"Setting up services on a Linux virtual machine" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Production-safety audits for AI-generated code, with a fix for every finding.
Security scanner for MCP servers and skills: Unicode injection, patterns, secrets.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Passive domain-perimeter checks — cert expiry, subdomain takeover, lookalikes — as agent tools
Scan a page for content planted to hijack an AI browsing/shopping agent before it acts on the page.
Check a live app you own for public databases, leaked keys and exposed files.
Discover a site's pages from its sitemap and sample them for WCAG and prompt-injection risk.
Verify a vuln report's file/line/function claims against a real GitHub repo.
Check a dependency list against CISA's live Known Exploited Vulnerabilities catalog.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Scan a page for hidden prompt-injection payloads targeting AI agents.
Read-only agent-commerce audit for UCP, x402, remediation and verification evidence.
Explain a regex in plain English and detect catastrophic backtracking risk.
Penetration Testing Cost: the site's own MCP server — enquiry (enquiry = a human handoff, not a...
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Read-only smart-contract security intelligence for autonomous agents.
Pay-per-call cybersecurity for AI agents: vuln scans, threat intel, compliance, code security.
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
Linux kernel CVE analyzer: upload a .config, get a CycloneDX VEX report of affecting CVEs.