"Information on Security Testing" matching MCP connectors:
GET /v1/connectors — MCP directory API referenceMatching Connector Tools:
Rug pull risk and on-chain forensics for tokens on Solana, Ethereum, Base and Robinhood.
UI Verify is visual regression testing built for coding agents. Connect the MCP server and your agent (Claude Code, Cursor, Codex) pulls a pull request's UI changes into the conversation, views each visual diff, reads the AI judge's verdict of regression vs intended change, and accepts the intended baselines - all over MCP.
Website QA for your coding agent: audit SEO, performance, security, accessibility over MCP.
Receipt checks for expense and bookkeeping agents: normalize receipt text or structured extraction and review arithmetic, confidence and duplicate indicators. Free fixed synthetic example. Caller-supplied analysis: 0.25 USDC on Base via owner-approved x402. No image OCR or automatic bookkeeping.
x402-enabled crypto & macro intelligence pipeline for autonomous agents (Kimchi premium, DEX slippage, honey-pot security, funding rate, macro D-day).
Aggregator wrapping paywalled Coinbase x402 APIs as Model Context Protocol (MCP) tools, settling USDC micropayments on the Base network with integrated cashflow ledgering.
DNS and email security: check SPF, DKIM, DMARC, DNSSEC, DANE and build the records. 45 tools.
Smart contract security screening for Base. Check any contract or token for risk before interacting with it: Solidity source verification, upgradeable proxies and admin or mint powers, holder concentration, dangerous selectors, and B20 issuer powers. It surfaces the usual rug pull and scam indicators. The free tool needs no wallet and no API key; the paid Flash Audit (3.49 USDC over x402) returns a report with an anchored SHA-256. Payment is the only gate.
The miniOrange MCP Server Plugin is a secure WordPress MCP Server that exposes your WordPress site as an MCP endpoint while adding enterprise-grade security, policy enforcement, and complete audit logging. Unlike a basic MCP server that simply connects AI tools to WordPress, this plugin verifies every AI request before it reaches your website. Every request is authenticated, checked against security policies, logged, and can even require human approval before execution.
Never let your agent repeat a bug or linger on a known issue. Search 385+ failure lessons to skip known errors instantly.
Domain security reconnaissance tools for AI agents via Model Context Protocol. 13 security tools — DNS, SSL, HTTP headers, email auth, port scan, propagation, reverse DNS, ASN/BGP, RDAP/WHOIS, subnet calc, and comprehensive security scan — callable from Claude Desktop and any MCP-compatible AI agent. Part of DechoNet. Every tool here is also a free web tool at dechonet.com — no sign-up, no API key — backed by error-fix guides. This package brings the same checks to AI agents.
Set up and run Cromanion, the autonomous conversion agent, on a website you manage for someone.
Taokeh is accounting software for Malaysian SMEs — double-entry books, LHDN e-Invoice (MyInvois), SST, and full statutory payroll — and this connector opens a company's live books to the AI its owner already uses. 59 tools. The reads answer real questions from the ledger: P&L and balance sheet with server-computed comparisons, cash position, A/R and A/P aging, per-channel marketplace sales, an 8-week cash-flow forecast, tax position, document search with e-Invoice standing, and a one-call daily brief. The writes are drafts only — expenses, invoices, bills, quotes, purchase orders, receipts, credit and debit notes, adjusting journals, bank-statement imports and bank-row suggestions — every figure re-checked by the server, every draft waiting for a human tap in Taokeh. The AI can also work the Shoebox: staff snap paper on free phone logins, and the connector lists the pile, reads each photo, and files the draft with the original attached — the server maps its own stored copy, so the document trail stays byte-perfect. One connection is bound to one company at consent; no tool takes a company argument. Migrating from another system? The same connector stages the chart of accounts, opening balances, contacts, products, historical documents and workspace settings onto the owner's own review screens. Bring your own AI subscription — no per-call fees.
Verify before your agent acts on data it paid for. Signed verdicts, checkable offline, via x402.
API documentation drifts away from the running service, so consumers integrate against a contract nobody keeps. Routebase keeps API design, testing, mocking and documentation on one living source of truth, and this MCP server exposes that workspace to AI agents. Agents can design endpoints, write and run test suites, manage mock servers and publish documentation, always under the permissions of the connected Routebase account.
Premium research articles for AI agents with x402 payment on Base network.
Smart contract security screening for Base. Check any contract or token for risk before interacting with it: Solidity source verification, upgradeable proxies and admin or mint powers, holder concentration, dangerous selectors, and B20 issuer powers. It surfaces the usual rug pull and scam indicators. The free tool needs no wallet and no API key; the paid Flash Audit (3.49 USDC over x402) returns a report with an anchored SHA-256. Payment is the only gate.
Testing, benchmarking and auditing autonomous AI agents — methods, harnesses, evidence
Hosted, no-auth endpoint of feldspar-scan: free deterministic security scan of a public git repository (OSV.dev vulnerable dependencies, secret patterns, config lint) as structured JSON. Tools: scan_repository(url), audit_pricing(). Stateless streamable-HTTP JSON-RPC, rate-limited. Source: https://github.com/project-feldspar-resources/feldspar-scan (MIT). Operated by Feldspar, an autonomous AI agent (Project Feldspar).
A public bounty board where AI agents do paid work. USDC on Base, paid on accepted delivery.