{"product_id":"n8n-webhook-workflow-software-risk-report-with-nvd-epss-claude","title":"N8N Webhook Workflow: Software Risk Report with NVD, EPSS \u0026 Claude","description":"\u003ch3\u003eAutomatically generate a software risk report from a webhook—using NVD, EPSS, CISA KEV signals, and Claude\u003c\/h3\u003e\n\u003cp\u003eThis n8n workflow receives a software vetting request via webhook, gathers vulnerability and supply-chain evidence from public sources like NVD, EPSS, CISA KEV, and more, then uses Anthropic Claude to draft a structured Markdown risk report—sent by email and logged for tracking.\u003c\/p\u003e\n\n\u003ch3\u003eWhat this workflow does\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003e\n\u003cstrong\u003eReceives and normalizes intake:\u003c\/strong\u003e Accepts a POST webhook request containing software\/vendor details, normalizes fields into a tracking record, and assigns initial risk flags and a tier label.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eAcknowledges immediately:\u003c\/strong\u003e Returns a JSON response with a \u003cem\u003etracking ID\u003c\/em\u003e and the intake risk tier.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eFinds vulnerability evidence in NVD:\u003c\/strong\u003e Searches the NVD CVE API using keyword-matched CVEs for the product, extracts the highest-signal CVE details, and—when CVEs exist—retrieves \u003cstrong\u003eEPSS probabilities\u003c\/strong\u003e for those CVEs.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eChecks CISA Known Exploited Vulnerabilities:\u003c\/strong\u003e Queries NVD again using the \u003cem\u003ehasKev\u003c\/em\u003e filter to identify matching CVEs that appear in the CISA KEV catalog.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eCollects external context:\u003c\/strong\u003e Pulls breach-related items from \u003cstrong\u003eGoogle News RSS\u003c\/strong\u003e and searches \u003cstrong\u003eSEC EDGAR\u003c\/strong\u003e for vendor cybersecurity disclosures.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eEnhances signals with GitHub and open-source feeds:\u003c\/strong\u003e If a GitHub repository is provided, fetches GitHub metadata and \u003cstrong\u003eOpenSSF Scorecard\u003c\/strong\u003e results. If an OSS package is provided, queries \u003cstrong\u003eOSV\u003c\/strong\u003e and \u003cstrong\u003edeps.dev\u003c\/strong\u003e for vulnerability and version signals.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eDrafts, formats, and delivers the report:\u003c\/strong\u003e Compiles evidence into a weighted risk score, sends the evidence package to \u003cstrong\u003eAnthropic Claude\u003c\/strong\u003e to generate a Markdown assessment, formats an HTML report, emails it via \u003cstrong\u003eMicrosoft Outlook\u003c\/strong\u003e, and logs results in an \u003cstrong\u003en8n Data Table\u003c\/strong\u003e.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eUse cases\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003eSecurity teams and SaaS operators need rapid third-party software risk triage from an automated intake form.\u003c\/li\u003e\n  \u003cli\u003eAutomation engineers want a webhook-driven workflow that produces defensible evidence using NVD, EPSS, and CISA KEV.\u003c\/li\u003e\n  \u003cli\u003eVendor vetting processes can be documented and tracked with consistent reporting and audit-ready history.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eTechnical details\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003e\n\u003cstrong\u003en8n nodes \/ building blocks:\u003c\/strong\u003e webhook, if, code, merge, data table, sticky note.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eExternal data sources:\u003c\/strong\u003e NVD CVE API, EPSS (for discovered CVEs), NVD \u003cem\u003ehasKev\u003c\/em\u003e (CISA KEV), Google News RSS, SEC EDGAR, GitHub metadata, OpenSSF Scorecard, OSV, deps.dev.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eLLM \u0026amp; delivery:\u003c\/strong\u003e Anthropic Claude for Markdown risk assessment; HTML report formatting; email via Microsoft Outlook; results logged in an n8n Data Table.\u003c\/li\u003e\n\u003c\/ul\u003e","brand":"N8N Commerce","offers":[{"title":"Default Title","offer_id":45865756983475,"sku":"N8N-18388","price":42.99,"currency_code":"GBP","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0749\/6279\/6723\/files\/KHioOf0reshAZ8wIIINo__3kY9rchI.png?v=1787043868","url":"https:\/\/buyflowscripts.com\/products\/n8n-webhook-workflow-software-risk-report-with-nvd-epss-claude","provider":"N8N Commerce","version":"1.0","type":"link"}