# DefectDojo

> Use this tool when you need to integrate vulnerability management into your AI workflows, enabling interaction with security findings, products, and engagements. It solves problems related to retrieving, searching, and updating vulnerability data, and provides functions for managing security findings and engagement lifecycles. With asynchronous HTTP client capabilities, it offers a secure and efficient interface for AI assistants to access and update vulnerability information.

Canonical page: https://skillsregistry.net/skills/jamiesonio-defectdojo  
JSON: https://api.skillsregistry.net/v1/skills/jamiesonio-defectdojo

## Description

DefectDojo MCP server provides a bridge to the DefectDojo vulnerability management system, enabling AI assistants to interact with security findings, products, and engagements. Developed by jamiesonio, this implementation offers tools for retrieving, searching, and updating vulnerability data through an asynchronous HTTP client that handles authentication and error management. The server exposes specialized functions for managing security findings (including status updates and note addition), listing products, and handling engagement lifecycle operations. Built with Python 3.12 and the FastMCP framework, it's particularly valuable for security teams who want to integrate vulnerability management workflows into their AI assistant interactions.

## Trust

- **Trust score (0–1):** 0.65
- **Verification tier:** scanned
- **Last scanned:** 2026-09-02

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** security
- **Updated:** 2026-09-02

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/jamiesonio-defectdojo)
- **Repository:** <https://github.com/jamiesonio/defectdojo-mcp>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "jamiesonio-defectdojo"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/jamiesonio-defectdojo` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/jamiesonio-defectdojo/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
