Reporting via MCP (Enterprise)

The SecDim MCP Server enables enterprise customers to generate AI-powered reports directly from their IDE or AI assistant. Instead of navigating dashboards, ask natural language questions about your team’s progress and get tailored reports instantly.

What You Can Do

  • Bespoke reporting — generate custom reports tailored to your specific needs

  • Compliance reporting — produce reports mapped to SOC 2, ISO 27001, PCI DSS, and other frameworks

  • Team-specific learning pathways — build pathways tied to your team’s technology stack, skill levels, and security priorities

  • Integration with security tooling — correlate training data with findings from SAST, DAST, ASPM tools, penetration tests, and more

Getting Started

  1. Ensure your organisation has enterprise MCP access (contact your SecDim account manager if unsure)

  2. Set up the SecDim MCP Server in your AI tool of choice (Claude, Cursor, VS Code, etc.)

  3. Start asking questions in natural language

Sample Prompts

Team Overview

Give me an overview of my company's secure coding engagement for the last 3 months.
What is our company grade and how does it compare to the industry benchmark?
Which departments are the most and least engaged?

Individual Progress

Show me the top 5 players by score in Department 1.
Which players have not attempted any challenges in the last 30 days?
Give me a detailed breakdown of alpha_player_4's progress, including skill proficiency and completed challenges.

Skills and Gaps

What OWASP Top 10 categories does our team have the weakest coverage in?
Which security topics should we focus on based on our team's current skill gaps?
Create a learning pathway for our backend team to improve their skills in injection prevention and access control.

Compliance Reporting

Generate a SOC 2 compliance report showing our team's secure coding training evidence for the last quarter.
Produce an ISO 27001 training evidence report for our annual audit.
Create a PCI DSS developer training summary for our compliance team.

Security Tooling Correlation

We found 12 SQL injection findings in our latest Semgrep scan. Which team members should complete injection-related challenges first?
Based on our recent penetration test findings, create a targeted learning pathway for the affected teams.
Cross-reference our Snyk vulnerability report with our team's completed challenges to identify training gaps.

Game and Pathway Management

What is the completion rate for each game assigned to Department 0?
Which challenges in our Java game have the lowest completion rate?
Recommend a new game for our frontend team based on their current skill levels.

Tips for Better Results

  • Be specific about scope — mention the department, team, time range, or players you are interested in

  • Reference frameworks by name — say "SOC 2" or "ISO 27001" rather than "compliance report" for more targeted output

  • Provide context from your tools — mention specific findings from your SAST/DAST/pentest tools so MCP can correlate them with training data

  • Iterate — follow up with refining questions to drill deeper into the data