"An exploration of software project management principles and practices" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Free website privacy scanner for pre-consent cookies, trackers, consent, policy, and HTTPS/TLS.
Security scanner for MCP servers and skills: Unicode injection, patterns, secrets.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
Offline methodology engine for authorized penetration testing, CTF, and security research.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Manufacturer-cited router default logins and compliance check, plus MAC/OUI vendor lookup. Free.
Check a live app you own for public databases, leaked keys and exposed files.
Scan a page for content planted to hijack an AI browsing/shopping agent before it acts on the page.
Discover a site's pages from its sitemap and sample them for WCAG and prompt-injection risk.
Honeypot probe data: IP reputation, scanners, CVE probing, TLS and SSH fingerprints.
Read-only agent-commerce audit for UCP, x402, remediation and verification evidence.
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
Explain a regex in plain English and detect catastrophic backtracking risk.
Experimental MCP server for current empirical verification of explicit public HTTPS endpoint claims.
Free lockfile malware check plus paid behavioral scan of packages, agent skills and MCP tools.
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Exploit-DB: new public exploits & PoCs, daily. Register in-session — free testnet funds.
Scan agent skills and MCP servers for malicious patterns before you load them
Check if an MCP server tool changed or hides injection patterns before you trust it.