middleBrick | API-Security
Scan any API for OWASP Top 10 vulnerabilities and get a security risk score. Covers authentication, authorization (BOLA/BFLA), injection, data exposure, rate limiting, GraphQL, and LLM security.
How to connect
Same URL, five paste targets. Ready surface · Auth required. Not a safe-to-install badge. Handshake this URL
Paste into Settings → MCP or .cursor/mcp.json.
{
"mcpServers": {
"middlebrick-api-security": {
"url": "https://api-security--middlebrick.run.tools"
}
}
}
Settings → Connectors → Add → Custom → Web. Paste the URL. Enable in a new chat.
Claude → Settings → Connectors → Add → Custom → Web
Name: middleBrick | API-Security
URL: https://api-security--middlebrick.run.tools
OAuth only if this server requires it.
Save, start a new chat, enable the connector.
Developer mode custom connector. ChatGPT cannot reach localhost.
Settings → Apps & Connectors → Advanced → Developer mode ON
Create custom connector
Name: middleBrick | API-Security
MCP server URL: https://api-security--middlebrick.run.tools
Auth: none unless the server requires OAuth
New chat → + → Developer mode → enable the connector
Register the HTTPS URL, then claude mcp list.
claude mcp add --transport http middlebrick-api-security \
https://api-security--middlebrick.run.tools
Pass on session/new as mcpServers when the agent advertised HTTP MCP.
[
{
"type": "http",
"name": "middlebrick-api-security",
"url": "https://api-security--middlebrick.run.tools"
}
]
Paste into a README or docs site. The widget loads snippets from Influzer — still not a SAFE badge.
Same handshake clock as this listing (overlay / warm / seed; live tools/list only if that is missing). Indigo is live_ok, amber is auth_required, gray is unreachable. Not a SAFE badge. Stdio listings have no badge.
[](https://www.influzer.ai/mcp/probe?url=https%3A%2F%2Fapi-security--middlebrick.run.tools)
<div data-influzer-install="middlebrick-api-security"></div>
<script async src="https://www.influzer.ai/embed/install.js"></script>
https://www.influzer.ai/embed/mcp/middlebrick-api-security.md
JSON: https://www.influzer.ai/api/v1/install/middlebrick-api-security
Recipes using this server
No published recipes yet for this server.
Listing quality
Observable facts from our catalog and daily probe — not a safe-to-install badge.
- Surface
- Ready surface
- Live handshake
- Auth required
- Auth gate
- Auth gate
- Tools source
- tools/list (live)
Observable catalog + probe facts — not a safe-to-install badge.
Tools
(3)-
scan_apiScan an API endpoint for security vulnerabilities and get a risk score
-
get_scanGet results of a previous middleBrick scan by its ID
-
list_scansList previous middleBrick API security scans
Tool source: tools/list (live) · last probed 2026-10-10