Security & Testing
security-recipes.ai
Manages MCP server configurations and provides a catalog of publicly documented MCP servers with security guidance.
ENDPOINT 1
https://security-recipes.ai/mcp
MCP server metadata
- Name
- security-recipes-mcp
- Version
- 3.4.7
Known tools 75
recipes_mcp_upstream_serversList optional upstream MCP servers configured for this Security Recipes server.
Inferred read-onlyrecipes_mcp_servers_listSearch the bundled catalog of publicly documented MCP servers and ecosystems.
Inferred read-onlyrecipes_mcp_server_getReturn one publicly documented MCP server with official setup and safety guidance.
Inferred read-onlyrecipes_mcp_upstream_toolsList tools exposed by a configured upstream MCP server and show local allow decisions.
Inferred read-onlyrecipes_mcp_upstream_callCall an allowed read-only tool on a configured upstream MCP server.
Inferred read-onlyrecipes_mcp_upstream_contextCollect bounded context from configured upstream MCP servers for a remediation query.
Inferred read-onlyrecipes_playbooks_listList concise remediation playbook records, optionally filtered by query or category.
Inferred read-onlyrecipes_playbook_getGet one complete remediation workflow, evidence, output, and Python contract.
Inferred read-onlyrecipes_playbook_planBuild a deterministic, read-only phase, gate, and evidence checklist for a finding.
Inferred read-onlyrecipes_cve_catalog_infoReturn the complete Medium/High/Critical CVE catalog scope, coverage, provenance, and counts.
Inferred read-onlyrecipes_cve_searchSearch every in-scope Medium/High/Critical CVE; use recipes_cve_get for complete details.
Inferred read-onlyrecipes_cve_getGet evidence, recipe authority, and a bounded code/config/file change plan for one exact CVE.
Inferred read-onlyrecipes_quality_reportSummarize recipe quality tiers and list recipes missing world-class signals.
Inferred read-onlyrecipes_workflow_control_planeReturn workflow control-plane policy for agents, reviewers, and MCP gateways.
Inferred read-onlyrecipes_mcp_gateway_policyReturn generated MCP gateway policy for scoped tool access and runtime controls.
Inferred read-onlyrecipes_agentic_assurance_packReturn enterprise assurance controls, workflow evidence, and AI/Agent BOM seed.
Inferred read-onlyrecipes_agent_identity_ledgerReturn agent non-human identity, delegation, scope, and audit contracts.
Inferred read-onlyrecipes_agentic_entitlement_review_packReturn expiring agent entitlement leases, access reviews, and scope evidence.
Inferred read-onlyrecipes_agentic_approval_receipt_packReturn scope-bound approval receipt profiles, workflow requirements, and evidence.
Inferred read-onlyrecipes_mcp_connector_trust_packReturn MCP connector trust tiers, controls, evidence, and workflow namespace coverage.
Inferred read-onlyrecipes_mcp_connector_intake_packReturn MCP connector intake decisions, risk findings, gaps, and promotion plans.
Inferred read-onlyrecipes_mcp_stdio_launch_boundary_packReturn MCP STDIO launch boundaries, profiles, decisions, and evidence.
Inferred read-onlyrecipes_mcp_authorization_conformance_packReturn MCP authorization conformance, scope-drift, and token-boundary evidence.
Inferred read-onlyrecipes_mcp_elicitation_boundary_packReturn MCP form-mode and URL-mode elicitation boundary evidence.
Inferred read-onlyrecipes_mcp_tool_risk_contractReturn MCP tool annotation, trust, and session-combination risk evidence.
Inferred read-onlyrecipes_mcp_tool_surface_drift_packReturn pinned MCP tool descriptions, schemas, annotations, and drift evidence.
Inferred read-onlyrecipes_agentic_red_team_drill_packReturn adversarial drills for agentic remediation workflows and MCP controls.
Inferred read-onlyrecipes_agentic_red_team_replay_harnessReturn replay fixtures, expected decisions, and evidence gates for red-team drills.
Inferred read-onlyrecipes_agentic_readiness_scorecardReturn generated scale, pilot, gate, or block decisions for agentic workflows.
Inferred read-onlyrecipes_agent_capability_risk_registerReturn capability-based residual risk scores for agentic workflows.
Inferred read-onlyrecipes_agent_memory_boundary_packReturn agent memory classes, workflow profiles, TTLs, and persistence decisions.
Inferred read-onlyrecipes_agent_skill_supply_chain_packReturn agent skill provenance, permission, isolation, and supply-chain decisions.
Inferred read-onlyrecipes_agent_handoff_boundary_packReturn agent handoff boundary profiles, protocol controls, and workflow maps.
Inferred read-onlyrecipes_a2a_agent_card_trust_profileReturn A2A Agent Card intake profiles, trust controls, and sample decisions.
Inferred read-onlyrecipes_agentic_system_bomReturn the Agentic System BOM for workflows, agents, identities, MCP tools, and evidence.
Inferred read-onlyrecipes_agentic_run_receipt_packReturn agent run receipt templates for identity, context, tools, egress, approval, and evidence.
Inferred read-onlyrecipes_secure_context_trust_packReturn context provenance, retrieval policy, source hashes, and workflow context packages.
Inferred read-onlyrecipes_secure_context_attestation_packReturn secure-context attestation subjects, verification policy, and recertification state.
Inferred read-onlyrecipes_secure_context_lineage_ledgerReturn context lineage, reuse policy, stage requirements, hashes, and workflow envelopes.
Inferred read-onlyrecipes_secure_context_eval_packReturn scenario-backed secure-context evals for retrieval, attestation, egress, and handoffs.
