack","description":"Return scope-bound approval receipt profiles, workflow requirements, and evidence."},{"name":"recipes_mcp_connector_trust_pack","description":"Return MCP connector trust tiers, controls, evidence, and workflow namespace coverage."},{"name":"recipes_mcp_connector_intake_pack","description":"Return MCP connector intake decisions, risk findings, gaps, and promotion plans."},{"name":"recipes_mcp_stdio_launch_boundary_pack","description":"Return MCP STDIO launch boundaries, profiles, decisions, and evidence."},{"name":"recipes_mcp_authorization_conformance_pack","description":"Return MCP authorization conformance, scope-drift, and token-boundary evidence."},{"name":"recipes_mcp_elicitation_boundary_pack","description":"Return MCP form-mode and URL-mode elicitation boundary evidence."},{"name":"recipes_mcp_tool_risk_contract","description":"Return MCP tool annotation, trust, and session-combination risk evidence."},{"name":"recipes_mcp_tool_surface_drift_pack","description":"Return pinned MCP tool descriptions, schemas, annotations, and drift evidence."},{"name":"recipes_agentic_red_team_drill_pack","description":"Return adversarial drills for agentic remediation workflows and MCP controls."},{"name":"recipes_agentic_red_team_replay_harness","description":"Return replay fixtures, expected decisions, and evidence gates for red-team drills."},{"name":"recipes_agentic_readiness_scorecard","description":"Return generated scale, pilot, gate, or block decisions for agentic workflows."},{"name":"recipes_agent_capability_risk_register","description":"Return capability-based residual risk scores for agentic workflows."},{"name":"recipes_agent_memory_boundary_pack","description":"Return agent memory classes, workflow profiles, TTLs, and persistence decisions."},{"name":"recipes_agent_skill_supply_chain_pack","description":"Return agent skill provenance, permission, isolation, and supply-chain decisions."},{"name":"recipes_agent_handoff_boundary_pack","description":"Return agent handoff boundary profiles, protocol controls, and workflow maps."},{"name":"recipes_a2a_agent_card_trust_profile","description":"Return A2A Agent Card intake profiles, trust controls, and sample decisions."},{"name":"recipes_agentic_system_bom","description":"Return the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence."},{"name":"recipes_agentic_run_receipt_pack","description":"Return agent run receipt templates for identity, context, tools, egress, approval, and evidence."},{"name":"recipes_secure_context_trust_pack","description":"Return context provenance, retrieval policy, source hashes, and workflow context packages."},{"name":"recipes_secure_context_attestation_pack","description":"Return secure-context attestation subjects, verification policy, and recertification state."},{"name":"recipes_secure_context_lineage_ledger","description":"Return context lineage, reuse policy, stage requirements, hashes, and workflow envelopes."},{"name":"recipes_secure_context_eval_pack","description":"Return scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs."},{"name":"recipes_context_poisoning_guard_pack","description":"Return context-poisoning scan results for registered secure-context sources."},{"name":"recipes_context_egress_boundary_pack","description":"Return context egress data classes, destination classes, and workflow boundary policy."},{"name":"recipes_agentic_threat_radar","description":"Return current source-backed agentic AI threat signals and product priorities."},{"name":"recipes_agentic_standards_crosswalk","description":"Return standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance."},{"name":"recipes_agentic_source_freshness_watch","description":"Return source-freshness and standards-drift evidence for SecurityRecipes."},{"name":"recipes_mcp_risk_coverage_pack","description":"Return OWASP MCP and agentic-skill risk coverage mapped to generated evidence."