Skip to content

History of cisa-cybersecurity-mcp-server in namespace io.github

io.github.cyanheads/cisa-cybersecurity-mcp-server · Registry status: active

No name of its own reaches this register for this entry. The heading therefore carries the trailing segment of the identifier; the identifier itself is listed below as a coordinate.

Report data on this entry

Every published change to this entry, most recent first.

Changes
2026-10-10Declared version: 0.3.0 → 0.3.1
2026-10-10Last changed in the registry (raw): 2026-09-25 → 2026-10-09
2026-10-10First listed in the registry (raw): 2026-09-25 → 2026-10-09
2026-10-10Environment variable descriptions (raw): CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). → CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). · MCP_TRANSPORT_TYPE=Selects the HTTP transport.
2026-10-10Connection paths (source structure): {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.0","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.0","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]} → {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.1","runtimeHint":"npx","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":false},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.1","runtimeHint":"npx","transport":"streamable-http","environment":[{"name":"MCP_TRANSPORT_TYPE","description":"Selects the HTTP transport.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":false}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]}
2026-10-10Runtime hints (raw): node → npx
2026-10-10Package versions (raw): 0.3.0 → 0.3.1
2026-10-10Environment variables (raw): MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS, MCP_HTTP_HOST, MCP_HTTP_PORT, MCP_HTTP_ENDPOINT_PATH, MCP_AUTH_MODE, MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS → MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS, MCP_TRANSPORT_TYPE, MCP_HTTP_HOST, MCP_HTTP_PORT, MCP_HTTP_ENDPOINT_PATH, MCP_AUTH_MODE, MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS
2026-09-26Declared version: 0.1.3 → 0.3.0
2026-09-26Last changed in the registry (raw): 2026-09-22 → 2026-09-25
2026-09-26First listed in the registry (raw): 2026-09-22 → 2026-09-25
2026-09-26Environment variable descriptions (raw): CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). → CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').
2026-09-26Connection paths (source structure): {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.3","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.3","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]} → {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.0","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.3.0","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll, on every transport. Set off to disable it; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories. Unset, it is csaf.sqlite3 under cisa-cybersecurity-mcp-server in the per-user cache directory: ~/Library/Caches on macOS, $XDG_CACHE_HOME or ~/.cache on Linux, %LOCALAPPDATA% on Windows.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh, on every transport; the refresh also runs once at startup. Set off to disable both; an invalid expression fails startup.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]}
2026-09-26Package versions (raw): 0.1.3 → 0.3.0
2026-09-23Declared version: 0.1.2 → 0.1.3
2026-09-23Last changed in the registry (raw): 2026-09-20 → 2026-09-22
2026-09-23First listed in the registry (raw): 2026-09-20 → 2026-09-22
2026-09-23Environment variable descriptions (raw): CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn'). → CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').
2026-09-23Connection paths (source structure): {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.2","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.2","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]} → {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.3","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.3","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync, and re-ingest it in place when an older server version built it. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]}
2026-09-23Package versions (raw): 0.1.2 → 0.1.3
2026-09-21Declared version: – → 0.1.2
2026-09-21Repository URL listed: – → yes
2026-09-21Path argument present: – → no
2026-09-21Execution location: – → local
2026-09-21Required secrets declared: – → no
2026-09-21Description (raw): – → CISA KEV with BOD 26-04 deadlines, SSVC prioritization, and the ICS advisory corpus (CSAF). Keyless.
2026-09-21Last changed in the registry (raw): – → 2026-09-20
2026-09-21First listed in the registry (raw): – → 2026-09-20
2026-09-21Registry status message (raw): – → –
2026-09-21Schema version of the raw record (raw): – → https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json
2026-09-21Icon formats (raw): – → –