Inferred read-onlyrecipes_context_poisoning_guard_packReturn context-poisoning scan results for registered secure-context sources.
Inferred read-onlyrecipes_context_egress_boundary_packReturn context egress data classes, destination classes, and workflow boundary policy.
Inferred read-onlyrecipes_agentic_threat_radarReturn current source-backed agentic AI threat signals and product priorities.
Inferred read-onlyrecipes_agentic_standards_crosswalkReturn standards-to-evidence mappings for agentic AI, MCP, and prompt-injection guidance.
Inferred read-onlyrecipes_agentic_source_freshness_watchReturn source-freshness and standards-drift evidence for SecurityRecipes.
Inferred read-onlyrecipes_mcp_risk_coverage_packReturn OWASP MCP and agentic-skill risk coverage mapped to generated evidence.
Inferred read-onlyrecipes_agentic_protocol_conformance_packReturn MCP/A2A protocol conformance evidence and buyer-ready drift controls.
Inferred read-onlyrecipes_agentic_control_plane_blueprintReturn the acquisition-ready agentic control plane architecture and buyer evidence map.
Inferred read-onlyrecipes_agentic_exposure_graphReturn risk-ranked agentic exposure paths across context, identities, MCP tools, and evidence.
Inferred read-onlyrecipes_agentic_posture_snapshotReturn the generated enterprise posture snapshot for agentic AI and MCP operations.
Inferred read-onlyrecipes_agentic_aivss_risk_scoring_packReturn AIVSS-aligned agentic risk scores, SLAs, evidence, and hosted MCP wedges.
Inferred read-onlyrecipes_agentic_app_intake_packReturn generated agentic app launch-review profiles and decisions.
Inferred read-onlyrecipes_model_provider_routing_packReturn model-provider route profiles, workflow mappings, and required evidence.
Inferred read-onlyrecipes_agentic_catastrophic_risk_annexReturn the severe-risk annex for high-impact agentic AI runtime decisions.
Inferred read-onlyrecipes_critical_infrastructure_secure_context_packReturn the generated critical-infrastructure secure-context profile.
Inferred read-onlyrecipes_agentic_incident_response_packReturn agentic incident response classes, phases, workflow matrix, and evidence.
Inferred read-onlyrecipes_agentic_action_runtime_packReturn action classes, workflow action envelopes, runtime policy, and evidence.
Inferred read-onlyrecipes_agent_trust_fabric_packReturn Agent Trust Fabric dimensions, workflow tiers, source evidence, and buyer proof.
Inferred read-onlyrecipes_browser_agent_boundary_packReturn browser-agent workspace classes, task profiles, controls, and evidence.
Inferred read-onlyrecipes_agentic_measurement_probe_packReturn measurement probes for agentic workflow traceability and readiness.
Inferred read-onlyrecipes_agentic_telemetry_contractReturn the OpenTelemetry-aligned agentic telemetry and redaction contract.
Inferred read-onlyrecipes_agentic_soc_detection_packReturn SIEM-ready detections for agentic AI and MCP telemetry.
Inferred read-onlyrecipes_enterprise_trust_center_exportReturn the bundled enterprise trust-center export for buyer and platform diligence.
Inferred read-onlyrecipes_secure_context_value_modelReturn the secure context value model for buyer, ROI, and acquisition diligence.
Inferred read-onlyrecipes_design_partner_pilot_packReturn the design partner pilot motion for buyer proof and hosted MCP validation.
Inferred read-onlyrecipes_secure_context_buyer_diligence_briefReturn buyer and acquirer diligence evidence for the secure context layer.
Inferred read-onlyrecipes_secure_context_customer_proof_packReturn the customer proof contract for design partner and acquisition evidence.
Inferred read-onlyrecipes_secure_context_evidence_contractReturn the secure context evidence API and release contract.
Inferred read-onlyrecipes_hosted_mcp_readiness_packReturn the hosted MCP readiness plan for enterprise product rollout.
Inferred read-onlyrecipes_match_findingHeuristic matcher that suggests best-fit recipes for a security finding.
Inferred read-onlyCONNECT WITH APPROVAL
Client installation
Review this server and its permissions before adding it. Secret placeholders must be set locally.
Codex
~/.codex/config.toml
[mcp_servers.security-recipes-mcp]
url = "https://security-recipes.ai/mcp"
enabled = true
Claude Code
.mcp.json
{
"mcpServers": {
"security-recipes-mcp": {
"type": "http",
"url": "https://security-recipes.ai/mcp"
}
}
}
Claude Desktop
Settings → Connectors → Add custom connector
Name: security-recipes-mcp
Remote MCP URL: https://security-recipes.ai/mcp
Add this remote URL as a custom connector in Claude Desktop. Availability depends on the user plan and workspace policy.
Cursor
.cursor/mcp.json
{
"mcpServers": {
"security-recipes-mcp": {
"url": "https://security-recipes.ai/mcp"
}
}
}
Visual Studio Code
.vscode/mcp.json
Add to Visual Studio Code{
"servers": {
"security-recipes-mcp": {
"type": "http",
"url": "https://security-recipes.ai/mcp"
}
}
}
Generic MCP
Client-specific MCP configuration
{
"name": "security-recipes-mcp",
"transport": "streamable-http",
"url": "https://security-recipes.ai/mcp"
}
MCP Inspector
Run the official MCP Inspector locally and enter the indexed Streamable HTTP endpoint.
TRUST AND VERIFICATION EVIDENCE
Loading Trust v2 evidence…
Checking the associated registrable domain. The BuiltWith key remains server-side.
Evidence is source-attributed and does not guarantee that a third-party server is safe. Risk labels are conservative metadata heuristics.