{"repo":"StacklokLabs/osv-mcp","free":true,"listed":false,"github":"https://github.com/StacklokLabs/osv-mcp","clone":"git clone https://github.com/StacklokLabs/osv-mcp.git","description":"An MCP server for OSV","language":"Go","stars":38,"topics":[],"license":"Apache-2.0","category":"mcp-servers","readme_excerpt":"OSV MCP Server An MCP (Model Context Protocol) server that provides access to the OSV (Open Source Vulnerabilities) database. Overview This project implements an SSE-based MCP server that allows LLM-powered applications to query the OSV database for vulnerability information. The server provides tools for: 1. Querying vulnerabilities for a specific package version or commit 2. Batch querying vulnerabilities for multiple packages or commits 3. Getting detailed information about a specific vulnerability by ID Installation Prerequisites - Go 1.21 or later - Task (optional, for running tasks) - ko (optional, for building container images) Building from source Usage Running with ToolHive (Recommended) The easiest way to run the OSV MCP server is using ToolHive, which provides secure, containerized deployment of MCP servers: The server will be available to your MCP-compatible clients and can query the OSV database for vulnerability information. Running from Source Server Configuration The server can be configured using environment variables: - MCP PORT : The port number to run the server on (default: 8080) - Must be a valid integer between 0 and 65535 - If invalid or not set, the server will use port 8080 - MCP TRANSPORT : The transport mode for the server (default: sse ) - Supported values: sse , streamable-http - If invalid or not set, the server will use SSE transport mode Example: MCP Tools The server provides the following MCP tools: query vulnerability Query for vulnerabiliti","default_branch":null,"files":null,"tree":[],"storefront":"/r/StacklokLabs","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/StacklokLabs/osv-mcp/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}