"How to create the most intelligent agent" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Passive domain-perimeter checks — cert expiry, subdomain takeover, lookalikes — as agent tools
Penetration Testing Cost: the site's own MCP server — enquiry (enquiry = a human handoff, not a...
Free lockfile malware check plus paid behavioral scan of packages, agent skills and MCP tools.
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Scan agent skills and MCP servers for malicious patterns before you load them
Exposes FEDLIN's public security scanners as agent-callable tools over Streamable HTTP.
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
Scan the open TCP ports of your own public IP. Fast (32) or deep (65535). No key, no signup.
Find the right security-disclosure contact for any internet asset (domain, IP, package, repo, app).
Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard.
IaC attack-path auditor: finds internet-to-crown-jewel chains in Terraform/CFN/K8s.
Post-quantum cryptography (PQC) vulnerability scanner. Detects ECDSA, RSA, AES-128 and other quantum-vulnerable algorithms in GitHub/GitLab/Bitbucket repos and Ethereum smart contracts. Returns risk score 0-100, CBOM (CycloneDX 1.6), and migration paths to NIST FIPS 203/204/205. Free tier: 10 scans/day, no key required.
Scan any URL, domain, or IP address for security threats using URLScanner.online. Returns a full security report including: Threat verdict (safe / suspicious / malicious) and 0–100 security score Threat intelligence across 70+ feeds (malware, phishing, blocklists) SSL certificate validity, expiry, issuer, and OCSP status HTTP security headers audit (missing / misconfigured) DNS records (A, AAAA, MX, TXT, NS, SOA) And More! Free to use. No account required. 10 scans/day
Hunt zero-days by talking to binaries. 40+ tools. Hosted, OAuth + SSO, invite: hi@byteray.ai
Five free MCP tools, including proof-before-payment preview, plus one authorized x402 pack.
Programmatic control of the Hiro security platform: scans, tasks, plans, and approvals.
- NocticasOAuth via extensioncom.nocticas
Browser QA agent that won't return a false green: verified PASS/FAIL + access-control probing.
MCP server for the Revensi API. Scan domains from any MCP client.
A paid remote MCP for developer endpoint scanner MCP, built to return verdicts, receipts, usage logs