1. Conduid
  2. Files
  3. Sbomb
MCP server · Files

Sbomb

Generate a CycloneDX SBOM directly from an unpacked firmware root filesystem and flag components with known CVEs and EOL kernels.

34Low

Scored 7 hours ago · breakdown

About Sbomb

Sbomb is an MCP server in the Files category: generate a CycloneDX SBOM directly from an unpacked firmware root filesystem and flag components with known CVEs and EOL kernels. It has been installed 0 times through Conduid.

Install

Clone
git clone https://github.com/cognis-digital/sbomb

This server has no ConduID identity, so agent calls to it are not receipted. Pin the version you install and review the source before granting it credentials.

Ask AI

Ask AI about Sbomb

Powered by Claude · Grounded in docs

I know everything about Sbomb. Ask me about installation, configuration, usage, or troubleshooting.

Security checks

  • ·README presentNot checked yet.
  • ·License declaredNot checked yet.
  • ·Tests presentNot checked yet.
  • ·Dependencies pinnedNot checked yet.
  • ·No dynamic code executionNot checked yet.
  • ·Scoped permissionsNot checked yet.
Questions

About Sbomb

How do I install Sbomb?

Run git clone https://github.com/cognis-digital/sbomb, then add the server to your MCP client's configuration. Conduid has recorded 0 installs, so the command is known to work with current clients.

Is Sbomb safe to use with an AI agent?

Its trust score is 34 out of 100 (low). Conduid hasn't run static security checks on this repository yet, so review the source yourself before granting it credentials. It has no ConduID identity yet, so agent calls to it are not receipted.

Is Sbomb still maintained?

Conduid hasn't recorded a commit date for this repository yet. Check the repository directly for recent activity.