"How to query a MySQL database" matching MCP connectors:
GET /v1/connectors — MCP directory API referenceMatching Connector Tools:
Production-safety audits for AI-generated code, with a fix for every finding. Scan for committed secrets and known vulnerable dependencies free with no key; a full audit returns a verdict with security, privacy, reliability and architecture findings, priced per audit and quoted before it runs.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Explain a regex in plain English and detect catastrophic backtracking risk.
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
ドメインの設定を調べる MCP サーバー。SPF / DKIM / DMARC・DNS・SSL 証明書・セキュリティヘッダ・サブドメイン・類似ドメインを、公開情報だけで確認します。登録不要・無料。
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
Daily CVE priorities ranked by real exploitation (KEV+EPSS) for AI agents; free teaser, paid full
A skeptical senior-engineer code reviewer over MCP: risk-scans unified diffs, flags AI-generated-code tells, reports complexity hotspots, scans for leaked secrets, and runs an OWASP security pass — real analyzers, no external APIs. Free tier, no signup.
MITRE Common Weakness Enumeration (CWE) API
urlscan.io URL scanner — search/result keyless, submit needs key
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
Linux kernel CVE analyzer: upload a .config, get a CycloneDX VEX report of affecting CVEs.
Find the right security-disclosure contact for any internet asset (domain, IP, package, repo, app).
CVE search, vulnerability database, EPSS exploit prediction, KEV, IP reputation & threat feed.
Scan your home network and local machine for security risks, open ports, weak Wi-Fi, unknown devices. Providing with a trust score and clear explanations.
Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard.