audit(仓库审计评分)
v0.2.2
io.github.commitshow/audit
按 commit.show 审计评分标准,为任意公开 GitHub 仓库打 0-100 分。
“Security Audit” 共 1,247 个结果
v0.2.2
io.github.commitshow/audit
按 commit.show 审计评分标准,为任意公开 GitHub 仓库打 0-100 分。
v1.0.1
io.github.agentready-market/audit
AgentReady.market audit: can an AI shopping agent find, understand and BUY on this store? /100.
v1.0.0
ai.beket/audit
查看 AI 助手如何回答有关你品牌的问题
v0.2.1
com.sulvo.publisher-revenue-audit/audit
发布商收入审计:ads.txt 与广告栈检查、Sulvo 入驻,以及 Boost 广告拦截恢复。
v1.0.0
ai.webmatik/audit
AI 网站增长审计:SEO、性能、AI 就绪度(GEO)、转化、无障碍与安全。
io.smithery.nexgendata-apify.seo-web-analysis-mcp-server
SEO 审计工具箱:给一个 URL,返回渲染后的内容、技术栈(CMS、CDN、框架)、DNS 记录、SSL 证书状态和 WHOIS。适合竞品分析(“对手用的是什么栈?”)、安全检查,以及对收购目标的尽职调查。
io.smithery.axel-belfort.http-headers
面向 AI 智能体的 HTTP 头安全分析 API。分析任意 URL 的响应头:HSTS、Content-Security-Policy、X-Frame-Options、Referrer-Policy、Permissions-Policy、服务器识别与缓存配置,并给出 0-100 的安全评分。工具:network_analyze_headers。适用于安全审计、网站加固或合规检查。注意:综合可信度评分请用 trust_score_evaluate,仅查 SSL 请用 security_check_ssl。返回:{score, headers[], missing[], server}。无需 API 密钥——在 Base L2 上以 x402 微支付 $0.001/次。
io.smithery.megamind-0x.skillaudit
Security scanner for AI agent skills and MCP servers. Detects credential theft, data exfiltration, prompt injection, obfuscated code, and 80+ threat patterns. Free API + CLI (npx skillaudit). Premium deep scans via x402 micropayments.
io.smithery.axel-belfort.email-deliverability
面向 AI 智能体的邮件送达能力审计 API。分析任意域名的邮件身份验证:SPF 记录校验、DKIM 选择器检查、DMARC 策略分析、MX 记录健康度,并给出 0-100 的综合送达评分与按优先级排列的修复建议。工具:email_audit_deliverability。用于审计邮件基础设施、排查投递问题或在批量发送前检查域名信誉。注意:此项检查的是域名配置,单个邮箱有效性校验请改用 email_verify_address。返回:{score, spf, dkim, dmarc, mx, recommendations[]}。无需 API 密钥——在 Base L2 上以 x402 微支付 $0.005/次。
io.smithery.yakenator.web-inspector
分析单个网页乃至整站在 SEO、可访问性、性能与安全合规方面的表现。生成详细报告与可执行的问题清单,改善站点质量与用户体验。可跟踪历史审计数据,在多次抓取之间监测改进情况。
io.smithery.middlebrick.api-security
Scan any API for OWASP Top 10 vulnerabilities and get a security risk score. Covers authentication, authorization (BOLA/BFLA), injection, data exposure, rate limiting, GraphQL, and LLM security.
io.smithery.daniel-abbay.compuute-scan-api
Static security scanner for MCP servers. POST a public GitHub URL, get severity counts, a score, and the top findings with file+line back. 37 rules across TypeScript, JavaScript, Python, Go, Rust, C#, Java, and Kotlin — every language with an official MCP SDK. Detects argument injection for npx/uvx/pipx/pnpx runner binaries (CWE-88), known CVEs in 40+ top packages, and the usual L0 discovery (transport, tool inventory, dependency pinning). This is a pattern detector, not an exploitability oracle. Around 90% raw false-positive rate on unfiltered output — triage is on you, and the response says so explicitly. POST /v1/scan is free with no API key. POST /v1/scan/pay charges $0.10 USDC per scan via x402 on Base. Manual L2-L4 audits at compuute.se/audit when you need dataflow review. Wraps compuute-scan (MIT, zero deps). Per-rule false-positive rates and the methodology paper live in the repo.
io.smithery.eren-solutions.mcp-security-audit
AI 驱动的代码安全审计器。扫描 GitHub 仓库中的漏洞,给出 OWASP/CWE 依据与修复建议。
v2.0.0
io.github.CallMarcus/securityscorecard-mcp
社区构建的 SecurityScorecard API 全功能 MCP 服务器(非官方)。
v0.2.5
io.github.socraticstatic/chart-color-audit
CI-friendly accessibility audit for chart color palettes: WCAG contrast, CVD simulation, OKLab ΔE.
v0.4.1
io.github.audit0/auditai-mcp
Finds authorization holes in Next.js + Supabase apps and live Supabase databases. No API key.
v3.97.0
com.blackveilsecurity/dns
DNS 与邮件安全扫描器,80 个 MCP 工具覆盖 SPF、DMARC、DNSSEC、SSL 与品牌审计。
v1.2.0
app.openkrill/seo-audit
Audit a website for technical and on-page SEO problems.
v1.0.1
ai.tokenos/contract-audit
Scan Solidity & Anchor code
v1.4.0
dev.workers.fhi-llc-1118.polished-truth-c514/fhi-x402-security-tools
Free payment guide and Base-USDC x402 MCP security, package, domain, and SEC tools.
v1.1.0
io.github.ogasurfproject-jpg/horizon-shield
日本装修报价的公允价格核查:价格区间、结论判定、风险信号与已验证承包商。
v0.8.20260928
io.github.rubrikinc/rubrik-mcp
Connect AI assistants to the Rubrik Security Cloud GraphQL API to discover, query, and automate.
v0.1.7
io.github.Invarato/jarroba-tools-tests
Audits tests instead of writing them: what each one really asserts. 4 tools, local.
v0.1.4
io.github.4hmetuyar/toxic-flow-auditor
Finds lethal-trifecta toxic flows in MCP tool catalogs: untrusted input, sensitive data, egress