"MCP server for contextual codebase analysis and task-focused code understanding" matching MCP connectors:
GET /v1/connectors — MCP directory API referenceMatching Connector Tools:
Production-safety audits for AI-generated code, with a fix for every finding. Scan for committed secrets and known vulnerable dependencies free with no key; a full audit returns a verdict with security, privacy, reliability and architecture findings, priced per audit and quoted before it runs.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
55 tools, 7 Resources, Sigma rules, email SPF/DMARC, MITRE, CVE/KEV, risk_score. No key.
Explain a regex in plain English and detect catastrophic backtracking risk.
Free website privacy scanner for pre-consent cookies, trackers, consent, policy, and HTTPS/TLS.
Experimental MCP server for current empirical verification of explicit public HTTPS endpoint claims.
Honeypot probe data: IP reputation, scanners, CVE probing, TLS and SSH fingerprints.
Free, read-only security scanner for remote MCP servers, before you connect them.
Free lockfile malware check plus paid behavioral scan of packages, agent skills and MCP tools.
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
ドメインの設定を調べる MCP サーバー。SPF / DKIM / DMARC・DNS・SSL 証明書・セキュリティヘッダ・サブドメイン・類似ドメインを、公開情報だけで確認します。登録不要・無料。
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
Daily CVE priorities ranked by real exploitation (KEV+EPSS) for AI agents; free teaser, paid full
A skeptical senior-engineer code reviewer over MCP: risk-scans unified diffs, flags AI-generated-code tells, reports complexity hotspots, scans for leaked secrets, and runs an OWASP security pass — real analyzers, no external APIs. Free tier, no signup.
Offline methodology engine for authorized penetration testing, CTF, and security research.
MITRE Common Weakness Enumeration (CWE) API
Scan any MCP server for tool-poisoning, security, auth & license. Trust score before install.
urlscan.io URL scanner — search/result keyless, submit needs key
Scan agent skills and MCP servers for malicious patterns before you load them
Verificação de segurança e conformidade de sites: cabeçalhos, TLS, DNS, e-mail, LGPD e pentest.