Task · Coding
Best AI agents to scan code for vulnerabilities
This task needs 2 capabilities. 19 tools cover all of them; 919 cover at least one.
| # | Tool | Coverage | Access | Trust | Seen |
|---|---|---|---|---|---|
| 551 | fake-star-auditMCP Transparent rule-based GitHub fake-star detector — LOW/MEDIUM/HIGH with per-rule evidence. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 552 | Apiiro Guardian AgentMCP Apiiro Application Security Posture Management (ASPM) tools for AI coding assistants. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 553 | vulnicheckMCP HTTP MCP Server for comprehensive Python vulnerability scanning and security analysis. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 554 | Agentic PlatformMCP Free MCP tools: the only MCP linter, health checks, cost estimation, and trust evaluation. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 555 | clawvault-mcp-serverMCP AI agent payment security - spending limits, whitelists, and human approval. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 556 | KukGitMCP Read and write KukGit repositories, files, issues and pull requests from an AI assistant. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 557 | MCP Assist — Coordination MemoryMCP Coordination memory with verification: reconcile-against-GitHub, verdict freshness, provenance. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 558 | npm-mcpMCP MCP server for npm package management, security analysis, and compatibility checking | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 559 | altr-mcp-serverMCP MCP server for ALTR data security: databases, tags, policies, classification, access, audits | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 560 | ProjectPulse MCPMCP Monitor GitHub repo health, DORA metrics and CI signals from your AI assistant. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 561 | contextforge-mcpMCP Persistent memory MCP server for Claude Code, Cursor, and GitHub Copilot. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 562 | TripwireMCP MCP for Roblox Studio and Open Cloud: drive Studio, run headless tests, and review game security. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 563 | Hares — MCP security scannerMCP Multi-layer security scanner for MCP servers and agent skills (injection, exfiltration) | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 564 | Android Security AnalyzerMCP MCP server for static security analysis of Android source code | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 565 | GitHubMCP Connect AI assistants to GitHub - manage repos, issues, PRs, workflows, and git operations. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 566 | AgentGraph TrustMCP Security scanning and trust verification for AI agent tools. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 567 | OmniGlyphMCP Local symbol ground truth MCP server for Unicode lookup and code-symbol linting. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 568 | MCPower Security ProxyMCP Security proxy that automatically wraps MCP servers with real-time monitoring and policy enforcement | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 569 | defluffMCP Deterministic prose linter for LLM text — flags AI slop, filler, buzzwords, hedges, clichés. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 570 | Prism ScannerMCP Security scanner for AI Agent skills, plugins, and MCP servers with A-F grading. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 571 | ai-supplyMCP Search, install, publish & review security-scanned AI capabilities from ai-supply.store. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 572 | pkgxrayMCP Pre-install security scans for npm packages, MCP servers, and AI agents with cited verdict evidence. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 573 | Self-hosted GitHub MCP serverMCP Self-hosted GitHub MCP server. PAT auth, stdio transport, transport-agnostic so it works with… | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 574 | hotinMCP What's hot in AI right now, ranked with receipts from GitHub, HN, npm and Hugging Face. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 575 | HackTricks MCP ServerMCP Search and query HackTricks pentesting documentation with quick lookup and section extraction | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 576 | mcp-firefly-iiiMCP Security-first, self-hosted MCP server for Firefly III — 152 operations behind 5 scoped tools. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 577 | yotta-verify-mcpMCP Pre-install security scanner for AI agent skills (local stdio MCP). Offline static scan; no upload. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 578 | ProofpointMCP MCP server for Proofpoint TAP — threat intelligence, forensics, quarantine, and email security. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 579 | SpamTitanMCP MCP server for SpamTitan email security — quarantine, allow/block lists, and policy management. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 580 | AvananMCP MCP server for Check Point Harmony Email & Collaboration (Avanan) email security. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 581 | MimecastMCP MCP server for Mimecast email security: message queue, held messages, domains, and threats. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 582 | Avanan MSP (Legacy SmartAPI)MCP MCP server for the legacy Avanan SmartAPI: MSP tenant management plus per-tenant security tools. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 583 | ESET PROTECTMCP MCP server for ESET PROTECT's ESET Connect API - device, EDR, vulnerability, patch, and user data. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 584 | SaaS AlertsMCP MCP server for Kaseya SaaS Alerts — SaaS security monitoring for M365 & Google Workspace. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 585 | KnowBe4MCP MCP server for KnowBe4 security awareness training — users, groups, training, phishing campaigns. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 586 | DNSFilterMCP MCP server for DNSFilter's DNS security/filtering API. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 587 | TelivyMCP MCP server for Telivy's security assessment API for MSPs. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 588 | pincerMCP Secure grip for your agent's secrets - security-hardened MCP gateway with proxy token architecture | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 589 | Scout SecurityMCP Deterministic, zero-token security scanner your AI agent calls to find and re-verify issues. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 590 | AiEGISMCP AI agent security and governance. Register, verify, scan, and monitor agents. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 591 | Abnormal SecurityMCP MCP server for Abnormal Security — AI-powered email threat detection, cases, and remediation. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 592 | Sentinel ScanMCP MCP security scanner: detect tool poisoning, prompt injection & rug-pulls - 10 OWASP heuristics. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 593 | release-gateMCP Pre-deploy security auditor for AI agent code — the risks generic SAST misses. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 594 | blobpediaMCP Celestia knowledge base: CIPs, docs, forum, videos, GitHub, plus live on-chain state | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 595 | Docker Compose AuditMCP Security audit for docker-compose.yml — 25 checks: secrets, privileges, network, volumes, images. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 596 | IAC Audit PackMCP Four IaC audits in one call: Compose, Dockerfile, GitHub Actions, Kubernetes. 131 checks. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 597 | Mund — MCP Security ScannerMCP Scan for prompt injection, secrets, PII, and vet MCP servers before installation | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 598 | ThinkReviewMCP Live PR/MR code reviews via review_url_code. OAuth or portal Bearer auth. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 599 | Kaito Query ServiceMCP AI LLM with Gemini, MiniMax, Replicate, OpenRouter. Vision, search, code review. USDC on Base. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 600 | developer-tools-mcp-serverMCP Access GitHub repos, npm/PyPI packages, Stack Overflow, arXiv, and Google Scholar | 50% | REMOTELOCAL | DECLARED | 5d ago |
Coverage = share of this task's required capabilities that an agent or tool documents. For AI agents, capabilities are those stated on the vendor's website; for tools, they are matched automatically from the publisher's description (keyword method, low confidence).