"Context7 - Tool or Service Lookup" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Manufacturer-cited router default logins and compliance check, plus MAC/OUI vendor lookup. Free.
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
ACAO star-or-origin, value discarded
Scan any MCP server for tool-poisoning, security, auth & license. Trust score before install.
Check if an MCP server tool changed or hides injection patterns before you trust it.
Scan configs, files, or text for leaked secrets and obvious misconfigurations. Nothing stored.
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
Scan the open TCP ports of your own public IP. Fast (32) or deep (65535). No key, no signup.
Find the right security-disclosure contact for any internet asset (domain, IP, package, repo, app).
TLPTOracle — 17-tool TIBER-EU TLPT framework: scope, threat intel, scenarios, reports.
Scan any URL, domain, or IP address for security threats using URLScanner.online. Returns a full security report including: Threat verdict (safe / suspicious / malicious) and 0–100 security score Threat intelligence across 70+ feeds (malware, phishing, blocklists) SSL certificate validity, expiry, issuer, and OCSP status HTTP security headers audit (missing / misconfigured) DNS records (A, AAAA, MX, TXT, NS, SOA) And More! Free to use. No account required. 10 scans/day
Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard.
Security research: MCP registries verify identity, not tool behavior. See gtfo.dev.
Security reviews, threat models over a repo or website, and remediation tracking, in your editor.
Hyperion — MCP tool marketplace for AI agents: web, OSINT, security, research via one key.
Security scanner for MCP servers. Detect vulnerabilities, prompt injection, and tool poisoning.