{"_id":"@ansvar/defense-aerospace-mcp","name":"@ansvar/defense-aerospace-mcp","dist-tags":{"latest":"1.2.0"},"versions":{"1.2.0":{"name":"@ansvar/defense-aerospace-mcp","mcpName":"eu.ansvar/defense-aerospace-mcp","version":"1.2.0","description":"Defense/Aerospace domain intelligence MCP for compliance and threat modeling","main":"src/index.js","bin":{"defense-aerospace-mcp":"bin/defense-aerospace-mcp.js"},"type":"commonjs","engines":{"node":">=25.0.0"},"scripts":{"start":"node src/index.js","dev":"node --watch src/index.js","test":"node --test","drift:hashes":"node scripts/quality/drift-hashes.js","sources:sync":"node scripts/quality/export-sources-yaml.js","audit:golden":"node scripts/quality/golden-standard-audit.js","check:source-updates":"node scripts/quality/check-source-updates.js","validate":"npm run sources:sync && npm run drift:hashes && npm test && npm run audit:golden"},"repository":{"type":"git","url":"git+https://github.com/Ansvar-Systems/Defense-Aerospace-MCP.git"},"homepage":"https://github.com/Ansvar-Systems/Defense-Aerospace-MCP","keywords":["mcp","defense","aerospace","cmmc","itar","compliance"],"author":{"name":"Ansvar Systems Engineering"},"license":"MIT","gitHead":"78a001d4daf74c41623e41667b765c006ab4b65b","_id":"@ansvar/defense-aerospace-mcp@1.2.0","bugs":{"url":"https://github.com/Ansvar-Systems/Defense-Aerospace-MCP/issues"},"_nodeVersion":"25.9.0","_npmVersion":"11.12.1","dist":{"integrity":"sha512-ic6FFIihKk1Ejt0E/OU2qqEiK0qQ3QVA4BLGAgteoNzgnDUfVGdSSHlZTAzbhnN/+tq6xw/lmscCgpXll4wZUQ==","shasum":"c0da355c1b629151aff1ae520579768ff53b5fee","tarball":"https://registry.npmjs.org/@ansvar/defense-aerospace-mcp/-/defense-aerospace-mcp-1.2.0.tgz","fileCount":16,"unpackedSize":466767,"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@ansvar%2fdefense-aerospace-mcp@1.2.0","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"signatures":[{"keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U","sig":"MEYCIQCmYe3yE1I5aLMyotbnZP6oz1psHQZdStclBjYVfZdTlAIhANdG8Sf+fSkFZAiDsIv6HMIP9ielnTR8h/a7ddNypJSk"}]},"_npmUser":{"name":"ansvar","email":"jeffrey.von.rotz@ansvar.eu"},"directories":{},"maintainers":[{"name":"ansvar","email":"jeffrey.von.rotz@ansvar.eu"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages-npm-production","tmp":"tmp/defense-aerospace-mcp_1.2.0_1778397781834_0.7744450580615989"},"_hasShrinkwrap":false}},"time":{"created":"2026-05-10T07:23:01.738Z","1.2.0":"2026-05-10T07:23:02.006Z","modified":"2026-05-10T07:23:02.392Z"},"maintainers":[{"name":"ansvar","email":"jeffrey.von.rotz@ansvar.eu"}],"description":"Defense/Aerospace domain intelligence MCP for compliance and threat modeling","homepage":"https://github.com/Ansvar-Systems/Defense-Aerospace-MCP","keywords":["mcp","defense","aerospace","cmmc","itar","compliance"],"repository":{"type":"git","url":"git+https://github.com/Ansvar-Systems/Defense-Aerospace-MCP.git"},"author":{"name":"Ansvar Systems Engineering"},"bugs":{"url":"https://github.com/Ansvar-Systems/Defense-Aerospace-MCP/issues"},"license":"MIT","readme":"# Defense / Aerospace MCP\n\nDefense/Aerospace domain intelligence MCP implementing the shared domain tool contract from `domain-mcp-specifications.md`.\n\n\n### Public Endpoint (Streamable HTTP)\n\nConnect from any MCP client (Claude Desktop, ChatGPT, Cursor, VS Code, GitHub Copilot):\n\n```\nhttps://mcp.ansvar.eu/defense-aerospace/mcp\n```\n\n**Claude Code:**\n```bash\nclaude mcp add defense-aerospace --transport http https://mcp.ansvar.eu/defense-aerospace/mcp\n```\n\n**Claude Desktop / Cursor** (`claude_desktop_config.json`):\n```json\n{\n  \"mcpServers\": {\n    \"defense-aerospace\": {\n      \"type\": \"url\",\n      \"url\": \"https://mcp.ansvar.eu/defense-aerospace/mcp\"\n    }\n  }\n}\n```\n\nNo authentication required. See [all Ansvar MCP endpoints](https://github.com/Ansvar-Systems/Ansvar-Architecture-Documentation/blob/main/docs/mcp-remote-access.md).