MCPLow riskUnclaimed

MCP Server for OSCAL

AI agent tools for Open Security Controls Assessment Language (OSCAL)

awslabsawslabs/mcp-server-for-oscal★ 53Updated Apr 2, 2026

server.json

{
  "$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
  "name": "io.github.awslabs/mcp-server-for-oscal",
  "description": "AI agent tools for Open Security Controls Assessment Language (OSCAL)",
  "title": "MCP Server for OSCAL",
  "repository": {
    "url": "https://github.com/awslabs/mcp-server-for-oscal",
    "source": "github"
  },
  "version": "0.4.0",
  "packages": [
    {
      "registryType": "pypi",
      "identifier": "mcp-server-for-oscal",
      "version": "0.4.0",
      "transport": {
        "type": "stdio"
      },
      "environmentVariables": [
        {
          "description": "AWS Bedrock model ID for OSCAL documentation queries",
          "name": "BEDROCK_MODEL_ID"
        },
        {
          "description": "AWS Bedrock Knowledge Base ID for OSCAL documentation",
          "name": "OSCAL_KB_ID"
        },
        {
          "description": "AWS CLI profile name for credential resolution",
          "name": "AWS_PROFILE"
        },
        {
          "description": "AWS region for Bedrock API calls",
          "name": "AWS_REGION"
        },
        {
          "description": "Logging verbosity level (DEBUG, INFO, WARNING, ERROR)",
          "name": "LOG_LEVEL"
        }
      ]
    }
  ]
}

Permissions

DeclaredDetected
Runs code—python
Installs—pypi:mcp-server-for-oscal@0.4.0
Runs install scripts—None
NetworkNoneNone
Needs credentialsNoneNone
Outside the workspace—None
Agent tools—None

Checks

Low risk · Nothing worth a warning was found.

Not reviewed by a person · Checked by rules; the model review is not switched on yet.

Versions

  1. #10.4.0latestOct 7, 2026