"An overview of penetration testing (pentest)" matching MCP connectors:
Matching Connector Tools:
A skeptical senior-engineer code reviewer over MCP: risk-scans unified diffs, flags AI-generated-code tells, reports complexity hotspots, scans for leaked secrets, and runs an OWASP security pass — real analyzers, no external APIs. Free tier, no signup.
Free lockfile malware check plus paid pre-install scan of any skill, tool, or package.
Check if an MCP server tool changed or hides injection patterns before you trust it.
Verificação de segurança e conformidade de sites: cabeçalhos, TLS, DNS, e-mail, LGPD e pentest.
Query 90 days of honeypot probe data: IP reputation, scanners, CVE probing, TLS/SSH fingerprints.
Offline methodology engine for authorized penetration testing, CTF, and security research.
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
Scan the open TCP ports of your own public IP. Fast (32) or deep (65535). No key, no signup.
Linux kernel CVE analyzer: upload a .config, get a CycloneDX VEX report of affecting CVEs.
Security research canary remote MCP server for owned-account testing.
AI security scanner for Solidity + free CC0 dataset of Sherlock audit-competition acceptance rates.
MCP server for Pentest-Tools.com: run scans, manage findings and reports via your preffered LLM.
Programmatic control of the Hiro security platform: scans, tasks, plans, and approvals.
Deep security scans of repos you own from your editor: dependency CVEs, SAST, git-history secrets.