CVE patch-priority API + MCP: CISA KEV, EPSS, CVSS, SSVC. Keys $19/mo; 200 free calls/day. Connect the official Kevscope MCP server to Claude, ChatGPT, or Cursor through gate — one gateway URL, no config files, security-checked.
Free to start · No credit card · No hosting needed
Pick your client. Copy, paste, done — or let gate handle sign-ins and policies for you.
claude mcp add --transport http kevscope https://kevscope-api.cybermax-tools.workers.dev/mcp?via=mcp-registryRun in your terminal, then restart Claude Code.
Kevscope · https://kevscope-api.cybermax-tools.workers.dev/mcp?via=mcp-registry
Real prompts you can type the moment it's connected — no setup, no docs to read.
“Use “cve_priority”: Patch-priority verdict for 1-20 CVE IDs with evidence: CISA KEV status (date added, due date, ransomware use), FIRST EPSS probability, CVSS.”
“Use “kev_recent”: CVEs added to the CISA Known Exploited Vulnerabilities catalog in the last N days, newest first, with due date, ransomware use and EPSS. Opt.”
“Use “epss_watchlist”: The highest-EPSS CVEs (most likely to be exploited in 30 days) that are not in CISA KEV yet. Defaults to this year's CVE IDs.”
Every server in the gate directory has to pass the same four checks before your AI can touch it. Here's how Kevscope holds up.
gate scanned 3 tools on Oct 1, 2026 for prompt injection and risky tool definitions — nothing to flag.
Operated by Kevscope (workers.dev) at its documented MCP endpoint — not a third-party mirror or community re-host.
This server only exposes public data — no account and no credentials are involved when you connect.
gate checks every tool for prompt injection, hidden instructions, data-exfiltration hints, and over-broad permissions before the server is available through your gateway.
If Kevscope adds or changes tools later, gate re-scans and alerts you — before your AI acts on the change.
Add one gateway URL to Claude, ChatGPT, or any MCP client. One-time setup, about two minutes.
Choose Kevscope in the gate directory. No sign-in needed.
Kevscope's tools are live in every AI client you've connected — with rules and logging built in.
Free to start · No credit card · No hosting needed
Fetched live from the official endpoint and re-checked daily by gate — not marketing copy.
cve_priority — Patch-priority verdict for 1-20 CVE IDs with evidence: CISA KEV status (date added, due date, ransomware use), FIRST EPSS probability, CVSS
kev_recent — CVEs added to the CISA Known Exploited Vulnerabilities catalog in the last N days, newest first, with due date, ransomware use and EPSS. Opt
epss_watchlist — The highest-EPSS CVEs (most likely to be exploited in 30 days) that are not in CISA KEV yet. Defaults to this year's CVE IDs.
https://kevscope-api.cybermax-tools.workers.dev/mcp?via=mcp-registryYes — Kevscope operates its own remote MCP server at kevscope-api.cybermax-tools.workers.dev. gate connects you to that official endpoint and adds security scanning, per-tool access rules, and an activity log on top.
Add gate's gateway URL to your AI client once, then pick Kevscope in the directory. No account or sign-in is needed. From then on, Kevscope's tools are available in every client you've connected to gate.
No. Kevscope runs the server, and gate is fully managed. You just connect one URL — there's nothing to install, deploy, or maintain.
It's the vendor's official endpoint, and gate scans its tools for prompt injection and hidden instructions before it goes live, re-checks it whenever it changes, and lets you allow, block, or require approval for every single tool.
Yes — you can get started with gate for free and connect Kevscope in minutes. No credit card required.
Every server below works through the same gateway URL — connect once, add tools anytime.
Set up Kevscope in: Claude · Claude Code · ChatGPT · Cursor · VS Code