MCP tools
Connect an AI client to your Vulnara account. It signs in as you and can read what you can read in the web app, nothing more.
https://vulnara-mcp.rso.dev/mcphl04e6MSMRY60LdpGh5rdMRQjkPxvldAYoqXdzo4Read-only. The server offers no tool that changes anything.
Connect a client
- Open Settings, then Connectors, and choose Add custom connector.
- Paste the MCP URL as the address.
- Under "Use your own OAuth client", paste the OAuth client ID. Leave the client secret empty.
- Save, then sign in with your Vulnara account when Claude asks.
Never exposed to AI clients
- Git access tokens and anything that takes one as input
- Service accounts
- Invitations
- Plans, usage, invoices and payment methods
- Raw secret values behind a masked finding
- Email addresses and webhook or channel ids
Tools (46)
commit_scans
Runs the query commitScans.
GraphQL operation: commitScans
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
dashboard_analytics
Runs the query dashboardAnalytics.
GraphQL operation: dashboardAnalytics
| Name | Type | Description |
|---|---|---|
| days | Int | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
docker_scan_tool
Runs the query dockerScanTool.
GraphQL operation: dockerScanTool
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
docker_scan_tools
Runs the query dockerScanTools.
GraphQL operation: dockerScanTools
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
finding_corroboration
Cross-tool agreement for every secret found in a repository.
GraphQL operation: findingCorroboration
| Name | Type | Description |
|---|---|---|
| repositoryId | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
finding_triage
Runs the query findingTriage.
GraphQL operation: findingTriage
| Name | Type | Description |
|---|---|---|
| repositoryId | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
finding_triage_history
Every decision ever taken on this repository's findings, newest first.
GraphQL operation: findingTriageHistory
| Name | Type | Description |
|---|---|---|
| repositoryId | ID! | |
| matchKey | String | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
git_entities
Runs the query gitEntities.
GraphQL operation: gitEntities
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
git_entity
Runs the query gitEntity.
GraphQL operation: gitEntity
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
git_user
Runs the query gitUser.
GraphQL operation: gitUser
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
git_users
Runs the query gitUsers.
GraphQL operation: gitUsers
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
list_workspaces
Lists the workspaces you belong to. Pass one as the workspace argument of another tool.
No arguments.
live
Runs the query live.
No arguments.
my_user
Runs the query myUser.
GraphQL operation: myUser
| Name | Type | Description |
|---|---|---|
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
network
Runs the query network.
GraphQL operation: network
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
network_scan_finding
Runs the query networkScanFinding.
GraphQL operation: networkScanFinding
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
network_scan_findings
Runs the query networkScanFindings.
GraphQL operation: networkScanFindings
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
network_scan_result
Runs the query networkScanResult.
GraphQL operation: networkScanResult
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
network_scan_results
Runs the query networkScanResults.
GraphQL operation: networkScanResults
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
networks
Runs the query networks.
GraphQL operation: networks
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
notification_scope
Runs the query notificationScope.
GraphQL operation: notificationScope
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
notification_scopes
Runs the query notificationScopes.
GraphQL operation: notificationScopes
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
notifications
Runs the query notifications.
GraphQL operation: notifications
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
organization
Runs the query organization.
GraphQL operation: organization
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
organizations
Runs the query organizations.
GraphQL operation: organizations
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
programming_languages
Runs the query programmingLanguages.
GraphQL operation: programmingLanguages
| Name | Type | Description |
|---|---|---|
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
promo_grants
Every grant this tenant holds, including ones that have run out.
GraphQL operation: promoGrants
| Name | Type | Description |
|---|---|---|
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
ready
Runs the query ready.
No arguments.
remediation_template
Runs the query remediationTemplate.
GraphQL operation: remediationTemplate
| Name | Type | Description |
|---|---|---|
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
repositories
Runs the query repositories.
GraphQL operation: repositories
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
repository
Runs the query repository.
GraphQL operation: repository
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
repository_branches
Branch names for a repository, read from its git provider, so the scan form can offer real branches instead of free-text input.
GraphQL operation: repositoryBranches
| Name | Type | Description |
|---|---|---|
| repositoryId | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
repository_dependency_scan_finding_groups
Runs the query repositoryDependencyScanFindingGroups.
GraphQL operation: repositoryDependencyScanFindingGroups
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
repository_dependency_scan_findings
Runs the query repositoryDependencyScanFindings.
GraphQL operation: repositoryDependencyScanFindings
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
scan_finding_groups
Runs the query scanFindingGroups.
GraphQL operation: scanFindingGroups
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
scan_finding_match_groups
Findings grouped by cross-tool identity, one row per real secret.
GraphQL operation: scanFindingMatchGroups
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
scan_findings
Runs the query scanFindings.
GraphQL operation: scanFindings
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
scan_result
Runs the query scanResult.
GraphQL operation: scanResult
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
scan_results
Runs the query scanResults.
GraphQL operation: scanResults
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
scan_schedule
Runs the query scanSchedule.
GraphQL operation: scanSchedule
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
scan_schedules
Runs the query scanSchedules.
GraphQL operation: scanSchedules
| Name | Type | Description |
|---|---|---|
| list | List | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
statistics
Runs the query statistics.
GraphQL operation: statistics
| Name | Type | Description |
|---|---|---|
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
task
Runs the query task.
GraphQL operation: task
| Name | Type | Description |
|---|---|---|
| id | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
tasks
Runs the query tasks.
GraphQL operation: tasks
| Name | Type | Description |
|---|---|---|
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
unread_notification_count
Runs the query unreadNotificationCount.
GraphQL operation: unreadNotificationCount
| Name | Type | Description |
|---|---|---|
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |
workspace_overview
Runs the query workspaceOverview.
GraphQL operation: workspaceOverview
| Name | Type | Description |
|---|---|---|
| gitEntityId | ID! | |
| workspace | String | Which workspace to act in. Omit it when you belong to only one. |