"GitHub code repository platform" matching MCP connectors:
GET /v1/connectors — MCP directory API referenceMatching Connector Tools:
Production-safety audits for AI-generated code, with a fix for every finding. Scan for committed secrets and known vulnerable dependencies free with no key; a full audit returns a verdict with security, privacy, reliability and architecture findings, priced per audit and quoted before it runs.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Scan code for quantum-vulnerable cryptography and get NIST post-quantum migration guidance.
Hosted, OAuth-gated endpoint for quantakrypto's post-quantum crypto tools: scan code for quantum-vulnerable cryptography (RSA/ECDH/ECDSA/DH) and get NIST ML-KEM/ML-DSA/SLH-DSA migration guidance over authenticated HTTP — nothing to install. Sign-in required (Google/GitHub/email). Same tools as the open-source @quantakrypto/mcp server; source at github.com/quantakrypto/pqc-tools.
Drupal core API changes, contrib usage, upgrade readiness, patch verdicts, code search, SQL.
Scan GitHub-hosted AI skills for vulnerabilities: prompt injection, malware, OWASP LLM Top 10.
AI product expert answering from live source code, with sources and a verification status.
Scan any public GitHub MCP-server repo for security issues. 37 MCP-specific L1 rules, 8 languages.
Agentic code review, no signup to try: reality gates + frontier-model review, with veto.
Checks AI-written SvGrid code against the real API, plus version-pinned Svelte 5 grid docs.
Proves AI-generated Python does what you asked: lint, types, security, sandbox run, exact fixes.
Risk-scan a diff, flag AI-generated-code tells, find secrets. 5 of 7 tools need no account.
A skeptical senior-engineer code reviewer over MCP: risk-scans unified diffs, flags AI-generated-code tells, reports complexity hotspots, scans for leaked secrets, and runs an OWASP security pass — real analyzers, no external APIs. Free tier, no signup.
Compile code with thousands of compilers, inspect the assembly, and share godbolt.org links
Audit and repair any public GitHub repo. Free survey; paid source, unified diffs and a pull request.
Ground-truth code graph for your codebase: exact callers, callees, symbols & dependencies.
Security + bug + perf + refactor audit for Python. Returns 0-10 score + MD report.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Dev-registry data: npm/PyPI/Docker/VS Code packages, dep graphs, vulns, 50+ ecosystems.