Kevscope

CVE patch-priority API + MCP: CISA KEV, EPSS, CVSS, SSVC. Keys $19/mo; 200 free calls/day.

我该使用它吗

质量与安全性

B
描述质量
83%
模式完整度
79%
命名质量
80%
投毒风险
100%
权限匹配度
100%
协议合规性
100%

发现(1)

  • LOWTool 'epss_watchlist' description lacks action verb在 epss_watchlist 中

基于对工具定义和协议合规性的自动分析。

上下文开销

~457token 数(工具定义)
~660 B典型响应大小
对注意力的影响极小(占 128k 上下文窗口的 0.36%)

这是每次将服务器的工具加载到模型上下文窗口时所消耗的大致 token 数。数值越高,可用于其他任务的注意力就越少。

安装

一键安装

将以下内容添加到你的 `claude_desktop_config.json` 文件中:

{
  "mcpServers": {
    "kevscope-api": {
      "url": "https://kevscope-api.cybermax-tools.workers.dev/mcp?via=mcp-registry"
    }
  }
}

远程端点

https://kevscope-api.cybermax-tools.workers.dev/mcp?via=mcp-registrystreamable-http

它能做什么

工具清单

工具(3)

🟢 只读🟡 写入🔴 删除⚪ 未知
🟢cve_priority(cves, full)

Patch-priority verdict for 1-20 CVE IDs with evidence: CISA KEV status (date added, due date, ransomware use), FIRST EPSS probability, CVSS (CNA or CISA-ADP), CISA SSVC exploitation/automatable/impact, vendor, product and links. Sorted most urgent first.

输入模式

{
  "type": "object",
  "properties": {
    "cves": {
      "type": "array",
      "items": {
        "type": "string"
      },
      "minItems": 1,
      "maxItems": 20,
      "description": "CVE IDs like CVE-2024-3400"
    },
    "full": {
      "type": "boolean",
      "default": false
    }
  },
  "required": [
    "cves"
  ]
}
🟢kev_recent(days, vendor, ransomware, limit)

CVEs added to the CISA Known Exploited Vulnerabilities catalog in the last N days, newest first, with due date, ransomware use and EPSS. Optional vendor/product text filter.

输入模式

{
  "type": "object",
  "properties": {
    "days": {
      "type": "integer",
      "minimum": 1,
      "maximum": 365,
      "default": 30
    },
    "vendor": {
      "type": "string"
    },
    "ransomware": {
      "type": "boolean",
      "default": false
    },
    "limit": {
      "type": "integer",
      "minimum": 1,
      "maximum": 100,
      "default": 50
    }
  }
}
🟢epss_watchlist(year, limit, minEpss)

The highest-EPSS CVEs (most likely to be exploited in 30 days) that are not in CISA KEV yet. Defaults to this year's CVE IDs.

输入模式

{
  "type": "object",
  "properties": {
    "year": {
      "type": "string",
      "description": "e.g. 2026, or all"
    },
    "limit": {
      "type": "integer",
      "minimum": 1,
      "maximum": 50,
      "default": 25
    },
    "minEpss": {
      "type": "number",
      "minimum": 0,
      "maximum": 1
    }
  }
}

社区

评价此服务器

证据

最近观测

已验证未记录版本3 个工具