{"_id":"@csgaglobal/csga-standards","name":"@csgaglobal/csga-standards","dist-tags":{"latest":"1.0.0"},"versions":{"1.0.0":{"name":"@csgaglobal/csga-standards","version":"1.0.0","description":"CSGA Cyber Security Standards MCP Server - Provides cybersecurity standards, training pathways, and incident response capabilities","author":{"name":"CSGA Global — Cyber Security Global Alliance"},"license":"CC0-1.0","homepage":"https://csga-global.org","repository":{"type":"git","url":"git+https://github.com/csga-global/mcp-standards-server.git"},"main":"dist/index.js","bin":{"csga-standards-mcp":"dist/index.js"},"type":"module","scripts":{"start":"node dist/index.js","dev":"tsc && node dist/index.js","watch":"tsc --watch","test":"echo \"Error: no test specified\" && exit 1","lint":"eslint src/**/*.ts","format":"prettier --write \"src/**/*.ts\"","build":"tsc"},"keywords":["mcp","cybersecurity","standards","csga","nist","iso-27001","cis-controls","incident-response","training","certification"],"dependencies":{"@modelcontextprotocol/sdk":"^0.7.0","zod":"^3.22.4"},"devDependencies":{"@types/node":"^20.10.0","typescript":"^5.3.3"},"publishConfig":{"access":"public"},"engines":{"node":">=18.0.0"},"_id":"@csgaglobal/csga-standards@1.0.0","gitHead":"c7c0f8605f06b783f4bac5b541f4732ebce8b560","types":"./dist/index.d.ts","bugs":{"url":"https://github.com/csga-global/mcp-standards-server/issues"},"_nodeVersion":"22.16.0","_npmVersion":"10.9.2","dist":{"integrity":"sha512-ffHBPikKQajRQBdE8ST1zn4LT7nLCTEVHaF0xCc7fU29dgnxWMzJbkfSNaMI5mN9tnvdePWMbz/bZp8hIKs/2Q==","shasum":"605849f8609986405943954fabca81706c09cd0b","tarball":"https://registry.npmjs.org/@csgaglobal/csga-standards/-/csga-standards-1.0.0.tgz","fileCount":35,"unpackedSize":191743,"signatures":[{"keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U","sig":"MEUCIFFhvPOGUjHskjsPSGrQuc10qwhUneWCeJy763Kl3PHbAiEAtbHVuDKt1Gl8FjGy7gmUC/t09QFquXkrgDo4DIN4ojs="}]},"_npmUser":{"name":"csga_global","email":"Nicholastempleman@gmail.com"},"directories":{},"maintainers":[{"name":"csga_global","email":"Nicholastempleman@gmail.com"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages-npm-production","tmp":"tmp/csga-standards_1.0.0_1772122512459_0.9255996647670033"},"_hasShrinkwrap":false}},"time":{"created":"2026-02-26T16:15:12.380Z","1.0.0":"2026-02-26T16:15:12.614Z","modified":"2026-02-26T16:15:12.857Z"},"maintainers":[{"name":"csga_global","email":"Nicholastempleman@gmail.com"}],"description":"CSGA Cyber Security Standards MCP Server - Provides cybersecurity standards, training pathways, and incident response capabilities","homepage":"https://csga-global.org","keywords":["mcp","cybersecurity","standards","csga","nist","iso-27001","cis-controls","incident-response","training","certification"],"repository":{"type":"git","url":"git+https://github.com/csga-global/mcp-standards-server.git"},"author":{"name":"CSGA Global — Cyber Security Global Alliance"},"bugs":{"url":"https://github.com/csga-global/mcp-standards-server/issues"},"license":"CC0-1.0","readme":"# CSGA Standards MCP Server\n\nA comprehensive Model Context Protocol (MCP) server providing cybersecurity standards, training pathways, threat intelligence, and incident response capabilities from the Cyber Security Global Alliance (CSGA).\n\n**Author:** CSGA — Cyber Security Global Alliance\n**License:** CC0-1.0\n**Homepage:** https://csga-global.org\n**Version:** 1.0.0\n\n---\n\n## About CSGA\n\nThe **Cyber Security Global Alliance (CSGA)** is a leading global organization dedicated to advancing cybersecurity standards and practices worldwide.