wellknown
SearchCapabilitiesReliabilityJournalSourcesDocs
/mcpAdd to your agentSign in
wellknown

A live, machine-queryable index of AI agents, MCP servers and tools. Every record separates what publishers declare from what we observed.

Product
  • Search
  • Capabilities
  • Reliability report
  • Journal
  • Sources & freshness
  • Network status
Developers
  • Documentation
  • HTTP API
  • MCP server
  • Claim an agent
  • Dashboard
For machines
  • llms.txt
  • openapi.json
  • agent-card.json
  • sitemap.xml
  • About our crawler
Records are indexed from public sources and attributed to them. Observed data is ours; declared data is theirs.v0.1 · early network
Capabilities/Code/code.security-review

Security Review

Find vulnerabilities and insecure patterns in code.

107 records7 liveRefine in search →
creed-kgMCP serverMCP
by agent0072927
Unknown

A knowledge graph of your codebase, exposed as an MCP server — so AI coding agents stop re-deriving structure from grep and Read on every request.

Knowledge GraphsSecurity Review~75%
npm:creed-kg · local package159/wkpublished 14 d ago
rea-agentsMCP serverMCP
by morluto
Unknown

Reverse engineer anything from your terminal or agent with one CLI and MCP server.

Security Review~75%
npm:rea-agents · local package158/wkpublished 27 d ago
codebase-contextMCP serverMCP
by PatrickSys
Unknown

Bounded conventions map and local-pattern discovery for AI coding agents. Local-first MCP server with AST-backed hybrid search.

Vector SearchSecurity Review~75%Filesystem~62%
npm:codebase-context · local package123/wkpublished 5 mo ago
@nugehs/bouncerMCP serverMCP
by nugehs
Unknown

bouncer — static compliance-controls checker. Verifies the controls a regulation requires actually exist in your code (UK Online Safety Act, ICO Children's Code), as deterministic rule packs. No LLM required.

CI/CD & DeploySecurity Review~75%3D & Design~64%
npm:@nugehs/bouncer · local package120/wkpublished 3 mo ago
depscope-mcpMCP serverMCP
by depscope
Unknown

Package Intelligence MCP server for AI agents. Stops hallucinated/malicious package installs across 19 ecosystems (npm, PyPI, Cargo, Go, Maven, NuGet, RubyGems, Composer, Pub, Hex, Swift, CocoaPods, CPAN, Hackage, CRAN, Conda, Homebrew, JSR, Julia). 22 to

Packages & DependenciesSecurity Review~75%Security Scanning~66%
npm:depscope-mcp · local package117/wkpublished 4 mo ago
@ghostlygawd/codewebMCP serverMCP
by ghostlygawd
Unknown

Your agents break less code and burn fewer tokens. codeweb maps your repo into a deterministic call/import graph; 28 MCP tools answer impact, callers, and duplication before agents write. Claude Code plugin & MCP server; zero deps, runs 100% locally.

RefactoringKnowledge Graphs~100%Security Review~75%Reporting & Dashboards~75%
npm:@ghostlygawd/codeweb · local package114/wkpublished 3 d ago
@vk0/code-impact-mcpMCP serverMCP
by vk0
Unknown

Lightweight pre-commit safety gate for AI agents. Answers 'is this change safe?' with PASS/WARN/BLOCK verdict in seconds. Zero setup, no database.

RefactoringSecurity Review~75%Knowledge Graphs~62%
npm:@vk0/code-impact-mcp · local package113/wkpublished 3 mo ago
proof-of-commitmentMCP serverMCP
by piiiico
Unknown

Supply chain security risk scorer for npm, PyPI, Cargo, and Go packages — behavioral signals that can't be faked

Security ReviewPackages & DependenciesSecurity ScanningCI/CD & Deploy
npm:proof-of-commitment · local package105/wkpublished 3 mo ago
leakrank-guardMCP serverMCP
by leakrank
Unknown

Scans your code changes for leaked secrets and insecure configuration, and returns actionable fixes to your AI coding agent. MCP server plus CLI for Claude Code, Cursor, Codex and Windsurf.

Secrets ManagementSecurity ReviewDatabases~68%Security Scanning~66%Version Control~58%
npm:leakrank-guard · local package96/wkpublished 1 mo ago
@assurly/mcp-serverMCP serverMCP
by tibco87
Unknown

MCP server that gives Cursor, Claude Code, VS Code and Windsurf a pre-deploy ship gate. Five tools: scan a path or files, explain a rule, read a hosted verdict, and audit the agent stack itself (MCP config and instruction files).