\n## What this server provides\n\n- Dual transport:\n  - `stdio` JSON-RPC transport\n  - HTTP transport on `POST /mcp`\n- Health endpoint: `GET /health`\n- SQLite + FTS5 knowledge base for:\n  - Architecture patterns\n  - Data taxonomy categories\n  - Threat scenarios\n  - Technical standards crosswalks\n  - Applicability rules\n  - Evidence artifacts\n  - Source provenance registry\n- Jurisdiction coverage guarantees:\n  - Full EU member-state coverage (EU-27) for data classification and applicability routing\n  - US baseline and `US-*` state-scoped compatibility for minimum obligation mapping\n- Universal domain tools + defense-specific tools\n- Structured responses with metadata envelope:\n  - Citations\n  - Effective date\n  - Confidence\n  - Inference rationale\n  - Dataset version/fingerprint\n  - Foundation MCP call hints\n  - Applicability precedence model (ranked obligations, conflict groups, clause references)\n\n## Quick start\n\nPrerequisite: Node.js `>=25.0.0`\n\n```bash\nnpm install\nnpm start\n```\n\nServer starts with:\n\n- HTTP: `http://localhost:3000/mcp`\n- Health: `http://localhost:3000/health`\n- Stdio: active in-process\n\nSet custom port:\n\n```bash\nPORT=8080 npm start\n```\n\nRun as stdio-only MCP (for local clients such as Claude Desktop/Cursor):\n\n```bash\nnpx @ansvar/defense-aerospace-mcp\n```\n\n## Tool coverage\n\nUniversal tools:\n\n- `about`\n- `list_sources`\n- `list_jurisdiction_profiles`\n- `get_jurisdiction_profile`\n- `get_coverage_matrix`\n- `get_expertise_scorecard`\n- `list_expert_playbooks`\n- `get_expert_playbook`\n- `list_clause_references`\n- `get_clause_reference`\n- `list_architecture_patterns`\n- `get_architecture_pattern`\n- `classify_data`\n- `get_domain_threats`\n- `assess_applicability`\n- `map_to_technical_standards`\n- `search_domain_knowledge`\n- `compare_jurisdictions`\n- `build_control_baseline`\n- `build_evidence_plan`\n- `assess_breach_obligations`\n- `create_remediation_backlog`\n\nDefense-specific tools:\n\n- `determine_cmmc_level`\n- `classify_export_control`\n- `assess_classified_environment`\n- `assess_nato_interoperability`\n\nExpertise additions:\n\n- Jurisdiction intelligence layer with explicit EU-27 full coverage profiles\n- US minimum coverage profiles (federal + `US-*` state compatibility)\n- NATO-focused member profile coverage for alliance handling contexts\n- Applicability responses now include resolved jurisdiction profile context\n- Deterministic expertise scorecard with strict-mode hard fail thresholds\n- Curated expert decision playbooks for export control, CMMC, NATO sharing, incident response, and supply-chain workflows\n- Expanded standards corpus for defense/aerospace engineering assurance (DFARS 7019/7020, NIST 800-161r1, NIST 800-218, NIST 800-37r2, NIST 800-61r3, EASA Part-IS, NATO STANAG 4586/4609/5516/4671, ECSS-E-ST-40C, ECSS-Q-ST-80C, NASA NPR 7150.2, MIL-STD-810, MIL-STD-461, MIL-HDBK-516, AS9100D, AS9110C, DO-355, DO-178C, DO-254, ARP4754A, ARP4761A)\n\n## Testing\n\n```bash\nnpm test\n```\n\nThe test suite validates representative scenarios from the Defense/Aerospace sampling section, including:\n\n- ITAR/EAR data classification behavior\n- CMMC level determination\n- Threat lookup and mappings\n- Applicability obligations and jurisdiction comparisons\n- NATO/classified environment assessments\n- Out-of-scope redirects to other domain MCPs\n\n## Golden standard quality gates\n\nRun the full quality pipeline:\n\n```bash\nnpm run validate\n```\n\nThis runs:\n\n- `sources:sync`: regenerates `sources.yml` from the in-code source registry\n- `drift:hashes`: writes `data/drift-hashes.json` for deterministic drift detection\n- `test`: executes protocol + domain behavior tests\n- `audit:golden`: runs a production-style quality audit and writes `data/golden-standard-report.json`\n\nOptional freshness check:\n\n```bash\nnpm run check:source-updates\n```\n\n- Writes `data/source-updates-report.json`\n- Use `STRICT_SOURCE_CHECK=1` to fail on stale/unreachable sources\n\nThe golden audit enforces:\n\n- Required authoritative source presence (CMMC rule, DFARS CMMC subpart, NIST rev3 publications, ITAR/EAR, DoD issuances)\n- Citation coverage across domain records\n- Core scenario correctness (classification, applicability, CMMC determination, jurisdiction comparison)\n- Structured response contract expectations\n- EU-27 completeness checks and US minimum coverage checks\n\n## Coverage document\n\nSee `docs/COVERAGE.md` for auditable scope and completeness details across EU, US, and NATO coverage targets.\n\n## Safety and scope\n\nThis repository intentionally stores only unclassified/public framework guidance.\n\n- No classified content\n- No CUI payloads\n- No ITAR technical detail records\n\nUse outputs as structured compliance/threat-modeling guidance and route authoritative legal/regulatory text retrieval to foundation MCPs.\n\n## Release metadata\n\n- MCP registry metadata: `server.json`\n- Source provenance export: `sources.yml`\n- Change history: `CHANGELOG.md`\n","readmeFilename":"README.md","_rev":"1-16ef014900053de6f3a1c5ecf4b2f839"}