Check packages, versions, and commits against the open vulnerability database
Ask what a package or commit is exposed to and get the answer in the terminal. OSV_QUERY_VULNERABILITIES covers one package, version, package URL, or commit; OSV_QUERY_VULNERABILITIES_BATCH checks up to 1,000 in one request. OSV_GET_VULNERABILITY returns the full record for an ID. Read-only, and no credential to configure.
5 tools, all read-only. They answer instantly, and every call is logged.
OSV needs no credential of its own, so there is nothing to authorize. Access is still granted per agent, skill, and team inside Luumen, and every call is logged.
No. Every one of the 5 tools LuumenAI has for OSV is read-only, so it can answer questions from OSV but cannot change anything in it. Reads are not gated — they answer immediately, and each one is recorded on the audit trail with the actor and the result.
You decide. Access is granted per agent, skill, and team, and per environment — production is not staging.
Every call to OSV is recorded with the actor, the input, and the result, and can be linked to the ticket or change record.
Connect in minutes. Every action scoped, approved, and audited from day one.