"How to Connect to a PostgreSQL Server" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Production-safety audits for AI-generated code, with a fix for every finding.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Search and audit NIST NVD CVEs by keyword, severity, CWE, CISA KEV status, and CPE.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
Offline methodology engine for authorized penetration testing, CTF, and security research.
Check a live app you own for public databases, leaked keys and exposed files.
Scan a page for content planted to hijack an AI browsing/shopping agent before it acts on the page.
Discover a site's pages from its sitemap and sample them for WCAG and prompt-injection risk.
Verify a vuln report's file/line/function claims against a real GitHub repo.
Check a dependency list against CISA's live Known Exploited Vulnerabilities catalog.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Scan a page for hidden prompt-injection payloads targeting AI agents.
Read-only agent-commerce audit for UCP, x402, remediation and verification evidence.
Explain a regex in plain English and detect catastrophic backtracking risk.
Penetration Testing Cost: the site's own MCP server — enquiry (enquiry = a human handoff, not a...
Free, read-only security scanner for remote MCP servers, before you connect them.
Experimental MCP server for current empirical verification of explicit public HTTPS endpoint claims.
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Scan any MCP server for tool-poisoning, security, auth & license. Trust score before install.
Exposes FEDLIN's public security scanners as agent-callable tools over Streamable HTTP.