Task · Coding
Best AI agents to scan code for vulnerabilities
This task needs 2 capabilities. 19 tools cover all of them; 920 cover at least one.
| # | Tool | Coverage | Access | Trust | Seen |
|---|---|---|---|---|---|
| 851 | Framekeep Public DiscoveryMCP Read-only discovery of Framekeep capabilities, security boundaries, and public resources. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 852 | toolsMCP 61 text, security, converter, calculator, and PDF tools -- callable via MCP on one host. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 853 | FillTrust security questionnaire corpusMCP Guidance for answering vendor security questionnaires. Every result carries the page it came from. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 854 | FEDLIN ScannersMCP Exposes FEDLIN's public security scanners as agent-callable tools over Streamable HTTP. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 855 | Exploit Intelligence Platform — CVE, Vulnerability and Exploit DatabaseMCP Real-time CVE, exploit, and vulnerability intelligence for AI assistants (350K+ CVEs, 115K+ PoCs) | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 856 | XRay-VisionMCP AI-powered codebase analysis — call graphs, security, dead code, complexity. 150+ tools. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 857 | ReviewGuardMCP Safety boundary for agent written GitHub PR reviews: pending and invisible, submitting is opt-in | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 858 | exploitwatchMCP Check a dependency list against CISA's live Known Exploited Vulnerabilities catalog. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 859 | triageshieldMCP Verify a vuln report's file/line/function claims against a real GitHub repo. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 860 | vercelpycheckMCP Scan a public GitHub repo for known Vercel Python-runtime deploy footguns. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 861 | DataNexus MCPMCP Public data intelligence for AI agents — CVE, compliance, patents, contracts, domains. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 862 | CVElens Vulnerability IntelligenceMCP CVE triage in one call: NVD, CVSS, CISA KEV, EPSS, public exploits and an explained risk score. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 863 | Crimson CrawlerMCP Enrich, search, assess, and manage threat intelligence through 80+ typed MCP tools. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 864 | Security Intel MCPMCP CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 865 | mcp-shieldMCP Trust verification for MCP servers. Check scores, scan for security issues, search 4,200+ servers. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 866 | cve-intelligenceMCP CVE intelligence: exploitation (KEV/EPSS), detection coverage, fixed versions. All tools keyless. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 867 | ContrastAPIMCP 55 tools, 7 Resources, Sigma rules, email SPF/DMARC, MITRE, CVE/KEV, risk_score. No key. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 868 | mcp-safeguardMCP MCP server security scanner: detects prompt injection, credential leaks, SSRF, tool poisoning. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 869 | Cinderfi — Retirement PlanningMCP Retirement planning for Canada & US. CPP/OAS, Social Security, RRSP/TFSA, 401k/IRA, Monte Carlo. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 870 | Bright SecurityMCP Enables AI agents to access Bright Security tools for app discovery and security testing. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 871 | Black Duck Security ScannerMCP AI-powered security scanning using Black Duck Signal for vulnerability detection. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 872 | aribot-mcpMCP Threat modeling, code, API & cloud security, shadow-AI & compliance governance. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 873 | AstraVerify Domain Trust CheckMCP Email security and AI discoverability scores for any domain, with the exact record or tag to fix. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 874 | arc-securityMCP Scan AI agent skills for 25 attack classes + runtime monitoring. 1,316+ findings. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 875 | ArcjetMCP An MCP server for Arcjet - the runtime security platform that ships with your AI code. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 876 | LaunchTrustMCP Compliance & security scan for your app: secrets, exposed files, headers, privacy, AI-disclosure. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 877 | GitResumeMCP Validate, build, and publish the resume you keep as YAML in your own GitHub repository. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 878 | ZEN SecDBMCP ZEN SecDB MCP server for CVE intelligence, CVSS/EPSS scoring, advisories, SSVC, and package audits. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 879 | blitz.cloudMCP Host apps in the EU from your assistant: App Store, Docker, GitHub, databases, logs. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 880 | salesforce-devopsMCP Plan Salesforce deploys, open pull requests and trigger pipelines from your AI client. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 881 | ProfitCollectorMCP 22 pay-per-call developer, security, network and data utilities using x402 on Base. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 882 | zenableMCP Zenable cleans up sloppy AI code and prevents vulnerabilities with deterministic guardrails | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 883 | exploitwatchMCP Check dependencies against CISA's real Known Exploited Vulnerabilities feed. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 884 | triageshieldMCP Verify a vuln report's file/line/function claims against a real GitHub repo. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 885 | Sitejar Web Compliance ScannerMCP Scan a web page for accessibility, security, privacy, quality and SEO issues, with fixes. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 886 | rezeeMCP Issues, pull requests, docs, chat and CI runs across a rezee workspace. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 887 | ThornGuardMCP Remote MCP security gateway for auth, redaction, policy enforcement, and audit logging. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 888 | Verificate MCPMCP Agentic code review, no signup to try: reality gates + frontier-model review, with veto. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 889 | auditMCP AI website growth audits: SEO, performance, AI readiness (GEO), conversion, a11y, security. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 890 | Python Code ValidatorMCP Proves AI-generated Python does what you asked: lint, types, security, sandbox run, exact fixes. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 891 | the drainMCP Plain-text security bulletin board for AI agents: read, search, post, reply. No auth to read. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 892 | StrixMCP AI pentesting: run scans, triage vulnerabilities, review PRs, manage schedules and assets. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 893 | smithery-ai-githubMCP Access the GitHub API, enabling file operations, repository management, search functionality, and… | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 894 | saidsef-mcp-github-pr-issue-analyserMCP A Model Context Protocol (MCP) application for automated GitHub PR analysis and issue management.… | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 895 | Hint-Services-obsidian-github-mcpMCP Connect AI assistants to your GitHub-hosted Obsidian vault to seamlessly access, search, and analy… | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 896 | SkillTotalMCP Deterministic security scan of MCP servers, agent skills and npm/PyPI packages. Runs locally. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 897 | QlaneMCP AI QA that runs your app in a browser on every pull request: projects, test targets, test cases. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 898 | Norma by Quality CloudsMCP Deterministic AI code review, with an audit record. Governance inside the agent loop. | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 899 | mcpMCP Research-backed linting + generation for agent context files (CLAUDE.md, AGENTS.md, Cursor rules). | 50% | REMOTELOCAL | DECLARED | 5d ago |
| 900 | RFP.aiMCP Draft cited RFP and security questionnaire answers from your knowledge base, with human review | 50% | REMOTELOCAL | DECLARED | 5d ago |
Coverage = share of this task's required capabilities that an agent or tool documents. For AI agents, capabilities are those stated on the vendor's website; for tools, they are matched automatically from the publisher's description (keyword method, low confidence).