mcpbeat Sign in

Dora MCP Server

not responding

Dora is listed as active in the registry but did not answer our last check. It exposes 15 tools.

DORAOracle — 15 tools for DORA Art.5-32: risk register, ICT incidents, TLPT, third-party.

The linked repository no longer exists on GitHub — it was deleted or made private.

Uptime history 51 days of history · worst day 0%
51 days agonow
0.0%
Uptime 24h
0 of 91 checks
15
Tools
read from the server
86 ms
Response time
average over 24h
open, no key
Access
streamable-http

Dora does not always answer

Over the last week it answered 0.0% of our checks. We check every 15 minutes, so you hear about the next outage within the hour — not from your users.

Three servers free · no card

Connect this server

Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 5 min ago.

run in your terminal
claude mcp add dora --transport http https://tooloracle.io/dora/mcp/
~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "dora": {
      "url": "https://tooloracle.io/dora/mcp/"
    }
  }
}
~/.codex/config.toml
[mcp_servers.dora]
url = "https://tooloracle.io/dora/mcp/"
.cursor/mcp.json
{
  "mcpServers": {
    "dora": {
      "url": "https://tooloracle.io/dora/mcp/"
    }
  }
}
.vscode/mcp.json
{
  "mcpServers": {
    "dora": {
      "url": "https://tooloracle.io/dora/mcp/"
    }
  }
}

Available tools 15

Read directly from the server with tools/list, grouped by what they act on. If a tool disappears, we record the date.

cve
cve_latest
Latest critical CVEs — daily DORA ICT risk briefing. Filter by severity and banking relevance.
cve_search
Search CVEs by keyword, vendor or product. Returns CVSS scores, attack vectors, DORA pillar mapping.
dora
dora_calendar
DORA compliance milestones and upcoming deadlines for financial institutions. All Art. references included.
dora_news
EBA/DORA regulatory news for banks. Topics: general, eba, incident, third_party, testing, guidelines, bafin, swift.
kev
kev_check
Check if a specific CVE is in CISA KEV (actively exploited in the wild). Returns DORA incident classification guidance.
kev_list
CISA Known Exploited Vulnerabilities — actively exploited CVEs with patch deadlines. DORA Art. 9 patch compliance.
breach
breach_check
HaveIBeenPwned breach database — check domain/company breach exposure. DORA Art. 18 incident assessment.
cert
cert_advisories
CERT-Bund security advisories — authoritative DE source for ICT threats. DORA Art. 17 threat monitoring.
cloud
cloud_status
Live status of AWS, GCP, Azure cloud providers. DORA Art. 28 third-party ICT risk monitoring.
health
health_check
DORAOracle server status and all backend connectivity checks.
incident
incident_timeline
Generate a DORA Art. 19-aligned ICT incident reporting timeline with the regulatory deadline structure. Supports - does not constitute - compliant reporting.
mitre
mitre_techniques
MITRE ATT&CK techniques for DORA TLPT / TIBER-EU penetration testing. Maps to DORA Art. 26.
provider
provider_risk
DORA Art. 28 ICT third-party risk assessment: CVE history, news, GLEIF registration, contractual checklist.
threat
threat_actors
Feodo Tracker: live C2 botnet servers (Emotet, QakBot, etc.). Actionable IP blocklist for DORA Art. 9.
tlpt
tlpt_scenarios
TIBER-EU threat scenarios for DORA resilience testing planning. Banking-specific attack simulations.

Endpoints

URLTransportStateLatencyChecked
https://tooloracle.io/dora/mcp/ streamable-http answering 86 ms 5 min ago

Alternatives to Dora

same job, measured the same way
GCP Platform Engineer
by debilla

Read-only GCP tools for debugging incidents and finding cost savings

562 installs/wk local only
Revelara
by revelara

Reliability intelligence: production incidents, risk register, controls catalog, knowledge graph.

answering
Dora Compliance MCP
by csoai-org

DORA (EU Digital Operational Resilience Act) compliance for AI agents. 5-pillar audit, incident ...

466 installs/wk local only
Datadog
by us-all

Datadog MCP — 165 tools for metrics, monitors, logs, APM, RUM, incidents, CI/CD, fleet

401 installs/wk local only
Vendor Status MCP
by approj

Status-page map for 1,100+ SaaS/cloud vendors plus 15,700+ incidents. No API key.

local only
Logclaw MCP Server
by robeldev

Connect AI coding tools to LogClaw incidents, logs, and anomaly detections.

34 installs/wk local only
FDE Lessons API
by ignatiustheyoungerai

Forward Deployed Engineering rules traced to real incidents. Agent pays per query, no account.

5 tools answering
I
AgentNX
by iamwi11

AI agents for federal IT & pharma: alert triage, ICAM, helpdesk, incidents, ticket routing.

answering

Dora — questions

Answers built from our own checks of this server.

What can Dora do?
It exposes 15 tools, read directly from the server on our last check. Among them: breach_check, cert_advisories, cloud_status, cve_latest, cve_search, dora_calendar and 9 more. The full list with descriptions is on this page — we take it from the server itself via tools/list, not from a README. How MCP servers expose tools in the first place →
What is Dora mostly used for?
Its tools cluster around dora, kev and cve. That is what this server is built to work with — the grouping comes from the actual tool names, not from a category we assigned.
Is Dora working right now?
We send a real MCP handshake every 15 minutes. Over the last 24 hours 0 of 91 checks got a reply (0.0%), average response time 86 ms. The bar chart above shows every period we have measured.
Is Dora still maintained?
The linked repository no longer exists on GitHub — it was deleted or made private. We show this because it changes what you can expect: an unmaintained server may keep answering for months and then stop without warning.
The registry lists Dora as active — why does it not respond?
The official MCP registry stores what the author submitted; it does not verify that the server still runs. We check the endpoint ourselves, and this one does not answer. Catalogues that copy the registry without checking will show it as working.
How do I connect Dora?
Copy the ready config from this page — we generate it for Claude Code, Claude Desktop, Codex, Cursor and VS Code, each with the file path that client actually reads. It is a remote server, so there is nothing to install — the client connects to the address.
Does Dora need an API key?
No. Dora completed a full MCP handshake with us as an anonymous client and listed its tools without asking for anything. All 15 of them are readable on this page. This is what we observed, not what the docs claim.