List your agent
Task · Coding

Best AI agents to scan code for vulnerabilities

This task needs 2 capabilities. 19 tools cover all of them; 916 cover at least one.

Required capabilities:Code ReviewSecurity Scanning
#ToolCoverageAccessTrustSeen
51agent-bomMCP
Security scanner and graph for agentic infrastructure — agents, MCP, runtime, and blast radius.
50%REMOTELOCALDECLARED1d ago
52Dockerfile Security AuditMCP
Audit Dockerfiles for root users, baked-in secrets, curl-pipe-shell and unpinned base images.
50%REMOTELOCALDECLARED1d ago
53Agent Skill & Config Security AuditMCP
Scan AI agent skills and configs for hidden Unicode, prompt injection and exfiltration.
50%REMOTELOCALDECLARED1d ago
54Pine Script Strategy AuditMCP
Static analysis for Pine Script v6 strategies — catches backtest-vs-live divergence traps.
50%REMOTELOCALDECLARED1d ago
55uploads.shMCP
Host files from coding agents; stage on a branch and attach to GitHub PRs.
50%REMOTELOCALDECLARED1d ago
56hacktricks-mcpMCP
Offline full-text search over the HackTricks security wiki, synced every 3 days.
50%REMOTELOCALDECLARED1d ago
57GitHubMCP
Connect AI assistants to GitHub - manage repos, issues, PRs, and workflows through natural language.
50%REMOTELOCALDECLARED1d ago
58cubicMCP
Triage cubic AI code review findings, start PR reviews, and read wikis, scans, and team learnings.
50%REMOTELOCALDECLARED1d ago
59GitHub Repo Change IntelligenceMCP
Track public GitHub repos: free snapshot, paid release, star & issue intel via x402 USDC.
50%REMOTELOCALDECLARED1d ago
60OpenOSINTMCP
AI-powered OSINT agent & MCP server. 16 tools: email, breach, IP, WHOIS, DNS, Shodan, GitHub & more.
50%REMOTELOCALDECLARED1d ago
61rrubocopMCP
Fast RuboCop-compatible Ruby linter with MCP inspect and autocorrect tools.
50%REMOTELOCALDECLARED1d ago
62OctoCounts MCP ServerMCP
Analyze and compare public GitHub repo line counts (SLOC) via OctoCounts, from any MCP client.
50%REMOTELOCALDECLARED1d ago
63MCP Server for OSCALMCP
AI agent tools for Open Security Controls Assessment Language (OSCAL)
50%REMOTELOCALDECLARED1d ago
64UpgradeLensMCP
npm/PyPI/Django dependency upgrades: security, runtime compatibility, migration, package ranking.
50%REMOTELOCALDECLARED1d ago
65mcp-netassistMCP
Windows network and proxy diagnostics: GitHub reachability, proxy ports, DNS/TCP, and fixes.
50%REMOTELOCALDECLARED1d ago
66GitHitsMCP
Search public open-source code, documentation, metadata, vulnerabilities, changelogs, and examples.
50%REMOTELOCALDECLARED1d ago
67isMalicious threat intelligence for AI agentsMCP
Indicator reputation verdicts, CVE lookups (CVSS, EPSS, KEV) and prompt-injection scans for agents
50%REMOTELOCALDECLARED1d ago
68DomainDNAMCP
Tech stack, email security (SPF, DMARC, MX provider) and domain age API + MCP. 25 free domains/day.
50%REMOTELOCALDECLARED1d ago
69PG1 Sovereign Threat IntelligenceMCP
STIX IOCs, CVE lookups w/ EPSS/KEV, ATT&CK dossiers, OFAC wallet sanctions, domain age checks.
50%REMOTELOCALDECLARED1d ago
70OSINTMCP
Passive OSINT recon for domains and IPs: whois, DNS, CT logs, email security, TLS, ASN, Shodan
50%REMOTELOCALDECLARED2d ago
71KevscopeMCP
CVE patch priority from CISA KEV, FIRST EPSS, CVSS and SSVC; exploited-CVE feeds.
50%REMOTELOCALDECLARED2d ago
72ohmyho.stMCP
Operate ohmyho.st hosting from your coding agent: deploy GitHub apps, Postgres, mail, domains.
50%REMOTELOCALDECLARED2d ago
73amu-pgvectorMCP
Lineage-gated agent memory tools on Postgres + pgvector, enforced by row-level security.
50%REMOTELOCALDECLARED2d ago
74AgentoolRankMCP
Search, compare and list 460+ open-source AI agent tools ranked by live GitHub activity.
50%REMOTELOCALDECLARED2d ago
75SKUit Network & Security CatalogMCP
AI helper for choosing and speccing network & security products from Cisco, Arista, Juniper and more
50%REMOTELOCALDECLARED2d ago
