"Understanding VS Code Agents or Extensions" matching MCP connectors:
Matching Connector Tools:
Scan code for quantum-vulnerable cryptography and get NIST post-quantum migration guidance.
Hosted, OAuth-gated endpoint for quantakrypto's post-quantum crypto tools: scan code for quantum-vulnerable cryptography (RSA/ECDH/ECDSA/DH) and get NIST ML-KEM/ML-DSA/SLH-DSA migration guidance over authenticated HTTP — nothing to install. Sign-in required (Google/GitHub/email). Same tools as the open-source @quantakrypto/mcp server; source at github.com/quantakrypto/pqc-tools.
Proves AI-generated Python does what you asked: lint, types, security, sandbox run, exact fixes.
Honest library picks for coding agents in 25-360 tokens. Tells your agent what NOT to install.
Agentic code review, no signup to try: reality gates + frontier-model review, with veto.
Ground-truth code graph for your codebase: exact callers, callees, symbols & dependencies.
Repository evidence for agents before they adopt dependencies, enter codebases, compare, or merge.
Dev-registry data: npm/PyPI/Docker/VS Code packages, dep graphs, vulns, 50+ ecosystems.
Design review for UI code: 291 rules, scored 0-100 with fixes and git-applyable patches.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Zero-install security baseline for AI coding agents — OWASP/CWE-cited rules over MCP.
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
Rams is a design reviewer for UI code. The MCP server puts the hosted engine inside a coding agent: the agent passes files to the review_files tool and gets back a 0–100 score with file:line issues and concrete fixes — accessibility, color, typography, spacing, components, UX, motion, craft, and native SwiftUI. Same engine and scoring as the Rams GitHub App. 258 rules, published at rams.ai/rules. Free tier: 30 reviews/month.
OSS libs in your stack, really used: source, tests, callers. C#, Java, TS, Python, Rust, PHP+.
Runs your code against a contract; returns HELD or BROKE at the exact input. Deterministic.
AI-native git hosting — repos, PRs, issues, CI gates, and AI code review over MCP (60 tools).
Multi-model code review: a panel of models + detectors return a pass/fail verdict. Paid via x402.
An MCP server that gives your AI access to the source code and docs of all public github repos
MCP gateway with 10 tools for code analysis, architecture, package audit & security.