Skip to main content

Armor1 MCP Security

The Armor1 MCP Security Analyzer visualizes MCP server and client security risks, developer exposure to high-risk AI tools, shadow server discovery, and supply chain risk. It tracks remediation posture and correlates device-level risk with enterprise identity using data from the Armor1 blueprint.

Required Blueprints: Armor1


Sightlines

SightlineDescription
MCP Server RiskInsights into MCP server catalog risk posture including high-risk, shadow, and expired trust entries.
Developer ExposureInsights into developers exposed to high-risk MCP servers or clients, and devices without a linked platform identity.
Clients & SkillsInsights into high-risk MCP client catalogs and AI skill catalog risk posture.
RemediationTrack open remediation actions and overall risk posture change across MCP assets.

Insight Models

Model IDNameDescription
SB-Armor1-HighRiskServersHigh Risk MCP ServersCurated MCP servers with RiskLevel = danger as assessed by Armor1.
SB-Armor1-ShadowServersShadow MCP ServersMDM-discovered MCP servers with no curated catalog match — potential rogue or unvetted AI tooling.
SB-Armor1-ExpiredServerTrustMCP Servers with Expired TrustCurated MCP servers where trust attestation has expired and re-attestation is required.
SB-Armor1-HighRiskClientsHigh Risk MCP ClientsMCP client catalogs with RiskLevel = danger based on Armor1 client risk assessments.
SB-Armor1-RiskPostureChangeMCP Risk Posture ChangeMCP servers and clients with any elevated risk level — changes in this set indicate a posture shift.
SB-Armor1-OpenRemediationActionsOpen MCP Remediation ActionsArmor1 risk assessment records with status failure or warning awaiting remediation.
SB-Armor1-DevicesWithoutOwnerMDM Devices Without Platform IdentityMDM device users that cannot be linked to a platform identity — ownership gap increases blast radius risk.
SB-Armor1-HighRiskSkillsHigh Risk MCP SkillsMCP skill catalog entries with RiskLevel of danger or warning as assessed by Armor1.
SB-Armor1-UsersExposedHighRiskServersUsers Exposed to High Risk MCP ServersPlatform identities reachable through MDM device users connected to high-risk or shadow MCP servers.
SB-Armor1-UsersExposedHighRiskClientsUsers Exposed to High Risk MCP ClientsPlatform identities reachable through MDM device users whose current risk assessment is high.

Risk Score

Armor1 MCP Security uses the AISPM risk score formula:

Final Score = Technical Risk × Business Impact Multiplier × Risk Modifier

Node TypeOWASP CategoryScoreType
armor1.mcpserver.MCPServerCatalogTool / MCP90Deployed — Attack Surface derived from Armor1 RiskScore (×100)
armor1.mcpclient.MCPClientCatalogTool / MCP90Deployed — Attack Surface derived from Armor1 RiskScore (×100)
armor1.skill.SkillCatalogTool / MCP90Deployed — Attack Surface from SkillRiskAssessment.OverallScore or RiskLevel fallback
armor1.shadowserver.ShadowServerCatalogSupply Chain80Non-deployed — score equals Threat Severity
armor1.risk.RiskAssessmentRecordTool / MCP90Non-deployed — score equals Threat Severity
armor1.user.UserSensitive Data Leakage85Non-deployed — blast radius identity finding
armor1.mdm.UserObservability Gap40Non-deployed — identity ownership gap

Explorer Node Types

Use these node types in Explorer or KAI to query resources surfaced by this analyzer:

armor1.mcpserver.MCPServerCatalog, armor1.mcpserver.MCPTool, armor1.mcpserver.MCPServerRiskAnalysis, armor1.shadowserver.ShadowServerCatalog, armor1.mcpclient.MCPClientCatalog, armor1.mcpclient.MCPClientUser, armor1.skill.SkillCatalog, armor1.skill.SkillRiskAssessment, armor1.risk.RiskAssessmentRecord, armor1.mdm.User, armor1.user.User, armor1.tenant.Tenant, armor1.tenant.TenantUser, armor1.group.Group, armor1.policy.PolicyInstance


  • AI SAST — Static analysis for AI skills and tool definitions in code repositories
  • AI IAM — Identity and access control for AI infrastructure
  • AI DAST — Dynamic testing of AI endpoints and agents