\n\n- **95,000+ subscribers** across the global cybersecurity community\n- **20+ countries** represented in our member network\n- **11-member board** providing strategic governance and oversight\n- **Mission:** To establish and promote unified cybersecurity standards, frameworks, and best practices globally\n\nCSGA serves organizations of all sizes, from startups to enterprises, helping them implement security best practices and achieve compliance with major international frameworks.\n\n---\n\n## Features\n\n### 1. **csga_standards_lookup** — Cybersecurity Standards Reference\nLook up comprehensive information about major cybersecurity standards, frameworks, and best practices.\n\n**Covers:**\n- **CSR5** — CSGA Cyber Security Readiness Level 5 (proprietary maturity model)\n- **NIST CSF** — NIST Cybersecurity Framework\n- **ISO 27001** — International Information Security Management Standard\n- **CIS Controls** — CIS Critical Security Controls\n- **MITRE ATT&CK** — Adversary Tactics, Techniques & Common Knowledge\n- Additional frameworks: OWASP, PCI-DSS, HIPAA, SOC 2\n\n**Input:** Standard name or topic query (e.g., \"access control\", \"incident response\")\n**Output:** Standard details, requirements, implementation guidance, compliance effort\n\n### 2. **csga_kata_assessment** — K.A.T.A.™ 8-Belt Cyber Defense Assessment\nEvaluate your organization's cybersecurity maturity using CSGA's proprietary K.A.T.A.™ framework.\n\n**Belt Levels (Progression Path):**\n1. **White (Awareness)** — Basic security awareness and understanding\n2. **Yellow (Foundation)** — Foundational controls implementation\n3. **Orange (Intermediate)** — Advanced controls and formalized processes\n4. **Green (Applied)** — Applied mature practices with defined processes\n5. **Blue (Advanced)** — Advanced expertise and capabilities\n6. **Purple (Expert)** — Expert-level security program\n7. **Brown (Mastery)** — Mastery-level exceptional capabilities\n8. **Black (Leadership)** — Industry-leading security excellence\n\n**Input:** Organization description, current controls, training level, incident history\n**Output:** Current belt level, gap analysis, training recommendations, timeline to next level\n\n### 3. **csga_threat_intel** — Cybersecurity Threat Intelligence\nAccess current threat intelligence, assess sector-specific threats, and understand threat tactics and indicators.\n\n**Coverage:**\n- Threat actors (APT groups, ransomware operators)\n- Threat types (Ransomware, APT, Zero-Days, Supply Chain attacks)\n- Sector-specific threat assessments\n- CVE lookups and vulnerability intelligence\n- MITRE ATT&CK mapping\n- Indicators of Compromise (IOCs)\n- Mitigation recommendations\n\n**Input:** Sector, threat type, CVE ID, or search query\n**Output:** Threat assessment, severity, tactics/techniques, detection methods, mitigations\n\n### 4. **csga_incident_response** — Cyber Incident Response Protocol\nGet detailed, step-by-step incident response procedures for various attack types.\n\n**Incident Types:**\n- Ransomware attacks\n- Data breaches\n- System compromises\n- DDoS attacks\n- Insider threats\n- Supply chain attacks\n- Malware infections\n\n**Input:** Incident type, severity level, affected systems\n**Output:** Response procedures, containment steps, investigation procedures, notification requirements, recovery timeline, escalation path\n\n### 5. **csga_training_pathway** — Cybersecurity Training Recommendations\nGet personalized training and certification recommendations based on your current skills and career goals.\n\n**Career Paths:**\n- Security Awareness Training\n- System Administration\n- Security Analysis\n- Penetration Testing\n- CISO/Leadership\n- Incident Response Specialist\n- Cloud Security Engineer\n- DevSecOps Engineer\n\n**Input:** Current skill level, career goal, sector, budget, learning preference\n**Output:** Recommended courses, certifications, timeline, estimated costs, prerequisite skills, success metrics\n\n### 6. **csga_compliance_check** — Compliance Framework Assessment\nQuick compliance evaluation against major regulatory frameworks and standards.