AI-powered security scanning using Black Duck Signal for vulnerability detection.
Runs locally over stdio
This server isn't hosted — your MCP client launches it from a package registry. Use one of the commands below, or drop the config into your client (e.g. Claude Desktop).
Run
npx -y @black-duck/mcp-server
MCP client config
{
"mcpServers": {
"black-duck-security-scanner": {
"command": "npx",
"args": [
"-y",
"@black-duck/mcp-server"
]
}
}
}Distributed as an MCP bundle (`https://github.com/blackducksoftware/mcp-server/releases/download/v1.1.8/black-duck-mcp-1.1.8.mcpb`) — download it and import the bundle in your MCP client.