MCP server for DefectDojo: RBAC, HMAC audit chain, and SIEM forwarding
Use this profile to copy client config, check auth requirements, review tools and resources, and compare related MCP servers before adding it to an AI client.
uvx mcp-defectdojo{
"DEFECTDOJO_URL": "YOUR_VALUE_HERE",
"DEFECTDOJO_API_KEY": "YOUR_SECRET_VALUE",
"DEFECTDOJO_READ_API_KEY": "YOUR_SECRET_VALUE",
"DEFECTDOJO_WRITE_API_KEY": "YOUR_SECRET_VALUE",
"MCP_AUTH_TOKEN": "YOUR_SECRET_VALUE",
"AUDIT_HMAC_KEY": "YOUR_SECRET_VALUE"
}Add this server entry to the mcpServers object in your Claude Desktop config, then restart the app.
{
"mcpServers": {
"io-github-inspicere-mcp-defectdojo": {
"command": "uvx",
"args": [
"mcp-defectdojo"
],
"env": {
"DEFECTDOJO_URL": "YOUR_VALUE_HERE",
"DEFECTDOJO_API_KEY": "YOUR_SECRET_VALUE",
"DEFECTDOJO_READ_API_KEY": "YOUR_SECRET_VALUE",
"DEFECTDOJO_WRITE_API_KEY": "YOUR_SECRET_VALUE",
"MCP_AUTH_TOKEN": "YOUR_SECRET_VALUE",
"AUDIT_HMAC_KEY": "YOUR_SECRET_VALUE"
}
}
}
}~/Library/Application Support/Claude/claude_desktop_config.json%APPDATA%\Claude\claude_desktop_config.jsonNo remote HTTP endpoint is advertised. Use the package or stdio setup shown in Install.
DefectDojo is an MCP server for MCP server for DefectDojo: RBAC, HMAC audit chain, and SIEM forwarding. It supports STDIO transport.
Use the generated config in Install. This server runs with uvx mcp-defectdojo; add any required environment variables before starting your client.
Choose the Claude Desktop tab in Install and copy the config for uvx mcp-defectdojo. Add required environment variables before starting Claude Desktop.
Choose the Claude Code tab in Install and copy the config for uvx mcp-defectdojo. Add required environment variables before starting Claude Code.
Choose the Codex tab in Install and copy the config for uvx mcp-defectdojo. Add required environment variables before starting Codex.
Choose the Cursor or VS Code tab in Install and copy the config for uvx mcp-defectdojo. Add required environment variables before starting Cursor or VS Code.
DefectDojo uses STDIO transport. Use the package or command config in Install.
DefectDojo inventory is listed when the MCP endpoint exposes tools, resources, or prompts. Some servers require auth first.
DefectDojo is marked with Auth required by registry metadata auth. You may need provider login, an API key, a bearer token, or a session header.
| Package | Registry | Version | Inputs |
|---|---|---|---|
mcp-defectdojostdio | pypi | 3.2.6 | Env: DEFECTDOJO_URL required Env: DEFECTDOJO_API_KEY required secret Env: DEFECTDOJO_READ_API_KEY secret Env: DEFECTDOJO_WRITE_API_KEY secret Env: MCP_AUTH_TOKEN secret Env: AUDIT_HMAC_KEY secret |