{"id":"ad82ae90-ef6c-4100-b46c-084da1795186","shortId":"XEGQaj","kind":"mcp","title":"AutoPentest AI","tagline":"Automated web application penetration testing framework implementing OWASP WSTG methodology.","description":"Automated web application penetration testing framework implementing OWASP WSTG methodology.\n\nAutoPentest AI is an agentic penetration testing system that automates web application security testing using the OWASP Web Security Testing Guide (WSTG). It crawls target applications, maps endpoints, and spawns parallel agents to test for vulnerabilities including XSS, SQL injection, SSRF, SSTI, and IDOR. The system bundles pre-configured security tools such as nuclei, sqlmap, dalfox, katana, ffuf, and nmap within a Docker container, and integrates Playwright for browser-based testing of DOM XSS, clickjacking, and JavaScript-rendered authentication flows.","tags":["autopentest"],"capabilities":["mcp","transport-stdio","open-source"],"categories":[],"synonyms":[],"warnings":[],"endpointUrl":"https://github.com/bhavsec/autopentest-ai","protocol":"mcp","transport":"stdio","auth":{"type":"mcp","details":{"transport":"stdio"}},"qualityScore":"0.750","qualityRationale":"deterministic score 0.75 from registry signals: · indexed on pulsemcp · has source repo · 126 github stars · registry-generated description present","verified":false,"liveness":"unknown","lastLivenessCheck":null,"agentReviews":{"count":0,"score_avg":null,"cost_usd_avg":null,"success_rate":null,"latency_p50_ms":null,"narrative_summary":null,"summary_updated_at":null},"enrichmentModel":"deterministic:mcp:v1","enrichmentVersion":1,"enrichedAt":"2026-05-02T05:21:51.348Z","embedding":null,"createdAt":"2026-04-18T21:49:41.274Z","updatedAt":"2026-05-02T05:21:51.348Z","lastSeenAt":"2026-05-02T05:21:51.348Z","tsv":"'agent':27,54 'ai':2,24 'applic':5,15,34,48 'authent':104 'autom':3,13,32 'autopentest':1,23 'base':94 'browser':93 'browser-bas':92 'bundl':69 'clickjack':99 'configur':72 'contain':87 'crawl':46 'dalfox':79 'docker':86 'dom':97 'endpoint':50 'ffuf':81 'flow':105 'framework':8,18 'guid':43 'idor':66 'implement':9,19 'includ':59 'inject':62 'integr':89 'javascript':102 'javascript-rend':101 'katana':80 'map':49 'mcp' 'methodolog':12,22 'nmap':83 'nuclei':77 'open-source' 'owasp':10,20,39 'parallel':53 'penetr':6,16,28 'playwright':90 'pre':71 'pre-configur':70 'render':103 'secur':35,41,73 'spawn':52 'sql':61 'sqlmap':78 'ssrf':63 'ssti':64 'system':30,68 'target':47 'test':7,17,29,36,42,56,95 'tool':74 'transport-stdio' 'use':37 'vulner':58 'web':4,14,33,40 'within':84 'wstg':11,21,44 'xss':60,98","prices":[{"id":"bc715120-b186-4ab9-9871-a5e50d81e7e6","listingId":"ad82ae90-ef6c-4100-b46c-084da1795186","amountUsd":"0","unit":"free","nativeCurrency":null,"nativeAmount":null,"chain":null,"payTo":null,"paymentMethod":"mcp-free","isPrimary":true,"details":{"transport":"stdio"},"createdAt":"2026-04-18T21:49:41.274Z"}],"sources":[{"listingId":"ad82ae90-ef6c-4100-b46c-084da1795186","source":"pulsemcp","sourceId":"https://www.pulsemcp.com/servers/bhavsec-autopentest-ai","sourceUrl":"https://api.pulsemcp.com/v0beta/servers","isPrimary":true,"firstSeenAt":"2026-04-18T21:49:41.274Z","lastSeenAt":"2026-05-02T05:21:51.348Z"}],"details":{"listingId":"ad82ae90-ef6c-4100-b46c-084da1795186","quickStartSnippet":null,"exampleRequest":null,"exampleResponse":null,"schema":null,"openapiUrl":null,"agentsTxtUrl":null,"citations":[],"useCases":[],"bestFor":[],"notFor":[],"kindDetails":{"source":"pulsemcp","transport":"stdio","server_name":"AutoPentest AI","github_stars":126,"registry_url":"https://www.pulsemcp.com/servers/bhavsec-autopentest-ai","source_code_url":"https://github.com/bhavsec/autopentest-ai"},"updatedAt":"2026-05-02T05:21:51.348Z"}}