"A server for finding resources, tools, and communities related to Figma (design software)" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Free website privacy scanner for pre-consent cookies, trackers, consent, policy, and HTTPS/TLS.
Production-safety audits for AI-generated code, with a fix for every finding.
Security scanner for MCP servers and skills: Unicode injection, patterns, secrets.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Passive domain-perimeter checks — cert expiry, subdomain takeover, lookalikes — as agent tools
Check a dependency list against CISA's live Known Exploited Vulnerabilities catalog.
Honeypot probe data: IP reputation, scanners, CVE probing, TLS and SSH fingerprints.
Scan a page for content planted to hijack an AI browsing/shopping agent before it acts on the page.
Check a live app you own for public databases, leaked keys and exposed files.
Verify a vuln report's file/line/function claims against a real GitHub repo.
55 tools, 7 Resources, Sigma rules, email SPF/DMARC, MITRE, CVE/KEV, risk_score. No key.
Check breach exposure for your verified email and check locally computed password hash prefixes.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Scan a page for hidden prompt-injection payloads targeting AI agents.
Read-only agent-commerce audit for UCP, x402, remediation and verification evidence.
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
Explain a regex in plain English and detect catastrophic backtracking risk.
Penetration Testing Cost: the site's own MCP server — enquiry (enquiry = a human handoff, not a...
Experimental MCP server for current empirical verification of explicit public HTTPS endpoint claims.
Free lockfile malware check plus paid behavioral scan of packages, agent skills and MCP tools.