pulsemcp scanned Safe content atomic mcp-remote

SBOM Generator (Trivy)

MCP-SBOM Server is a Python-based implementation that performs Trivy scans on container images to generate Software Bill of Materials (SBOM) in CycloneDX format. Built using the FastMCP library, it provides an asynchronous interface for executing Trivy scanner commands and processing the resulting SBOM data. The server exposes a single tool endpoint that accepts container image references, executes the scan, and returns detailed component information including package metadata, licenses, and vulnerability data. This implementation is particularly valuable for DevOps and security teams who need to analyze container dependencies, comply with security requirements, or integrate SBOM generation into their CI/CD pipelines.

Cognium trust score
65%
Tier
Scanned

Composite of vulnerability cleanliness, spec conformance, provenance, stability, and usage signals — scanned and weighted by Cognium. Human and agent signals are tracked separately. Last scanned 2026-09-02.

Scan details: Circle-IR · 2026-09-02 · Appeal

View full trust & usage report →

Metadata

Version
1.0.0
Skill type
atomic
Execution layer
mcp-remote
Category
devops-ci
Source
PulseMCP
Author type
human
Last scanned
2026-09-02
Updated
2026-09-02
View source Find related skills

Use via MCP

MCP

Resolve SBOM Generator (Trivy) from your agent

Streamable HTTP transport at https://api.skillsregistry.net/mcp. No auth for read tools. Discovery: .well-known/mcp.json.

One command in your shell — Claude Code wires it up and verifies the connection. Run /mcp in any session to confirm.

claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
Swap --scope user for --scope project to commit it to .mcp.json.

Search SkillsRegistry