Solo dev ships hosted CVE + CISA KEV + EPSS MCP server, no API key needed
sartomiki · reddit · 2026-09-18
A solo developer building kbrain.io (an agent knowledge marketplace) shipped a hosted MCP server for CVE lookups combining live NVD data, CISA KEV status, and EPSS scores, refreshed daily — no API key or self-hosting required. The motivation: generic models hallucinate recent CVEs due to training data lag, and existing open CVE MCP servers demand repo cloning and NVD keys. Point Claude, ChatGPT, or any MCP client at kbrain.io/cve and query directly. ENISA's EUVD (EU-side) coverage is next on the roadmap.
More from coding & agent
- Salesforce launches Trusted Enterprise AI Harness to unify agent context, governance and security — emmanuelvivier · 2026-09-18
- Running Codex, Claude and Pi Agents Safely: gVisor Sandboxes Plus tart macOS VMs — craigbalding · 2026-09-18
- EvalSeal: open-source tool shows LLM judges flip verdicts on 5 of 20 borderline eval cases — Fit_Fortune953 · 2026-09-18
- Armin Ronacher floats replacing MCP with codemode + OpenAPI + RAG over API docs — mitsuhiko · 2026-09-18
- Obsidian Starter Kit v4 ships with MCP server, osk-cli and ~375 specialized AI skills — dSebastien · 2026-09-18
- Retrying LLM Requests Isn't Always Safe: Gateway Policies for Partial Streams and Side Effects — Rama_Surasani_ · 2026-09-18