Skip to main content
Glama
91,372 servers. Updated

Matching MCP tools:

Matching MCP Connectors:

"Comparative Law in Europe, Hong Kong, and America" matching MCP servers:

GET /v1/servers – MCP directory API reference
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables authorized web/API security analysis as a stateful, multi-stage workflow with persistent session state, human-controlled validation, candidate versus confirmed finding tracking, and stop conditions.
    1
    MIT
  • A
    license
    A
    quality
    D
    maintenance
    GhostHunt is an MCP server that scans your development machine for API keys, tokens, and credentials hiding in places you forgot to check.
    4
    37 npm
    MIT
  • A
    license
    A
    quality
    B
    maintenance
    Connects an AI assistant to an already-running mitmweb session so it can read, search, diff, replay, and generate code from the same network flows shown in the UI.
    10
    2
    MIT
  • A
    license
    A
    quality
    C
    maintenance
    Security scanning for MCP servers from the inside out. Provides runtime inspection, AST-based static analysis, config audit, dependency analysis, and OWASP MCP Top 10 compliance in a single MCP server.
    55
    130 npm
    6
    MIT
  • F
    license
    A
    quality
    D
    maintenance
    Connects AI assistants to AttackForge's Self-Service API with full endpoint coverage, response size optimization, and local caching for efficient use in long conversations.
    11
    -
  • A
    license
    C
    quality
    C
    maintenance
    A deliberately vulnerable MCP server for practicing exploitation of tool poisoning, command injection, and path traversal. Includes fixed versions and an agent demo to reproduce the issues in a controlled environment.
    2
    MIT
  • A
    license
    C
    quality
    C
    maintenance
    Exposes every operation in the ConnectSecure OpenAPI specification as an MCP tool, enabling vulnerability management, assets, assessments, integrations, and reporting.
    359
    MIT
  • A
    license
    Not graded
    quality
    D
    maintenance
    Enables running Kali Linux security tools and commands in a containerized environment for semi-automated penetration testing, with background job management and out-of-band interaction detection.
    17
    Apache 2.0
  • A
    license
    Not graded
    quality
    D
    maintenance
    Automatically generates pocsuite3-compliant POC (Proof of Concept) code from vulnerability information, with built-in safety features to prevent harmful payloads and ensure secure security testing.
    4
    MIT
  • A
    license
    Not graded
    quality
    A
    maintenance
    Audits MCP server configurations for security risks including capability inventory, SSRF, prompt injection, and drift detection. Works in read-only mode and can also be used as an MCP server to let AI agents audit their own attack surface.
    41 PyPI
    4
    MIT
  • A
    license
    Not graded
    quality
    D
    maintenance
    A JavaScript reverse engineering MCP server that enables AI coding assistants to debug and analyze JavaScript code in web pages.
    690 npm
    9
    Apache 2.0
  • A
    license
    Not graded
    quality
    Not graded
    maintenance
    Exposes common CTF and cybersecurity tools (crypto, forensics, malware analysis, steganography, reverse engineering, pwn, OSINT) so LLMs can help solve capture-the-flag challenges in a controlled lab environment.
    -
  • A
    license
    Not graded
    quality
    A
    maintenance
    Enables AI assistants to drive OWASP ZAP for authorized penetration testing and bug-bounty workflows, including authenticated scans and vulnerability triage through 67 curated safety-gated tools.
    1
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables security auditing of MCP servers by running them in a sandbox with fake secrets, capturing outbound traffic, and detecting tool poisoning or secret exfiltration before approval.
    19 npm
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables coding agents to scan a public URL in passive or authorized mode and receive only bounded, sanitized structured findings (severity, confidence, standard, evidence, remediation) with quarantined evidence instead of raw page dumps. A second tool lets agents inspect the scanner's safety boundaries and coverage without making any network request.
    MIT
  • F
    license
    Not graded
    quality
    D
    maintenance
    LLM red-team harness that scans for OWASP LLM Top 10 and MITRE ATLAS vulnerabilities, providing prioritized findings in table, JSON, SARIF, or via an MCP server for AI agents.
    -
  • A
    license
    Not graded
    quality
    B
    maintenance
    MCP server that detects and guards against tool poisoning and prompt injection attacks in tool descriptions and schemas. It provides risk scoring, pattern detection, safe rewriting, and audit reports with zero external API cost.
    MIT