76Gadriel AI Security HarnessMCP
AI Security Harness: SAST, secrets, deps, containers, config & OWASP LLM. Scans locally.
50%REMOTELOCALDECLARED2d ago
77GitLab MCP ServerMCP
Go MCP server for GitLab: 2 dynamic tools reach 1000+ REST/GraphQL actions. Free/CE, no paid tier.
50%REMOTELOCALDECLARED2d ago
78Gitleaks Cloud - GitHub API Key Hunter & Secret ScannerMCP
Gitleaks Cloud - GitHub API Key Hunter & Secret Scanner
50%REMOTELOCALDECLARED2d ago
79mcp-cinema4dMCP
MCP server for Cinema 4D — entity CRUD, parameter-level access, batched undo, security controls.
50%REMOTELOCALDECLARED2d ago
80Vibe DoctorMCP
Check a deployed web app for security headers, SEO, accessibility and performance, with a grade.
50%REMOTELOCALDECLARED2d ago
81Unchore DefendMCP
Grade a site's security headers with fixes and a badge; read logs or code for the defender.
50%REMOTELOCALDECLARED2d ago
82Email DNS Preflight x402MCP
Paid email, DNS, mail-security and RDAP intelligence for agents over x402.
50%REMOTELOCALDECLARED2d ago
83mcpmMCP
MCP security guard + package manager: trust-scored installs, blocks prompt injection and rug-pulls.
50%REMOTELOCALDECLARED2d ago
84Security MCPMCP
Zero-key security toolkit: grade sites A+ to F, check CVE exploits, plain-English attack defenses
50%REMOTELOCALDECLARED2d ago
85sourceryMCP
Sourcery security findings: MCP server, CLI, and fix-prompt builder over the Sourcery API.
50%REMOTELOCALDECLARED2d ago
86Sam's Club Sponsored Ads APIs (deprecated)MCP
Deprecated; use io.github.alyiox/mcp-walmart-ads.
50%REMOTELOCALDECLARED3d ago
87brainstorm-mcpMCP
Multi-model AI brainstorming debates with code review and quick perspectives
50%REMOTELOCALDECLARED3d ago
88better-code-review-graphMCP
Token-efficient code review knowledge graph: semantic search and call-graph resolution.
50%REMOTELOCALDECLARED3d ago
89GitDiagramMCP
Architecture diagrams, explanations and Mermaid source for public GitHub repositories.
50%REMOTELOCALDECLARED3d ago
90Electron MCP ServerMCP
Electron.js MCP server — IPC scaffolding, security auditing, build tooling for AI assistants
50%REMOTELOCALDECLARED3d ago
91npm Registry MCP ServerMCP
npm registry MCP server — package intelligence, security audits, dependency analysis
50%REMOTELOCALDECLARED3d ago
92MCP Safety WardenMCP
MCP proxy adding security scanning, behavioral profiling, risk gating, and safe tool call execution.
50%REMOTELOCALDECLARED3d ago
93Seal SecurityMCP
Vulnerability management: scan projects, search sealed packages, manage sealing rules and reports.
50%REMOTELOCALDECLARED3d ago
94ask-antigravityMCP
Bridge Claude with Google's Antigravity CLI (agy) for code review and second opinions
50%REMOTELOCALDECLARED3d ago
95Passport.MeMCP
Your Gmail, Calendar, Drive, GitHub, Oura, wallet and reviewed profile facts in any MCP client.
50%REMOTELOCALDECLARED3d ago
96release-radarMCP
Correlate GitHub releases with Sentry issues and PagerDuty incidents.
50%REMOTELOCALDECLARED3d ago
97castleMCP
Investigate security events and manage the allow/deny lists an analyst acts on.
50%REMOTELOCALDECLARED3d ago
98arkgateMCP
When the agent writes a bad import, the write doesn’t land. The same check fails the pull request.
50%REMOTELOCALDECLARED3d ago
99Horry County Construction LeadsMCP
Live Horry County construction leads for low-voltage, networking, security, AV, POS, and electrical.
50%REMOTELOCALDECLARED3d ago
100Google Workspace Admin Security-Audit MCPMCP
MCP server for Google Workspace security auditing — login audit, external sharing, daily brief
50%REMOTELOCALDECLARED3d ago

Coverage = share of this task's required capabilities that an agent or tool documents. For AI agents, capabilities are those stated on the vendor's website; for tools, they are matched automatically from the publisher's description (keyword method, low confidence).