SECTORA TOOLS

14 tools from the Sectora MCP Server, categorised by risk level.

READ 14 tools
Read assess_dependency Check a single package@version for known vulnerabilities via OSV.dev (npm, PyPI, Go, Maven, NuGet, RubyGems... Read assess_tech_risk Assess security risk for a list of technologies. Returns known CVEs affecting each technology with severity... Read get_kev_recent Get recently added entries to the CISA Known Exploited Vulnerabilities (KEV) catalog. Read get_my_posture Get Shield WAF posture score and breakdown for a domain registered under this account. Returns 0-100 score,... Read get_scan Get a scan with all its findings (full detail: title, description, evidence, remediation, CVSS). Requires A... Read get_threat_stats Get statistics about the Sectora threat intelligence database including counts of EPSS scores, KEV entries,... Read get_trending_cves Get currently trending CVEs based on recent KEV additions, high EPSS scores, and exploit availability. Read get_weaponization_score Get the weaponization score (0-100) for a CVE. Factors in EPSS, KEV status, exploit availability, Nuclei te... Read list_my_findings List the API key owner's open security findings across all scans. Use this to answer "what's my current exp... Read list_my_scans List the API key owner's recent scans with summary counts. Requires API key. Read lookup_cve Get full threat intelligence enrichment for a CVE including EPSS score, CISA KEV status, public exploits, N... Read lookup_ip_reputation Look up community IP reputation from Sectora Shield WAF network. Shows if an IP has been reported for attac... Read scan_url Kick off a DAST security scan against a public URL the API key owner controls. Two-step flow: first call re... Read search_cves Search for CVEs by keyword, severity, or other filters. Query must be alphanumeric text.
How many tools does the Sectora MCP server have? +

The Sectora MCP server exposes 14 tools across 1 categories: Read.

How do I enforce policies on Sectora tools? +

Route the Sectora server through the PolicyLayer gateway. Define allow, deny, or approval rules per tool in the dashboard — they are enforced on every call before it reaches the server.

What risk categories do Sectora tools fall into? +

Sectora tools are categorised as Read (14). Each category has a recommended default policy.

Let agents act without letting them run wild.

Route your MCP servers through PolicyLayer and every tool call is checked against your policy before it runs — allow, deny, or require approval. Per-identity grants. Full audit log. Live in minutes.

Free to start. No card required.

4,600+ MCP servers and 31,000+ tools scanned and risk-classified.

// GET IN TOUCH

Have a question or want to learn more? Send us a message.

Message sent.

We'll get back to you soon.