"File Write and Web Search Tools" matching MCP connectors:
GET /v1/connectors — MCP directory API referenceMatching Connector Tools:
Free lockfile malware check plus paid behavioral scan of packages, agent skills and MCP tools.
Honeypot probe data: IP reputation, scanners, CVE probing, TLS and SSH fingerprints.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
Free website privacy scanner for pre-consent cookies, trackers, consent, policy, and HTTPS/TLS.
55 tools, 7 Resources, Sigma rules, email SPF/DMARC, MITRE, CVE/KEV, risk_score. No key.
A skeptical senior-engineer code reviewer over MCP: risk-scans unified diffs, flags AI-generated-code tells, reports complexity hotspots, scans for leaked secrets, and runs an OWASP security pass — real analyzers, no external APIs. Free tier, no signup.
Offline methodology engine for authorized penetration testing, CTF, and security research.
urlscan.io URL scanner — search/result keyless, submit needs key
Scan agent skills and MCP servers for malicious patterns before you load them
Exposes FEDLIN's public security scanners as agent-callable tools over Streamable HTTP.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
ZEN SecDB MCP server for CVE intelligence, CVSS/EPSS scoring, advisories, SSVC, and package audits.
Scan configs, files, or text for leaked secrets and obvious misconfigurations. Nothing stored.
Security, SEO and AI-visibility scanner for web apps · free scans and focused checks via MCP.
Threat modeling, code/cloud/pipeline scanning, shadow-AI discovery, compliance checks and fixes.
Scans remote MCP servers for protocol, security, and TLS issues; exposes scan tools via MCP.
CyberShield - 12 cybersecurity tools: NIS2 mapping, MITRE ATT&CK, vulns, threat intel.
CVE search, vulnerability database, EPSS exploit prediction, KEV, IP reputation & threat feed.
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.