# AIS CVE Priorities — daily exploit-ranked patch list for AI agents

Daily CVE priorities ranked by real exploitation (KEV+EPSS) for AI agents; free teaser, paid full

- Site: https://api.aislabs.ai
- MCP server: https://api.aislabs.ai/cve/mcp (from the official MCP registry)
- Agent readiness: **D** (45/100), checked 2026-10-11 11:46 UTC
- Unclaimed: listed by ai.page from public files. The owner can claim it
- Status for agents: https://si.ai.page/s/api.aislabs.ai/status.json

## What to fix
- Agent Card at /.well-known/agent-card.json: HTTP 404 (optional: you have an MCP server; a card adds A2A)
- MCP tools carry annotations (read-only / destructive): 0 of 4 tools; directories and hosts use these to decide what needs a person's OK
- llms.txt: HTTP 404
- Web Bot Auth key directory: none: your agents can't prove who they are
- Personal Agent Protocol discovery (draft): none (the spec is new; optional)

Full check: https://si.ai.page/check?site=api.aislabs.ai. Rather not be listed? Add `User-agent: ai.page` with `Disallow: /` to robots.txt.
