Home › Categories › Security

Security

190 MCP servers and agent skills in the Security category, ranked by quality score.

Filters
190 results (<1ms) · data updated 2026-08-14

Results

uchit/mcp-regulated-ai-compliance D MCP Server Maintained

uchit/mcp-regulated-ai-compliance

Regulated-industry AI compliance knowledge as MCP. 6 tools (lookup_control · classify_use_case · crosswalk · walk_playbook · get_anti_pattern · list_regulations), 53 resources, 5 prompts. Covers EU AI Act, APRA CPS 230/234, NIST AI RMF, ISO 42001, AU AI Safety Standard (DISR Aug 2024), OWASP LLM Top 10, SLSA, SSDF, OAIC APPs, GDPR, DORA + 17 more frameworks. 56 controls × 28 regulations × 261 tool

★ 1 TypeScript Updated 2mo ago Score 41 Security

HaroldFinchIFT/vuln-nist-mcp-server D MCP Server Stale

HaroldFinchIFT/vuln-nist-mcp-server

A Model Context Protocol (MCP) server for querying NIST National Vulnerability Database (NVD) API endpoints.

★ 15 Python Updated 10mo ago Score 40 Security

cyntrisec/cyntrisec-cli D MCP Server Stale

cyntrisec/cyntrisec-cli

Local-first AWS security analyzer that discovers attack paths and generates remediations using graph theory.

★ 4 Python Updated 3mo ago Score 40 Security

teodorofodocrispin-cmyk/trustboost-pii-sanitizer D MCP Server Active

teodorofodocrispin-cmyk/trustboost-api

PII sanitization layer for autonomous AI agent pipelines. Detects and redacts emails, phone numbers, national IDs, private keys, and financial data before text reaches LLMs. Supports EN, ES (LATAM), PT (BR/PT), DE, JA. Solana-native payments via Helius oracle.

★ 2 Python Updated 25d ago Score 40 Security

imran-siddique/agentos-mcp-server D MCP Server Archived

imran-siddique/agent-os/extensions/mcp-server

Agent OS MCP server for AI agent governance with policy enforcement, code safety verification, multi-model hallucination detection, and immutable audit trails.

★ 72 Python Updated 5mo ago Score 39 Security

sanyambassi/thales-cdsp-cakm-mcp-server D MCP Server Stale

sanyambassi/thales-cdsp-cakm-mcp-server

MCP server for Thales CDSP CAKM integration, enabling secure key management, cryptographic operations, and compliance monitoring through AI assistants for Ms SQL and Oracle Databases.

★ 3 Python Updated 11mo ago Score 39 Security

9hannahnine-jpg/arc-gate-mcp D MCP Server Maintained

9hannahnine-jpg/arc-gate-mcp

Runtime governance for MCP tool calls. Blocks prompt injection and capability abuse before tool results reach your agent.

★ 2 Python Updated 2mo ago Score 38 Security

ark-forge/arkforge-mcp D MCP Server Stale

ark-forge/arkforge-mcp

Third-party certifying proxy — sign any HTTP call (AI agents, webhooks, microservices) with an independent Ed25519 signature, RFC 3161 timestamp, and Sigstore Rekor anchor. Works with Claude, GPT-4, Mistral, LangChain, AutoGen, or any HTTP client.

★ 2 Python Updated 3mo ago Score 38 Security

forgemeshlabs/x402-notary-mcp D MCP Server Maintained

forgemeshlabs/x402-notary-mcp

Cryptographic receipts for AI outputs: notarize any model inference with a signed Ed25519 attestation, sha256 content hash, and Merkle chain-anchor on Base or Solana. $0.001 per call via x402 USDC micropayments; verification is free and needs no wallet. Notarizes the hash, never your prompts. `npx -y @forgemeshlabs/x402-notary-mcp`

★ 0 JavaScript Updated 1mo ago Score 38 Security

atomicchonk/roadrecon_mcp_server D MCP Server Inactive

atomicchonk/roadrecon_mcp_server

MCP server for analyzing ROADrecon gather results from Azure tenant enumeration

★ 52 Python Updated 1y ago Score 37 Security

Gaffx/volatility-mcp D MCP Server Inactive

Gaffx/volatility-mcp

MCP server for Volatility 3.x, allowing you to perform memory forensics analysis with AI assistant. Experience memory forensics without barriers as plugins like pslist and netscan become accessible through clean REST APIs and LLMs.