2026-09-21Environment variable descriptions (raw): – → CISA_CSAF_MIRROR_AUTO_INIT=Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band. · CISA_CSAF_MIRROR_PATH=Filesystem path to the local SQLite index of ICS advisories. · CISA_CSAF_REFRESH_CRON=Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it. · CISA_FEED_CACHE_TTL_SECONDS=Seconds a parsed RSS feed window stays cached. · CISA_HTTP_TIMEOUT_MS=Per-request timeout in milliseconds for every upstream fetch. · CISA_KEV_REFRESH_CRON=Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule. · CISA_VULNRICHMENT_CACHE_TTL_SECONDS=Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value. · MCP_AUTH_MODE=Authentication mode to use: 'none', 'jwt', or 'oauth'. · MCP_HTTP_ENDPOINT_PATH=The endpoint path for the MCP server. · MCP_HTTP_HOST=The hostname for the HTTP server. · MCP_HTTP_PORT=The port to run the HTTP server on. · MCP_LOG_LEVEL=Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').
2026-09-21Environment variable formats (raw): – → string
2026-09-21Delivery form (raw): – → package and remote
2026-09-21Remote hosts (raw): – → cisa-cybersecurity.caseyjhand.com
2026-09-21Connection paths (source structure): – → {"packages":[{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.2","runtimeHint":"node","transport":"stdio","environment":[{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true},{"registryType":"npm","identifier":"@cyanheads/cisa-cybersecurity-mcp-server","version":"0.1.2","runtimeHint":"node","transport":"streamable-http","environment":[{"name":"MCP_HTTP_HOST","description":"The hostname for the HTTP server.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_PORT","description":"The port to run the HTTP server on.","format":"string","required":false,"secret":false},{"name":"MCP_HTTP_ENDPOINT_PATH","description":"The endpoint path for the MCP server.","format":"string","required":false,"secret":false},{"name":"MCP_AUTH_MODE","description":"Authentication mode to use: 'none', 'jwt', or 'oauth'.","format":"string","required":false,"secret":false},{"name":"MCP_LOG_LEVEL","description":"Sets the minimum log level for output (e.g., 'debug', 'info', 'warn').","format":"string","required":false,"secret":false},{"name":"CISA_KEV_REFRESH_CRON","description":"Cron expression for the KEV catalog conditional-refresh poll. HTTP transport only; an empty value disables the in-process schedule.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_PATH","description":"Filesystem path to the local SQLite index of ICS advisories.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_MIRROR_AUTO_INIT","description":"Seed the ICS advisory index in the background at startup when it has never completed a sync. Accepts true or false; set false where seeding runs out of band.","format":"string","required":false,"secret":false},{"name":"CISA_CSAF_REFRESH_CRON","description":"Cron expression for the incremental ICS advisory refresh. HTTP transport only; an empty value disables it.","format":"string","required":false,"secret":false},{"name":"CISA_VULNRICHMENT_CACHE_TTL_SECONDS","description":"Seconds a fetched SSVC record stays cached. Negative results use one sixth of this value.","format":"string","required":false,"secret":false},{"name":"CISA_FEED_CACHE_TTL_SECONDS","description":"Seconds a parsed RSS feed window stays cached.","format":"string","required":false,"secret":false},{"name":"CISA_HTTP_TIMEOUT_MS","description":"Per-request timeout in milliseconds for every upstream fetch.","format":"string","required":false,"secret":false}],"additional_arguments_declared":true}],"remotes":[{"url":"https://cisa-cybersecurity.caseyjhand.com/mcp","transport":"streamable-http","headers":[]}]}
2026-09-21Remote URLs (raw): – → https://cisa-cybersecurity.caseyjhand.com/mcp
2026-09-21Runtime hints (raw): – → node
2026-09-21Package versions (raw): – → 0.1.2
2026-09-21Package identifiers (raw): – → @cyanheads/cisa-cybersecurity-mcp-server
2026-09-21Package registries (raw): – → npm, npm
2026-09-21Repository subfolder (raw): – → –
2026-09-21Repository platform (raw): – → github
2026-09-21Repository (raw): – → https://github.com/cyanheads/cisa-cybersecurity-mcp-server
2026-09-21Path environment variables (raw): – → –
2026-09-21Path arguments (raw): – → –
2026-09-21Transports (raw): – → stdio, streamable-http, streamable-http
2026-09-21Required secret headers (raw): – → –
2026-09-21Required secret variables (raw): – → –
2026-09-21Environment variables (raw): – → MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS, MCP_HTTP_HOST, MCP_HTTP_PORT, MCP_HTTP_ENDPOINT_PATH, MCP_AUTH_MODE, MCP_LOG_LEVEL, CISA_KEV_REFRESH_CRON, CISA_CSAF_MIRROR_PATH, CISA_CSAF_MIRROR_AUTO_INIT, CISA_CSAF_REFRESH_CRON, CISA_VULNRICHMENT_CACHE_TTL_SECONDS, CISA_FEED_CACHE_TTL_SECONDS, CISA_HTTP_TIMEOUT_MS

tracevero · https://tracevero.com/mcp/io-github-cyanheads-cisa-cybersecurity-mcp-server/aenderungen