agent-bom
About
Security scanner and graph for agentic infrastructure — agents, MCP, runtime, and blast radius.
Use this server
Add it to your MCP client. The catalogue lists this config verbatim from its source — it does not run, download, or vouch for the server. Review the command before you run it.
Transportstdio (runs a local command)
Env vars
NVD_API_KEYClaude Code
claude mcp add --env NVD_API_KEY= agent-bom -- uvx agent-bom
Cursor
If the button doesn't open Cursor, use the JSON below — Cursor accepts the same mcpServers config.
VS Code
code --add-mcp '{"name":"agent-bom","command":"uvx","args":["agent-bom"],"env":{"NVD_API_KEY":""}}'
JSON
{
"mcpServers": {
"agent-bom": {
"command": "uvx",
"args": [
"agent-bom"
],
"env": {
"NVD_API_KEY": ""
}
}
}
}
Environment variables are listed by name only — fill in your own values. Entries never carry secrets.