MCP 服务器

tlpt

io.tooloracle/tlpt
商业与运营 法律与合规 安全 公开且可连接 MCP 2026-07-28

此 MCP 可以做什么

Supports TIBER-EU and DORA threat-led penetration testing with scenario generation, MITRE mapping, findings, evidence, scheduling, and remediation tracking.

attack_chain
Generate kill chain for a TIBER-EU scenario with MITRE mapping.
输入模式
{'type': 'object', 'required': ['scenario_id'], 'properties': {'scenario_id': {'type': 'string', 'description': 'TIBER-01 to TIBER-08'}}, 'additionalProperties': False}
auto_simulate
Autonomous TLPT simulation: generates TIBER-EU scenarios, maps MITRE ATT&CK, creates findings, rates detection. Art. 26.
输入模式
{'type': 'object', 'required': ['entity_id'], 'properties': {'entity_id': {'type': 'string'}, 'scenarios': {'type': 'integer', 'description': 'Number of scenarios (default: 3)'}}, 'additionalProperties': False}
evidence_bundle
Compile TLPT evidence for authority attestation.
输入模式
{'type': 'object', 'required': ['exercise_id'], 'properties': {'exercise_id': {'type': 'string'}}, 'additionalProperties': False}
finding_register
Log a pentest/TLPT finding.
输入模式
{'type': 'object', 'required': ['title', 'severity'], 'properties': {'title': {'type': 'string'}, 'severity': {'enum': ['critical', 'high', 'medium', 'low'], 'type': 'string'}, 'attack_path': {'type': 'string'}, 'exercise_id': {'type': 'string'}, 'recommendation': {'type': 'string'}, 'mitre_technique': {'type': 'string'}, 'system_affected': {'type': 'string'}, 'detection_status': {'enum': ['detected', 'partially_detected', 'undetected'], 'type': 'string'}}, 'additionalProperties': False}
generate_scenarios
List all 8 TIBER-EU scenarios available for autonomous simulation.
输入模式
{'type': 'object', 'properties': {}, 'additionalProperties': False}
health_check
Server status.
输入模式
{'type': 'object', 'properties': {}, 'additionalProperties': False}
mitre_map
Map MITRE ATT&CK techniques to DORA TLPT. Filter by technique ID or tactic.
输入模式
{'type': 'object', 'properties': {'tactic': {'type': 'string'}, 'technique': {'type': 'string'}}, 'additionalProperties': False}
obligation_map
TLPT obligations DORA-TST-06 to TST-10.
输入模式
{'type': 'object', 'properties': {}, 'additionalProperties': False}
phase_tracker
Track TIBER-EU 8-phase lifecycle.
输入模式
{'type': 'object', 'required': ['exercise_id'], 'properties': {'exercise_id': {'type': 'string'}, 'phase_status': {'enum': ['not_started', 'in_progress', 'completed', 'blocked'], 'type': 'string'}, 'update_phase': {'type': 'integer', 'maximum': 8, 'minimum': 1, 'description': 'Phase 1-8 to update'}}, 'additionalProperties': False}
ping
Connectivity test.
输入模式
{'type': 'object', 'properties': {}, 'additionalProperties': False}
register_exercise
Register a TLPT/pentest exercise.
输入模式
{'type': 'object', 'required': ['exercise_name'], 'properties': {'notes': {'type': 'string'}, 'scope': {'type': 'string'}, 'status': {'enum': ['planned', 'in_progress', 'completed', 'cancelled'], 'type': 'string'}, 'test_type': {'enum': ['tlpt', 'red_team', 'vulnerability_scan', 'pentest', 'tabletop', 'scenario_based'], 'type': 'string'}, 'budget_eur': {'type': 'number'}, 'start_date': {'type': 'string'}, 'exercise_id': {'type': 'string'}, 'ti_provider': {'type': 'string'}, 'exercise_name': {'type': 'string'}, 'target_end_date': {'type': 'string'}, 'red_team_provider': {'type': 'string'}, 'authority_notified': {'type': 'boolean'}}, 'additionalProperties': False}
remediation_plan
Track remediation of TLPT findings. Set add=true to create.
输入模式
{'type': 'object', 'properties': {'add': {'type': 'boolean'}, 'owner': {'type': 'string'}, 'action': {'type': 'string'}, 'due_date': {'type': 'string'}, 'finding_id': {'type': 'string'}, 'exercise_id': {'type': 'string'}}, 'additionalProperties': False}
sync_to_ampel
Push TLPT results to AmpelOracle Art. 26 checks.
输入模式
{'type': 'object', 'required': ['entity_id'], 'properties': {'entity_id': {'type': 'string'}}, 'additionalProperties': False}
team_assignment
Manage Red/Blue/White/Purple team assignments.
输入模式
{'type': 'object', 'required': ['exercise_id'], 'properties': {'red_team': {'type': 'string'}, 'blue_team': {'type': 'string'}, 'white_team': {'type': 'string'}, 'exercise_id': {'type': 'string'}, 'purple_team': {'type': 'string'}}, 'additionalProperties': False}
test_calendar
Annual testing schedule and compliance check.
输入模式
{'type': 'object', 'properties': {'year': {'type': 'string'}}, 'additionalProperties': False}
threat_profile
Define threat landscape for TLPT scoping.
输入模式
{'type': 'object', 'required': ['exercise_id'], 'properties': {'sector': {'type': 'string'}, 'geography': {'type': 'string'}, 'exclusions': {'type': 'string'}, 'exercise_id': {'type': 'string'}, 'crown_jewels': {'type': 'string'}, 'threat_actors': {'type': 'string'}, 'attack_scenarios': {'type': 'string'}, 'critical_systems': {'type': 'string'}}, 'additionalProperties': False}
tlpt_readiness
Assess organizational readiness for a TLPT exercise.
输入模式
{'type': 'object', 'properties': {'scope_defined': {'type': 'boolean'}, 'budget_approved': {'type': 'boolean'}, 'legal_framework': {'type': 'boolean'}, 'authority_engaged': {'type': 'boolean'}, 'red_team_selected': {'type': 'boolean'}, 'white_team_formed': {'type': 'boolean'}, 'ti_provider_selected': {'type': 'boolean'}, 'crown_jewels_identified': {'type': 'boolean'}}, 'additionalProperties': False}
已添加
ping
2026年9月17日 12:53
已添加
obligation_map
2026年9月17日 12:53
已添加
sync_to_ampel
2026年9月17日 12:53
已添加
generate_scenarios
2026年9月17日 12:53
已添加
attack_chain
2026年9月17日 12:53
已添加
mitre_map
2026年9月17日 12:53
已添加
auto_simulate
2026年9月17日 12:53
已添加
health_check
2026年9月17日 12:53
已添加
tlpt_readiness
2026年9月17日 12:53
已添加
test_calendar
2026年9月17日 12:53
已添加
evidence_bundle
2026年9月17日 12:53
已添加
remediation_plan
2026年9月17日 12:53
已添加
finding_register
2026年9月17日 12:53
已添加
team_assignment
2026年9月17日 12:53
已添加
threat_profile
2026年9月17日 12:53
已添加
phase_tracker
2026年9月17日 12:53
已添加
register_exercise
2026年9月17日 12:53