\n\n**Frameworks Evaluated:**\n- NIST Cybersecurity Framework\n- ISO/IEC 27001:2022\n- HIPAA Security Rule\n- PCI-DSS v3.2.1\n- SOC 2 Type II\n- GDPR (EU)\n- SOX (Sarbanes-Oxley)\n- CIS Critical Security Controls\n\n**Input:** Organization type, size, current controls, geographic scope\n**Output:** Compliance status per framework, gaps, priority actions, estimated effort and cost\n\n---\n\n## Installation\n\n### Prerequisites\n- Node.js 18 or higher\n- npm or yarn package manager\n\n### Setup\n\n```bash\n# Install dependencies\nnpm install\n\n# Build TypeScript\nnpm run build\n\n# Run the server\nnpm start\n```\n\n### Development\n\n```bash\n# Watch mode (rebuilds on file changes)\nnpm run watch\n\n# Development mode (build and run)\nnpm run dev\n\n# Linting\nnpm run lint\n\n# Format code\nnpm run format\n```\n\n---\n\n## Usage\n\n### With Claude/MCP Client\n\nThe server operates via the Model Context Protocol (MCP) using stdio transport. Configure your MCP client to use:\n\n```json\n{\n  \"name\": \"csga-standards-mcp\",\n  \"command\": \"node\",\n  \"args\": [\"dist/index.js\"],\n  \"env\": {\n    \"MCP_STDIO\": \"true\"\n  }\n}\n```\n\n### Example Tool Calls\n\n**Look up NIST CSF standards:**\n```json\n{\n  \"name\": \"csga_standards_lookup\",\n  \"arguments\": {\n    \"standard\": \"NIST_CSF\"\n  }\n}\n```\n\n**Assess organizational security maturity:**\n```json\n{\n  \"name\": \"csga_kata_assessment\",\n  \"arguments\": {\n    \"organization_description\": \"Financial services company with 500 employees\",\n    \"current_controls\": [\n      \"Firewall\",\n      \"MFA\",\n      \"SIEM\",\n      \"EDR\",\n      \"Vulnerability Scanning\"\n    ],\n    \"employees_trained\": 450,\n    \"incident_history\": \"Minimal - one phishing incident in 2023\",\n    \"budget_allocation\": \"Moderate\"\n  }\n}\n```\n\n**Get threat intelligence for healthcare sector:**\n```json\n{\n  \"name\": \"csga_threat_intel\",\n  \"arguments\": {\n    \"sector\": \"Healthcare\",\n    \"threat_type\": \"Ransomware\"\n  }\n}\n```\n\n**Get ransomware incident response procedure:**\n```json\n{\n  \"name\": \"csga_incident_response\",\n  \"arguments\": {\n    \"incident_type\": \"Ransomware\",\n    \"severity\": \"Critical\",\n    \"affected_systems\": [\n      \"File Servers\",\n      \"Backup Systems\",\n      \"Email Servers\"\n    ]\n  }\n}\n```\n\n**Get CISO training pathway:**\n```json\n{\n  \"name\": \"csga_training_pathway\",\n  \"arguments\": {\n    \"current_level\": \"Intermediate\",\n    \"goal\": \"CISO\",\n    \"sector\": \"Financial\",\n    \"budget_usd\": 50000\n  }\n}\n```\n\n**Evaluate compliance status:**\n```json\n{\n  \"name\": \"csga_compliance_check\",\n  \"arguments\": {\n    \"organization_type\": \"Healthcare\",\n    \"size\": \"Enterprise\",\n    \"current_controls\": [\n      \"Firewall\",\n      \"Encryption\",\n      \"MFA\",\n      \"Access Control\",\n      \"Audit Logging\"\n    ],\n    \"geographic_scope\": [\"USA\", \"Europe\"]\n  }\n}\n```\n\n---\n\n## Framework & Standards Details\n\n### CSR5 (CSGA Cyber Security Readiness Level 5)\n\nCSGA's proprietary maturity assessment framework with 5 levels:\n- **Level 1 (Initial):** Ad hoc processes\n- **Level 2 (Repeatable):** Basic security practices\n- **Level 3 (Defined):** Documented and standardized\n- **Level 4 (Managed):** Quantitatively managed\n- **Level 5 (Optimized):** Continuous improvement\n\n### NIST Cybersecurity Framework (CSF)\n\nFive core functions:\n1. **Identify** — Asset and risk management\n2. **Protect** — Access control and safeguards\n3. **Detect** — Monitoring