Skip to main content

Software Bill of Materials generation + validation in CycloneDX 1.6 and SPDX 2.3 formats. Required by EO 14028 + NIS2 + CRA.

Project description

MCP Scorecard: 90/100

Sbom Cyclonedx MCP

MEOK AI Labs EU AI Act License PyPI

SBOM generation in CycloneDX 1

SBOM generation in CycloneDX 1.6 + SPDX 2.3. Required by EO 14028, NIS2, CRA. MIT


🚀 Quick Start

# Install via pip
pip install sbom_cyclonedx_mcp

# Or install via Smithery
npx -y @smithery/cli@latest install sbom-cyclonedx-mcp --client claude

✨ Features

  • MCP protocol compliant
  • Easy installation
  • Well-documented API
  • Production-ready
  • Active maintenance

📖 Documentation

🛡️ Compliance

This MCP server is built with EU AI Act compliance built-in:

  • Free: 10 calls/day. No API key required.

  • Pro £79/mo: unlimited + signed attestations. Subscribe

  • Enterprise £1,499/mo: white-label + on-premise + SLA. hello@meok.ai

  • ✅ Article 9 — Risk Management System

  • ✅ Article 13 — Transparency & Instructions for Use

  • ✅ Article 15 — Bias Detection & Testing

  • ✅ Article 26 — FRIA Support (where applicable)

  • ✅ Article 50 — AI Content Watermarking (where applicable)

Need help getting compliant? Book a free 15-min diagnostic →

🏢 Enterprise

Need custom development, SLA guarantees, or white-label deployment?

  • Pro: $99/mo — Full MCP suite + EU AI Act tracking
  • Enterprise: $499/mo — Custom dev + SLA + Dedicated support

View Pricing → | Contact Sales →

🤝 Part of the MEOK Ecosystem

This server is part of the MEOK AI Labs ecosystem — 300+ MCP servers for sovereign AI governance.

Domain Purpose
councilof.ai EU AI Act compliance marketplace
safetyof.ai AI safety & monitoring
meok.ai Sovereign AI platform
cobolbridge.ai Legacy modernization

📜 License

MIT © CSOAI-ORG


Built with 💜 by MEOK AI Labs · UK Companies House 16939677

**Agent interop protocols supported (8 live):**
  • MCP (Anthropic) — native
  • A2A (Google + Linux Foundation, absorbed IBM ACP Sept 2025)
  • IBM ACP — covered via A2A merge
  • Stripe ACP (Agentic Commerce Protocol) — Q3 bridge via agent-commerce-protocol-mcp
  • AP2 (Google Agent Payments) — partial via agent-commerce-payments-mcp
  • x402 (Coinbase HTTP 402) — partial via api.meok.ai gateway
  • OASF / AGNTCY (Cisco Outshift + Linux Foundation) — Q3 bridge
  • 👁 ANP (Cisco Agent Network) — watch-list

Pricing options:

Option Price Best for
Self-host (this MCP) £0 — MIT Devs
This MCP Starter £29/mo One-MCP teams
This MCP Pro £79/mo Production + 24h SLA
Universal PAYG £29/mo + £0.0002/call Spiky usage across many MCPs
Substrate bundle (this category) £99-£499/mo A whole pack
MEOK Universe £1,499/mo All 47 MCPs, 500K calls

Each tier above the free self-host adds HMAC-signed attestations verifiable at verify.meok.ai. Linux Foundation governance on the A2A spine means EU regulated buyers can deploy without vendor-lock-in objections.

💸 Try MEOK in 30 seconds — instant buy ladder

Tier Price What you get Stripe
Smoke test £1 Signed sample MCP-Hardening report + Article 50 PDF https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t
Quick Kit £9 EU AI Act Article 50 implementation guide (C2PA + EU-Icon) https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t
Founder Call £29 30-min 1-on-1 with the founder https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t

Refundable. UK Stripe — VAT-clean. Builds on the 81-MCP MEOK fleet. Verify any signed report at https://meok.ai/verify.

Configuration

Add to your claude_desktop_config.json (Claude Desktop) or your MCP client config:

{
  "mcpServers": {
    "sbom-cyclonedx-mcp": {
      "command": "uvx",
      "args": ["sbom-cyclonedx-mcp"]
    }
  }
}

Or: pip install sbom-cyclonedx-mcp then run the sbom-cyclonedx-mcp command (stdio transport).

Examples

Once configured, ask your assistant, for example:

  • "Use generate_sbom_cyclonedx to …"
  • "Use generate_sbom_spdx to …"
  • "Use validate_sbom to …"

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

sbom_cyclonedx_mcp-1.0.5.tar.gz (209.1 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

sbom_cyclonedx_mcp-1.0.5-py3-none-any.whl (8.0 kB view details)

Uploaded Python 3

File details

Details for the file sbom_cyclonedx_mcp-1.0.5.tar.gz.

File metadata

  • Download URL: sbom_cyclonedx_mcp-1.0.5.tar.gz
  • Upload date:
  • Size: 209.1 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.11.15

File hashes

Hashes for sbom_cyclonedx_mcp-1.0.5.tar.gz
Algorithm Hash digest
SHA256 0ff5d070672ad480a53f34ab08c23646aa357e7a30808e159dc1fae51f6d444f
MD5 877474083a2483459991406e3d13d23b
BLAKE2b-256 27daedbeef738178e89e0f87a9d6399f1694a55e77f0d02161c9024e3bb5a1d2

See more details on using hashes here.

File details

Details for the file sbom_cyclonedx_mcp-1.0.5-py3-none-any.whl.

File metadata

File hashes

Hashes for sbom_cyclonedx_mcp-1.0.5-py3-none-any.whl
Algorithm Hash digest
SHA256 dae4566ceb89c427e6afe3639da43e37fb8081814e004b76d976ce6af9f599b6
MD5 91c60956f86e38f6e2356f6f1ed590dc
BLAKE2b-256 b0988987eee21b4993407c45d8659d5e8aef6083048c66c1f818b77c8e46374e

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page