"A guide to CI/CD (Continuous Integration and Continuous Deployment)" matching MCP connectors:
Matching Connector Tools:
Verify a skill, tool, or package for malicious behavior before your agent installs it. Hosted.
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
No-account public website privacy risk scans with 20 new scans/day and free recent-result reuse.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
Threat modeling, code/cloud/pipeline scanning, shadow-AI discovery, compliance checks and fixes.
Security, SEO and AI-visibility scanner for web apps · free scans and focused checks via MCP.
ZEN SecDB MCP server for CVE intelligence, CVSS/EPSS scoring, advisories, SSVC, and package audits.
Post-quantum cryptography (PQC) vulnerability scanner. Detects ECDSA, RSA, AES-128 and other quantum-vulnerable algorithms in GitHub/GitLab/Bitbucket repos and Ethereum smart contracts. Returns risk score 0-100, CBOM (CycloneDX 1.6), and migration paths to NIST FIPS 203/204/205. Free tier: 10 scans/day, no key required.
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
Scan configs, files, or text for leaked secrets and obvious misconfigurations. Nothing stored.
Offline methodology engine for authorized penetration testing, CTF, and security research.
Linux kernel CVE analyzer: upload a .config, get a CycloneDX VEX report of affecting CVEs.
Scans remote MCP servers for protocol, security, and TLS issues; exposes scan tools via MCP.
Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard.
Real-time CVE, exploit, and vulnerability intelligence for AI assistants (350K+ CVEs, 115K+ PoCs)
IaC attack-path auditor: finds internet-to-crown-jewel chains in Terraform/CFN/K8s.
CTEM for your Trusteed tenant: security summary, findings, compliance gaps, and scans via OAuth.
Scan any URL, domain, or IP address for security threats using URLScanner.online. Returns a full security report including: Threat verdict (safe / suspicious / malicious) and 0–100 security score Threat intelligence across 70+ feeds (malware, phishing, blocklists) SSL certificate validity, expiry, issuer, and OCSP status HTTP security headers audit (missing / misconfigured) DNS records (A, AAAA, MX, TXT, NS, SOA) And More! Free to use. No account required. 10 scans/day
Browser QA agent that won't return a false green: verified PASS/FAIL + access-control probing.
Hunt zero-days by talking to binaries. 40+ tools. Hosted, OAuth + SSO, invite: hi@byteray.ai