MCPNav
B

Black Duck Security Scanner

MCP server · by blackduck

Security
npmmcpb
v1.1.8

AI-powered security scanning using Black Duck Signal for vulnerability detection.

Install

Run one of the commands below, then add the client config underneath.

npm
npx -y @black-duck/mcp-server
mcpb
https://github.com/blackducksoftware/mcp-server/releases/download/v1.1.8/black-duck-mcp-1.1.8.mcpb

Client configuration

Paste into Claude Desktop, Cursor (mcp.json), VS Code or any MCP client, then restart the client.

mcpServers
{
  "mcpServers": {
    "mcp-server-54": {
      "command": "npx",
      "args": [
        "-y",
        "@black-duck/mcp-server"
      ]
    }
  }
}

About this server

Black Duck Security Scanner is listed in the Security category of the MCPNav directory. It is distributed as npm, mcpb and can be loaded by any client that speaks the Model Context Protocol.

Typical uses include giving your assistant scoped access to the corresponding service so it can answer questions and take actions with real data instead of guessing. Always review what a server can access before you enable it — see our MCP security guide.

Frequently asked questions

What is the Black Duck Security Scanner MCP server?

Black Duck Security Scanner is an MCP server by blackduck. AI-powered security scanning using Black Duck Signal for vulnerability detection.

How do I install Black Duck Security Scanner?

Install it with: npx -y @black-duck/mcp-server. Then add the JSON config to your client's MCP settings and restart the client.

Is Black Duck Security Scanner free to use?

The MCP server itself is free to install. The source is public on https://github.com/blackducksoftware/mcp-server. Any third-party API it calls (such as a search or maps API) may require its own key and billing.

Which clients support Black Duck Security Scanner?

Any MCP-compatible client can use it, including Claude Desktop, Cursor, VS Code, Windsurf and custom agents.