History of cisa-cybersecurity-mcp-server in namespace io.github
io.github.cyanheads/cisa-cybersecurity-mcp-server · Registry status: active
No name of its own reaches this register for this entry. The heading therefore carries the trailing segment of the identifier; the identifier itself is listed below as a coordinate.
Every published change to this entry, most recent first.
| 2026-10-10 | Declared version: 0.3.0 → 0.3.1 |
|---|---|
| 2026-10-10 | Last changed in the registry (raw): 2026-09-25 → 2026-10-09 |
| 2026-10-10 | First listed in the registry (raw): 2026-09-25 → 2026-10-09 |
| 2026-10-10 | Environment variable descriptions (raw): CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). → CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). · MCP_TRANSPORT_TYPE=Selects the HTTP transport. |
| 2026-10-10 | Connection paths (source structure): {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.0","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.0","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]} → {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.1","runtimeHint":"npx","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":false},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.1","runtimeHint":"npx","transport":"streamable-http","environment":[{"name":"MCP_TRANSPORT_TYPE","description":"Selects the HTTP transport.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":false}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]} |
| 2026-10-10 | Runtime hints (raw): node → npx |
| 2026-10-10 | Package versions (raw): 0.3.0 → 0.3.1 |
| 2026-10-10 | Environment variables (raw): MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS, MCP_HTTP_HOST, MCP_HTTP_PORT, MCP_HTTP_ENDPOINT_PATH, MCP_AUTH_MODE, MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS → MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS, MCP_TRANSPORT_TYPE, MCP_HTTP_HOST, MCP_HTTP_PORT, MCP_HTTP_ENDPOINT_PATH, MCP_AUTH_MODE, MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS |
| 2026-09-26 | Declared version: 0.1.3 → 0.3.0 |
| 2026-09-26 | Last changed in the registry (raw): 2026-09-22 → 2026-09-25 |
| 2026-09-26 | First listed in the registry (raw): 2026-09-22 → 2026-09-25 |
| 2026-09-26 | Environment variable descriptions (raw): CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). → CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). |
| 2026-09-26 | Connection paths (source structure): {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.3","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.3","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]} → {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.0","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.0","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]} |
| 2026-09-26 | Package versions (raw): 0.1.3 → 0.3.0 |
| 2026-09-23 | Declared version: 0.1.2 → 0.1.3 |
| 2026-09-23 | Last changed in the registry (raw): 2026-09-20 → 2026-09-22 |
| 2026-09-23 | First listed in the registry (raw): 2026-09-20 → 2026-09-22 |
| 2026-09-23 | Environment variable descriptions (raw): CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). → CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). |
| 2026-09-23 | Connection paths (source structure): {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.2","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.2","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]} → {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.3","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.3","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]} |
| 2026-09-23 | Package versions (raw): 0.1.2 → 0.1.3 |
| 2026-09-21 | Declared version: – → 0.1.2 |
| 2026-09-21 | Repository URL listed: – → yes |
| 2026-09-21 | Path argument present: – → no |
| 2026-09-21 | Execution location: – → local |
| 2026-09-21 | Required secrets declared: – → no |
| 2026-09-21 | Description (raw): – → CISA KEV with BOD 26-04 deadlines, SSVC prioritization, and the ICS advisory corpus (CSAF). Keyless. |
| 2026-09-21 | Last changed in the registry (raw): – → 2026-09-20 |
| 2026-09-21 | First listed in the registry (raw): – → 2026-09-20 |
| 2026-09-21 | Registry status message (raw): – → – |
| 2026-09-21 | Schema version of the raw record (raw): – → https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json |
| 2026-09-21 | Icon formats (raw): – → – |
| 2026-09-21 | Environment variable descriptions (raw): – → CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). |
| 2026-09-21 | Environment variable formats (raw): – → string |
| 2026-09-21 | Delivery form (raw): – → package and remote |
| 2026-09-21 | Remote hosts (raw): – → cisa-cybersecurity.caseyjhand.com |
| 2026-09-21 | Connection paths (source structure): – → {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.2","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.2","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]} |
| 2026-09-21 | Remote URLs (raw): – → https://cisa-cybersecurity.caseyjhand.com/mcp |
| 2026-09-21 | Runtime hints (raw): – → node |
| 2026-09-21 | Package versions (raw): – → 0.1.2 |
| 2026-09-21 | Package identifiers (raw): – → @cyanheads/cisa-cybersecurity-mcp-server |
| 2026-09-21 | Package registries (raw): – → npm, npm |
| 2026-09-21 | Repository subfolder (raw): – → – |
| 2026-09-21 | Repository platform (raw): – → github |
| 2026-09-21 | Repository (raw): – → https://github.com/cyanheads/cisa-cybersecurity-mcp-server |
| 2026-09-21 | Path environment variables (raw): – → – |
| 2026-09-21 | Path arguments (raw): – → – |
| 2026-09-21 | Transports (raw): – → stdio, streamable-http, streamable-http |
| 2026-09-21 | Required secret headers (raw): – → – |
| 2026-09-21 | Required secret variables (raw): – → – |
| 2026-09-21 | Environment variables (raw): – → MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS, MCP_HTTP_HOST, MCP_HTTP_PORT, MCP_HTTP_ENDPOINT_PATH, MCP_AUTH_MODE, MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS |
tracevero · https://tracevero.com/mcp/io-github-cyanheads-cisa-cybersecurity-mcp-server/aenderungen