Instructions file CodexOpenCode
Instructions for AppThreat/vulnerability-db, covering agents.md, what this project is, repository map, rules for agents and things that look like bugs and are not.
18 tagged nvd, measured the same way as everything else here.
Instructions file CodexOpenCode
Instructions for AppThreat/vulnerability-db, covering agents.md, what this project is, repository map, rules for agents and things that look like bugs and are not.
Skill Claude CodeCodex
A practical guide for AI agents that need to use vdb. If you are changing the code rather than using it, read AGENTS.md instead.
Skill Claude CodeCodex
Parses Software Bill of Materials (SBOM) in CycloneDX and SPDX JSON formats to identify supply chain vulnerabilities by correlating components against the NVD CVE database via the NVD 2.0 API. Builds dependency graphs, calculates risk scores, identifies transitive vulnerability paths, and generates compliance reports.…
MCP server Claude CodeCodexCursor
MCP server "vulnerability-mcp-server" as configured in CedricG-dev/nvd-mcp. Runs locally from the vulnerability-mcp-server Python package.
MCP server Claude CodeCodexCursor
NVD MCP — wraps the NIST National Vulnerability Database API (free, no auth). Remote server at gateway.pipeworx.io.
MCP server Claude CodeCodexCursor
MCP server "cve-lookup-mcp" as configured in Aashish-32/cve-lookup-mcp. Runs locally from the cve-lookup-mcp Python package.
DevInder1/supply-chain-scanner-public
Cursor rule Cursor
TridentChain Security — supply-chain vulnerability scanning for this workspace.
DevInder1/supply-chain-scanner-public
MCP server Claude CodeCodexCursor +2
MCP server "tridentchain" as configured in DevInder1/supply-chain-scanner-public. Runs tridentchain_mcp with python3.
DevInder1/supply-chain-scanner-public
Plugin Claude Code
Comprehensive local supply-chain CVE scanning — project deps, system packages (Homebrew/apt), AND IDE extensions (VS Code, JetBrains) — with EPSS exploit-probability and CISA KEV prioritisation. Includes validate-after-patch workflow to confirm fixes. Local-first; no source code leaves the user's machine. Complements…
DevInder1/supply-chain-scanner-public
Skill Claude CodeCodex
Generate an EPSS/KEV-prioritised remediation plan from a scan. Returns the top findings ranked by real-world exploitation risk with copy-paste upgrade commands, semver-jump risk classification (PATCH/MINOR/MAJOR), and a recommendation per package. Use when the user asks for "what should I fix first", "remediation…
DevInder1/supply-chain-scanner-public
Skill Claude CodeCodex
Comprehensive scan covering project dependencies PLUS OS/system packages (Homebrew on macOS, apt/dnf on Linux) PLUS installed IDE extensions (VS Code marketplace + JetBrains plugins). Most other supply-chain scanners only check project manifests and miss system + IDE surfaces. Use whenever the user asks for "complete…
DevInder1/supply-chain-scanner-public
Skill Claude CodeCodex
Scan a workspace for supply-chain CVEs across project dependencies, system packages (Homebrew/apt), and IDE extensions (VS Code, JetBrains). Findings ranked by EPSS exploit probability and CISA KEV presence — not just CVSS severity. Use when the user asks about supply-chain risk, dependency vulnerabilities, or wants…
DevInder1/supply-chain-scanner-public
MCP server Claude CodeCodexCursor +2
MCP server for TridentChain Security — Claude, Cursor, and other MCP hosts. Runs locally from the tridentchain-mcp Python package.
At most 3 mods per repository are shown here — the rest are on their repository pages: