"Using Server-Sent Events (SSE) in the Terminal" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Search and audit NIST NVD CVEs by keyword, severity, CWE, CISA KEV status, and CPE.
Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.
Offline methodology engine for authorized penetration testing, CTF, and security research.
Explain a regex in plain English and detect catastrophic backtracking risk.
Penetration Testing Cost: the site's own MCP server — enquiry (enquiry = a human handoff, not a...
Experimental MCP server for current empirical verification of explicit public HTTPS endpoint claims.
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
454 OSINT recon tools + server-side entity correlation & person sweeps. Keyless.
Exploit-DB: new public exploits & PoCs, daily. Register in-session — free testnet funds.
Dependency vulns & malicious-package advisories. Register in-session — free testnet funds.
Scan any MCP server for tool-poisoning, security, auth & license. Trust score before install.
Exposes FEDLIN's public security scanners as agent-callable tools over Streamable HTTP.
Check if an MCP server tool changed or hides injection patterns before you trust it.
Scan the open TCP ports of your own public IP. Fast (32) or deep (65535). No key, no signup.
ZEN SecDB MCP server for CVE intelligence, CVSS/EPSS scoring, advisories, SSVC, and package audits.
Find the right security-disclosure contact for any internet asset (domain, IP, package, repo, app).
Scan any URL, domain, or IP address for security threats using URLScanner.online. Returns a full security report including: Threat verdict (safe / suspicious / malicious) and 0–100 security score Threat intelligence across 70+ feeds (malware, phishing, blocklists) SSL certificate validity, expiry, issuer, and OCSP status HTTP security headers audit (missing / misconfigured) DNS records (A, AAAA, MX, TXT, NS, SOA) And More! Free to use. No account required. 10 scans/day
Post-quantum cryptography (PQC) vulnerability scanner. Detects ECDSA, RSA, AES-128 and other quantum-vulnerable algorithms in GitHub/GitLab/Bitbucket repos and Ethereum smart contracts. Returns risk score 0-100, CBOM (CycloneDX 1.6), and migration paths to NIST FIPS 203/204/205. Free tier: 10 scans/day, no key required.
Scan a page for content planted to hijack an AI browsing/shopping agent before it acts on the page.
Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard.