"A system or platform with knowledge of all Python packages" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Production-safety audits for AI-generated code, with a fix for every finding.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Penetration Testing Cost: the site's own MCP server — enquiry (enquiry = a human handoff, not a...
Read-only agent-commerce audit, upgrade verification, diagnosis and x402 probing.
WHOIS/RDAP, DNS, SSL, live subdomains with IPs, and SPF/DMARC/DKIM for any domain.
Scan what a public site or AI-built app exposes. Returns a signed, exploitability-graded claim.
Free lockfile malware check plus paid behavioral scan of packages, agent skills and MCP tools.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Scan, monitor and fix a live web app from your editor: graded security reports with fix prompts.
Check a live app you own for public databases, leaked keys and exposed files.
35-probe LLM/agent security red-team scan (injection, jailbreak, MCP abuse) with report.
Explain a regex in plain English and detect catastrophic backtracking risk.
Scan a page for hidden prompt-injection payloads targeting AI agents.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Experimental MCP server for current empirical verification of explicit public HTTPS endpoint claims.
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Exploit-DB: new public exploits & PoCs, daily. Register in-session — free testnet funds.
ACAO star-or-origin, value discarded
Check if an MCP server tool changed or hides injection patterns before you trust it.
Scan configs, files, or text for leaked secrets and obvious misconfigurations. Nothing stored.