MCP Server

security-tools

com.rangercheck/security-tools
Security Public & reachable MCP 2025-11-25

What this MCP does

Checks publicly served website front-end code for exposed secrets, keys, and other client-side security issues.

scan_security
Run a free front-end security check on any website and get a letter grade (A to F) plus specific findings. Answers questions like 'is example.com leaking API keys or secrets in its front-end code', 'does this site expose a Stripe/AWS/OpenAI key or a publicly readable database', or 'how is this website's client-side security'. Reads only what the site serves publicly; never logs in or changes anything.
Input schema
{'type': 'object', '$schema': 'https://json-schema.org/draft/2020-12/schema', 'required': ['domain'], 'properties': {'domain': {'type': 'string', 'maxLength': 255, 'minLength': 3, 'description': 'The website to check: a domain like example.com or a full URL like https://example.com'}}}
Added
scan_security
Sept. 17, 2026, 12:37 p.m.