# Risky Business AI

> Use this tool when you need to automate cybersecurity vulnerability assessments and identify exploited vulnerabilities. It solves problems related to manual CVE exploitability determination, threat intelligence gathering, and vulnerability prioritization by integrating multiple security data sources and providing impact assessments. The tool takes in asset inventory data and outputs comprehensive vulnerability reports, making it ideal for SOC teams and security analysts to use in the context of proactive cybersecurity measures.

Canonical page: https://skillsregistry.net/skills/risky-business-ai  
JSON: https://api.skillsregistry.net/v1/skills/risky-business-ai

## Description

This MCP server provides cybersecurity vulnerability assessment tools for SOC teams and security analysts, built by khizar-anjum using Python with FastMCP and integrating GitHub, NIST NVD, and CISA's Known Exploited Vulnerabilities catalog. The implementation automates the manual process of determining CVE exploitability by orchestrating multiple security data sources through specialized tools for searching GitHub repositories for proof-of-concept exploits, retrieving official CVE details with CVSS scores and affected products, and cross-referencing against CISA's KEV catalog to identify actively exploited vulnerabilities. Features include asset inventory integration for impact assessment, voice briefing capabilities with ElevenLabs TTS integration, and comprehensive error handling with fallback mechanisms, making it valuable for threat intelligence gathering, vulnerability prioritization, and automated security assessments that help organizations understand which CVEs pose immediate risks to their infrastructure.

## Trust

- **Trust score (0–1):** 0.88
- **Verification tier:** verified
- **Last scanned:** 2026-09-19

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** version-control
- **Updated:** 2026-09-19

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/risky-business-ai)
- **Repository:** <https://github.com/khizar-anjum/risky-business-mcp>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "risky-business-ai"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/risky-business-ai` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/risky-business-ai/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
