"How to Use MacOS" matching MCP connectors:
GET /v1/connectors – MCP directory API referenceMatching Connector Tools:
Magery Forge is a security-audit engine for people who ship code fast and don't have a security team. Use cases: • Pre-release security check • Weekly automated security monitoring • Agent-driven security scanning (MCP) • Clearing a shipped product of common vulnerabilities before users hit them
Email security and AI discoverability scores for any domain, with the exact record or tag to fix.
Secure MCP Server for WordPress connects AI assistants and agents to WordPress with secure, controlled access. It lets AI interact with WordPress through MCP while helping organizations manage access, enforce policies, protect non-human identities (NHI), and require human approval for sensitive actions. Use it to securely connect tools such as ChatGPT, Claude, and Cursor with WordPress. Marketplace Link: https://wordpress.org/plugins/miniorange-secure-mcp-server/ Official website: https://plugins.miniorange.com/mcp-server-ai-policy-enforcement-wordpress
Zero-auth cryptographic provenance and notarization engine anchoring AI outputs, audits, and agreements to TON Blockchain with strict zero-storage.
Verifies which domain officially belongs to a software product, AI tool, or company, so the agent stops handing users lookalike download sites. Ownership only, never safety. Every verdict is backed by reproducible evidence. Tools: get_official_url(name), verify_url(url). No auth required.
Hosted, OAuth-gated endpoint for quantakrypto's post-quantum crypto tools: scan code for quantum-vulnerable cryptography (RSA/ECDH/ECDSA/DH) and get NIST ML-KEM/ML-DSA/SLH-DSA migration guidance over authenticated HTTP — nothing to install. Sign-in required (Google/GitHub/email). Same tools as the open-source @quantakrypto/mcp server; source at github.com/quantakrypto/pqc-tools.
Hextrap's MCP Connector protects your LLM coding sessions from installing malicious dependencies, typosquats, unpopular packages, and enforces your strict allow and deny lists. No setup means your LLM uses MCP to configure itself to use Hextrap's proxy's automatically, enforcing your firewall rules immediately. Manage your allow and deny lists right from your favorite LLM.
Live-checks whether a WordPress site is ready to be safely operated by AI agents.
Persistent knowledge graph for AI-augmented teams. Store decisions, findings, and standing rules across agent sessions with semantic search and typed connections. Includes cross-session memory, audit trail, workspace isolation, and secret detection. Built for teams running agents that need to remember. Free until launch with team tier as default, anon trial available.
Domain security reconnaissance tools for AI agents via Model Context Protocol. 13 security tools — DNS, SSL, HTTP headers, email auth, port scan, propagation, reverse DNS, ASN/BGP, RDAP/WHOIS, subnet calc, and comprehensive security scan — callable from Claude Desktop and any MCP-compatible AI agent. Part of DechoNet. Every tool here is also a free web tool at dechonet.com — no sign-up, no API key — backed by error-fix guides. This package brings the same checks to AI agents.
Self-destructing secret sharing for AI agents: encrypted burn links for credentials, plus an agent-to-agent dead-drop with exactly-once claim semantics. RAM-only, no database, open source (MIT). Source: https://github.com/mmmpym/flashpaper
Signed, offline-verifiable safety scores for the MCP servers, packages & tools an agent connects to
Human approval for irreversible AI agent actions, bound to the exact tool call by a passkey tap
Verify a photo's capture time and provenance: C2PA validation, EXIF/XMP, and pixel forensics. Free keyless use; one clear verdict per image. C2PA Conformant Validator, listed on the C2PA Conforming Products List.
Scan a page for content planted to hijack an AI browsing/shopping agent before it acts on the page.
PhishTank MCP — wraps PhishTank API (checkurl.phishtank.com)
x402-gated safety checker for npm and PyPI packages. Built for AI coding agents to call before running npm install or pip install — flags nonexistent/typosquatted names, known CVEs (OSV.dev), and suspiciously new or low-download packages. $0.005 USDC per check on Base mainnet
Submit files and URLs to a malware sandbox, poll scans, fetch reports, hashes and IOCs.
AI-operated. Two free DKIM readers, no signup: reads keys, finds the selector. Paid roster $99.
Retired. Use com.stratalize/stratalize.