Windsurf EchelonGraph CVE & Exposure Prompt/am_i_affected
How to: Windsurf EchelonGraph CVE & Exposure am_i_affected
Add EchelonGraph CVE & Exposure to Windsurf
-
01
Open ~/.codeium/windsurf/mcp_config.json and merge this in. Keep any servers already there.
{
"mcpServers": {
"echelongraph-mcp": {
"serverUrl": "https://mcp.echelongraph.io/mcp"
}
}
}
-
02
Save the file and restart Windsurf.
-
03
am_i_affected is surfaced in the client's prompt or command menu. Unlike a tool, you invoke it deliberately — Windsurf will not call it for you.
-
04
If it does not appear, check that EchelonGraph CVE & Exposure is connected and that you are looking at its prompts rather than its tools.
Global only — Windsurf has no per-project MCP config. Refresh Cascade after saving. Windsurf docs
Set these first
EchelonGraph CVE & Exposure will not start until these are set, so it never reaches Windsurf.
-
ECHELONGRAPH_API_BASE -
ECHELONGRAPH_API_TIMEOUT_MS
Same prompt, other clients
Read from the server itself, by connecting to it and calling prompts/list on 4 October 2026.
A listing does not declare its prompts, so asking is the only way to know them, and this
is what the server actually offers rather than what its listing claims. Names only are
stored; connect the server for each prompt's arguments.