MCP Server

cybershield

io.tooloracle/cybershield
Legal & Compliance Security Public & reachable MCP 2026-07-28

What this MCP does

Provides cybersecurity assessments, vulnerability prioritization, phishing analysis, incident playbooks, threat intelligence, and ISO, NIS2, and DORA compliance checks.

attack_surface_check
Attack surface assessment checklist. Web apps, remote access, cloud, IoT, email. Prioritized security checks.
Input schema
{'type': 'object', 'properties': {'iot_devices': {'type': 'boolean'}, 'cloud_services': {'type': 'boolean'}, 'employee_count': {'type': 'integer'}, 'web_applications': {'type': 'boolean'}, 'remote_access_vpn': {'type': 'boolean'}}, 'additionalProperties': False}
cve_risk_score
CVE risk prioritization combining CVSS, EPSS, KEV catalog, exploit availability. Returns weighted priority score with patching SLA.
Input schema
{'type': 'object', 'properties': {'cve_id': {'type': 'string'}, 'cvss_score': {'type': 'number'}, 'epss_score': {'type': 'number', 'description': '0-1 EPSS probability'}, 'in_kev_catalog': {'type': 'boolean'}, 'public_exploit': {'type': 'boolean'}, 'internet_facing': {'type': 'boolean'}, 'affected_systems': {'type': 'integer'}}, 'additionalProperties': False}
dora_ict_risk
DORA Art. 5-12 ICT risk management compliance check. 8 articles assessed with specific requirements per article.
Input schema
{'type': 'object', 'properties': {'learning_evolving': {'type': 'boolean'}, 'response_recovery': {'type': 'boolean'}, 'detection_measures': {'type': 'boolean'}, 'ict_risk_framework': {'type': 'boolean'}, 'communication_plans': {'type': 'boolean'}, 'ict_asset_inventory': {'type': 'boolean'}, 'protection_prevention': {'type': 'boolean'}}, 'additionalProperties': False}
incident_playbook
Incident response playbook for ransomware, data breach, phishing compromise. Phase-by-phase actions with legal obligations.
Input schema
{'type': 'object', 'properties': {'incident_type': {'type': 'string', 'description': 'ransomware | data_breach | phishing_compromise'}}, 'additionalProperties': False}
iso27001_gap
ISO 27001:2022 Annex A gap analysis. All 93 controls across 4 themes, new 2022 controls highlighted, certification process.
Input schema
{'type': 'object', 'properties': {'controls': {'type': 'object', 'description': 'Optional: status of specific controls'}}, 'additionalProperties': False}
nis2_compliance
NIS2 Directive (EU 2022/2555) compliance assessment. All 10 Art. 21 measures, entity classification, penalties, incident reporting.
Input schema
{'type': 'object', 'properties': {'sector': {'type': 'string'}, 'mfa_deployed': {'type': 'boolean'}, 'access_control': {'type': 'boolean'}, 'employee_count': {'type': 'integer'}, 'risk_management': {'type': 'boolean'}, 'incident_handling': {'type': 'boolean'}, 'business_continuity': {'type': 'boolean'}, 'cryptography_policy': {'type': 'boolean'}, 'annual_turnover_meur': {'type': 'number'}, 'supply_chain_security': {'type': 'boolean'}, 'cyber_hygiene_training': {'type': 'boolean'}, 'vulnerability_management': {'type': 'boolean'}, 'incident_reporting_process': {'type': 'boolean'}}, 'additionalProperties': False}
nis2_incident_report
NIS2 incident notification template. 24h early warning, 72h notification, 1-month final report templates.
Input schema
{'type': 'object', 'properties': {'severity': {'type': 'string'}, 'incident_type': {'type': 'string'}, 'affected_services': {'type': 'string'}, 'cross_border_impact': {'type': 'boolean'}, 'affected_users_estimate': {'type': 'integer'}}, 'additionalProperties': False}
password_policy
Generate password policy per NIST SP 800-63B (2024) and BSI recommendations. Modern best practices — no forced rotation.
Input schema
{'type': 'object', 'properties': {}, 'additionalProperties': False}
phishing_indicators
Analyze email/URL for phishing indicators. Scores sender, urgency, attachments, URL patterns. Returns verdict and recommended actions.
Input schema
{'type': 'object', 'properties': {'subject': {'type': 'string'}, 'sender_email': {'type': 'string'}, 'suspicious_url': {'type': 'string'}, 'creates_urgency': {'type': 'boolean'}, 'asks_for_credentials': {'type': 'boolean'}, 'has_unexpected_attachment': {'type': 'boolean'}}, 'additionalProperties': False}
risk_matrix
Risk assessment matrix (likelihood × impact). ISO 31000/27005 methodology. Provide risks for assessment or get template.
Input schema
{'type': 'object', 'properties': {'risks': {'type': 'string', 'description': 'JSON array [{name, likelihood(1-5), impact(1-5)}]'}}, 'additionalProperties': False}
security_metrics
Security KPI/metrics dashboard template. MTTD, MTTR, patch compliance, phishing rate. Board-ready reporting guidance.
Input schema
{'type': 'object', 'properties': {}, 'additionalProperties': False}
threat_landscape
Current cyber threat landscape overview per ENISA categories. Top 8 threats with sector relevance and mitigations.
Input schema
{'type': 'object', 'properties': {'sector': {'type': 'string', 'description': 'energy|finance|healthcare|manufacturing|public_admin|general'}}, 'additionalProperties': False}
Added
security_metrics
Sept. 17, 2026, 12:53 p.m.
Added
risk_matrix
Sept. 17, 2026, 12:53 p.m.
Added
incident_playbook
Sept. 17, 2026, 12:53 p.m.
Added
password_policy
Sept. 17, 2026, 12:53 p.m.
Added
dora_ict_risk
Sept. 17, 2026, 12:53 p.m.
Added
iso27001_gap
Sept. 17, 2026, 12:53 p.m.
Added
nis2_incident_report
Sept. 17, 2026, 12:53 p.m.
Added
nis2_compliance
Sept. 17, 2026, 12:53 p.m.
Added
phishing_indicators
Sept. 17, 2026, 12:53 p.m.
Added
attack_surface_check
Sept. 17, 2026, 12:53 p.m.
Added
cve_risk_score
Sept. 17, 2026, 12:53 p.m.
Added
threat_landscape
Sept. 17, 2026, 12:53 p.m.