Skip to main content
Glama
82,860 servers. Updated

Matching MCP tools:

Matching MCP Connectors:

"MobX-State-Tree" matching MCP servers:

GET /v1/servers — MCP directory API reference
  • A
    license
    A
    quality
    B
    maintenance
    AI-powered penetration testing reasoning engine (MCP server) for attack path planning, step scoring, and tool recommendations using Beam Search and Monte Carlo Tree Search.
    1
    1
    MIT
  • A
    license
    A
    quality
    B
    maintenance
    Enables MCP-compatible agents to query structured penetration testing engagement state captured from tmux sessions, including credentials, hosts, and command provenance with exact source bytes.
    15
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables autonomous bug bounty hunting with H1 auto-submit, profit tracking, and a live dashboard. Coordinates real-time state, credential vault, session management, and payload generation for MCP-compatible AI agents.
    3
    ISC
  • A
    license
    Not graded
    quality
    C
    maintenance
    This MCP server offers 72 typed tools for Kali Linux pentesting, including recon, web, AD, cracking, C2, remote desktop, and tunneling. It provides structured JSON output, persistent session state, and auto-populated findings for streamlined workflows.
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Authorized Android pentest lab, drivable by hand or by AI — Frida bypass chain, live traffic capture with automatic IDOR flagging, full MCP control plane, web dashboard.
    3
    MIT
  • A
    license
    Not graded
    quality
    D
    maintenance
    Enables automated penetration testing workflow planning using Beam Search and Monte Carlo Tree Search algorithms to generate step-by-step attack paths, score vulnerabilities, and recommend tools for reconnaissance, exploitation, and privilege escalation tasks.
    38
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables local, persistent analysis of business workflows and application state from imported Burp XML or HAR traffic, building actor/entity/state graphs and generating testable hypotheses for manual validation during authorized security testing.
    MIT