"Most downloaded items or content" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Scan what a public site or AI-built app exposes. Returns a signed, exploitability-graded claim.
Exploit-DB: new public exploits & PoCs, daily. Register in-session — free testnet funds.
Daily CVE priorities ranked by real exploitation (KEV+EPSS) for AI agents; free teaser, paid full
ACAO star-or-origin, value discarded
Punycode ACE prefix, host discarded
Permissions-Policy directive count, value discarded
Poly1305 tag length, input discarded
CPE 2.3 wfn field count, value discarded
Check if an MCP server tool changed or hides injection patterns before you trust it.
pcap magic endian, bytes discarded
CSP directive count, value discarded
SWID tagId charset, value discarded
Scan configs, files, or text for leaked secrets and obvious misconfigurations. Nothing stored.
Cookie name charset, value discarded
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
HSTS max-age band, value discarded
TE / transfer-encoding token shape
Scan the open TCP ports of your own public IP. Fast (32) or deep (65535). No key, no signup.
Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard.