"A server to build a knowledge base of Node.js packages with RAG search functionality" matching MCP connectors:
Matching Connector Tools:
A skeptical senior-engineer code reviewer over MCP: risk-scans unified diffs, flags AI-generated-code tells, reports complexity hotspots, scans for leaked secrets, and runs an OWASP security pass — real analyzers, no external APIs. Free tier, no signup.
Free lockfile malware check plus paid pre-install scan of any skill, tool, or package.
Check if an MCP server tool changed or hides injection patterns before you trust it.
Exposes FEDLIN's public security scanners as agent-callable tools over Streamable HTTP.
Query 90 days of honeypot probe data: IP reputation, scanners, CVE probing, TLS/SSH fingerprints.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Offline methodology engine for authorized penetration testing, CTF, and security research.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
urlscan.io URL scanner — search/result keyless, submit needs key
No-account public website privacy risk scans with 20 new scans/day and free recent-result reuse.
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
ZEN SecDB MCP server for CVE intelligence, CVSS/EPSS scoring, advisories, SSVC, and package audits.
Post-quantum cryptography (PQC) vulnerability scanner. Detects ECDSA, RSA, AES-128 and other quantum-vulnerable algorithms in GitHub/GitLab/Bitbucket repos and Ethereum smart contracts. Returns risk score 0-100, CBOM (CycloneDX 1.6), and migration paths to NIST FIPS 203/204/205. Free tier: 10 scans/day, no key required.
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
Scan the open TCP ports of your own public IP. Fast (32) or deep (65535). No key, no signup.
Linux kernel CVE analyzer: upload a .config, get a CycloneDX VEX report of affecting CVEs.
CVE search, vulnerability database, EPSS exploit prediction, KEV, IP reputation & threat feed.
Scan your home network and local machine for security risks, open ports, weak Wi-Fi, unknown devices. Providing with a trust score and clear explanations.