CI/CD & Deploy~100%DatabasesSecurity Review~75%Prompt Management~64%
npm:@assurly/mcp-server · local package88/wkpublished 1 mo ago
arc-securityMCP serverMCP
by com.arcself
Unknown

Scan AI agent skills for 25 attack classes + runtime monitoring. 1,316+ findings.

Monitoring & Observability~100%Security ReviewSecurity ScanningPrompt Management~64%
npm:arc-security-mcp · local package87/wkpublished 7 mo ago
@inkog-io/mcpMCP serverMCP
by cloakmaster
Unknown

Security co-pilot for AI agents. Scan for vulnerabilities, verify governance, audit MCP servers, and generate compliance reports — all from Claude, Cursor, or any MCP client.

Security ReviewWorkflow AutomationSecurity Scanning~66%3D & Design~64%Prompt Management~64%
npm:@inkog-io/mcp · local package86/wkpublished 4 mo ago
evidriftMCP serverMCP
by bm1016bm-svg
Unknown

Turn failing JSON requests into replay-verified reductions, and catch TypeScript or OpenAPI contract drift before merge.

Contracts & Legal~100%API AccessCI/CD & DeployCode Generation~75%Security Review~75%
npm:evidrift · local package84/wkpublished 1 mo ago
@finishkit/mcpMCP serverMCP
by d4dfin
Unknown

MCP server for FinishKit. Production readiness scanner for AI-built apps. Enables AI agents in Claude, Cursor, Windsurf, and VS Code to check if code is ready to ship.

Code Review~100%Security Review~100%CI/CD & DeploySecurity Scanning~100%Version Control
npm:@finishkit/mcp · local package83/wkpublished 5 mo ago
@plumpslabs/kumaMCP serverMCP
by plumpylabs
Unknown

Safety-first context & orchestration engine for AI coding agents. MCP server with mandatory research pipeline, knowledge graph, impact analysis, decision memory, and safety guard — works with any MCP client.

Code Generation~100%Code Review~100%Knowledge Graphs~84%Security Review~75%Version Control~58%
npm:@plumpslabs/kuma · local package83/wkpublished 27 d ago
dependency-fitness-mcpMCP serverMCP
by tweedbeetle
Unknown

MCP server that returns a cross-validated dependency FITNESS verdict for npm packages: deprecated / yanked / superseded status plus an inferred safe migration target — what to move to and how confident we are — cross-checked across the npm registry, deps.

RefactoringPackages & DependenciesCode Generation~75%Security Review~75%
npm:dependency-fitness-mcp · local package70/wkpublished 3 mo ago
calllint-mcpMCP serverMCP
by calllint
Unknown

MCP server for CallLint — a static preflight safety gate for MCP servers and agent tools. Use before installing or approving other MCP servers. Never executes the server it judges.

Security Review~75%
npm:calllint-mcp · local package70/wkpublished 2 mo ago
@nugehs/aiglareMCP serverMCP
by nugehs
Unknown

aiglare: audit AI/LLM features in any JS/TS codebase for governance guardrails. Finds where model output reaches users or side-effects without confidence handling, fallbacks, validation, or human-in-the-loop.

CI/CD & DeploySecurity Review~75%
npm:@nugehs/aiglare · local package65/wkpublished 3 mo ago
mcp-server-npm-plusMCP serverMCP
by ofershap
Unknown

MCP server for npm — search packages, check bundle sizes, scan vulnerabilities, compare downloads, and inspect dependencies

Security ReviewPackages & Dependencies
npm:mcp-server-npm-plus · local package56/wkpublished 6 mo ago
hexwitnessMCP serverMCP
by siaginw
Unknown

Evidence-first reverse-engineering workbench for humans and AI agents

Security Review~75%Agent Memory~64%Knowledge Graphs~62%
npm:hexwitness · local package54/wkpublished 25 d ago
← Previouspage 3 of 6Next →
Machine query
GET /api/v1/search?capability=code.security-review&status=live
Aliases

security review, vulnerability, vulnerabilities, sast, static analysis, cve, secure code, security scan, dependency audit

Also in Code
  • Code Generation
  • Code Review
  • Testing
  • Refactoring
  • Code Documentation
  • Code Execution
  • Debugging