Lattice: CVE, MITRE ATT&CK and detection graph for security agents

CVE, KEV, MITRE ATT&CK, CWE and detection graph for AI agents; every link names its source.

사용해야 할까요

품질 및 안전성

A
설명 품질
94%
스키마 완전성
80%
이름 품질
80%
오염 위험
100%
권한 일치
100%
프로토콜 준수
100%

도구 정의와 프로토콜 준수에 대한 자동 분석을 기반으로 합니다.

컨텍스트 비용

~2,000토큰 (도구 정의)
~1.8 KB일반적인 응답 크기
중간 정도의 주의 영향 (128k 컨텍스트의 1.56%)

이는 서버의 도구가 모델의 컨텍스트에 로드될 때마다 소비되는 대략적인 토큰 수입니다. 수치가 높을수록 다른 작업에 사용할 수 있는 주의가 줄어듭니다.

설치

원클릭 설치

`claude_desktop_config.json` 파일에 다음을 추가하세요:

{
  "mcpServers": {
    "lattice": {
      "url": "https://lattice.namiq.io/mcp"
    }
  }
}

원격 엔드포인트

https://lattice.namiq.io/mcpstreamable-http

할 수 있는 일

도구 목록

도구 (7)

🟢 읽기 전용🟡 쓰기🔴 삭제⚪ 알 수 없음
🟢graph_meta

Describe the graph this server reads, without looking up any fact in it. Returns the snapshot id and creation time, the schema version with notable schema changes, the node labels (types), the relationship verbs, the contributing sources, and the path templates that graph_path accepts. When to call it: once at the start of a session, to learn the valid values for the label argument of graph_lookup, graph_search and graph_neighbors, the verb values for graph_neighbors and the template names for graph_path; and when you report a finding, to cite the snapshot id it came from. What it is not for: it returns no CVEs, techniques, groups or detections. Use graph_lookup to find those. It takes no arguments, only reads, and gives the same answer to every caller of a snapshot.

입력 스키마

{
  "type": "object",
  "properties": {},
  "title": "graph_metaArguments"
}
🟢graph_lookup(id, label)

Find nodes by exact external id, e.g. CVE-2021-44228, T1059.001, CWE-79. Returns each match with its source (a CVE has a kev node if CISA lists it as exploited, and an nvd node) and a uid for graph_node and graph_neighbors. An empty items list means the graph has no such id.

입력 스키마

{
  "type": "object",
  "properties": {
    "id": {
      "description": "Exact external id, for example CVE-2021-44228, T1059.001 or CWE-79. Case-insensitive; prefixes and free text do not match (use graph_search for a prefix).",
      "title": "Id",
      "type": "string"
    },
    "label": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "description": "Optional node label (type) to restrict the answer to, for example CVE, Technique or Detection. The valid labels are listed by graph_meta; an unknown label is refused with the valid ones.",
      "title": "Label"
    }
  },
  "required": [
    "id"
  ],
  "title": "graph_lookupArguments"
}
🟢graph_search(id_prefix, label, limit, cursor)

List nodes whose external id starts with a prefix (e.g. CVE-2024-1, T105). Ids only, not free text. If the answer has truncated: true, pass its next_cursor as cursor to continue; a list without truncated is complete.

입력 스키마

{
  "type": "object",
  "properties": {
    "id_prefix": {
      "description": "Start of an external id, at least a few characters, for example CVE-2024-1 or T105. Not free text.",
      "title": "Id Prefix",
      "type": "string"
    },
    "label": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "description": "Optional node label (type) to restrict the answer to, for example CVE, Technique or Detection. The valid labels are listed by graph_meta; an unknown label is refused with the valid ones.",
      "title": "Label"
    },
    "limit": {
      "default": 10,
      "description": "Maximum items to return. The server clamps it to its own maximum; the answer reports applied_limit and limit_clamped.",
      "title": "Limit",
      "type": "integer"
    },
    "cursor": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "description": "Continuation token: pass the next_cursor from a previous answer that had truncated: true to get the next page. Omit it for the first page.",
      "title": "Cursor"
    }
  },
  "required": [
    "id_prefix"
  ],
  "title": "graph_searchArguments"
}
🟢graph_node(uid)

One node's properties (long text is clipped). uid comes from graph_lookup or graph_search. On a kev node: date_added, due_date, known_ransomware_use (Known or Unknown; Unknown means not recorded), required_action, vendor_project, product. On an nvd node: description and metadata (cvss_score, affected_products). A cvss_score of 0 means not scored yet.

