Black Duck (Synopsys)

Black Duck (Synopsys) MCP Connector for Claude

A+

Secure your open source supply chain via Black Duck — list projects, versions, and vulnerabilities directly from any AI agent.

10 tools Official Updated Jun 28, 2026 Official Vinkius Partner

Connect your Black Duck (Synopsys) instance to any AI agent and orchestrate your open source security and license compliance workflows through natural conversation.

What you can do

  • Project Oversight — List and retrieve detailed metadata for all your software projects and their versions.
  • Vulnerability Tracking — Query project versions for known vulnerabilities (CVEs) and retrieve severity levels.
  • BOM Monitoring — Check the status of Bill of Materials (BOM) calculations to ensure up-to-date compliance data.
  • Policy Management — List and audit security policy rules defined across your organization.
  • Scan Analysis — Access code locations and scan histories to track security coverage.
  • User & Access Auditing — Retrieve user profiles and manage access controls within the platform.

How it works

  1. Subscribe to this server
  2. Enter your Black Duck Instance URL and API Token
  3. Start securing your code from Claude, Cursor, or any MCP-compatible client

Who is this for?

  • Security Engineers — quickly audit vulnerabilities across multiple projects without manual dashboard exports.
  • Developers — check the security status of their project dependencies straight from the code editor.
  • Compliance Officers — retrieve policy rule summaries and BOM statuses for periodic reporting.
open-source-securityvulnerability-scanninglicense-compliancesoftware-supply-chaincve-trackingrisk-management

10 tools expose this connector's capabilities to your AI agent.

get_bom_status

Check BOM calculation status for a project version

get_project

Get details of a specific project

list_vulnerabilities

List vulnerabilities for a project version

get_vulnerability_details

Get details of a specific CVE/Vulnerability

list_code_locations

List all scan code locations

list_policy_rules

List all security policy rules

list_project_versions

List all versions for a specific project

list_projects

List all Black Duck projects

list_users

List all Black Duck users

search_projects

Search projects by name

See how to talk to your AI agent using Black Duck (Synopsys).

List all versions for project 'Web-Portal'.

I've retrieved the versions for 'Web-Portal'. You have 3 versions: '1.0.0' (ID: v1), '1.1.0-beta' (ID: v2), and 'latest' (ID: v3).

Identify any critical vulnerabilities in the backend service repository.

Scanning project 'Backend Service'. Found 2 Critical CVEs linked to active OpenSSL dependencies (CVE-2023-xxxx). Actions recommended immediately.

Fetch the BOM status for project Alpha version 2.0.

The Bill of Materials (BOM) for Alpha v2.0 is perfectly 'UP_TO_DATE' and fully synchronized within the compliance policy guidelines.

Yes! Use the `list_vulnerabilities` tool with the Project and Version IDs. Your agent will fetch the list of components with known security flaws and their severity levels.

Related Connectors