A Model Context Protocol server for cybersecurity operations, providing tools for knowledge base search, skill management, vulnerability tracking, and security tool execution
Scoring was not performed
Output schemas completely undocumented. No tool returns a documented schema, LLMs cannot predict return structure, field types, or plan downstream operations.
Parameter descriptions are missing for most parameters. 'skill_name' parameter in read_skill has a description, but list_knowledge_risk_types and list_skills have empty required arrays with no clarification of how to use these zero-parameter tools.
Error handling provides no recovery guidance. Code shows errors return 'IsError: true' with plain text, but does not tell the LLM what to do next, retry, try a different parameter, or escalate to the user.
| Scored | Grade | Overall | Spec posture | Rubric |
|---|---|---|---|---|
| 2026-09-22 | F | 42 | <=2025-11-25 | v2 |
| 2026-03-09 | F | 47 | 2024-11-05+ | v1 |
All descriptions are in Chinese, limiting accessibility for English-speaking developers and agent frameworks. While detailed, this creates a language barrier for adoption and integration.
search_knowledge_base 'query' parameter lacks format constraints or examples. No character limit, language requirement (Chinese vs English?), or guidance on query length/style. LLMs may pass overly long or poorly formatted queries.
search_knowledge_base returns 'TopK: 5' hard-coded. No pagination support (limit, offset, next_cursor), no documentation of return structure (what fields in each result?), and no total count. Large knowledge bases will frustrate users with truncated results.