{"uid":"cap_13aJSgLNfm5UCzBOZyNJ-","slug":"sbom-cyclonedx-auditor-mcp-5ab448b1","name":"SBOM CycloneDX Auditor MCP","description":"The premier global index of 1,069 monetized MCP nodes across 205 specialized subdomains. Gasless USDC runtime settlements via x402 V2 Spec on Base L2. Save 95% token context.","url":"https://api.m2mcent.com/sbom-cyclonedx-auditor-mcp/api/process","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"payload":{"type":"string"}}},"responseSchema":{"type":"json","example":{"success":true}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.15","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.15/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.15","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.15","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_ejr2raFnxRpbISbZ7eNt_","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.15","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Audits a CycloneDX Software Bill of Materials (SBOM) document for security vulnerabilities, compliance issues, and dependency risks","exampleAgentPrompt":"Can you audit this CycloneDX SBOM document for vulnerabilities and compliance issues? Here's the JSON: {cyclonedx_sbom_content}","exampleUseCases":[{"title":"Pre-release dependency security check","prompt":"Before we ship this release, can you audit our CycloneDX SBOM for any known vulnerabilities or high-risk dependencies? Here's the SBOM JSON from our build pipeline."},{"title":"Open source license compliance audit","prompt":"We need to check our software bill of materials for compliance issues — can you analyze this CycloneDX SBOM and flag any components with problematic licenses or unresolved CVEs?"},{"title":"Third-party vendor SBOM review","prompt":"Our vendor just sent us their CycloneDX SBOM — can you audit it for security vulnerabilities and dependency risks before we integrate their software into our system?"}],"resultDescription":"An audit report detailing vulnerabilities, risk assessments, and compliance findings discovered in the provided CycloneDX SBOM, including identified CVEs, affected components, severity ratings, and remediation recommendations.","failureModes":["Invalid or malformed CycloneDX SBOM input returns a parsing error","Empty or missing data field results in a validation error","Non-CycloneDX format SBOM (e.g. SPDX) may not be parsed correctly","Very large SBOMs with hundreds of components may time out","Network errors or service unavailability return HTTP 5xx responses","Payment failure via x402 protocol prevents processing"],"whenToPreferThis":"Choose this endpoint when you need to audit a CycloneDX-format SBOM specifically, particularly in agentic pipelines that require automated supply chain security checks, compliance validation before deployment, or third-party software intake reviews. Prefer it over generic vulnerability scanners when your toolchain already produces CycloneDX output and you need structured audit results without manual tooling setup.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T07:14:52.685Z","isFirstParty":false}