and detection\n4. **Respond** — Incident response procedures\n5. **Recover** — Recovery and resilience\n\n### ISO/IEC 27001:2022\n\n14 control areas with 93 controls across:\n- Information Security Policies\n- Organization of Information Security\n- Human Resource Security\n- Asset Management\n- Access Control\n- Cryptography\n- Physical and Environmental Security\n- Operations Security\n- Communications Security\n- System Acquisition, Development & Maintenance\n- Supplier Relationships\n- Information Security Incident Management\n- Business Continuity Management\n- Compliance\n\n### CIS Critical Security Controls v8.1\n\n18 controls organized in three implementation groups (IG):\n- **IG1:** Essential controls for all organizations\n- **IG2:** Advanced controls for sensitive data\n- **IG3:** Organizational maturity controls\n\n---\n\n## API Reference\n\n### Tool Schemas\n\nAll tools use Zod for input validation with comprehensive error handling.\n\n#### StandardsLookupInputSchema\n```typescript\n{\n  standard?: \"CSR5\" | \"NIST_CSF\" | \"ISO_27001\" | \"CIS_CONTROLS\" | \"MITRE_ATTACK\",\n  query?: string,\n  focus_area?: \"governance\" | \"asset_management\" | \"access_control\" | \"detection_response\" | \"recovery\" | \"awareness_training\"\n}\n```\n\n#### KataAssessmentInputSchema\n```typescript\n{\n  organization_description: string,\n  current_controls: string[],\n  employees_trained?: number,\n  incident_history?: string,\n  budget_allocation?: \"Limited\" | \"Moderate\" | \"Substantial\"\n}\n```\n\n#### ThreatIntelInputSchema\n```typescript\n{\n  sector?: \"Finance\" | \"Healthcare\" | \"Energy\" | \"Manufacturing\" | \"Technology\" | \"Government\" | \"Retail\" | \"Education\",\n  threat_type?: \"Ransomware\" | \"APT\" | \"Insider_Threat\" | \"DDoS\" | \"Zero_Day\" | \"Phishing\" | \"Supply_Chain\" | \"Cloud_Threat\",\n  cve_id?: string,\n  query?: string\n}\n```\n\n#### IncidentResponseInputSchema\n```typescript\n{\n  incident_type: \"Ransomware\" | \"Data_Breach\" | \"System_Compromise\" | \"DDoS\" | \"Insider_Threat\" | \"Supply_Chain\" | \"Malware\",\n  severity: \"Critical\" | \"High\" | \"Medium\" | \"Low\",\n  affected_systems: string[],\n  affected_records?: number,\n  internal_systems_only?: boolean\n}\n```\n\n#### TrainingPathwayInputSchema\n```typescript\n{\n  current_level: \"Beginner\" | \"Intermediate\" | \"Advanced\" | \"Expert\",\n  goal: \"Security_Awareness\" | \"System_Administrator\" | \"Security_Analyst\" | \"Penetration_Tester\" | \"CISO\" | \"Incident_Response\" | \"Cloud_Security\" | \"DevSecOps\",\n  sector?: string,\n  budget_usd?: number,\n  learning_preference?: \"Self_Paced\" | \"Instructor_Led\" | \"Hybrid\" | \"Hands_On_Lab\"\n}\n```\n\n#### ComplianceCheckInputSchema\n```typescript\n{\n  organization_type: \"Financial\" | \"Healthcare\" | \"Technology\" | \"Retail\" | \"Manufacturing\" | \"Government\" | \"Education\",\n  size?: \"Small\" | \"Medium\" | \"Enterprise\",\n  current_controls: string[],\n  geographic_scope?: string[]\n}\n```\n\n---\n\n## Resources\n\n### Available Framework Resources\n\n#### csga://frameworks\nAccess all supported cybersecurity frameworks and standards:\n- NIST CSF\n- ISO 27001\n- CIS Controls\n- CSR5\n- MITRE ATT&CK\n- OWASP Top 10\n- PCI-DSS\n- HIPAA\n- SOC 2\n\n#### csga://kata-belts\nK.A.T.A. belt definitions and progression:\n- Belt descriptions and competencies\n- Maturity score ranges\n- Typical advancement timeline\n- Skill requirements per belt level\n\n#### csga://training-catalog\nAvailable training courses and certifications:\n- SANS Institute courses (SEC401, SEC504, SEC566)\n- CompTIA certifications (Security+, CISSP, CISM)\n- CSGA proprietary courses\n- Specialized certifications (OSCP, CEH, CISA)\n- Cost