"Read-only access to a local Plex server" matching MCP connectors:
Matching Connector Tools:
Check if an MCP server tool changed or hides injection patterns before you trust it.
Exposes FEDLIN's public security scanners as agent-callable tools over Streamable HTTP.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Offline methodology engine for authorized penetration testing, CTF, and security research.
Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
ZEN SecDB MCP server for CVE intelligence, CVSS/EPSS scoring, advisories, SSVC, and package audits.
Post-quantum cryptography (PQC) vulnerability scanner. Detects ECDSA, RSA, AES-128 and other quantum-vulnerable algorithms in GitHub/GitLab/Bitbucket repos and Ethereum smart contracts. Returns risk score 0-100, CBOM (CycloneDX 1.6), and migration paths to NIST FIPS 203/204/205. Free tier: 10 scans/day, no key required.
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
Linux kernel CVE analyzer: upload a .config, get a CycloneDX VEX report of affecting CVEs.
Scan your home network and local machine for security risks, open ports, weak Wi-Fi, unknown devices. Providing with a trust score and clear explanations.
Security research canary remote MCP server for owned-account testing.
Security audits for WordPress plugins and themes — 62 verification layers, fix plans and SBOMs.
IaC attack-path auditor: finds internet-to-crown-jewel chains in Terraform/CFN/K8s.
MCP server for Pentest-Tools.com: run scans, manage findings and reports via your preffered LLM.
Scan any URL, domain, or IP address for security threats using URLScanner.online. Returns a full security report including: Threat verdict (safe / suspicious / malicious) and 0–100 security score Threat intelligence across 70+ feeds (malware, phishing, blocklists) SSL certificate validity, expiry, issuer, and OCSP status HTTP security headers audit (missing / misconfigured) DNS records (A, AAAA, MX, TXT, NS, SOA) And More! Free to use. No account required. 10 scans/day
Hunt zero-days by talking to binaries. 40+ tools. Hosted, OAuth + SSO, invite: hi@byteray.ai
Browser QA agent that won't return a false green: verified PASS/FAIL + access-control probing.