"PlantUML Diagramming Tool and UML Diagram Creation" matching MCP connectors:
GET /v1/connectors — MCP directory API referenceMatching Connector Tools:
Free website privacy scanner for pre-consent cookies, trackers, consent, policy, and HTTPS/TLS.
Honeypot probe data: IP reputation, scanners, CVE probing, TLS and SSH fingerprints.
Free lockfile malware check plus paid behavioral scan of packages, agent skills and MCP tools.
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
A skeptical senior-engineer code reviewer over MCP: risk-scans unified diffs, flags AI-generated-code tells, reports complexity hotspots, scans for leaked secrets, and runs an OWASP security pass — real analyzers, no external APIs. Free tier, no signup.
Offline methodology engine for authorized penetration testing, CTF, and security research.
Scan any MCP server for tool-poisoning, security, auth & license. Trust score before install.
Scan agent skills and MCP servers for malicious patterns before you load them
Check if an MCP server tool changed or hides injection patterns before you trust it.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
ZEN SecDB MCP server for CVE intelligence, CVSS/EPSS scoring, advisories, SSVC, and package audits.
Scan configs, files, or text for leaked secrets and obvious misconfigurations. Nothing stored.
Security, SEO and AI-visibility scanner for web apps · free scans and focused checks via MCP.
Threat modeling, code/cloud/pipeline scanning, shadow-AI discovery, compliance checks and fixes.
Scans remote MCP servers for protocol, security, and TLS issues; exposes scan tools via MCP.
TLPTOracle — 17-tool TIBER-EU TLPT framework: scope, threat intel, scenarios, reports.
AI pentesting: run scans, triage vulnerabilities, review PRs, manage schedules and assets.
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.