About Vuln Signal Radar
Vuln Signal Radar is a read-only defensive vulnerability radar that aggregates and normalizes public vulnerability information for defender triage.
Purpose
The radar helps defenders judge CVE priority by showing source-published defensive context, freshness, and prioritization signals. AI agents can use the read-only JSON and WebMCP surfaces to inspect the same public-safe material without mutation, external execution, or remediation actions.
The page emphasizes source-published defensive context rather than raw fetch output.
Data Sources
Vuln Signal Radar combines public records and advisory references. Source coverage can be partial, delayed, or unavailable for individual CVEs.
- NVDNational Vulnerability Database enrichment and CVE context.
- CISA KEVKnown Exploited Vulnerabilities catalog signals.
- EPSSExploit Prediction Scoring System probability context.
- Vendor advisoriesVendor-published advisory links referenced through public CVE records.
- OSVOpen source vulnerability records and package ecosystem context.
- GitHub Security AdvisoryPublic GitHub Security Advisory records.
- Public CVE recordsPublic CVE identifiers and disclosure records.
Safety Policy
- Only public-safe defensive context is shown.
- Procedure-level offensive material is excluded.
- Target discovery guidance is excluded.
- Automatic remediation is not performed.
- The site is limited to read-only defensive triage.
Limitations
- This site is not an authoritative advisory.
- Patch status, affected versions, and exposure must be confirmed against the vendor advisory and your own environment.
- KEV not listed does not mean not exploited.
- EPSS and CVSS are prioritization inputs, not standalone conclusions.
Agent-readable Data
Vuln Signal Radar exposes three read-only surfaces for humans and AI agents: Knowledge Graph / JSON-LD for source provenance, Local-first Personal Data Vault for browser-only review context, and RirastaFab Trust Layer for hash-only proof metadata.
AI agents should start with /agent.json, follow machine_readable_surface, validate schemas before use, and keep all actions read-only.
Contact
Use the contact route for corrections, source issues, false positives, safety concerns, removal requests, and general feedback.
Do not send secrets, credentials, private vulnerability details, or private system details.
Privacy Note
Information sent through contact is used only to respond to the inquiry. Please avoid sending secrets, credentials, private system details, or confidential vulnerability information.