"Information about Figma, a design and prototyping tool" matching MCP connectors:
Matching Connector Tools:
A skeptical senior-engineer code reviewer over MCP: risk-scans unified diffs, flags AI-generated-code tells, reports complexity hotspots, scans for leaked secrets, and runs an OWASP security pass — real analyzers, no external APIs. Free tier, no signup.
Scan agent skills and MCP servers for malicious patterns before you load them
Scans MCP servers for tool poisoning, prompt injection and supply chain risks.
Free lockfile malware check plus paid pre-install scan of any skill, tool, or package.
Check if an MCP server tool changed or hides injection patterns before you trust it.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Offline methodology engine for authorized penetration testing, CTF, and security research.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
No-account public website privacy risk scans with 20 new scans/day and free recent-result reuse.
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
Threat modeling, code/cloud/pipeline scanning, shadow-AI discovery, compliance checks and fixes.
ZEN SecDB MCP server for CVE intelligence, CVSS/EPSS scoring, advisories, SSVC, and package audits.
Security, SEO and AI-visibility scanner for web apps · free scans and focused checks via MCP.
Post-quantum cryptography (PQC) vulnerability scanner. Detects ECDSA, RSA, AES-128 and other quantum-vulnerable algorithms in GitHub/GitLab/Bitbucket repos and Ethereum smart contracts. Returns risk score 0-100, CBOM (CycloneDX 1.6), and migration paths to NIST FIPS 203/204/205. Free tier: 10 scans/day, no key required.
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
Scan configs, files, or text for leaked secrets and obvious misconfigurations. Nothing stored.
Linux kernel CVE analyzer: upload a .config, get a CycloneDX VEX report of affecting CVEs.
Scans remote MCP servers for protocol, security, and TLS issues; exposes scan tools via MCP.