Skip to main content
Glama
95,080 servers. Updated

Matching MCP tools:

Matching MCP Connectors:

"Persistent" matching MCP servers:

GET /v1/servers – MCP directory API reference
  • F
    license
    A
    quality
    C
    maintenance
    MCP server providing direct tool-access to security-testing primitives for bug bounty hunting, including recon, request replay, IDOR/BOLA fuzzing, vulnerability detection, secrets scanning, and persistent hunt memory with confidence-scored findings.
    38
    -
  • F
    license
    B
    quality
    D
    maintenance
    A simple MCP server exposing persistent, scriptable Frida dynamic instrumentation to an AI agent for Windows reversing, malware/security analysis, and dynamic debugging.
    19
    -
  • A
    license
    Not graded
    quality
    A
    maintenance
    Enables proof-backed code audit via MCP tools for AST-based code maps, symbol lookup, callers, audit commands, and persistent verdict memory.
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables authorized web/API security analysis as a stateful, multi-stage workflow with persistent session state, human-controlled validation, candidate versus confirmed finding tracking, and stop conditions.
    1
    MIT
  • A
    license
    Not graded
    quality
    F
    maintenance
    Enables AI agents to perform autonomous penetration testing on any Linux distribution via SSH with persistent tmux sessions, supporting interactive tools like Metasploit, reverse shells, and complex multi-step security workflows.
    18
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables autonomous AI agents and penetration testers to conduct authorized security audits with persistent cross-session memory, zero-trust secret scrubbing, dynamic OWASP/ASVS checklists, and hallucination-free exploit PoC generation from captured traffic.
    1
    MIT
  • A
    license
    Not graded
    quality
    A
    maintenance
    Enables AI agents to perform stateful Windows RPC attack-surface research through a persistent PowerShell engine, including RPC parsing, live connections, method invocation, and built-in CVE-2024–2026 methodology tools such as context-handle scanning, fuzzing, and endpoint discovery.
    12
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    This MCP server connects LLM clients to a persistent Kali Linux VM over SSH, enabling scope-gated nmap, gobuster, nuclei, and nikto scans with structured JSON output and full audit logging.
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    This MCP server offers 72 typed tools for Kali Linux pentesting, including recon, web, AD, cracking, C2, remote desktop, and tunneling. It provides structured JSON output, persistent session state, and auto-populated findings for streamlined workflows.
    MIT
  • A
    license
    Not graded
    quality
    Not graded
    maintenance
    A Kali Linux-based MCP server that exposes over 45 penetration testing tools for AI-assisted security auditing and vulnerability scanning. It features strict scope enforcement, structured output parsing, and persistent finding storage to automate the offensive security workflow.
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables local, persistent analysis of business workflows and application state from imported Burp XML or HAR traffic, building actor/entity/state graphs and generating testable hypotheses for manual validation during authorized security testing.
    MIT
  • F
    license
    Not graded
    quality
    D
    maintenance
    Enables adaptive binary 0day research with persistent knowledge graph and adaptive planning, automating vulnerability analysis and exploit development through HexStrike and local tools via MCP.
    -