# Black Duck Security Scanner (slim) > Black Duck Security Scanner, an MCP server by blackduck.com, listed from the official MCP registry. Indexed, not reviewed: facts and our own checks, no score or ranking. AI-powered security scanning using Black Duck Signal for vulnerability detection. - Full: https://www.anchorterminal.com/tools/blackduck-mcp-server.md (~450 tokens) · this version ~380 tokens · JSON https://www.anchorterminal.com/tools/blackduck-mcp-server.json · canonical https://www.anchorterminal.com/tools/blackduck-mcp-server - Index: https://www.anchorterminal.com/llms.txt · API: https://www.anchorterminal.com/api/v1/index.json · Updated: 2026-10-05 # Black Duck Security Scanner > Indexed, not reviewed: facts from the official MCP registry and our own checks. No score, grade or rank, and not in the rankings until the panel reviews it. How the index works: https://www.anchorterminal.com/indexed/ - Kind: MCP server, by blackduck.com (https://blackduck.com) - Listed because: It's published in the registry under blackduck.com, a namespace the registry only gives to whoever proves they control that domain. - What the official MCP registry says: AI-powered security scanning using Black Duck Signal for vulnerability detection. ## Facts - MCP registry: `com.blackduck/mcp-server` 1.1.8 - Package: npm `@black-duck/mcp-server` (stdio) - Package: mcpb `https://github.com/blackducksoftware/mcp-server/releases/download/v1.1.8/black-duck-mcp-1.1.8.mcpb` (stdio) - Source: https://github.com/blackducksoftware/mcp-server - npm downloads a week: 302 - GitHub stars: 0 - Registry entry updated: 2026-07-17 - JSON: https://www.anchorterminal.com/api/v1/tools/blackduck-mcp-server.json - Being indexed says nothing about quality, and nobody can pay for it. Ask for a review: https://www.anchorterminal.com/builders/#claiming