{"generated_at":"2026-08-08T12:20:51+00:00","item":{"added_at":"2026-04-27T16:40:50.376000+00:00","analysis_method":"capability_triage","category":"Desktop Extension","description":"Pull Rapid7 InsightVM vulnerability data into a local DuckDB and query it via SQL. Reads sensitive vuln/asset data; runs arbitrary SQL on the local DB.","did":"ant-dir-gh-rapid7-rapid7-bulk-export-mcp","homepage_url":"https://github.com/rapid7/rapid7-bulk-export-mcp","icon":"https://claude.ai/api/dxt/extensions/ant.dir.gh.rapid7.rapid7-bulk-export-mcp/versions/0.2.9/icon.png","id":"ant.dir.gh.rapid7.rapid7-bulk-export-mcp","installs":0,"last_scanned":"","license":"","long_description":"Connects to the Rapid7 InsightVM Bulk Export API to fetch vulnerability and asset data, loads it into a local DuckDB database, and exposes SQL query tools for AI-powered security analysis.\n\nVulnerability and asset inventories are highly sensitive - exposing them to the model means the AI sees your unpatched CVEs, exposed services, and scan history. The query_rapid7 tool runs arbitrary SQL against the local DuckDB, which is an in-process execution primitive against that database.","name":"Rapid7 Bulk Export","plutonium_url":"https://plutonium.pluto.security/detail.html?planet=claudesec&did=ant-dir-gh-rapid7-rapid7-bulk-export-mcp&utm_source=plutonium_analysis_skill&utm_medium=claude_skill&utm_campaign=connector_risk_assessment","publisher":"Rapid7","publisher_url":"https://github.com/rapid7/rapid7-bulk-export-mcp","repository_url":"https://github.com/rapid7/rapid7-bulk-export-mcp","risk":"high","risk_severity":"high","security_risks":[{"description":"This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.","evidence":"Connector has 8 tools; permissions on claude.ai/directory: \"Read\". Data flows out of the connected service into the model.","remediation":{"block_tool_categories":[],"steps":["Connect using an account that only has access to the information you actually want Claude to read - not your main admin login.","When you grant access, pick the smallest set of folders, mailboxes, or channels possible.","Check the connector's activity log every so often to make sure nothing unexpected is being read."]},"risk_type":"reads_private_data","severity":"high","title":"Reads your private information"},{"description":"This connector can edit, rename, overwrite, or otherwise modify records in the connected service. If a request gets manipulated, your data could be altered without you noticing.","evidence":"3 state change tools on this connector - e.g. start_rapid7_export, download_rapid7_export, load_rapid7_parquet.","remediation":{"block_tool_categories":["state_change"],"steps":["Try the connector on a test account first to see what it changes before letting it touch your real records.","Where the connected service supports it, give Claude read-only access and only allow writes for the specific things you need updated.","In the tools list below, turn off any tool you don't actively need - the ones tagged Block are the most important to disable."]},"risk_type":"modifies_data","severity":"low","title":"Can change or update your information"}],"signature_status":"unsigned","source_code_reviewed":false,"tags":["desktop_extension","security","vulnerability_data","runs_code"],"tools":[{"description":"","name":"start_rapid7_export","risk":{"category":"state_change","level":"medium","recommendation":"Allow only for low-stakes resources; require approval for production data changes.","why":"Creates, modifies, or uploads data on the connected service. Hijacking the tool can pollute records, plant content, or create rogue resources that bill the user."}},{"description":"","name":"check_rapid7_export_status"},{"description":"","name":"download_rapid7_export","risk":{"category":"state_change","level":"medium","recommendation":"Allow only for low-stakes resources; require approval for production data changes.","why":"Creates, modifies, or uploads data on the connected service. Hijacking the tool can pollute records, plant content, or create rogue resources that bill the user."}},{"description":"","name":"load_rapid7_parquet","risk":{"category":"state_change","level":"medium","recommendation":"Allow only for low-stakes resources; require approval for production data changes.","why":"Creates, modifies, or uploads data on the connected service. Hijacking the tool can pollute records, plant content, or create rogue resources that bill the user."}},{"description":"","name":"query_rapid7","risk":{"category":"code_execution","level":"high","recommendation":"Block by default. Only enable in a sandboxed environment that can't reach production data or credentials.","why":"Runs scripts, commands, or queries the model authors. A malicious prompt can use this to run arbitrary code on the host, read files, or pivot to other systems."}},{"description":"","name":"get_rapid7_schema"},{"description":"","name":"get_rapid7_stats"},{"description":"","name":"list_rapid7_exports"}],"tools_count":8,"type":"desktop_extension","url":"","uuid":"b91ee1a5-8e26-5cdb-9a6d-ad4dc9fde5af","version":"0.2.9"},"query_key":"rapid7 bulk export","schema_version":1,"status":"match"}
