io.github.CSOAI-ORG/sbom-cyclonedx-mcp
Software Bill of Materials generation + validation in CycloneDX 1.6 and SPDX 2.3 formats. Requir...
Open source Open in the app JSON README (API)
About
Software Bill of Materials generation + validation in CycloneDX 1.6 and SPDX 2.3 formats. Requir...
Details
- Kind
- MCP servers
- Topic
- No topic detected
- Publisher
- csoai-org
- Origin
- official
- Category
- ferramentas
- Transport
- local
- Version
- 1.0.5
- Stars
- 1
- Open pull requests
- 1
- Last push
- 2026-09-03T03:59:19Z
- Repository state
- ativo
- Language
- Python
- License
- MIT
- Added
- 2026-08-29 03:01:46
- Updated
- 2026-08-29 03:01:46
- Origin id
io.github.CSOAI-ORG/sbom-cyclonedx-mcp
README
[](https://proofof.ai/scorecard/sbom-cyclonedx-mcp.html)
# Sbom Cyclonedx MCP
[](https://meok.ai)
[](https://councilof.ai/api/gspc)
[](LICENSE)
[](https://pypi.org/project/sbom_cyclonedx_mcp/)
> SBOM generation in CycloneDX 1
SBOM generation in CycloneDX 1.6 + SPDX 2.3. Required by EO 14028, NIS2, CRA. MIT
---
## ๐ Quick Start
```bash
# Install via pip
pip install sbom_cyclonedx_mcp
# Or install via Smithery
npx -y @smithery/cli@latest install sbom-cyclonedx-mcp --client claude
```
## โจ Features
- MCP protocol compliant
- Easy installation
- Well-documented API
- Production-ready
- Active maintenance
## ๐ Documentation
- [Full Documentation](https://docs.meok.ai/sbom-cyclonedx-mcp)
- [API Reference](https://api.meok.ai)
- [EU AI Act Compliance Guide](https://councilof.ai/compliance)
## ๐ก๏ธ Compliance
This MCP server is built with **EU AI Act compliance** built-in:
- **Free**: 10 calls/day. No API key required.
- **Pro** ยฃ79/mo: unlimited + signed attestations. [Subscribe](https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t)
- **Enterprise** ยฃ1,499/mo: white-label + on-premise + SLA. hello@meok.ai
- โ
Article 9 โ Risk Management System
- โ
Article 13 โ Transparency & Instructions for Use
- โ
Article 15 โ Bias Detection & Testing
- โ
Article 26 โ FRIA Support (where applicable)
- โ
Article 50 โ AI Content Watermarking (where applicable)
Need help getting compliant? **[Book a free 15-min diagnostic โ](https://cal.com/csoai/august-audit)**
## ๐ข Enterprise
Need custom development, SLA guarantees, or white-label deployment?
- **Pro:** $99/mo โ Full MCP suite + EU AI Act tracking
- **Enterprise:** $499/mo โ Custom dev + SLA + Dedicated support
[View Pricing โ](https://councilof.ai/pricing) | [Contact Sales โ](mailto:sales@csoai.org)
## ๐ค Part of the MEOK Ecosystem
This server is part of the **[MEOK AI Labs](https://meok.ai)** ecosystem โ 300+ MCP servers for sovereign AI governance.
| Domain | Purpose |
|--------|---------|
| [councilof.ai](https://councilof.ai) | EU AI Act compliance marketplace |
| [safetyof.ai](https://safetyof.ai) | AI safety & monitoring |
| [meok.ai](https://meok.ai) | Sovereign AI platform |
| [cobolbridge.ai](https://cobolbridge.ai) | Legacy modernization |
## ๐ License
MIT ยฉ [CSOAI-ORG](https://github.com/CSOAI-ORG)
---
<p align="center">
<sub>Built with ๐ by <a href="https://meok.ai">MEOK AI Labs</a> ยท UK Companies House 16939677</sub>
</p>
**Agent interop protocols supported (8 live):**
- โ
**MCP** (Anthropic) โ native
- โ
**A2A** (Google + Linux Foundation, absorbed IBM ACP Sept 2025)
- โ
**IBM ACP** โ covered via A2A merge
- โ **Stripe ACP** (Agentic Commerce Protocol) โ Q3 bridge via [agent-commerce-protocol-mcp](https://github.com/CSOAI-ORG/agent-commerce-protocol-mcp)
- โ **AP2** (Google Agent Payments) โ partial via [agent-commerce-payments-mcp](https://github.com/CSOAI-ORG/agent-commerce-payments-mcp)
- โ **x402** (Coinbase HTTP 402) โ partial via api.meok.ai gateway
- โ **OASF / AGNTCY** (Cisco Outshift + Linux Foundation) โ Q3 bridge
- ๐ **ANP** (Cisco Agent Network) โ watch-list
**Pricing options:**
| Option | Price | Best for |
|---|---|---|
| Self-host (this MCP) | ยฃ0 โ MIT | Devs |
| This MCP Starter | ยฃ29/mo | One-MCP teams |
| This MCP Pro | ยฃ79/mo | Production + 24h SLA |
| [Universal PAYG](https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t) | ยฃ29/mo + ยฃ0.0002/call | Spiky usage across many MCPs |
| Substrate bundle (this category) | ยฃ99-ยฃ499/mo | A whole pack |
| [MEOK Universe](https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t) | ยฃ1,499/mo | All 47 MCPs, 500K calls |
Each tier above the free self-host adds HMAC-signed attestations verifiable at
`verify.meok.ai`. Linux Foundation governance on the A2A spine means EU regulated
buyers can deploy without vendor-lock-in objections.
<!-- mcp-name: io.github.CSOAI-ORG/sbom-cyclonedx-mcp -->
<!-- BUY-LADDER:START -->
## ๐ธ Try MEOK in 30 seconds โ instant buy ladder
| Tier | Price | What you get | Stripe |
|---|---|---|---|
| Smoke test | **ยฃ1** | Signed sample MCP-Hardening report + Article 50 PDF | <https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t> |
| Quick Kit | **ยฃ9** | EU AI Act Article 50 implementation guide (C2PA + EU-Icon) | <https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t> |
| Founder Call | **ยฃ29** | 30-min 1-on-1 with the founder | <https://buy.stripe.com/aFa7sNcgAdQS0ZT1Uc8k91t> |
> Refundable. UK Stripe โ VAT-clean. Builds on the 81-MCP MEOK fleet.
> Verify any signed report at <https://meok.ai/verify>.
<!-- BUY-LADDER:END -->
## Configuration
Add to your `claude_desktop_config.json` (Claude Desktop) or your MCP client config:
```json
{
"mcpServers": {
"sbom-cyclonedx-mcp": {
"command": "uvx",
"args": ["sbom-cyclonedx-mcp"]
}
}
}
```
Or: `pip install sbom-cyclonedx-mcp` then run the `sbom-cyclonedx-mcp` command (stdio transport).
## Examples
Once configured, ask your assistant, for example:
- "Use `generate_sbom_cyclonedx` to โฆ"
- "Use `generate_sbom_spdx` to โฆ"
- "Use `validate_sbom` to โฆ"