SBOM Dependency Risk Scorer MCP Connector for Claude
A+Analyze SBOM files to quantify supply chain risk through dependency structure, package staleness, and vulnerability exposure.
The SBOM Dependency Risk Scorer is an analytical engine designed to evaluate the security and maintenance health of software ecosystems. By processing Software Bill of Materials (SPDX/CycloneDX) files, it quantifies risk across three critical vectors: structural complexity, maintenance decay, and known vulnerability exposure. Use analyze_dependency_structure to assess dependency depth, evaluate_package_stalness to identify outdated components, tally_vulnerability_exposure to count CVEs, and calculate_composite_risk_score to generate a single, actionable risk rating.
Related Connectors
Socket.dev (Dependency Security) MCP
Protect your software supply chain by scanning dependencies, checking package security scores, and monitoring threat feeds directly from your AI agent.
PE AI Technology Due Diligence MCP
Quantify technical risk, remediation costs, and investment viability for AI-driven assets.
Enterprise Health Score Calculation MCP
Calculate multi-dimensional customer health scores, trends, and risk indicators.
AI Safety Evaluation Score MCP
Translates technical AI safety metrics into financial risk profiles and safety posture scores.