triageshield
Verify a vuln report's file/line/function claims against a real GitHub repo.
Community: Submitted by a user or imported; check the owner before granting accessDegradedNo sign-inGlobalFreeRead-only
What it can do
What data it sees
Do you need an account
No: the server works without sign-in
Verify a vuln report's file/line/function claims against a real GitHub repo.
Server tool list (1)
Raw names from tools/list. Only developers need these.
| verify_vulnerability_report | Check a vulnerability report's concrete claims (file paths, file:line references, function names) against a real public GitHub repo's current contents. Flags claims that don't check out -- the file doesn't exist, the line is past EOF, the function isn't in the file -- which is the most common signature of an AI-generated fabricated vuln report. Does not judge whether a real, verifiable claim describes an actual security bug; it only checks whether the claim is honest about the codebase. |