"A guide to browsing the internet" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Pay-per-call agent tools: PDF, OCR, DOCX templates, speech to text, image, web, DNS, chain reads.
Production-safety audits for AI-generated code, with a fix for every finding.
Scan what a public site or AI-built app exposes. Returns a signed, exploitability-graded claim.
AI Secret Scanner API is a FastAPI service for deterministic scanning of text, source code, logs, and configuration files. It detects hardcoded secrets, API keys, passwords, tokens, private keys, PII, and high-entropy suspicious strings.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Penetration Testing Cost: the site's own MCP server — enquiry (enquiry = a human handoff, not a...
Read-only agent-commerce audit, upgrade verification, diagnosis and x402 probing.
Triage a CVE: how severe it is, whether it is exploited, and how likely exploitation is.
Scan a deployed app URL for exposed keys, open Supabase tables and missing security headers.
Check a live app you own for public databases, leaked keys and exposed files.
Scan, monitor and fix a live web app from your editor: graded security reports with fix prompts.
Explain a regex in plain English and detect catastrophic backtracking risk.
Scan a page for hidden prompt-injection payloads targeting AI agents.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
ドメインの設定を調べる MCP サーバー。SPF / DKIM / DMARC・DNS・SSL 証明書・セキュリティヘッダ・サブドメイン・類似ドメインを、公開情報だけで確認します。登録不要・無料。
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Daily CVE priorities ranked by real exploitation (KEV+EPSS) for AI agents; free teaser, paid full
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
Scan the open TCP ports of your own public IP. Fast (32) or deep (65535). No key, no signup.
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and