Developer · Local MCP server
Black Duck Security Scanner
AI-powered security scanning using Black Duck Signal for vulnerability detection.
What the MCP Registry states
The entry as published to the official MCP Registry (read 2026-10-04), latest version.
- Registry name
com.blackduck/mcp-server- Version
- 1.1.8
- Status
- Active
- Category
- developer
- Transport
- stdio (local process)
- Package
- npm, MCP Bundle (.mcpb)
- Published
- 2026-07-17
- Updated
- 2026-07-17
- Publisher
- com.blackduck
- Repository
- github.com/blackducksoftware/mcp-server
- Source
- Registry API entry
Packages
| Registry | Package | Version | Transport |
|---|---|---|---|
| npm | @black-duck/mcp-server | 1.1.8 | stdio |
| MCP Bundle (.mcpb) | https://github.com/blackducksoftware/mcp-server/releases/download/v1.1.8/black-duck-mcp-1.1.8.mcpbSHA-256 checksum stated | 1.1.8 | stdio |
How to connect Black Duck Security Scanner
Black Duck Security Scanner runs locally from a Node.js package published to the npm registry: @black-duck/mcp-server version 1.1.8. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Node.js; clients usually start it with npx — the usual command is npx -y @black-duck/mcp-server@1.1.8.
Black Duck Security Scanner runs locally from an MCP Bundle: a single downloadable archive holding a local server and a manifest that describes it: https://github.com/blackducksoftware/mcp-server/releases/download/v1.1.8/black-duck-mcp-1.1.8.mcpb version 1.1.8. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs a client that installs MCP Bundles; the file is opened in, or added to, that client.
In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):
{
"mcpServers": {
"mcp-server": {
"command": "npx",
"args": [
"-y",
"@black-duck/mcp-server@1.1.8"
]
}
}
}Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect
More developer servers
| Server | Runs |
|---|---|
| Bitbybit CAD Cloud MCPRun 3D CAD operations, pipelines, parametric models and STEP conversions on CAD Cloud with a key. | Remote · HTTP |
| Bitbybit CAD MCPBitbybit 3D parametric CAD API, version-exact, for coding agents: search, describe, examples, guide. | Remote & Local · HTTP, stdio |
| BitriseSet up & manage mobile CI/CD on Bitrise: build, test, distribute iOS, Android, Flutter, RN apps. | Remote · HTTP |
| Bitwarden MCPBitwarden public API: members, collections, groups, event logs. | Local · stdio |
| Blacklotusdev8 Test MGreet anyone by name with a friendly hello. Scrape webpages to extract content for quick reference… | Remote · HTTP |
| BlacksmithMCP server for Blacksmith CI - query runs, analyze test failures, detect flaky tests. | Local · stdio |
| Blank Files MCPMCP server for listing and retrieving minimal valid blank files from blankfiles.com. | Local · stdio |
| Ble MCP ServerLet AI agents interact with real BLE hardware — scan, connect, read, write, and subscribe. | Local · stdio, HTTP, SSE |