Connect Kevscope MCP to your AI client
CVE patch-priority API + MCP: CISA KEV, EPSS, CVSS, SSVC. Keys $19/mo; 200 free calls/day.
Endpoint: https://kevscope-api.cybermaxtools.com/mcp · Free: 200 free calls/day · Paid: Keys $19/mo
| Client | Where the config goes |
|---|---|
| Cursor | ~/.cursor/mcp.json (every project) |
| VS Code (GitHub Copilot) | .vscode/mcp.json in your workspace (VS Code format, top-level "servers") |
| Claude Code | claude mcp add --transport http kevscope-api 'https://kevscope-api.cybermaxtools.com/mcp?via=use-with-claude-code' |
| Claude Desktop and claude.ai | no file: remote servers are added as custom connectors in Claude's settings |
| Windsurf (Devin Desktop) | ~/.config/devin/mcp_config.json (macOS and Linux) |
| Cline | cline_mcp_settings.json: in the IDE, click the MCP Servers icon › Configure › Configure MCP Servers |
| OpenAI Codex CLI | ~/.codex/config.toml (or .codex/config.toml in a trusted project) |
| Gemini CLI | gemini mcp add --transport http kevscope-api 'https://kevscope-api.cybermaxtools.com/mcp?via=use-with-gemini-cli' |
Tools
Endpoint checked 2026-10-09: https://kevscope-api.cybermaxtools.com/mcp answered an MCP initialize (protocol 2025-06-18) and tools/list with 3 tools, all marked read-only. No key was used and no tool was called.
| Tool | What it does | Required inputs |
|---|---|---|
cve_priority | Patch-priority verdict for 1-20 CVE IDs with evidence: CISA KEV status (date added, due date, ransomware use), FIRST EPSS probability, CVSS (CNA or CISA-ADP), CISA SSVC exploitation/automatable/impact, vendor, product and links. Sorted most urgent first. | cves |
kev_recent | CVEs added to the CISA Known Exploited Vulnerabilities catalog in the last N days, newest first, with due date, ransomware use and EPSS. Optional vendor/product text filter. | none |
epss_watchlist | The highest-EPSS CVEs (most likely to be exploited in 30 days) that are not in CISA KEV yet. Defaults to this year's CVE IDs. | none |