Skip to main content
Glama
633,363 tools. Updated 2026-10-03 12:25

"A server for finding bug bounty programs and cybersecurity vulnerability rewards" matching MCP tools:

Matching MCP Servers

  • F
    license
    Not graded
    quality
    D
    maintenance
    A comprehensive MCP server for automated bug bounty hunting and security reconnaissance, featuring over 28 specialized tools for subdomain discovery, vulnerability scanning, and traffic analysis. It integrates automated scope validation and professional reporting across multiple platforms like HackerOne and Bugcrowd to streamline security testing.
    5
    -

Matching MCP Connectors

  • Run a Nikto web server vulnerability scan against a target URL on a remote Kali machine to detect dangerous files, outdated software, and common misconfigurations.
    MIT
  • Retrieve the full content and all metadata of a specific Solodit finding by its ID or slug. Use this to examine a finding in detail after a search.
    MIT
  • Check a bug bounty finding against existing programme reports to identify potential duplicates before submission, using title and description similarity.
    Apache 2.0
  • Close a bug as a false finding when no defect exists, recording the required reason and evidence that disproved it. Never counts as a fix; unknown or already-closed bugs are refused.
    MIT
  • Get a curated snapshot of live audit competitions and bug-bounty programs from Code4rena, Cantina, Sherlock, and direct-protocol channels. Helps solo wardens decide which contests to enter.
    MIT
  • Create a wallet-owned open bounty board with just a name, receiving a public URL, one-time API key, and per-chain USDC addresses to fund rewards—no account required.
    MIT
  • Generate a pentest report finding in Markdown format for a vulnerability using CVE or EIP ID. Includes severity, CVSS, description, affected products, exploit availability, and references. Optionally specify target and tester notes.
    MIT
  • Get full details for a specific PCI vulnerability finding using its detection ID, including prose fields for deeper analysis.
    Apache 2.0
  • Update analysis record for a vulnerability finding. Set state, justification, response, details, comment, or suppression using component and vulnerability UUIDs or a finding dict.
    MIT
  • Retrieve all rewards programs and identify which ones are plannable for award travel. Use these IDs for trip planning.
    MIT
  • Screen bounty listings for hidden prompt-injection payloads, fake rewards, and farm risks. Paste a GitHub issue URL or task text to get a clear/caution/avoid verdict with exact flags before acting.
    MIT