Task · Coding
Best AI agents to scan code for vulnerabilities
This task needs 2 capabilities. 19 tools cover all of them; 919 cover at least one.
| # | Tool | Coverage | Access | Trust | Seen |
|---|---|---|---|---|---|
| 501 | cal-auto-pythonMCP Schedule a GitHub Projects backlog into Google Calendar, as a CLI or an MCP server. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 502 | UML ForgeMCP Architecture intelligence, security analysis, and living docs. 14 Mermaid tools. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 503 | datahogoMCP Scan a project for security issues locally with the open-source Data Hogo engine. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 504 | Penniless Data UtilitiesMCP Ten x402-paid tools for JSON, YAML, cron, diff, text, DNS, WHOIS, GitHub, crypto, and email. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 505 | Fray — WAF Security Testing MCP ServerMCP WAF security testing: 5,500+ payloads, 25 WAF fingerprints, 21 recon checks, bypass AI | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 506 | monthly-burnMCP Aggregates monthly cash burn across Anthropic, ElevenLabs, Cloudflare, Stripe fees, GitHub Action... | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 507 | DDG Agent ServicesMCP Pay-per-call x402 gateway: agent tools, OpenAI-compatible LLM, market data, RPC, security audits. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 508 | osv-advisory-mcp-serverMCP Query OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 509 | pentest-mcp-serverMCP Offline methodology engine for authorized penetration testing, CTF, and security research. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 510 | nist-nvd-mcp-serverMCP Search and audit NIST NVD CVEs by keyword, severity, CWE, CISA KEV status, and CPE. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 511 | MCP GitlabMCP Secure MCP server for GitLab projects, merge requests, issues, and pipelines | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 512 | BountyVerdict Agent Decision ToolsMCP Read-only GitHub bounty, agent harness, Actions failure, flake, and MCP tool-drift decisions. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 513 | github-mcp-serverMCP AI-optimized GitHub MCP server: 112 tools, 98% token reduction, compact responses. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 514 | auditMCP Score a public GitHub repo 0-100, or search Legit.Show for launched software by what we measured. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 515 | mcp-niubizMCP MCP server for Niubiz — Peru card acquirer: security token, session, authorize, reverse | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 516 | agentegressMCP See which AI agent and MCP server talks to what on Windows, with a rule-based security verdict | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 517 | CloudBees Unify MCP ServerMCP Connect AI agents to CloudBees Unify: feature flags, CI/CD, release orchestration, and security | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 518 | codebahnMCP Codebahn is the private GitHub alternative: fast Git and CI for developers and teams. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 519 | devflow-mcpMCP MCP server connecting Jira (Cloud + Server) with GitHub/GitLab. Branches, issues, PRs, flows. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 520 | secenv-mcpMCP Centralized secrets manager MCP server. Generate .env files, rotate keys, sync to GitHub Actions. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 521 | FreeToolHubMCP 44 calculators for AI agents: US tax, finance, business + an MCP engineering & security suite. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 522 | wireshark-mcpMCP Professional network analysis with tshark. Security audits, deep-dives, and threat detection. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 523 | protectwith-kbMCP AI-security knowledge as MCP: standards-mapped tools (OWASP, NIST, MITRE) for AI agents. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 524 | mcp-ssh-managerMCP SSH server management for agents, with per-server read-only and allowlist security modes | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 525 | mcp-watchdogMCP MCP security proxy - detects and blocks 40+ MCP attack classes. Zero config. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 526 | TripwireMCP Security gateway for MCP agents: blocks prompt-injection-driven tool calls before they execute. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 527 | Hacker Bob public recordsMCP Read-only public CVE records, capability metadata, and agent instructions from Hacker Bob. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 528 | BlackDome Threat IntelMCP Live honeypot threat intel: attacker IPs, IOCs, credentials, payloads, actors. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 529 | MCP SupersetMCP Apache Superset MCP server — 135+ tools for dashboards, charts, datasets, SQL Lab, and security | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 530 | omni-mcp-serverMCP All-in-one MCP server: GitHub, Git, Slack, web fetch, memory, and filesystem. Agent Mode opt-in. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 531 | OneTool MCPMCP One MCP for devs incl Brave,Google,Tavily,Context7,AWS,Excalidraw,DB,GitHub,DevTools,Playwright | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 532 | B1Brain-WikiMCP Curated GitHub repo corpus with DaVinci insights. Featured=deep analysis; Overview=orientation. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 533 | Octocode MCP - AI Context PlatformMCP AI code research platform. Search, analyze, and extract insights from any GitHub repository. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 534 | ForumsMCP Ask any GitHub repository a question. Get source-backed answers. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 535 | Bawbel ScannerMCP Security scanner for MCP servers and skill files. Detects AVE vulnerabilities before production. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 536 | changegamerMCP Agent-first resource directory for AI agents: protocols, security, RAG, memory, evals, and more. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 537 | Bawbel ScannerMCP Scan MCP servers and skill files for AVE vulnerabilities. Conformance scoring and threat intel. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 538 | DemandScopeMCP Live demand signals for idea validation: npm/PyPI downloads, GitHub + HN attention trends. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 539 | gha-intelMCP Workflow timing analysis, configuration audit and billing insight for GitHub Actions. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 540 | atlassian-dc-mcp-bitbucketMCP MCP server for Atlassian Bitbucket Data Center - interact with repositories and code | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 541 | datafood-mcpMCP DataFood: 16 data sources (crypto/DeFi/security/news/finance) via one MCP. Bundles save ~92%. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 542 | AgentShieldMCP Smart contract security for AI agents — verify, monitor, freeze, x402 payments | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 543 | attestd-mcpMCP CVE checks, supply chain signals, live catalog, and CVE detail for MCP clients (infra, PyPI, npm). | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 544 | AgentAegisMCP Pay-per-call cybersecurity for AI agents: vuln scans, threat intel, compliance, code security. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 545 | RemogramMCP SCM & forge boundary MCP: normalized, typed JSON from attributed Gitea, GitLab, and GitHub providers | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 546 | dvalincodeMCP Deterministic security scanning, no model or API key, plus offline-verifiable proof a fix worked. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 547 | FillinMCP Search for AI agents. Closes the LLM-cutoff gap: CVEs, papers, frontier AI, prediction markets. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 548 | star-trajectoryMCP Transparent rule-based GitHub star-trajectory classifier + calibrated 100-star/48h projection | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 549 | mcp-threatintelMCP Unified threat intel - OTX, AbuseIPDB, GreyNoise, abuse.ch, Feodo Tracker | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 550 | Reuse Before GenerateMCP Checks whether your idea already exists before your agent builds it. Searches GitHub, npm, Python. | 50% | REMOTELOCAL | DECLARED | 5d ago |
Coverage = share of this task's required capabilities that an agent or tool documents. For AI agents, capabilities are those stated on the vendor's website; for tools, they are matched automatically from the publisher's description (keyword method, low confidence).