SQUR.ai · Knowledge Base
The EU cybersecurity
knowledge graph
DORA, NIS2, GDPR mapped to MITRE ATT&CK, D3FEND, and CWE. Authored by Adam Lundqvist, reviewed continuously, agent-callable via MCP.
Browse by framework
DORA
EU 2022/2554Digital Operational Resilience Act
Annual pentesting + risk management for EU financial entities.
NIS2
EU 2022/2555Network and Information Security Directive 2
Risk management measures for essential and important entities.
GDPR
EU 2016/679General Data Protection Regulation
Security of processing for personal data (Art. 32).
ISO 27001
ISO/IEC 27001:2022Information Security Management Systems
International standard for ISMS implementation.
Latest compliance cross-walks
Every page maps regulatory obligations to concrete ATT&CK techniques + D3FEND mitigations + CWE weaknesses. Confidence-scored, voice-validated, agent-callable.
AI_ACT-Art. 10
AI_ACT-Art. 12
AI_ACT-Art. 14
AI_ACT-Art. 15
AI_ACT-Art. 72
AI_ACT-Art. 73
AI_ACT-Art. 9
CIS_v8-13
Model Context Protocol
Query the graph from your agent
cs-graph is a live MCP server, not a static site. Point Claude, Cursor, or any MCP client at the endpoint and your agent can look up techniques, CVEs, and EU-compliance mappings — every answer corroborator-scored and source-cited.
https://mcp.kb.squr.ai/mcpWeekly KEV + EU-compliance brief
New CISA KEV entries, freshly mapped DORA/NIS2 controls, and graph changelog — one email a week. No spam.