thehive-mcp
npm
v1.2.3
Source verified
Published by lidless-labs — publish provenance cryptographically ties this package to that repository. That is proof of origin, not an official vendor package.
TheHive incident-response control CLI with an MCP adapter
The grade answers one question — how safe is this server for you to adopt — so it is computed in two auditable stages. Nothing below is an opinion or an LLM's guess; every line is a real term the deterministic engine applied, and the same input always yields the same number.
1. Threat score — 100 − 0 = 100. What the published surface and source actually contain:
The deterministic scan raised no scored threat in the surface it inspected — the threat score stayed at 100. Capability observations and advisory notes are recorded but never lower it.
2. Client adoption risk — 100 − 3 = 97. Three small, subtract-only factors that reflect your risk in adopting it — a clean scan proves less on a powerful, unverified or barely-inspectable package, so the grade says so plainly:
| Points | Adoption-risk factor |
|---|---|
| −3 | capability blast radius (moderate) — client exposure if the model is manipulated |
Capability observations and info notes are shown under Findings but never scored.
Open any row's finding below for the file, line and evidence behind a deduction.
Untrusted-input tools ([thehive_summarize_job_report]) co-exist with external-action tools ([thehive_create_comment]). A prompt injection could cause unwanted external actions, though no direct sensitive-data leak path was found.
Evidence: untrusted [thehive_summarize_job_report] → sinks [thehive_create_comment]
Fix: Require confirmation for state-changing/egress actions triggered after processing untrusted content.
Location: flow thehive_summarize_job_report → thehive_create_comment
Each tool and what it can reach — statically extracted from the published source.
thehive_create_commentnetwork egressthehive_summarize_job_reportingests untrusted inputthehive_add_case_tagsno sensitive capabilitythehive_assign_caseno sensitive capabilitythehive_bulk_assign_casesno sensitive capabilitythehive_bulk_close_casesno sensitive capabilitythehive_case_timeline_summaryno sensitive capabilitythehive_close_caseno sensitive capabilitythehive_create_alertno sensitive capabilitythehive_create_caseno sensitive capabilitythehive_create_observableno sensitive capabilitythehive_create_observable_bulkno sensitive capabilitythehive_create_taskno sensitive capabilitythehive_create_task_logno sensitive capabilitythehive_delete_alertno sensitive capabilitythehive_delete_caseno sensitive capabilitythehive_get_alertno sensitive capabilitythehive_get_caseno sensitive capabilitythehive_get_current_userno sensitive capabilitythehive_get_jobno sensitive capabilitythehive_get_observableno sensitive capabilitythehive_get_observable_enrichment_optionsno sensitive capabilitythehive_get_taskno sensitive capabilitythehive_list_alertsno sensitive capabilitythehive_list_analyzersno sensitive capabilitythehive_list_case_templatesno sensitive capabilitythehive_list_casesno sensitive capabilitythehive_list_commentsno sensitive capabilitythehive_list_observablesno sensitive capabilitythehive_list_task_logsno sensitive capabilitythehive_list_tasksno sensitive capabilitythehive_list_usersno sensitive capabilitythehive_merge_casesno sensitive capabilitythehive_promote_alertno sensitive capabilitythehive_queryno sensitive capabilitythehive_remove_case_tagsno sensitive capabilitythehive_run_analyzerno sensitive capabilitythehive_run_analyzer_and_waitno sensitive capabilitythehive_search_casesno sensitive capabilitythehive_search_observablesno sensitive capabilitythehive_set_case_flagno sensitive capabilitythehive_statusno sensitive capabilitythehive_update_alertno sensitive capabilitythehive_update_caseno sensitive capabilitythehive_update_case_custom_fieldsno sensitive capabilitythehive_update_taskno sensitive capabilitythehive_wait_for_jobno sensitive capabilityCross-tool combinations that form a data-exfiltration primitive (untrusted input → sensitive source → external sink).
Scan history per published version. The engine is deterministic — the same version always yields the same score, so a changed score means the package itself changed.
| Version | Score | Findings | Engine | Scanned |
|---|---|---|---|---|
v1.2.3 latest |
A 97/100 | 1 | 1.13.0 | 2026-09-09 |
Show this server's live Trust Score in your README, docs or website. The badge is served straight from the registry and updates automatically after every rescan — no API key needed. It links back to this page, so anyone who sees the grade can also read the findings behind it instead of taking a number on faith.
The score above is reproducible: the same package version always yields the same result. Run it locally or over the free API — no account, no LLM, fully deterministic.
npx mcptrustchecker scan thehive-mcp --online
Hotel booking MCP server — 300K+ properties, real confirmation numbers, loyalty programs. Builders monetize every booking via Stripe Connect. The first MCP server that completes real hotel reservations inside AI conversations.
Generates production-ready UI components from natural language, inspired by v0.
Manage AdGuard Home through AI assistants
Read-only Azure DevOps for MCP clients using only your existing browser session — no PAT, no Azure CLI. Browse work items, pull requests, comments, attachments and Artifacts feeds across every project, repo and feed you can access.
MCP server for Adobe Experience Manager Assets integration development
Servidor MCP para el tiempo oficial de España (API pública OpenData de AEMET). Predicción, observación y avisos como herramientas MCP tipadas.