AI intelligence layer — MCP server for staying current on AI. Tracks 220,000+ AI repos across GitHub, PyPI, npm, Docker Hub, HuggingFace, and Hacker News.
PT-Edge demonstrates solid overall quality with 17 well-defined tools. Most tools have clear action-verb naming (list_, describe_, search_, find_, query, cve_lookup, etc.) and substantive descriptions (average ~120 chars). All 17 tools include descriptions that explain WHAT they do and WHEN to use them. Input schemas are consistently present with typed parameters. The main limitation is that output schemas are not documented in the source code, responses are described textually but lack formal JSON Schema documentation. This is a significant gap for LLM planning. Security posture is strong: all tools are READ_ONLY except submit_feedback (WRITE), and the server does not expose credentials. Parameter quality is high: numeric limits are specified (limit, offset, days), enums are declared (domain filter, entity_type, category), and descriptions are specific. Discovery tools (list_tables, describe_table, search_tables) are well-designed with prerequisite guidance. However, pagination is not uniformly implemented across all list tools, and error handling guidance is not documented in descriptions. Tool composition is strong, tools chain well (list_tables → describe_table → query) and follow the verb_noun naming convention consistently.
Overview of CyberEdge data coverage and freshness.
Trace ATT&CK technique back through CAPEC and CWE to CVEs.
Full CVE profile with scores, CVSS, EPSS, KEV status, and kill chain.
Show columns, types, and row count for a specific table. Call before writing a query.
Find AI/ML tools and libraries by describing what you need in plain English. Searches 220K+ indexed AI repos via semantic + keyword search.
Find actively exploited CVEs by EPSS score and/or KEV status.
Output schemas not documented. Tool descriptions specify what is returned (e.g. 'JSON results' for query, 'full CVE profile' for cve_lookup) but lack formal response schema definitions. LLMs cannot reliably plan downstream tool calls or extract specific fields without knowing response structure.
Error handling guidance absent from tool descriptions. No recovery hints provided (e.g., 'If table not found, call list_tables() first'). Error classification and actionable error messages not documented.
| Scored | Grade | Overall | Spec posture | Rubric |
|---|---|---|---|---|
| 2026-09-23 | B | 71 | 2026-07-28+ | v2 |
Start here. Returns orientation: how many tables, repos, domains, and last sync time. Shows what data is available and how to explore it.
List all database tables with row counts. Use before describe_table() or query().
Show available SQL recipe workflows -- pre-built query templates for common questions. Adapt these to your needs or use query() for custom SQL.
Run a read-only SQL query against the database. Call list_tables() and describe_table() first to see available tables and columns. SELECT only, 5s timeout, 1000 row limit, JSON results.
Find tables by keyword in table or column names. Use when you're not sure which table has the data you need.
Software vulnerability risk profile.
Submit feedback about an AI topic or project. Categories: bug (broken/wrong data), feature (buildable thing), observation (strategic context), insight (analytical finding). Default 'observation' when unsure. All submissions are PUBLIC -- do not include sensitive data.
Entities with the biggest score changes in the given time window.
Vendor vulnerability risk assessment.
CWE weakness analysis with linked attack patterns and techniques.
Recent data updates from sync_log.
Generic tool name 'about' lacks action verb and is ambiguous. Does it return server status, data coverage, API documentation, or system info? Should be 'describe_coverage', 'get_data_coverage', or 'get_system_status' to clarify intent.
Pagination not uniformly implemented. find_ai_tool includes limit+offset; list_tables, describe_table, search_tables do not declare pagination parameters. Large result sets will exceed token budgets without pagination controls.
Tool descriptions lack clarity on prerequisites and dependencies. query() says 'Call list_tables() and describe_table() first', good. But cve_lookup, software_risk, and vendor_profile do not state whether they require prior discovery or disambiguation steps.