"Chess.com" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Production-safety audits for AI-generated code, with a fix for every finding.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Search and audit NIST NVD CVEs by keyword, severity, CWE, CISA KEV status, and CPE.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
20 domain recon tools for AI agents: DNS, SSL, headers, email, subdomains, lookalikes, changes.
Offline methodology engine for authorized penetration testing, CTF, and security research.
55 tools, 7 Resources, Sigma rules, email SPF/DMARC, MITRE, CVE/KEV, risk_score. No key.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
Explain a regex in plain English and detect catastrophic backtracking risk.
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Exploit-DB: new public exploits & PoCs, daily. Register in-session — free testnet funds.
Dependency vulns & malicious-package advisories. Register in-session — free testnet funds.
Exposes FEDLIN's public security scanners as agent-callable tools over Streamable HTTP.
Scan the open TCP ports of your own public IP. Fast (32) or deep (65535). No key, no signup.
Threat modeling, code/cloud/pipeline scanning, shadow-AI discovery, compliance checks and fixes.
Formally-verified injection/exfiltration detector for AI agents (MCP-02).
Scan your home network and local machine for security risks, open ports, weak Wi-Fi, unknown devices. Providing with a trust score and clear explanations.
Scan a page for content planted to hijack an AI browsing/shopping agent before it acts on the page.