SBOMApp - SBOM Generator & Vulnerability Scanner is listed as active in the registry but did not answer our last check. Last commit 27 Feb 2026.
Generate SBOMs, scan vulnerabilities, and analyze dependencies from local projects or Git repos.
Over the last week it answered 0.0% of our checks. We check every 15 minutes, so you hear about the next outage within the hour — not from your users.
Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 15 min ago.
claude mcp add sbom-mcp --transport http https://mcp.sbomapp.com/mcp
{
"mcpServers": {
"sbom-mcp": {
"url": "https://mcp.sbomapp.com/mcp"
}
}
}
[mcp_servers.sbom-mcp]
url = "https://mcp.sbomapp.com/mcp"
{
"mcpServers": {
"sbom-mcp": {
"url": "https://mcp.sbomapp.com/mcp"
}
}
}
{
"mcpServers": {
"sbom-mcp": {
"url": "https://mcp.sbomapp.com/mcp"
}
}
}
| URL | Transport | State | Latency | Checked |
|---|---|---|---|---|
| https://mcp.sbomapp.com/mcp | streamable-http | answering | 963 ms | 15 min ago |
FinishKit MCP: scan GitHub repos for security vulnerabilities, deployment blockers, and quality
Vulnerability management: scan projects, search sealed packages, manage sealing rules and reports.
MCP server that scans your repo's dependencies for security vulnerabilities based on published CVEs.
Analyzes code for bugs, security vulnerabilities, and code smells
PQC scanner for GitHub repos and smart contracts. Detects quantum-vulnerable ECDSA/RSA.
Get GitHub repository stats, search repos, analyze languages, and compare projects
Trigger security scans and read reports/vulnerabilities via the hosted Scannd API. Free: 2 scans/mo.
MCP server for SecObserve: triage findings, import scan reports and SBOMs, generate VEX.
Answers built from our own checks of this server.