},{"name":"recipes_agentic_protocol_conformance_pack","description":"Return MCP/A2A protocol conformance evidence and buyer-ready drift controls."},{"name":"recipes_agentic_control_plane_blueprint","description":"Return the acquisition-ready agentic control plane architecture and buyer evidence map."},{"name":"recipes_agentic_exposure_graph","description":"Return risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence."},{"name":"recipes_agentic_posture_snapshot","description":"Return the generated enterprise posture snapshot for agentic AI and MCP operations."},{"name":"recipes_agentic_aivss_risk_scoring_pack","description":"Return AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges."},{"name":"recipes_agentic_app_intake_pack","description":"Return generated agentic app launch-review profiles and decisions."},{"name":"recipes_model_provider_routing_pack","description":"Return model-provider route profiles, workflow mappings, and required evidence."},{"name":"recipes_agentic_catastrophic_risk_annex","description":"Return the severe-risk annex for high-impact agentic AI runtime decisions."},{"name":"recipes_critical_infrastructure_secure_context_pack","description":"Return the generated critical-infrastructure secure-context profile."},{"name":"recipes_agentic_incident_response_pack","description":"Return agentic incident response classes, phases, workflow matrix, and evidence."},{"name":"recipes_agentic_action_runtime_pack","description":"Return action classes, workflow action envelopes, runtime policy, and evidence."},{"name":"recipes_agent_trust_fabric_pack","description":"Return Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof."},{"name":"recipes_browser_agent_boundary_pack","description":"Return browser-agent workspace classes, task profiles, controls, and evidence."},{"name":"recipes_agentic_measurement_probe_pack","description":"Return measurement probes for agentic workflow traceability and readiness."},{"name":"recipes_agentic_telemetry_contract","description":"Return the OpenTelemetry-aligned agentic telemetry and redaction contract."},{"name":"recipes_agentic_soc_detection_pack","description":"Return SIEM-ready detections for agentic AI and MCP telemetry."},{"name":"recipes_enterprise_trust_center_export","description":"Return the bundled enterprise trust-center export for buyer and platform diligence."},{"name":"recipes_secure_context_value_model","description":"Return the secure context value model for buyer, ROI, and acquisition diligence."},{"name":"recipes_design_partner_pilot_pack","description":"Return the design partner pilot motion for buyer proof and hosted MCP validation."},{"name":"recipes_secure_context_buyer_diligence_brief","description":"Return buyer and acquirer diligence evidence for the secure context layer."},{"name":"recipes_secure_context_customer_proof_pack","description":"Return the customer proof contract for design partner and acquisition evidence."},{"name":"recipes_secure_context_evidence_contract","description":"Return the secure context evidence API and release contract."},{"name":"recipes_hosted_mcp_readiness_pack","description":"Return the hosted MCP readiness plan for enterprise product rollout."},{"name":"recipes_match_finding","description":"Heuristic matcher that suggests best-fit recipes for a security finding."