Skip to main content
Glama
90,367 servers. Updated

Matching MCP tools:

Matching MCP Connectors:

"Understanding and Evaluating APIs" matching MCP servers:

GET /v1/servers – MCP directory API reference
  • A
    license
    A
    quality
    B
    maintenance
    MCP server that enables LLMs to operate Acunetix/Invicti web vulnerability scanners through 15 tools, covering authentication, target management, scanning, vulnerability retrieval, and reporting via GraphQL and REST APIs.
    15
    1
    MIT
  • A
    license
    B
    quality
    D
    maintenance
    Enables AI agents to query and act on Microsoft Defender XDR incidents, alerts, advanced hunting data, Entra ID logs, threat indicators, device response actions, and vulnerability management via Microsoft Graph and Defender for Endpoint APIs.
    66
    Apache 2.0
  • A
    license
    B
    quality
    C
    maintenance
    Enables generating falsifiable fleet hypotheses, compiling them into minimal bounded probe plans with control cohorts, and evaluating observations to return supported, refuted, or inconclusive verdicts.
    3
    MIT
  • A
    license
    B
    quality
    B
    maintenance
    Enables AI assistants to perform automated security audits on APIs, detecting BOLA/IDOR vulnerabilities by comparing responses across user tokens.
    11
    1
    MIT
  • A
    license
    C
    quality
    D
    maintenance
    A Model Context Protocol server designed for testing backend APIs for security vulnerabilities like authentication bypass, injection attacks, and data leakage.
    14
    16
    MIT
  • A
    license
    Not graded
    quality
    D
    maintenance
    A collection of MCP tools for cybersecurity threat intelligence and local network hacking, integrating APIs like GreyNoise, Malpedia, OpenCTI, and more.
    9
    BSD 2-Clause "Simplified"
  • A
    license
    Not graded
    quality
    A
    maintenance
    Enables AI assistants to drive OWASP ZAP for authorized penetration testing and bug-bounty workflows, including authenticated scans and vulnerability triage through 67 curated safety-gated tools.
    1
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    A high-performance local and public webhook inspector for testing SSRF, APIs, and out-of-band interactions with Cloudflare Quick Tunnel, dynamic mocks, and callback polling for AI agents.
    1
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    An MCP server that measures how effectively hashing tool definitions detects unauthorized changes, evaluating 20 policies across field sets and canonicalization methods. It demonstrates that approval-dialog-based pins miss most attacks, with structural/semantic normalization being free but text folding trading detection for fewer false alarms.
    MIT
  • A
    license
    Not graded
    quality
    D
    maintenance
    Scan APIs for security vulnerabilities and get OWASP risk scores. Detects auth bypass, BOLA/IDOR, data exposure, prompt injection, and 12+ security categories.
    24 npm
    Apache 2.0
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables AI agents to control and analyze RFID hardware through natural language: read, crack, emulate, and clone cards via MCP tools, with safety gates, offline dump analysis, and a host-side card library.
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    Enables AI assistants to perform Volatility 3 memory forensics through natural language, including process and network analysis, injection detection, and shellcode extraction from memory dumps.
    Apache 2.0
  • A
    license
    Not graded
    quality
    C
    maintenance
    MCP server for Frida dynamic instrumentation, enabling AI agents to enumerate devices/processes, attach, inject JavaScript, hook functions, read memory, and collect results via MCP tools.
    1
    MIT
  • F
    license
    Not graded
    quality
    D
    maintenance
    Wraps multiple bug bounty platform APIs (HackerOne, Bugcrowd, etc.) behind a uniform MCP tool surface, enabling LLM agents to query programs, scope, and briefs across platforms through a single interface.
    -
  • F
    license
    Not graded
    quality
    B
    maintenance
    Provides a disposable, hardened Kali Linux sandbox with an MCP interface for LLM-driven security analysis of REST APIs, confining blast radius via container isolation.
    -
  • F
    license
    Not graded
    quality
    C
    maintenance
    Exposes AI-augmented network reconnaissance and evasion capabilities as callable FastMCP tools, enabling natural language orchestration of host discovery, service fingerprinting, CVE mapping, and attack chain synthesis.
    1
    -