Four IaC audits in one call: Compose, Dockerfile, GitHub Actions, Kubernetes. 131 checks.
Unbearable IaC Audit Pack — all four audit Actors under one MCP endpoint. Snyk-comparable scope at a fraction of the cost. Pay-per-event — only billed when a tool is actually called. 64 checks. 20 categories. 4 audit engines. 1 MCP endpoint. -- Package | Checks | Categories | Primary tool | ---------|--------|------------|--------------| Docker Compose audit | 25 | 9 | | Dockerfile audit | 19 | 5…
Abgeleitet aus den Transporten, die dieser Eintrag deklariert (streamable-http). Ein Client, der hier nicht steht, ist damit nicht ausgeschlossen — Forge kann ihn nur nicht bestätigen.
Die Verifizierung bestätigt die Identität des Publishers (die Inhaberschaft am Repo), nicht die Sicherheit des Codes. Der Sicherheits-Scan deckt bekannte CVEs und verdächtige Installationsskripte ab.
Forge hat gegen diesen Endpunkt keinen tools/list-Handshake abgeschlossen und hat daher keine Beobachtung dessen, was der Server offenlegt. Nichts hiervon sagt, dass er nichts offenlegt.
Unbearable IaC Audit Pack — all four audit Actors under one MCP endpoint. Snyk-comparable scope at a fraction of the cost. Pay-per-event — only billed when a tool is actually called. 64 checks. 20 categories. 4 audit engines. 1 MCP endpoint. -- Package | Checks | Categories | Primary tool | ---------|--------|------------|--------------| Docker Compose audit | 25 | 9 | | Dockerfile audit | 19 | 5 | | GitHub Actions audit | 21 | 6 | | HU Postcode Validator | 5 tools | — | , , … | Plus two…