Skip to main content
Glama
91,385 servers. Updated

Matching MCP tools:

Matching MCP Connectors:

  • A
    license
    A
    quality
    A
    maintenance
    Enables AI agents to access VirusTotal intelligence through MCP, supporting file, URL, domain, and IP lookups, plus analysis, via remote HTTP or local stdio.
    8
    MIT
  • A
    license
    A
    quality
    A
    maintenance
    Local-first, zero-egress security scanner for AI-generated / "vibe-coded" JS/TS. Bundles Opengrep, Gitleaks & Trivy behind one CWE-keyed schema and adds AI-code-specific checks (client-side secret exposure, Supabase RLS, prompt-injection & LLM-output XSS sinks). No account, no telemetry.
    7
    101 npm
    47
    Apache 2.0
  • A
    license
    A
    quality
    C
    maintenance
    Enables structured HTTP request creation and local file ingestion for LLM integration with Burp Suite, reducing malformed requests and token costs.
    20
    7
    MIT
  • F
    license
    A
    quality
    D
    maintenance
    Connects AI assistants to AttackForge's Self-Service API with full endpoint coverage, response size optimization, and local caching for efficient use in long conversations.
    11
    -
  • A
    license
    B
    quality
    C
    maintenance
    Provides local, dependency-free security scanning tools for LLM configurations, prompts, RAG sources, and more, enabling AI coding agents to detect prompt injections and other vulnerabilities without external network access.
    8
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    Manual listener MCP server that bridges OpenCode with local security tools via a Flask HTTP service, enabling AI-assisted security operations.
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Config-driven MCP server that exposes Kali Linux penetration testing tools to AI agents, with automatic tool discovery, man page integration, and local/remote execution modes.
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    Connects AI assistants to HackerOne to pull bug bounty history, program scopes, and report details into a local SQLite database, exposing tools for searching, analyzing, and generating attack briefings using both personal and public disclosed reports.
    355
    MIT
  • A
    license
    Not graded
    quality
    A
    maintenance
    Exposes Burp Suite operations through a local authenticated HTTP server and an MCP stdio bridge, enabling tools like burp_proxy_history via MCP.
    0
    3
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Deterministic, local-first MCP server for IDA Pro and IDA Home, exposing 109 strict-schema operations for reverse engineering with policy-gated mutations, evidence tracking, and broad AI-client support.
    12
    GPL 3.0
  • A
    license
    Not graded
    quality
    D
    maintenance
    A collection of MCP tools for cybersecurity threat intelligence and local network hacking, integrating APIs like GreyNoise, Malpedia, OpenCTI, and more.
    9
    BSD 2-Clause "Simplified"
  • A
    license
    Not graded
    quality
    B
    maintenance
    A high-performance local and public webhook inspector for testing SSRF, APIs, and out-of-band interactions with Cloudflare Quick Tunnel, dynamic mocks, and callback polling for AI agents.
    1
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables AI agents to control a local Chromium browser via CDP for page snapshots, screenshots, human-like interactions, autonomous crawling, API/GraphQL reconnaissance, authenticated differential testing, and Burp-like intercept, repeater, and intruder workflows with scope enforcement and audit logging.
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables AI agents to inspect local GGUF model files for structural, template-security, companion-file, and runtime-advisory risks before deployment, returning machine-readable verdicts via seven MCP tools.
    Apache 2.0
  • A
    license
    Not graded
    quality
    A
    maintenance
    Security scanner for MCP servers — vet an MCP before you wire it into an agent. Detects prompt-injection, credential exfiltration (via taint analysis), RCE, and supply-chain risks, and catches cross-server exfil chains no single server reveals. Zero-dependency local CLI, SARIF output, CI-gateable, no account.
    42 npm
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    A local MCP daemon that turns an agentic coding client into a bug bounty operator, with 103 tools for offensive security testing including MITM proxy, traffic analysis, and OOB callbacks.
    6 npm
    2
    MIT
  • A
    license
    Not graded
    quality
    A
    maintenance
    Enables coding agents to interact with Frida for reverse engineering: connect to local, USB, and remote devices; inspect apps and processes; manage sessions; and load, evaluate, and exchange messages with JavaScript instrumentation scripts, including fetching community scripts from Frida CodeShare.
    25
    MIT