and duration information\n\n---\n\n## Technology Stack\n\n- **Language:** TypeScript (ES2020)\n- **Runtime:** Node.js 18+\n- **Framework:** Model Context Protocol (MCP) SDK\n- **Validation:** Zod\n- **Build:** TypeScript Compiler (tsc)\n\n---\n\n## Project Structure\n\n```\ncsga-standards/\n├── src/\n│   ├── index.ts           # Main server and tool handlers\n│   ├── types.ts           # TypeScript types and Zod schemas\n│   ├── standards.ts       # Standards and frameworks database\n│   ├── kata.ts            # K.A.T.A. assessment engine\n│   ├── threats.ts         # Threat intelligence database\n│   ├── incident.ts        # Incident response procedures\n│   ├── training.ts        # Training pathways and courses\n│   └── compliance.ts      # Compliance assessment logic\n├── dist/                  # Compiled JavaScript (generated)\n├── package.json           # Project metadata and dependencies\n├── tsconfig.json          # TypeScript configuration\n└── README.md             # This file\n```\n\n---\n\n## Development Guidelines\n\n### Adding New Standards\n\n1. Add to `STANDARDS_DATABASE` in `src/standards.ts`\n2. Update `StandardName` type in `src/types.ts`\n3. Create corresponding entries in `FRAMEWORKS_CATALOG`\n\n### Adding New Threats\n\n1. Add to `THREATS_DATABASE` in `src/threats.ts`\n2. Update `SECTOR_THREAT_MAPPING` for sector-specific lookup\n3. Include MITRE ATT&CK mapping\n\n### Adding New Training Paths\n\n1. Add courses to `TRAINING_COURSES` in `src/training.ts`\n2. Define training pathway in `TRAINING_PATHWAYS`\n3. Add certifications to `CERTIFICATIONS` database\n\n### Adding New Compliance Frameworks\n\n1. Add framework to `COMPLIANCE_DATABASE` in `src/compliance.ts`\n2. Update `applicableMap` in `getApplicableFrameworks()`\n3. Define gaps and priority actions\n\n---\n\n## Error Handling\n\nThe server implements comprehensive error handling:\n- Zod schema validation for all inputs\n- Try-catch blocks around tool execution\n- Descriptive error messages\n- Graceful degradation for missing data\n\n---\n\n## Performance Considerations\n\n- In-memory database for instant lookups\n- O(1) direct lookups for specific standards\n- O(n) search for query-based lookups (optimized for small datasets)\n- Lazy evaluation of compliance calculations\n- Minimal external dependencies\n\n---\n\n## Testing\n\nThe server is built with production-grade code quality:\n- TypeScript strict mode enabled\n- No unused variables or parameters\n- Comprehensive type coverage\n- Zod runtime validation on all inputs\n\n---\n\n## Security Considerations\n\n- No external API calls (all data self-contained)\n- No credential storage\n- No sensitive data in responses\n- Suitable for air-gapped environments\n- HIPAA-compatible recommendations (no actual health data)\n\n---\n\n## License\n\nCC0-1.0 (Creative Commons Zero) — Public Domain\nFeel free to use, modify, and distribute without restriction.\n\n---\n\n## Support & Feedback\n\nFor issues, questions, or contributions:\n- **Homepage:** https://csga-global.org\n- **Community:** 95,000+ cybersecurity professionals\n- **Global Reach:** 20+ countries\n\n---\n\n## Roadmap\n\nFuture enhancements:\n- Real-time threat intelligence integration\n- API for external threat feeds\n- Advanced analytics and reporting\n- Interactive compliance assessment UI\n- Customizable training pathways\n- Integration with popular SIEM platforms\n- Automated remediation recommendations\n- Advanced risk scoring algorithms\n\n---\n\n## Contributors\n\nBuilt by the CSGA Team with input from our 11-member board and global community of cybersecurity professionals.\n\n---\n\n**Made with security excellence in mind.** 🛡️\n","readmeFilename":"README.md","_rev":"1-73260f93e40a21af8b8fba6f3cb6aec2"}