"A guide to performing an SEO audit" matching MCP connectors:
GET /v1/connectors — MCP directory API referenceMatching Connector Tools:
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
A skeptical senior-engineer code reviewer over MCP: risk-scans unified diffs, flags AI-generated-code tells, reports complexity hotspots, scans for leaked secrets, and runs an OWASP security pass — real analyzers, no external APIs. Free tier, no signup.
Scan agent skills and MCP servers for malicious patterns before you load them
Check if an MCP server tool changed or hides injection patterns before you trust it.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
Security, SEO and AI-visibility scanner for web apps · free scans and focused checks via MCP.
Linux kernel CVE analyzer: upload a .config, get a CycloneDX VEX report of affecting CVEs.
Scan your home network and local machine for security risks, open ports, weak Wi-Fi, unknown devices. Providing with a trust score and clear explanations.
Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard.
Security tools for AI agents: scan MCP servers, validate HDP delegation chains, audit releases.
IaC attack-path auditor: finds internet-to-crown-jewel chains in Terraform/CFN/K8s.
Post-quantum cryptography (PQC) vulnerability scanner. Detects ECDSA, RSA, AES-128 and other quantum-vulnerable algorithms in GitHub/GitLab/Bitbucket repos and Ethereum smart contracts. Returns risk score 0-100, CBOM (CycloneDX 1.6), and migration paths to NIST FIPS 203/204/205. Free tier: 10 scans/day, no key required.
Scan any URL, domain, or IP address for security threats using URLScanner.online. Returns a full security report including: Threat verdict (safe / suspicious / malicious) and 0–100 security score Threat intelligence across 70+ feeds (malware, phishing, blocklists) SSL certificate validity, expiry, issuer, and OCSP status HTTP security headers audit (missing / misconfigured) DNS records (A, AAAA, MX, TXT, NS, SOA) And More! Free to use. No account required. 10 scans/day
AI security scanner for Solidity + free CC0 dataset of Sherlock audit-competition acceptance rates.
Hunt zero-days by talking to binaries. 40+ tools. Hosted, OAuth + SSO, invite: hi@byteray.ai
Browser QA agent that won't return a false green: verified PASS/FAIL + access-control probing.
A paid remote MCP for developer endpoint scanner MCP, built to return verdicts, receipts, usage logs