# security-controls-mcp

> MCP server for 28 security frameworks (ISO 27001, NIST CSF 2.0, NIST 800-53, SOC 2, IEC 62443)

- **URL**: https://www.freshcrate.ai/projects/security-controls-mcp
- **Author**: Ansvar-Systems
- **Category**: MCP Servers
- **Latest version**: `v1.1.0` (2026-03-20)
- **License**: Apache-2.0
- **Source**: https://github.com/Ansvar-Systems/security-controls-mcp
- **Homepage**: https://security-controls-mcp.vercel.app
- **Language**: Python
- **GitHub**: 1 stars
- **Registry**: github
- **Tags**: `python`

## Description

MCP server for 28 security frameworks (ISO 27001, NIST CSF 2.0, NIST 800-53, SOC 2, IEC 62443)

## Recent releases

| Version | Date | Urgency | Changes |
| --- | --- | --- | --- |
| `v1.1.0` | 2026-03-20 | Medium | ## New Features  - **13 specialized PDF extractors** for ISO 27001, ISO 27002, ISO 42001, ISO 27701, NIST 800-53, PCI DSS, SOC 2, CIS Controls, IEC 62443, ISO/SAE 21434, NIST AI RMF, GDPR, and CCPA - **Generic PDF extractor** with heuristic section/annex detection as fallback - **CLI import tool** (`scf-mcp import-standard`) for importing purchased standards - **7 bundled public framework profiles**: Belgium CCB, Denmark CFCS, Finland KATAKRI, France ANSSI, Netherlands BIO2, Norway NSM, Sweden M |
| `v0.4.0` | 2026-02-05 | Low | ## 🚀 Major Release: Framework Expansion & AI Governance  **THE definitive MCP server for security framework mapping** - now with **261 frameworks** (up from 28).  ### ✨ Highlights  - **9x more frameworks**: 28 → 261 frameworks from SCF 2025.4 - **AI Governance support**: First MCP with ISO 42001, NIST AI RMF, EU AI Act - **Global coverage**: 50+ countries with regional frameworks - **Industrial/OT**: IEC 62443, NERC CIP, NIST 800-82  ### 🤖 New AI Governance Frameworks  \| Framework \| Controls \| |
| `v0.3.5` | 2026-02-01 | Low | ## What's Changed  ### Fixed - **Critical:** Fixed entry point so `scf-mcp` runs the MCP server (was incorrectly pointing to CLI tools) - macOS users: Added documentation about using full path since GUI apps don't inherit shell PATH  ### Changed - Split commands: `scf-mcp` runs MCP server, `scf-mcp-import` runs CLI for importing standards - Updated all docs to reflect new command structure - Fixed install instructions to use `pip install security-controls-mcp[import-tools]` instead of editable i |
| `v0.3.3` | 2026-01-31 | Low | ## What's Changed  - Bump version to 0.3.3 for documentation cleanup release (b9cc256)  **Full Changelog**: https://github.com/Ansvar-Systems/security-controls-mcp/compare/95ea463a2ca8d0e3db9ec52e0e3391214824ecf7...v0.3.3 |
| `v0.3.2` | 2026-01-31 | Low | ## What's Changed  - Bump version to 0.3.2 to match GitHub release (1df8263)  **Full Changelog**: https://github.com/Ansvar-Systems/security-controls-mcp/compare/v0.3.1...v0.3.2   **Full Changelog**: https://github.com/Ansvar-Systems/security-controls-mcp/compare/v0.3.1...v0.3.2 |
| `v0.3.2-Production-Readiness` | 2026-01-31 | Low | ## What's Changed  - Release v0.3.1: Fix Poetry license format and upgrade to Beta status (d629cb1) - docs: add OT Security MCP to related projects and MCP Registry docs (c220b7e) - docs: add CLAUDE.md and central MCP architecture documentation (c752bdc) - Add Related Projects section linking to compliance suite (e2ef2ba)  **Full Changelog**: https://github.com/Ansvar-Systems/security-controls-mcp/compare/v0.2.1...v0.3.2-Production-Readiness |
| `v0.3.1` | 2026-01-31 | Low | ## What's Changed  - Release v0.3.1: Fix Poetry license format and upgrade to Beta status (d629cb1) - docs: add OT Security MCP to related projects and MCP Registry docs (c220b7e) - docs: add CLAUDE.md and central MCP architecture documentation (c752bdc) - Add Related Projects section linking to compliance suite (e2ef2ba)  **Full Changelog**: https://github.com/Ansvar-Systems/security-controls-mcp/compare/v0.2.1...v0.3.1   **Full Changelog**: https://github.com/Ansvar-Systems/security-controls-m |
| `v0.2.1` | 2026-01-29 | Low | ## What's Changed  - Release v0.2.1: Framework expansion to 28 frameworks (d1c62ed) - Fix PyPI publish workflow for manual dispatch (51b0923) - Improve installation instructions for PyPI distribution (f193095)  **Full Changelog**: https://github.com/Ansvar-Systems/security-controls-mcp/compare/v0.2.0...v0.2.1   **Full Changelog**: https://github.com/Ansvar-Systems/security-controls-mcp/compare/v0.2.0...v0.2.1 |
| `v0.2.0` | 2026-01-29 | Low | ## What's Changed  - Update version to 0.2.0 in production verification script (21fe2ec) - Update README.md to document all 8 MCP tools (4538981) - Clean up redundant and outdated documentation (d591bc9) - Update SECURITY.md to support version 0.2.x (a27f322) - Merge dependabot PR: Bump ossf/scorecard-action from 2.4.0 to 2.4.3 (df9930d) - Merge dependabot PR: Bump github/codeql-action from 3 to 4 (dc7d4da) - Merge dependabot PR: Bump actions/upload-artifact from 4 to 6 (a962865) - Merge dependa |

## Citation

- HTML: https://www.freshcrate.ai/projects/security-controls-mcp
- Markdown: https://www.freshcrate.ai/projects/security-controls-mcp.md
- Dependencies JSON: https://www.freshcrate.ai/api/projects/security-controls-mcp/deps

_Generated by freshcrate.ai. Indexes github releases for AI-agent ecosystem packages._
