Skip to content

Cursor EchelonGraph CVE & Exposure Prompt/sbom_review

How to: Cursor EchelonGraph CVE & Exposure sbom_review

client:Cursor transport:streamable-http prompt:sbom_review

Add EchelonGraph CVE & Exposure to Cursor

  1. 01

    Open ~/.cursor/mcp.json and merge this in. Keep any servers already there.

{
  "mcpServers": {
    "echelongraph-mcp": {
      "url": "https://mcp.echelongraph.io/mcp"
    }
  }
}
  1. 02

    Save the file and restart Cursor.

  2. 03

    sbom_review is surfaced in the client's prompt or command menu. Unlike a tool, you invoke it deliberately — Cursor will not call it for you.

  3. 04

    If it does not appear, check that EchelonGraph CVE & Exposure is connected and that you are looking at its prompts rather than its tools.

Use .cursor/mcp.json in a project root instead to scope it to that project. Cursor merges both. Cursor docs

Set these first

EchelonGraph CVE & Exposure will not start until these are set, so it never reaches Cursor.

  • ECHELONGRAPH_API_BASE
  • ECHELONGRAPH_API_TIMEOUT_MS

Same prompt, other clients

Read from the server itself, by connecting to it and calling prompts/list on 4 October 2026. A listing does not declare its prompts, so asking is the only way to know them, and this is what the server actually offers rather than what its listing claims. Names only are stored; connect the server for each prompt's arguments.