"Documentation for Save API" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
20 domain recon tools for AI agents: DNS, SSL, headers, email, subdomains, lookalikes, changes.
Production-safety audits for AI-generated code, with a fix for every finding.
Scan text, documents, websites, and MCP metadata for prompt injection and sensitive-data risks.
Free website privacy scanner for pre-consent cookies, trackers, consent, policy, and HTTPS/TLS.
Security scanner for MCP servers and skills: Unicode injection, patterns, secrets.
Passive domain-perimeter checks — cert expiry, subdomain takeover, lookalikes — as agent tools
55 tools, 7 Resources, Sigma rules, email SPF/DMARC, MITRE, CVE/KEV, risk_score. No key.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
WHOIS/RDAP, DNS, SSL, live subdomains with IPs, and SPF/DMARC/DKIM for any domain.
Scan what a public site or AI-built app exposes. Returns a signed, exploitability-graded claim.
MCP server: static security scanner for MCP servers, agent skills & plugins. 17 attack patterns.
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Offline methodology engine for authorized penetration testing, CTF, and security research.
Scan, monitor and fix a live web app from your editor: graded security reports with fix prompts.
Check a live app you own for public databases, leaked keys and exposed files.
Scan any public URL for hidden instructions aimed at AI agents (prompt injection). Free, no auth.
Check breach exposure for your verified email and check locally computed password hash prefixes.
Explain a regex in plain English and detect catastrophic backtracking risk.
Scan a page for hidden prompt-injection payloads targeting AI agents.