"Parrot Security" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Security scanner for MCP servers and skills: Unicode injection, patterns, secrets.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Offline methodology engine for authorized penetration testing, CTF, and security research.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.
Free, read-only security scanner for remote MCP servers, before you connect them.
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Read-only smart-contract security intelligence for autonomous agents.
Dependency vulns & malicious-package advisories. Register in-session — free testnet funds.
Scan any MCP server for tool-poisoning, security, auth & license. Trust score before install.
Exposes FEDLIN's public security scanners as agent-callable tools over Streamable HTTP.
Pay-per-call cybersecurity for AI agents: vuln scans, threat intel, compliance, code security.
Security, SEO and AI-visibility scanner for web apps · free scans and focused checks via MCP.
Find the right security-disclosure contact for any internet asset (domain, IP, package, repo, app).
Compliance & security scan for your app: secrets, exposed files, headers, privacy, AI-disclosure.
Formally-verified injection/exfiltration detector for AI agents (MCP-02).
Scan your home network and local machine for security risks, open ports, weak Wi-Fi, unknown devices. Providing with a trust score and clear explanations.
Scan any URL, domain, or IP address for security threats using URLScanner.online. Returns a full security report including: Threat verdict (safe / suspicious / malicious) and 0–100 security score Threat intelligence across 70+ feeds (malware, phishing, blocklists) SSL certificate validity, expiry, issuer, and OCSP status HTTP security headers audit (missing / misconfigured) DNS records (A, AAAA, MX, TXT, NS, SOA) And More! Free to use. No account required. 10 scans/day
Security scanner for n8n workflows + live MCP Trust-Check. 18 rules, OWASP mapped. Paid x402 API.
35-probe LLM/agent security red-team scan (injection, jailbreak, MCP abuse) with report.