"Allowing an AI agent to ask user questions during a task" matching MCP connectors:
Matching Connector Tools:
A skeptical senior-engineer code reviewer over MCP: risk-scans unified diffs, flags AI-generated-code tells, reports complexity hotspots, scans for leaked secrets, and runs an OWASP security pass — real analyzers, no external APIs. Free tier, no signup.
Scan agent skills and MCP servers for malicious patterns before you load them
Check if an MCP server tool changed or hides injection patterns before you trust it.
Pay-per-call cybersecurity for AI agents: vuln scans, threat intel, compliance, code security.
Exposes FEDLIN's public security scanners as agent-callable tools over Streamable HTTP.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard.
No-account public website privacy risk scans with 20 new scans/day and free recent-result reuse.
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
Threat modeling, code/cloud/pipeline scanning, shadow-AI discovery, compliance checks and fixes.
Security, SEO and AI-visibility scanner for web apps · free scans and focused checks via MCP.
Post-quantum cryptography (PQC) vulnerability scanner. Detects ECDSA, RSA, AES-128 and other quantum-vulnerable algorithms in GitHub/GitLab/Bitbucket repos and Ethereum smart contracts. Returns risk score 0-100, CBOM (CycloneDX 1.6), and migration paths to NIST FIPS 203/204/205. Free tier: 10 scans/day, no key required.
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
Compliance & security scan for your app: secrets, exposed files, headers, privacy, AI-disclosure.
Linux kernel CVE analyzer: upload a .config, get a CycloneDX VEX report of affecting CVEs.
Formally-verified injection/exfiltration detector for AI agents (MCP-02).
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
Scan your home network and local machine for security risks, open ports, weak Wi-Fi, unknown devices. Providing with a trust score and clear explanations.
Security tools for AI agents: scan MCP servers, validate HDP delegation chains, audit releases.
IaC attack-path auditor: finds internet-to-crown-jewel chains in Terraform/CFN/K8s.