Skip to main content
Glama
96,058 servers. Updated

Matching MCP tools:

Matching MCP Connectors:

"Bambu Lab" matching MCP servers:

GET /v1/servers – MCP directory API reference
  • A
    license
    A
    quality
    C
    maintenance
    Enables guided security evaluation of a virtual lab machine, including network scanning, HTTP/TLS analysis, OWASP Top 10 assessment, and Markdown report generation, without performing exploitation.
    8
    MIT
  • F
    license
    B
    quality
    C
    maintenance
    A security research MCP server for testing tool call safety with deterministic policies like allowlists, path boundary enforcement, SSRF prevention, output redaction, and prompt injection detection, without requiring external LLMs or API keys.
    6
    -
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables threat intelligence for SOC and DFIR workflows, including IOC enrichment, CVE and threat actor lookup, domain scanning, and account-based scan management.
    2
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables users to statically analyze regular expressions for catastrophic-backtracking (ReDoS) risk through real AST parsing rather than executing the pattern, flagging nested quantifiers, ambiguous alternation, and backreferences. It also generates candidate proof-of-concept attack strings with a timeout-guarded test snippet and suggests JavaScript-safe rewrites.
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables users to scan AI agent skills and configuration files for hidden Unicode instructions, prompt injection, download-and-execute payloads, exfiltration patterns, and overly broad permissions before installation. It provides static audit tools for skill files, agent configs, and revealing hidden text without executing or fetching the input.
    MIT
  • A
    license
    Not graded
    quality
    Not graded
    maintenance
    Exposes common CTF and cybersecurity tools (crypto, forensics, malware analysis, steganography, reverse engineering, pwn, OSINT) so LLMs can help solve capture-the-flag challenges in a controlled lab environment.
    -
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables users to audit other MCP servers' tool definitions for agentic attack classes such as tool poisoning, sensitive-path references in metadata, and tool shadowing via invisible Unicode or homoglyphs. It can analyze a tools/list payload, check a single description string, or connect to a public remote MCP URL to fetch and audit its tool list.
    MIT
  • A
    license
    Not graded
    quality
    A
    maintenance
    Enables sudo-free management of /etc/hosts entries for Hack The Box and lab work, with a zero-dependency MCP server for AI coding agents.
    MIT
  • A
    license
    Not graded
    quality
    D
    maintenance
    A rogue MCP server (~90 lines) that demonstrates prompt injection via tool responses to achieve remote code execution on a developer's machine.
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Authorized Android pentest lab, drivable by hand or by AI — Frida bypass chain, live traffic capture with automatic IDOR flagging, full MCP control plane, web dashboard.
    8
    MIT
  • A
    license
    Not graded
    quality
    A
    maintenance
    Self-hosted MCP server that gives AI agents structured access to OpenVAS vulnerability scanning without sending data externally.
    4
    Apache 2.0
  • A
    license
    Not graded
    quality
    A
    maintenance
    Enables AI agents to perform endpoint security scanning using AlienVault OTX and VirusTotal, including multi-platform scans, threat intelligence queries, and scan data persistence.
    26 npm
    3
    MIT
  • F
    license
    Not graded
    quality
    D
    maintenance
    Wraps common web penetration testing tools in a Docker container and exposes them as Claude tools for educational use in controlled lab environments.
    -
  • F
    license
    Not graded
    quality
    B
    maintenance
    A deliberately vulnerable MCP server demonstrating API key exposure through hardcoding, plaintext logging, and returning secrets to the model, part of the OWASP MCP Top 10 security lab.
    -
  • F
    license
    Not graded
    quality
    B
    maintenance
    Enables hands-on exploration of common MCP security vulnerabilities through locally runnable vulnerable and fixed servers with accompanying exploits and a dashboard.
    -