"OWASP Dependency-Check" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Free lockfile malware check plus paid behavioral scan of packages, agent skills and MCP tools.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
Manufacturer-cited router default logins and compliance check, plus MAC/OUI vendor lookup. Free.
Check a live app you own for public databases, leaked keys and exposed files.
Check breach exposure for your verified email and check locally computed password hash prefixes.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
Check dependencies against CISA's real Known Exploited Vulnerabilities feed.
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Dependency vulns & malicious-package advisories. Register in-session — free testnet funds.
Check if an MCP server tool changed or hides injection patterns before you trust it.
Security scanner for n8n workflows + live MCP Trust-Check. 18 rules, OWASP mapped. Paid x402 API.
Check a dependency list against CISA's live Known Exploited Vulnerabilities catalog.
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
CVE intelligence, STRIDE, OWASP test cases via Ansvar Gateway. Cited, OAuth + paid.
Free no-account URL security scan: 0-100 Launch Readiness score for any live site in ~15 seconds.
MEOK MCP Hardening MCP — automated security red-team for any MCP server. Maps OWASP LLM Top 10
Deep security scans of repos you own from your editor: dependency CVEs, SAST, git-history secrets.
A skeptical senior-engineer code reviewer over MCP: risk-scans unified diffs, flags AI-generated-code tells, reports complexity hotspots, scans for leaked secrets, and runs an OWASP security pass — real analyzers, no external APIs. Free tier, no signup.