MacroCyber
Scan what a public site or AI-built app exposes. Returns a signed, exploitability-graded claim.
我该使用它吗
质量与安全性
基于对工具定义和协议合规性的自动分析。
上下文开销
这是每次将服务器的工具加载到模型上下文窗口时所消耗的大致 token 数。数值越高,可用于其他任务的注意力就越少。
安装
一键安装
将以下内容添加到你的 `claude_desktop_config.json` 文件中:
{
"mcpServers": {
"attack-surface": {
"url": "https://macrocyber.co/api/mcp"
}
}
}远程端点
https://macrocyber.co/api/mcpstreamable-http它能做什么
工具清单
工具(1)
🟢macrocyber_exposure_claim(url)
Run a passive, external attack-surface assessment of a public website and return a signed, exploitability-graded exposure claim: an SSVC decision (Act, Attend, or Track), a folded score and letter grade, the observed enablers (each with its evidence, reachability, and CWE/OWASP/LLM/ASI taxonomy), and any composed attack-path chains. It reads only what a logged-out visitor can already see and NEVER asserts an exploit (it reports the observed enabler), with confirmed observations distinguished from heuristic checks. Use it to check what a public website or web app exposes to the internet, for example right after deploying an AI-built app. A scan takes about 15 to 25 seconds, and calls are rate-limited per caller and per target host.
输入模式
{
"type": "object",
"properties": {
"url": {
"type": "string",
"description": "The target host or URL to assess, e.g. https://example.com"
}
},
"required": [
"url"
],
"additionalProperties": false
}社区
证据