Developer · Local MCP server
Security Orchestra
Multi-agent MCP platform for data centers and critical power.
What the MCP Registry states
The entry as published to the official MCP Registry (read 2026-10-04), latest version.
- Registry name
io.github.RobotFleet-HQ/security-orchestra- Version
- 1.0.3
- Status
- Active
- Category
- developer
- Transport
- stdio (local process)
- Package
- npm
- Published
- 2026-03-18
- Updated
- 2026-03-18
- Publisher
- RobotFleet-HQ (GitHub) · 3 servers with pages here
- Namespace
- Namespace verified by the MCP Registry via GitHub (github.com/RobotFleet-HQ) · how
- Website
- robotfleet-hq.github.io/security-orchestra-landing/
- Repository
- github.com/RobotFleet-HQ/security-orchestra
- Source
- Registry API entry
Packages
| Registry | Package | Version | Transport |
|---|---|---|---|
| npm | @securityorchestra/security-orchestra | 1.0.3 | stdio |
How to connect Security Orchestra
Security Orchestra runs locally from a Node.js package published to the npm registry: @securityorchestra/security-orchestra version 1.0.3. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Node.js; clients usually start it with npx - the usual command is npx -y @securityorchestra/security-orchestra@1.0.3. It reads the environment variable SECURITY_ORCHESTRA_API_KEY (required, secret); set it in the client's configuration for this server.
In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):
{
"mcpServers": {
"security-orchestra": {
"command": "npx",
"args": [
"-y",
"@securityorchestra/security-orchestra@1.0.3"
],
"env": {
"SECURITY_ORCHESTRA_API_KEY": "<secret>"
}
}
}
}Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect
More from RobotFleet-HQ (GitHub)
| Server | Runs |
|---|---|
| HTTP 402 AI TollboothFree MCP troubleshooting-preview tools; purchases stay human-directed. | Remote · HTTPLive check: ✗ no handshake |
| TradeDataHubContractor dataset discovery, masked previews, pricing, and production API plans from $39/month. | Remote · HTTPLive check: ✓ handshake |
More developer servers
| Server | Runs |
|---|---|
| Security IntelDaily Ed25519-signed security intelligence for AI-agent stacks; CVEs & advisories, paid via x402. | Remote · HTTPLive check: ✗ no handshake |
| Security Intel MCPCVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys. | Remote · HTTPLive check: ✓ handshake |
| Security Intel MCPCVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys. | Remote · HTTPLive check: ✗ no handshake |
| Security MCPZero-key security toolkit: grade sites A+ to F, check CVE exploits, plain-English attack defenses. | Local · stdio |
| Security PreflightStatic MCP, source-code and injection-indicator checks with redacted signed receipts. | Remote · HTTPLive check: ✓ handshake |
| Security ProxyMCP gateway: many servers, one policy, lethal-trifecta blocking, PII masking, audit log. | Local · stdio |
| Security SuiteBundle of secret-scanner, dependency-auditor, ssl-inspector, and dns-intelligence. | Local · stdio |
| Security ToolsFree front-end security check for any website: a grade plus the secrets and keys it exposes. | Remote · HTTPLive check: ✓ handshake |