Skip to main content
Glama
67,413 servers. Last updated

Matching MCP tools:

Matching MCP Connectors:

"Understanding and Working with a Huge Codebase" matching MCP servers:

  • F
    license
    -
    quality
    B
    maintenance
    Exposes AI-augmented network reconnaissance and evasion capabilities as callable FastMCP tools, enabling natural language orchestration of host discovery, service fingerprinting, CVE mapping, and attack chain synthesis.
    Last updated
    1
  • A
    license
    B
    quality
    D
    maintenance
    Provides a Model Context Protocol server implementation that allows AI agents and other MCP clients to programmatically interact with DefectDojo, a vulnerability management tool, for managing findings, products, and engagements.
    Last updated
    11
    15
    MIT
  • A
    license
    -
    quality
    D
    maintenance
    A Model Context Protocol (MCP) server for integrating with StackHawk's security scanning platform. Helps developers set up StackHawk, run security scans, and triage findings to fix vulnerabilities — all from within an LLM-powered IDE or chat.
    Last updated
    9
    Apache 2.0
  • A
    license
    -
    quality
    C
    maintenance
    Manual listener MCP server that bridges OpenCode with local security tools via a Flask HTTP service, enabling AI-assisted security operations.
    Last updated
    MIT
  • A
    license
    -
    quality
    D
    maintenance
    Enables AI assistants to execute security testing tools on a Kali Linux machine over SSH, including reconnaissance, web app scanning, and static/dynamic analysis.
    Last updated
    14
    MIT
  • A
    license
    -
    quality
    A
    maintenance
    Bridges AI agents with SafeBreach's Breach and Attack Simulation platform, enabling natural language queries and seamless integration through a multi-server architecture with specialized domains.
    Last updated
    7
    BSD 3-Clause
  • A
    license
    -
    quality
    D
    maintenance
    Enables running Kali Linux security tools and commands in a containerized environment for semi-automated penetration testing, with background job management and out-of-band interaction detection.
    Last updated
    16
    Apache 2.0
  • A
    license
    -
    quality
    B
    maintenance
    Read-only observation of a single live URL: parses static HTML to report security posture, forms, links, accessibility signals, and leaks, with described fixes. SSRF-gated and safe, never executes JavaScript.
    Last updated
    478
    MIT
  • A
    license
    -
    quality
    D
    maintenance
    Enables network security scanning using Nmap through MCP protocol. Supports quick port scans, full port scans with service detection, and custom Nmap commands with async task management.
    Last updated
    3
    MIT
  • F
    license
    -
    quality
    A
    maintenance
    Gorgon Scout is a Windows web-application and API security scanner (DAST). This connector exposes it as MCP tools, so your AI assistant can record a target you are authorised to test, run the scan, stream findings, and produce a report. Capture needs no proxy or certificate setup, and it intercepts HTTP/1.1, HTTP/2, and HTTP/3 (QUIC). Works with the free Claude Desktop plan.
    Last updated
  • A
    license
    -
    quality
    B
    maintenance
    A minimal MCP server that exposes Metasploit Framework tools to LLMs via msfrpcd, enabling automated penetration testing and exploitation.
    Last updated
    MIT
  • A
    license
    -
    quality
    D
    maintenance
    MCP server for SUSE NeuVector container security, exposing inventory, vulnerability, compliance, event, and policy data as 72 typed tools. Read-only by default, with optional mutating toolsets behind a confirmation handshake.
    Last updated
    Apache 2.0