입력 스키마

{
  "type": "object",
  "properties": {
    "uid": {
      "description": "The uid of a node, as returned by graph_lookup, graph_search or graph_neighbors.",
      "title": "Uid",
      "type": "string"
    }
  },
  "required": [
    "uid"
  ],
  "title": "graph_nodeArguments"
}
🟢graph_neighbors(uid, direction, verb, label, limit, ...)

Directly connected nodes with each link's verb, source, confidence and whether it is declared or inferred. Declared and cross-source links come first. If the answer has truncated: true, pass its next_cursor as cursor to continue.

입력 스키마

{
  "type": "object",
  "properties": {
    "uid": {
      "description": "The uid of the node whose links to list, from graph_lookup, graph_search or graph_node.",
      "title": "Uid",
      "type": "string"
    },
    "direction": {
      "default": "both",
      "description": "Which links to follow: out (from this node), in (to this node) or both.",
      "title": "Direction",
      "type": "string"
    },
    "verb": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "description": "Optional upper-case relationship verb to keep, for example EXPLOITS, DETECTS or USES. The valid verbs are listed by graph_meta.",
      "title": "Verb"
    },
    "label": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "description": "Optional node label (type) to restrict the answer to, for example CVE, Technique or Detection. The valid labels are listed by graph_meta; an unknown label is refused with the valid ones.",
      "title": "Label"
    },
    "limit": {
      "default": 12,
      "description": "Maximum links to return. The server clamps it to its own maximum; the answer reports applied_limit and limit_clamped.",
      "title": "Limit",
      "type": "integer"
    },
    "cursor": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "description": "Continuation token: pass the next_cursor from a previous answer that had truncated: true to get the next page. Omit it for the first page.",
      "title": "Cursor"
    }
  },
  "required": [
    "uid"
  ],
  "title": "graph_neighborsArguments"
}
🟢graph_path(template, id, label)

Answer a fixed multi-hop question from an external id. Templates: cve-context (start: CVE), cve-to-defense (start: CVE), technique-coverage (start: Technique), weakness-chain (start: Weakness), actor-ttps (start: ThreatActor/Malware/Campaign). cve-to-defense gives the techniques a CVE enables and the detections and procedures for them.

입력 스키마

{
  "type": "object",
  "properties": {
    "template": {
      "description": "Name of the path template, one of: cve-context, cve-to-defense, technique-coverage, weakness-chain, actor-ttps.",
      "title": "Template",
      "type": "string"
    },
    "id": {
      "description": "External id to start from; it must be of a kind the template starts from (see the template list in the tool description).",
      "title": "Id",
      "type": "string"
    },
    "label": {
      "anyOf": [
        {
          "type": "string"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "description": "Optional node label (type) to restrict the answer to, for example CVE, Technique or Detection. The valid labels are listed by graph_meta; an unknown label is refused with the valid ones.",
      "title": "Label"
    }
  },
  "required": [
    "template",
    "id"
  ],
  "title": "graph_pathArguments"
}
🟢graph_notices(ids)

Return the licence and attribution notices for the data sources behind an answer. Other tools list notice ids with their answers. Pass those ids here to get, for each notice, its title, what it applies to, the obligation it places on you (for example attribution wording or a share-alike condition) and the notice text. Long texts are cut and flagged text_truncated, with text_url pointing to the full text. When to call it: before you quote, republish or build on anything the graph returned, and then quote what the obligation requires. Unknown ids are reported in unknown rather than failing. What it is not for: it returns no security facts, and it is source licence information, not legal advice. It only reads and gives the same answer each time for a snapshot.

입력 스키마

{
  "type": "object",
  "properties": {
    "ids": {
      "anyOf": [
        {
          "items": {
            "type": "string"
          },
          "type": "array"
        },
        {
          "type": "null"
        }
      ],
      "default": null,
      "description": "Notice ids to fetch, as listed in the notice list of other answers, at most 10 per call. Omit to get the notices the server holds (up to 10). Ids it does not know come back in the unknown list.",
      "title": "Ids"
    }
  },
  "title": "graph_noticesArguments"
}

커뮤니티

이 서버 평가하기

증거

최근 관측

검증됨버전이 기록되지 않음도구 7개