"Identifying Servers Without Any API Key Configuration" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Scan text, documents, websites, and MCP metadata for prompt injection and sensitive-data risks.
Production-safety audits for AI-generated code, with a fix for every finding.
Security scanner for MCP servers and skills: Unicode injection, patterns, secrets.
Passive domain-perimeter checks — cert expiry, subdomain takeover, lookalikes — as agent tools
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Scan what a public site or AI-built app exposes. Returns a signed, exploitability-graded claim.
55 tools, 7 Resources, Sigma rules, email SPF/DMARC, MITRE, CVE/KEV, risk_score. No key.
Scan any public URL for hidden instructions aimed at AI agents (prompt injection). Free, no auth.
Scan a page for hidden prompt-injection payloads targeting AI agents.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Explain a regex in plain English and detect catastrophic backtracking risk.
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
Check dependencies against CISA's real Known Exploited Vulnerabilities feed.
Free, read-only security scanner for remote MCP servers, before you connect them.
ドメインの設定を調べる MCP サーバー。SPF / DKIM / DMARC・DNS・SSL 証明書・セキュリティヘッダ・サブドメイン・類似ドメインを、公開情報だけで確認します。登録不要・無料。
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Daily CVE priorities ranked by real exploitation (KEV+EPSS) for AI agents; free teaser, paid full
Verificação de segurança e conformidade de sites: cabeçalhos, TLS, DNS, e-mail, LGPD e pentest.
Scan agent skills and MCP servers for malicious patterns before you load them
Scan any MCP server for tool-poisoning, security, auth & license. Trust score before install.