67
/ 100
19 days ago
glama

ci-triage-mcp

Exposes triage tools for security scan results (Trivy/Semgrep) stored in S3, enabling on-demand queries of findings, AI-powered classification via Bedrock, and scan summaries.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
No credential exfiltration, no sensitive file access, no obfuscation
Static analysis found nothing flowing your secrets to unexpected places.
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configSCAN_OUTPUT_DIR./scan-output # local cache directory
configSCAN_RESULTS_S3_BUCKET"": "your-bucket-name",
configSCAN_RESULTS_S3_PREFIXThe s3-prefix value here must exactly match
configAWS_REGION
configAWS_PROFILEdefault # local dev only; omit if using ambient creds
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 6 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/kere-sifon-mcp-triage-1pg1cu)](https://m8ven.ai/mcp/kere-sifon-mcp-triage-1pg1cu)
commit: 823bc4f74d417b525b1efaddfc43f2156ba6029a
code hash: d5804e3039540f8c6831f095af34c7fb7ddcf4cb968c40092e6749b8134ba2e1
verified: 7/12/2026, 8:32:18 AM
view raw JSON →