Skip to main content

MCP tools

Connect an AI client to your Vulnara account. It signs in as you and can read what you can read in the web app, nothing more.

MCP URL
https://vulnara-mcp.rso.dev/mcp
OAuth client ID
hl04e6MSMRY60LdpGh5rdMRQjkPxvldAYoqXdzo4

Read-only. The server offers no tool that changes anything.

Connect a client

  1. Open Settings, then Connectors, and choose Add custom connector.
  2. Paste the MCP URL as the address.
  3. Under "Use your own OAuth client", paste the OAuth client ID. Leave the client secret empty.
  4. Save, then sign in with your Vulnara account when Claude asks.

Never exposed to AI clients

  • Git access tokens and anything that takes one as input
  • Service accounts
  • Invitations
  • Plans, usage, invoices and payment methods
  • Raw secret values behind a masked finding
  • Email addresses and webhook or channel ids

Tools (46)

commit_scans

Runs the query commitScans.

GraphQL operation: commitScans

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

dashboard_analytics

Runs the query dashboardAnalytics.

GraphQL operation: dashboardAnalytics

NameTypeDescription
daysInt
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

docker_scan_tool

Runs the query dockerScanTool.

GraphQL operation: dockerScanTool

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

docker_scan_tools

Runs the query dockerScanTools.

GraphQL operation: dockerScanTools

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

finding_corroboration

Cross-tool agreement for every secret found in a repository.

GraphQL operation: findingCorroboration

NameTypeDescription
repositoryIdID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

finding_triage

Runs the query findingTriage.

GraphQL operation: findingTriage

NameTypeDescription
repositoryIdID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

finding_triage_history

Every decision ever taken on this repository's findings, newest first.

GraphQL operation: findingTriageHistory

NameTypeDescription
repositoryIdID!
matchKeyString
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

git_entities

Runs the query gitEntities.

GraphQL operation: gitEntities

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

git_entity

Runs the query gitEntity.

GraphQL operation: gitEntity

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

git_user

Runs the query gitUser.

GraphQL operation: gitUser

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

git_users

Runs the query gitUsers.

GraphQL operation: gitUsers

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

list_workspaces

Lists the workspaces you belong to. Pass one as the workspace argument of another tool.

No arguments.

live

Runs the query live.

No arguments.

my_user

Runs the query myUser.

GraphQL operation: myUser

NameTypeDescription
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

network

Runs the query network.

GraphQL operation: network

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

network_scan_finding

Runs the query networkScanFinding.

GraphQL operation: networkScanFinding

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

network_scan_findings

Runs the query networkScanFindings.

GraphQL operation: networkScanFindings

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

network_scan_result

Runs the query networkScanResult.

GraphQL operation: networkScanResult

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

network_scan_results

Runs the query networkScanResults.

GraphQL operation: networkScanResults

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

networks

Runs the query networks.

GraphQL operation: networks

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

notification_scope

Runs the query notificationScope.

GraphQL operation: notificationScope

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

notification_scopes

Runs the query notificationScopes.

GraphQL operation: notificationScopes

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

notifications

Runs the query notifications.

GraphQL operation: notifications

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

organization

Runs the query organization.

GraphQL operation: organization

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

organizations

Runs the query organizations.

GraphQL operation: organizations

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

programming_languages

Runs the query programmingLanguages.

GraphQL operation: programmingLanguages

NameTypeDescription
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

promo_grants

Every grant this tenant holds, including ones that have run out.

GraphQL operation: promoGrants

NameTypeDescription
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

ready

Runs the query ready.

No arguments.

remediation_template

Runs the query remediationTemplate.

GraphQL operation: remediationTemplate

NameTypeDescription
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

repositories

Runs the query repositories.

GraphQL operation: repositories

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

repository

Runs the query repository.

GraphQL operation: repository

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

repository_branches

Branch names for a repository, read from its git provider, so the scan form can offer real branches instead of free-text input.

GraphQL operation: repositoryBranches

NameTypeDescription
repositoryIdID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

repository_dependency_scan_finding_groups

Runs the query repositoryDependencyScanFindingGroups.

GraphQL operation: repositoryDependencyScanFindingGroups

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

repository_dependency_scan_findings

Runs the query repositoryDependencyScanFindings.

GraphQL operation: repositoryDependencyScanFindings

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

scan_finding_groups

Runs the query scanFindingGroups.

GraphQL operation: scanFindingGroups

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

scan_finding_match_groups

Findings grouped by cross-tool identity, one row per real secret.

GraphQL operation: scanFindingMatchGroups

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

scan_findings

Runs the query scanFindings.

GraphQL operation: scanFindings

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

scan_result

Runs the query scanResult.

GraphQL operation: scanResult

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

scan_results

Runs the query scanResults.

GraphQL operation: scanResults

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

scan_schedule

Runs the query scanSchedule.

GraphQL operation: scanSchedule

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

scan_schedules

Runs the query scanSchedules.

GraphQL operation: scanSchedules

NameTypeDescription
listList
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

statistics

Runs the query statistics.

GraphQL operation: statistics

NameTypeDescription
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

task

Runs the query task.

GraphQL operation: task

NameTypeDescription
idID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

tasks

Runs the query tasks.

GraphQL operation: tasks

NameTypeDescription
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

unread_notification_count

Runs the query unreadNotificationCount.

GraphQL operation: unreadNotificationCount

NameTypeDescription
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

workspace_overview

Runs the query workspaceOverview.

GraphQL operation: workspaceOverview

NameTypeDescription
gitEntityIdID!
workspaceStringWhich workspace to act in. Omit it when you belong to only one.

Manage Your Cookie Preferences

We use cookies to enhance your experience. You can accept all cookies, decline non-essential cookies, or manage preferences below. Privacy Policy