Sbom Cyclonedx MCP
SBOM generation in CycloneDX 1
SBOM generation in CycloneDX 1.6 + SPDX 2.3. Required by EO 14028, NIS2, CRA. MIT
๐ Quick Start
# Install via pip
pip install sbom_cyclonedx_mcp
# Or install via Smithery
npx -y @smithery/cli@latest install sbom-cyclonedx-mcp --client claude
โจ Features
- MCP protocol compliant
- Easy installation
- Well-documented API
- Production-ready
- Active maintenance
๐ Documentation
๐ก๏ธ Compliance
This MCP server is built with EU AI Act compliance built-in:
-
Free: 10 calls/day. No API key required.
-
Pro ยฃ79/mo: unlimited + signed attestations. Subscribe
-
Enterprise ยฃ1,499/mo: white-label + on-premise + SLA. hello@meok.ai
-
โ Article 9 โ Risk Management System
-
โ Article 13 โ Transparency & Instructions for Use
-
โ Article 15 โ Bias Detection & Testing
-
โ Article 26 โ FRIA Support (where applicable)
-
โ Article 50 โ AI Content Watermarking (where applicable)
Need help getting compliant? Book a free 15-min diagnostic โ
๐ข Enterprise
Need custom development, SLA guarantees, or white-label deployment?
- Pro: $99/mo โ Full MCP suite + EU AI Act tracking
- Enterprise: $499/mo โ Custom dev + SLA + Dedicated support
View Pricing โ | Contact Sales โ
๐ค Part of the MEOK Ecosystem
This server is part of the MEOK AI Labs ecosystem โ 300+ MCP servers for sovereign AI governance.
| Domain | Purpose |
|---|---|
| councilof.ai | EU AI Act compliance marketplace |
| safetyof.ai | AI safety & monitoring |
| meok.ai | Sovereign AI platform |
| cobolbridge.ai | Legacy modernization |
๐ License
MIT ยฉ CSOAI-ORG
Built with ๐ by MEOK AI Labs ยท UK Companies House 16939677
**Agent interop protocols supported (8 live):**- โ MCP (Anthropic) โ native
- โ A2A (Google + Linux Foundation, absorbed IBM ACP Sept 2025)
- โ IBM ACP โ covered via A2A merge
- โ Stripe ACP (Agentic Commerce Protocol) โ Q3 bridge via agent-commerce-protocol-mcp
- โ AP2 (Google Agent Payments) โ partial via agent-commerce-payments-mcp
- โ x402 (Coinbase HTTP 402) โ partial via api.meok.ai gateway
- โ OASF / AGNTCY (Cisco Outshift + Linux Foundation) โ Q3 bridge
- ๐ ANP (Cisco Agent Network) โ watch-list
Pricing options:
| Option | Price | Best for |
|---|---|---|
| Self-host (this MCP) | ยฃ0 โ MIT | Devs |
| This MCP Starter | ยฃ29/mo | One-MCP teams |
| This MCP Pro | ยฃ79/mo | Production + 24h SLA |
| Universal PAYG | ยฃ29/mo + ยฃ0.0002/call | Spiky usage across many MCPs |
| Substrate bundle (this category) | ยฃ99-ยฃ499/mo | A whole pack |
| MEOK Universe | ยฃ1,499/mo | All 47 MCPs, 500K calls |
Each tier above the free self-host adds HMAC-signed attestations verifiable at
verify.meok.ai. Linux Foundation governance on the A2A spine means EU regulated
buyers can deploy without vendor-lock-in objections.
๐ธ Try MEOK in 30 seconds โ instant buy ladder
| Tier | Price | What you get | Stripe |
|---|---|---|---|
| Smoke test | ยฃ1 | Signed sample MCP-Hardening report + Article 50 PDF | https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t |
| Quick Kit | ยฃ9 | EU AI Act Article 50 implementation guide (C2PA + EU-Icon) | https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t |
| Founder Call | ยฃ29 | 30-min 1-on-1 with the founder | https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t |
Refundable. UK Stripe โ VAT-clean. Builds on the 81-MCP MEOK fleet. Verify any signed report at https://meok.ai/verify.
Configuration
Add to your claude_desktop_config.json (Claude Desktop) or your MCP client config:
{
"mcpServers": {
"sbom-cyclonedx-mcp": {
"command": "uvx",
"args": ["sbom-cyclonedx-mcp"]
}
}
}
Or: pip install sbom-cyclonedx-mcp then run the sbom-cyclonedx-mcp command (stdio transport).
Examples
Once configured, ask your assistant, for example:
- "Use
generate_sbom_cyclonedxto โฆ" - "Use
generate_sbom_spdxto โฆ" - "Use
validate_sbomto โฆ"