2,029 DISA STIG rules with official check/fix text, CCI mappings, and .ckl checklist export.
Inferido de los transportes que declara este listado (streamable-http). Que un cliente no aparezca aquí no significa que se haya descartado: simplemente Forge no puede confirmarlo.
La verificación confirma la identidad del publicador (la propiedad del repo), no la seguridad del código. El análisis de seguridad cubre los CVE conocidos y los scripts de instalación sospechosos.
Leído de un handshake MCP real initialize → tools/list contra el endpoint declarado. No se invocó ninguna herramienta: tools/list es la llamada de introspección de solo lectura que el protocolo define para esto. Refleja lo que el servidor anunciaba en ese momento; un endpoint alojado no está fijado a ninguna versión y puede cambiar sin avisar.
https://www.mactechsolutionsllc.com/api/mcp/stig4 herramientas · 408 mssearch_stigSearch DISA STIG hardening rules across RHEL 8, RHEL 9, Windows 11, Windows Server 2022, and Cisco IOS Router NDM benchmarks - by keyword (matched against rule IDs and titles first, then descriptions), filterable by product, severity (high/medium/low, mapping to CAT I/II/III), category, and automat…Search DISA STIG hardening rules across RHEL 8, RHEL 9, Windows 11, Windows Server 2022, and Cisco IOS Router NDM benchmarks - by keyword (matched against rule IDs and titles first, then descriptions), filterable by product, severity (high/medium/low, mapping to CAT I/II/III), category, and automat…
| Parámetro | Tipo | Descripción |
|---|---|---|
| query* | string | Keyword or rule id fragment, e.g. "ssh banner" or "SV-257777" |
| product | string | Limit to one benchmark |
| severity | string | high=CAT I, medium=CAT II, low=CAT III |
| automation | string | — |
| limit | integer | Max results per page (default 20) |
| offset | integer | Skip this many matches. Pass the next_offset from a previous response to reach results beyond the first page. |
| format | string | "summary" (default) returns each rule inline as JSON. "links" returns MCP resource links, which hosts can render as pickable items the user opens on demand. No… |
get_stig_ruleGet the complete detail for one DISA STIG rule by its SV id (from search_stig): the requirement discussion, the exact check procedure an assessor runs, the fix text, severity, NIST control mapping, and whether it is SCAP-automatable. Call this when the user needs to implement or verify a specific r…Get the complete detail for one DISA STIG rule by its SV id (from search_stig): the requirement discussion, the exact check procedure an assessor runs, the fix text, severity, NIST control mapping, and whether it is SCAP-automatable. Call this when the user needs to implement or verify a specific r…
| Parámetro | Tipo | Descripción |
|---|---|---|
| sv_id* | string | Rule id, e.g. "SV-257777r991589_rule" (fragments matched if unique) |
list_stig_benchmarksList the DISA STIG benchmarks this server covers, with versions, rule counts, and severity breakdowns. Call this first when unsure whether a platform is covered.List the DISA STIG benchmarks this server covers, with versions, rule counts, and severity breakdowns. Call this first when unsure whether a platform is covered.
No se publicó ningún esquema de entrada para esta herramienta.
export_stig_checklistGenerate a DISA STIG Viewer checklist (.ckl XML) for a benchmark, optionally filtered by severity and pre-populated with findings. This is the artifact an assessment actually hands over - STIG Viewer opens it, eMASS ingests it, and a POA&M is written from it. Rules you do not supply a status for co…Generate a DISA STIG Viewer checklist (.ckl XML) for a benchmark, optionally filtered by severity and pre-populated with findings. This is the artifact an assessment actually hands over - STIG Viewer opens it, eMASS ingests it, and a POA&M is written from it. Rules you do not supply a status for co…
| Parámetro | Tipo | Descripción |
|---|---|---|
| product* | string | Which benchmark to build the checklist from |
| severity | string | Limit to one severity, e.g. high for a CAT I-only checklist |
| host_name | string | Asset hostname recorded in the checklist |
| host_ip | string | — |
| host_fqdn | string | — |
| findings | array | Per-rule results. Anything omitted stays Not_Reviewed - an unreviewed rule must never be reported as passing. |
4 de 4 herramientas publicaron una descripción.
Los nombres y descripciones de las herramientas los escribe el publicador y se muestran literalmente como texto inerte. Son las cadenas que un cliente MCP pasa al modelo, así que Forge las analiza en busca de patrones de inyección de prompts — cualquier hallazgo aparece junto al análisis de seguridad de arriba. «Privilegiada» es una coincidencia de palabra clave en el nombre de la herramienta, no una auditoría de lo que hace: un nombre inofensivo puede hacer cualquier cosa.
2,029 DISA STIG rules with official check/fix text, CCI mappings, and .ckl checklist export.
Los nombres enlazados abren el índice de Forge con todas las entradas que se observó que exponen esa herramienta. Ver todas las herramientas indexadas.
Esta entrada no publica ningún paquete de npm, así que Forge no tiene un árbol de dependencias para ella. Es una carencia de cobertura, no una afirmación de que no tenga dependencias.