Legal & Compliance · Search Tools

Fedramp Docs MCP logo

Fedramp Docs MCP

ethanolivertroy/fedramp-docs-mcp

Custom Model Context Protocol (MCP) server that makes the FedRAMP/docs repository queryable with FRMR-aware tooling. The server scans FRMR JSON datasets and supporting markdown guidance, exposes structured tools for analysis, and can optionally clone and cache the upstream repository for you.

Install

npx fedramp-docs-mcp

Client configuration

{
  "mcpServers": {
    "fedramp-docs": {
      "command": "npx",
      "args": [
        "fedramp-docs-mcp"
      ],
      "env": {
        "FEDRAMP_DOCS_AUTO_UPDATE": "<FEDRAMP_DOCS_AUTO_UPDATE>"
      }
    }
  }
}

Environment variables

FEDRAMP_DOCS_AUTO_UPDATEFEDRAMP_DOCS_UPDATE_CHECK_HOURSFEDRAMP_DOCS_PATH
Category
Legal & Compliance, Search Tools
Updated
Oct 6, 2026

About Fedramp Docs MCP

This MCP server is no longer under active development. The FedRAMP search and FRMR parsing capabilities are being folded into GRC Clanker and myctrl.tools, where they live inside an actual GRC workflow instead of as a standalone subprocess.

Features

  • Auto-detects all 12 FRMR JSON document types and builds typed metadata.

  • Extracts KSI entries, flattened control mappings, and Significant Change references.

  • Fast markdown search via an inverted index backed by Lunr with snippets and line numbers.

  • Indexes 62+ markdown files from tools/site/content/ (Zensical static site content).

  • Structured diffing between FRMR versions, including per-item change detection.

  • Health check, version listing, and curated Significant Change guidance aggregator.

  • Claude Plugin with slash commands, agent skills, and compliance analyst agent.

  • Docker support with security hardening following 2025 best practices.

Tools (21)

  • list_frmr_documents

    Enumerate indexed FRMR JSON documents

  • get_frmr_document

    Return full JSON and summary for a document

  • list_versions

    Collate version metadata by FRMR document type

  • list_ksi

    Filter and inspect Key Security Indicators

  • get_ksi

    Get a specific KSI item by ID

  • filter_by_impact

    Filter KSI items by impact level (low/moderate/high)

  • get_theme_summary

    Get comprehensive guidance for a KSI theme (IAM, CNA, etc.)

  • get_evidence_examples

    Get automation-friendly evidence suggestions for KSI compliance (community suggestions, not official FedRAMP)

  • list_controls

    Flatten FRMR → control mappings

  • get_control_requirements

    Get all requirements mapped to a specific control

  • analyze_control_coverage

    Report which control families have FedRAMP requirements

  • search_markdown

    Full-text search across documentation

  • read_markdown

    Read specific markdown file contents

  • search_definitions

    Search FedRAMP definitions (FRD) by term

  • get_requirement_by_id

    Get any FRMR requirement by ID (KSI-, FRR-, FRD-*)

  • diff_frmr

    Structured diff of two FRMR datasets

  • grep_controls_in_markdown

    Locate control references in markdown

  • get_significant_change_guidance

    Curated Significant Change references

  • search_tools

    Search and discover available tools by keyword or category

  • health_check

    Confirm the server indexed successfully

  • update_repository

    Force update the cached FedRAMP docs

Details on this page are taken from the project's README. Open README

Supported clients

Clients mentioned in this server's README:

View all
Claude Desktop logo

Claude Desktop

Desktop · Freemium · Proprietary

Anthropic's official Claude AI desktop application. Supports MCP servers to extend functionality.

WindowsMacOS
Cursor logo

Cursor

Desktop · Freemium · Proprietary

The first agentic IDE. The Cursor editor truly merges how developers and AI work together, delivering a magical coding experience.

WindowsMacOSLinux
Windsurf logo

Windsurf

Desktop · Freemium · Proprietary

The first agentic IDE. The Windsurf editor truly merges how developers and AI work together.

WindowsMacOSLinux
VS Code GitHub Copilot logo

VS Code GitHub Copilot

Desktop · Freemium · MIT

VS Code integrates MCP with GitHub Copilot through agent mode, allowing direct interaction with MCP-provided tools in your agentic coding workflow. Configure servers in Claude Desktop, workspace, or user settings, with guided MCP installation and secure handling of secrets in input variables to avoid leaking hardcoded keys.

WindowsMacOSLinuxWeb

Related MCP servers

More servers
Anti Bullshit MCP Server logo

Anti Bullshit MCP Server

bmorphism/anti-bullshit-mcp-server

17

A Model Context Protocol server for analyzing claims, validating sources, and detecting manipulation using multiple epistemological frameworks.

Legal & Compliance
MCP Server Esignatures logo

MCP Server Esignatures

esignaturescom/mcp-server-esignatures

13

This MCP server gives AI agents (such as Claude) real-time access to the complete eSignatures API, enabling.

Legal & Compliance
Opentk MCP logo

Opentk MCP

r-huijts/opentk-mcp

9

A bridge between large language models (LLMs) and Dutch parliamentary data through a standardized interface. This MCP server provides access to Dutch parliamentary documents, debates, and member information from the Tweede Kamer.

Legal & Compliance
patent_mcp_server logo

patent_mcp_server

riemannzeta/patent_mcp_server

6

An MCP server (Python SDK 2.x, MCPServer) for accessing United States Patent and Trademark Office (USPTO) patent and trademark data through multiple APIs including the Patent Public Search API, the Open Data Portal (ODP) API, PTAB API v3, the TSDR trademark status API, and USPTO trademark search.

Legal & Compliance
Eunomia MCP Server logo

Eunomia MCP Server

whataboutyou-ai/eunomia-mcp-server

5

Open Source Data Governance for LLM-based Applications — with MCP integration.

Legal & Compliance
a11ymcp logo

a11ymcp

ronantakizawa/a11ymcp

4

A11y MCP is an MCP (Model Context Protocol) server that gives LLMs access to web accessibility testing APIs.

Legal & Compliance