}],"package":null,"toolSurface":{"id":"ts_gsgzwnx256sq","endpointId":"ep_jh56gee93pqc","hash":"c90f7991b60d4904ad7d46f2554a36b85bd6bd5281d3d67879bcaeebb78909a9","toolCount":75,"serverName":"security-recipes-mcp","serverVersion":"4.0.5","protocolVersion":"2025-06-18","firstSeenAt":"2026-09-27T19:27:42.193Z","lastSeenAt":"2026-10-10T14:26:20.581Z","observations":48,"toolNames":["recipes_server_info","recipes_mcp_upstream_servers","recipes_mcp_servers_list","recipes_mcp_server_get","recipes_mcp_upstream_tools","recipes_mcp_upstream_call","recipes_mcp_upstream_context","recipes_refresh","recipes_search","recipes_list","recipes_get","recipes_playbooks_list","recipes_playbook_get","recipes_playbook_plan","recipes_cve_catalog_info","recipes_cve_search","recipes_cve_get","recipes_quality_report","recipes_workflow_control_plane","recipes_mcp_gateway_policy","recipes_agentic_assurance_pack","recipes_agent_identity_ledger","recipes_agentic_entitlement_review_pack","recipes_agentic_approval_receipt_pack","recipes_mcp_connector_trust_pack","recipes_mcp_connector_intake_pack","recipes_mcp_stdio_launch_boundary_pack","recipes_mcp_authorization_conformance_pack","recipes_mcp_elicitation_boundary_pack","recipes_mcp_tool_risk_contract","recipes_mcp_tool_surface_drift_pack","recipes_agentic_red_team_drill_pack","recipes_agentic_red_team_replay_harness","recipes_agentic_readiness_scorecard","recipes_agent_capability_risk_register","recipes_agent_memory_boundary_pack","recipes_agent_skill_supply_chain_pack","recipes_agent_handoff_boundary_pack","recipes_a2a_agent_card_trust_profile","recipes_agentic_system_bom","recipes_agentic_run_receipt_pack","recipes_secure_context_trust_pack","recipes_secure_context_attestation_pack","recipes_secure_context_lineage_ledger","recipes_secure_context_eval_pack","recipes_context_poisoning_guard_pack","recipes_context_egress_boundary_pack","recipes_agentic_threat_radar","recipes_agentic_standards_crosswalk","recipes_agentic_source_freshness_watch","recipes_mcp_risk_coverage_pack","recipes_agentic_protocol_conformance_pack","recipes_agentic_control_plane_blueprint","recipes_agentic_exposure_graph","recipes_agentic_posture_snapshot","recipes_agentic_aivss_risk_scoring_pack","recipes_agentic_app_intake_pack","recipes_model_provider_routing_pack","recipes_agentic_catastrophic_risk_annex","recipes_critical_infrastructure_secure_context_pack","recipes_agentic_incident_response_pack","recipes_agentic_action_runtime_pack","recipes_agent_trust_fabric_pack","recipes_browser_agent_boundary_pack","recipes_agentic_measurement_probe_pack","recipes_agentic_telemetry_contract","recipes_agentic_soc_detection_pack","recipes_enterprise_trust_center_export","recipes_secure_context_value_model","recipes_design_partner_pilot_pack","recipes_secure_context_buyer_diligence_brief","recipes_secure_context_customer_proof_pack","recipes_secure_context_evidence_contract","recipes_hosted_mcp_readiness_pack","recipes_match_finding"],"distinctSurfaces":2},"endpointFacts":[{"id":"ep_jh56gee93pqc","url":"https://security-recipes.ai/mcp","type":"mcp_streamable_http","factsCheckedAt":"2026-10-09T05:24:56.452Z","auth":{"observedAt":"2026-10-09T05:24:56.899Z","authRequired":false,"scheme":null,"resourceMetadata":null,"authorizationServer":null,"conformance":{"dpop":false,"rfc8414":false,"rfc9728":false,"pkceS256":false,"clientIdMetadataDocument":false,"dynamicClientRegistration":false}},"tls":{"observedAt":"2026-10-09T05:24:57.194Z","protocol":"TLSv1.3","chainValid":true,"chainError":null,"hostMatches":true,"subject":"security-recipes.ai","issuer":{"commonName":"YE1","organization":"Let's Encrypt"},"validFrom":"2026-09-09T15:03:40.000Z","validTo":"2026-12-08T15:03:39.000Z","daysToExpiry":58,"sanCount":1,"fingerprint256":"BC:BA:B6:8A:15:7D:AB:3C:B8:88:FB:60:BF:D2:CA:4B:03:EF:FD:65:BF:DC:C6:1D:3F:36:36:14:E2:B8:38:57"}}]},"verification":{"claimed":false,"claimedAt":null,"proofs":[]},"provenance":{"sources":[{"source":"mcp_registry","key":"io.github.stevologic/security-recipes","url":"https://registry.modelcontextprotocol.io/v0/servers/io.github.stevologic%2Fsecurity-recipes","firstSeenAt":"2026-09-07T04:21:37.851Z","fetchedAt":"2026-10-08T11:19:19.021Z","normalizedAt":"2026-10-08T11:19:19.021Z"}]},"firstSeenAt":"2026-09-07T04:21:37.851Z","updatedAt":"2026-10-10T14:28:21.660Z"}