MCP servers for designing, testing and calling APIs — REST, GraphQL, OpenAPI, webhooks and gateways. Each entry is scanned with the deterministic Capability-Flow Trust Model — grades are computed, never self-reported.
Security scan results for the Transport Http MCP server.
Security scan results for the Orval MCP server.
Security scan results for the Proxy MCP server.
Security scan results for the Remote MCP server.
Security scan results for the Mcporter MCP server.
Security scan results for the Hono MCP server.
Security scan results for the Azure Devops MCP server.
Security scan results for the Brilliant Directories MCP server.
Security scan results for the Salesforce MCP server.
Security scan results for the Preferences MCP server.
Security scan results for the Transcend Io MCP server.
Security scan results for the Assessment MCP server.
Security scan results for the Consent MCP server.
Security scan results for the Discovery MCP server.
Security scan results for the Dsr MCP server.
Security scan results for the Admin MCP server.
Security scan results for the Workflows MCP server.
Security scan results for the Inventory MCP server.
Security scan results for the Base MCP server.
Security scan results for the N8n Nodes Mcp Enhanced MCP server.
Security scan results for the Config Schema MCP server.
Security scan results for the Global MCP server.
Security scan results for the Google Calendar MCP server.
Security scan results for the From Openapi MCP server.
An API development MCP server gives an AI assistant hands-on access to your HTTP tooling: clients that fire REST and GraphQL requests, parsers for OpenAPI and Swagger documents, webhook receivers and test tunnels, and the management planes of API gateways. Because the Model Context Protocol turns a plain-language prompt from Claude, Cursor or another LLM client into a live network call, this category pairs unusually high utility with unusually high exposure.
Every listing comes from a deterministic pass of the open-source mcptrustchecker engine over the published npm or PyPI package: it maps the capability "blast radius", records concrete findings with evidence, and assigns an A–F Trust Score — identical input, identical result, no AI in the scoring loop, no paid placement. For API development servers, weigh combinations of network egress plus secret access hardest; that pairing is the classic toxic flow. The full model is documented under how the scoring works.
Browse the complete MCP Trust Registry, compare adjacent categories like Analytics & Monitoring and Content Management, or run any package through the free scan API before you install it.
Yes, if it is over-permissioned or carelessly built: anything that reads environment variables or request headers and also has network egress can move secrets somewhere you never intended. Prefer short-lived, least-privilege credentials, keep production write access behind human review, and check a server's Trust Score and individual security findings before installing. Treat the score as an automated opinion on the published code, not a certification.