Query projects, findings, analyses, and upload BOMs to Dependency-Track.
Copy the install command and let the AI configure it · recommended for beginners
No copy-paste install info for "Dependency-Track MCP Server" yet — see the docs or source repo.
Please query findings for the project "payment-service" in OWASP Dependency-Track and summarize the high and critical issues by severity.
Returns the project's findings or vulnerability list with a severity-based summary.
Upload the CycloneDX BOM for this build artifact to Dependency-Track and tell me whether it was submitted successfully.
Uploads the BOM and returns the submission result or related async processing details.
Please trigger analysis for the project "backend-api", then check the async token status until the current status is available.
Triggers project analysis and returns the async job status or final available status.
Developers or DevOps teams can upload CycloneDX BOMs after builds to OWASP Dependency-Track, centralizing project dependency inventories for follow-up analysis.
When a team needs to understand dependency risk for a project, it can query projects and findings to quickly review current issues and analysis results.
After triggering analysis or submitting a BOM, teams can check async token status to confirm whether background processing is complete and integrate checks into automation workflows.
It supports querying projects in OWASP Dependency-Track, fetching findings, triggering analysis, uploading CycloneDX BOMs, and checking async token status.
Yes. The original description explicitly states that it can upload CycloneDX BOMs to OWASP Dependency-Track.
The provided material does not include installation steps, runtime requirements, or credential configuration details. For prerequisites, see the source repository.
Connect Claude to Dependency-Track for natural-language vulnerability triage and management.
Manage Maven dependencies with natural language for versions, security, and analysis.
Manage YouTrack issues, projects, and searches in natural language.
Analyze PyPI packages for dependencies, security, licenses, health, and trends.
Generate SBOMs, scan CVEs, and check license compliance in VS Code.
Connect to YouTrack for issue management, work tracking, search, and knowledge base tasks.