SecurityScan is answering right now. Last checked 9 min ago. It exposes 8 tools.
Scan GitHub-hosted AI skills for vulnerabilities: prompt injection, malware, OWASP LLM Top 10.
The linked repository no longer exists on GitHub — it was deleted or made private.
Every tool that appeared, vanished or quietly changed what it asks for. Recorded since 29 August 2026. No other catalogue keeps this.
A tool that vanishes takes a piece of your agent with it, and the change arrives silently. Watch this server and every such change lands in your inbox.
Endpoint below is the one we actually reach during checks — not the one copied from a README. Last verified 9 min ago.
claude mcp add securityscan --transport http https://apisecurityscan.net/mcp
{
"mcpServers": {
"securityscan": {
"url": "https://apisecurityscan.net/mcp"
}
}
}
[mcp_servers.securityscan]
url = "https://apisecurityscan.net/mcp"
{
"mcpServers": {
"securityscan": {
"url": "https://apisecurityscan.net/mcp"
}
}
}
{
"mcpServers": {
"securityscan": {
"url": "https://apisecurityscan.net/mcp"
}
}
}
Read directly from the server with tools/list, grouped by what they act on.
If a tool disappears, we record the date.
scan_secrets
scan_skill
securityscan_checkout
securityscan_pricing
audit_mcp_server_config
check_dependencies
full_stack_audit
network_scan
Tools this server used to expose. Anything built against them stopped working on the day they went.
securitystack_checkout
securitystack_pricing
| URL | Transport | State | Latency | Checked |
|---|---|---|---|---|
| https://apisecurityscan.net/mcp | streamable-http | answering | 347 ms | 9 min ago |
FinishKit MCP: scan GitHub repos for security vulnerabilities, deployment blockers, and quality
Trigger security scans and read reports/vulnerabilities via the hosted Scannd API. Free: 2 scans/mo.
AI security layer: code scanning, PII detection, prompt injection, secrets, CVEs
MCP server that scans your repo's dependencies for security vulnerabilities based on published CVEs.
Analyzes code for bugs, security vulnerabilities, and code smells
Safe, self-hosted OWASP ZAP operator for guided AI security scans and reports.
35-probe LLM/agent security red-team scan (injection, jailbreak, MCP abuse) with report.
Vulnerability management: scan projects, search sealed packages, manage sealing rules and reports.
Answers built from our own checks of this server.