CRA Compliance MCP

by csoai-org

Not rated
GitHub

About

Cyber Resilience Act compliance checker — vulnerability handling, software bill of materials, CE marking requirements for digital products

Details

Author
csoai-org
Categories
Other, Security, Knowledge Base

Setup

Install CRA Compliance MCP in your MCP client (Claude Desktop, Cursor, Windsurf, and others).

Repository: https://github.com/csoai-org/cra-compliance-mcp

Follow the installation instructions in the repository README, then restart your MCP client.

🔏 Free tier: 50 calls/day. Need audit-ready proof?

Pro (£199/mo)turns every result into anHMAC-signed attestationwith apublic verify URLyour auditor validates without an account — EU AI Act Art 11/12 ready. → Start:https://proofof.ai·pip install meok-attestation-verifyto verify any cert.

EU Cyber Resilience Act (Reg 2024/2847) compliance MCP for products with digital elements

EU Cyber Resilience Act (Reg 2024/2847) compliance MCP for products with digital elements. CE marking, vulnerability disclosure, SBOM. MIT

# Install via pip pip install cra_compliance_mcp # Or install via Smithery npx -y @smithery/cli@latest install cra-compliance-mcp --client claude

This MCP supports universal pay-per-call billing across the MEOK compliance fleet:

# One-time setup export MEOK_PAYG_KEY="your_topup_token" # Every tool call now deducts £0.05 from your balance. # When balance hits zero, the tool returns a top-up URL. # Works across all 7 MEOK compliance MCPs with the same token.

- No subscription— top up once, deduct per call.
- £0.05/call default(configurable viaMEOK_PAYG_RATE_GBP).
- USDC on Base L2 accepted— setMEOK_X402_RECEIVERand pay via stablecoin.
- Backward-compatible— whenMEOK_PAYG_KEYis unset, behaviour is unchanged.

Get a token:councilof.ai/payg(£10 / £50 / £200 top-up tiers).

- MCP protocol compliant
- Easy installation
- Well-documented API
- Production-ready
- Active maintenance

- Full Documentation
-
API Reference
-
EU AI Act Compliance Guide

This MCP server is built withEU AI Act compliancebuilt-in:

- ✅ Article 9 — Risk Management System
- ✅ Article 13 — Transparency & Instructions for Use
- ✅ Article 15 — Bias Detection & Testing
- ✅ Article 26 — FRIA Support (where applicable)
- ✅ Article 50 — AI Content Watermarking (where applicable)

Need help getting compliant?Book a free 15-min diagnostic →

Need custom development, SLA guarantees, or white-label deployment?

- Pro:£79/mo — Full MCP suite + EU AI Act tracking
- Enterprise:£499/mo — Custom dev + SLA + Dedicated support

This server is part of theMEOK AI Labsecosystem — 26 PyPI packages · ~16,300 monthly installs.

Built with 💜 byMEOK AI Labs· UK Companies House 16939677

Add to yourclaude_desktop_config.json(Claude Desktop) or your MCP client config:

{ "mcpServers": { "cra-compliance-mcp": { "command": "uvx", "args": ["cra-compliance-mcp"] } } }

Or:pip install cra-compliance-mcpthen run thecra-compliance-mcpcommand (stdio transport).

Once configured, ask your assistant, for example:

- "Useclassify_productto …"
- "Useaudit_annex_ito …"
- "Usesbom_skeletonto …"

AI Bill of Materials generation — model cards, dataset provenance, supply chain transparency, CycloneDX format by MEOK AI Labs

Structured AI incident reporting for EU AI Act Article 62 — generates mandatory incident reports, severity classification, root cause analysis, and regulator-ready submissions for serious AI incidents.

AI incident detection, classification, and regulatory reporting — covers EU AI Act Article 62, NIST AI RMF, and OECD frameworks

ISO 42001 AI management system compliance — gap analysis, control mapping, certification readiness by MEOK AI Labs

Multi-framework AI governance reports across EU AI Act, NIST AI RMF, ISO 42001, and DORA with automated gap analysis

Paid remote MCP for Copilot Studio connector permission audits, drift scans, owner signoff receipts, and compliance export packs.

TIBET provenance tracking for AI decisions. Cryptographic audit trails with ERIN/ERAAN/EROMHEEN/ERACHTER intent logging for compliance and transparency.

KHEPRA MCP Server smithery badge MCP Registry License Container PQC Sovereign compliance engine with 36,195 STIG/CCI/NIST/CMMC mappings. Air-gappable. Zero token costs. Run ert_scan → get a Godfather Report with dollar-denominated business impact. The only MCP compliance server that runs on your metal — with the World's First DoD PQC STIG built in. PQC-01-STIG-V1R1 — Full Whitepaper → 17 controls covering CNSA 2.0, FIPS 203/204/205, and the NSA's May 2026 MCP security advisory. The world's first DoD-style Post-Quantum Cryptography STIG, including the first PQC controls for agentic AI and MCP deployments.

Comprehensive audit logging for agent-to-agent interactions — immutable event trails, tamper-evident hashing, structured log export (SIEM-compatible), and compliance-grade retention for regulated industries.

Cryptographic runtime governance for AI agents. 20 tools. Sealed policy artifacts, continuous measurement, tamper-evident proof. Ed25519 + SHA-256.

No reviews yet — be the first

Sign in to leave a review

Use Google, GitHub, or an email account so ratings stay tied to real people.

Email sign in

No reviews posted yet.