ampel

io.tooloracle/ampel

Assesses regulated entities and providers against DORA and related ESG, MiCA, and AML requirements, with contract analysis, evide…

Didit

io.github.pipeworx-io/didit

Provides identity and compliance capabilities including AML screening against sanctions and PEP lists, business verification, ben…

Compliance & Sanções

io.github.mcp-dir/compliance-mcp

Performs Brazilian due-diligence checks across PEP, sanctions, criminal, regulatory, fraud, tax, and government restriction datab…

WhiteIntel — Ownership Intelligence

dev.whiteintel/whiteintel

Resolves companies and people and maps ownership, beneficial ownership, sanctions, offshore exposure, financials, corporate filin…

outris-identity-mcp

io.github.outris-dev-user/outris-identity-mcp

Performs identity, KYC, fraud, business, phone, email, bank-account, PAN, GST, vehicle, and due-diligence lookups, including digi…

Ni Biashara Shelves — Africa FX, freight & compliance checks (x402)

biz.nibiashara/shelves

Provides African FX rates, freight carrier and broker authority checks, safety checks, OFAC sanctions screening, and Texas insura…

Stipple — Document Verification & Extraction

sh.stipple/openwarrant

Inspects documents for authenticity, tampering, AI-generation indicators, extracted fields, citations, identity evidence, sanctio…

ContinueOps Public MCP

com.continueops/continueops-public

Provides compliance framework information, DORA readiness checks, business continuity plan structures, runbook templates, and res…