Every server in the registry, with its latest security score.
Audit one mcp.json for what an agent config gives away — inline API keys, unpinned npx launches, pla
Reads .mcp.json / .vscode/mcp.json / claude_desktop_config.json while you edit it and marks the line
Lints a Hugging Face model card against the Hub metadata spec and the EU AI Act general-purpose AI d
Reads your incident-response runbook and says which of the three Article 23 clocks it gets wrong
Finds the credential in your release workflow that expires before your next release
Finds the lines in an OpenAPI file that publish an endpoint with no authentication, an API key in th
Finds the removed components and renamed attributes in an OpenTelemetry Collector config before the
PCI DSS 4.0.1 requirements 6.4.3 and 11.6.1 have been mandatory since 2025-03-31, and the PCI SSC re
Reads a migration, Prisma schema, Django model or TypeORM entity and marks every column a subject ac
Names every statement in a Rails, Django or raw SQL migration that takes a table-blocking Postgres l
Finds the lines that make Google Play reject your release - target API below 36, Billing Library bel
12 rules read your CHANGELOG.md the way Directive (EU) 2024/2853 will read it from 2026-12-09: undat
Dates every quantum-vulnerable algorithm in your code against the NIST IR 8547 clock: deprecated aft
Checks PrivacyInfo.xcprivacy and your C#, Dart, JS, Swift and Kotlin source for Apple required-reaso
Names the .proto edits that keep compiling and quietly change what old gRPC readers see
19 date-aware checks on the [project] metadata that decides whether your next release uploads
Marks the lines in your test suite that current pytest no longer runs — and the config keys it silen
Prüft PHP-Rechnungstemplates von WooCommerce- und WordPress-Shops gegen alle zehn Pflichtangaben des
Find the .rpy lines that compile clean and only break inside a player's save
Checks robots.txt line by line and says what each AI crawler token actually controls - training, AI
Finds the end-of-life runtimes an AI assistant still writes for you — node:20, python3.9, ubuntu-22
Reads security headers and CSP line by line in your config file and names the lines that silently do
13 rules that decide whether a vulnerability report ever reaches you
Find the lines your bank will refuse before you send the batch
Reads your SOUP register the way an auditor does: 16 rules over clauses 8.1.2, 5.3.3, 5.3.4, 4.3 and
7,676–7,700 of 14,346 servers