"Using MySQL to Search a Database" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Production-safety audits for AI-generated code, with a fix for every finding.
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
Search and audit NIST NVD CVEs by keyword, severity, CWE, CISA KEV status, and CPE.
Detect malicious or vulnerable npm packages: registry search, OSV.dev and GitHub advisory lookups
Scan what a public site or AI-built app exposes. Returns a signed, exploitability-graded claim.
Check a live app you own for public databases, leaked keys and exposed files.
Scan a page for hidden prompt-injection payloads targeting AI agents.
Read-only agent-commerce audit for UCP, x402, remediation and verification evidence.
Scan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixes
Explain a regex in plain English and detect catastrophic backtracking risk.
Penetration Testing Cost: the site's own MCP server — enquiry (enquiry = a human handoff, not a...
ドメインの設定を調べる MCP サーバー。SPF / DKIM / DMARC・DNS・SSL 証明書・セキュリティヘッダ・サブドメイン・類似ドメインを、公開情報だけで確認します。登録不要・無料。
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
Exploit-DB: new public exploits & PoCs, daily. Register in-session — free testnet funds.
Daily CVE priorities ranked by real exploitation (KEV+EPSS) for AI agents; free teaser, paid full
Find known subdomains of a domain. Passive data; may include historic entries. List or count.
TE / transfer-encoding token shape
Scan any public site for AI-agent visibility; get scored findings, a machine-readable fix pack, and
Linux kernel CVE analyzer: upload a .config, get a CycloneDX VEX report of affecting CVEs.
Find the right security-disclosure contact for any internet asset (domain, IP, package, repo, app).