★ 52 Python Updated 1y ago Score 37 Security

urldna/mcp D MCP Server Stale

urldna/mcp

MCP server for automated URL scanning and forensic phishing triage. Captures full DOM snapshots, network requests, and visual screenshots to identify malicious redirects and infrastructure. Supports historical threat hunting using Custom Query Language (CQL) to map actor patterns across millions of recorded scans.

★ 7 Python Updated 3mo ago Score 37 Security

node-man/dechonet-mcp D MCP Server Maintained

node-man/dechonet-mcp

Domain security reconnaissance for AI agents. 13 tools — DNS + DNSSEC, SSL/TLS chain & grade, HTTP security headers, SPF/DKIM/DMARC email auth, TCP port scan, ASN, RDAP/WHOIS — plus a one-shot `security_scan` returning a 0-100 Health Score (A–F). Free, no API key. `npx -y dechonet-mcp`

★ 1 JavaScript Updated 1mo ago Score 36 Security

alexfleetcommander/agent-trust-stack-mcp D MCP Server Stale

alexfleetcommander/agent-trust-stack-mcp

Cryptographic provenance, bilateral blind reputation scoring, and tamper-evident logging for AI agent interactions. 7 interlocking trust protocols (CoC, ARP, ASA, AJP, ALP, AMP, CWEP) available in Python (pip) and TypeScript (npm). 663 tests. Bitcoin-anchored provenance chains, anti-Goodhart reputation scoring, machine-readable contracts, dispute resolution, lifecycle management, trust-weighted ma

★ 1 Python Updated 3mo ago Score 36 Security

goldmembrane/cleaner-code D MCP Server Stale

goldmembrane/cleaner-code

AI code security scanner MCP server. Detects 9 categories of threats in AI-generated code (invisible Unicode, Trojan Source, homoglyphs, Glassworm steganography, rules file backdoors, dependency typosquatting, obfuscation) using static analysis plus CodeBERT deep learning. Runs locally, free tier.

★ 1 HTML Updated 3mo ago Score 36 Security

wei9072/aegis D MCP Server Stale

wei9072/aegis

AI-agent admission-control MCP server: validates file edits against Ring 0 syntax + Ring 0.5 structural-cost regression + workspace boundary (path / glob / shell-redirect / symlink). Negative-space framing — emits BLOCK / WARN / PASS verdicts, never coaches the agent.

★ 1 Python Updated 3mo ago Score 36 Security

zekebuilds-lab/captcha-mcp D MCP Server Stale

zekebuilds-lab/captcha-mcp

L402 Lightning paywall + Hashcash proof-of-work gate for MCP tool calls. Free tier solves a PoW challenge; paid tier pays a Lightning invoice via self-hosted LNBits. No accounts, no API keys, no third-party SaaS. Drop-in middleware for any MCP server. `npx @powforge/captcha-mcp`.

★ 1 JavaScript Updated 3mo ago Score 36 Security

cuttalo/depscope D MCP Server Stale

cuttalo/depscope

Package Intelligence for AI agents. 22 tools across 17 ecosystems (npm/pypi/cargo/go/maven/nuget/rubygems/composer/pub/hex/swift/cocoapods/cpan/hackage/cran/conda/homebrew) — check health, vulnerabilities (OSV + CISA KEV + EPSS), typosquats, malicious flags, alternatives, known bugs, breaking changes, stack compatibility and error-to-fix. 31k+ packages, 2.2k+ CVEs enriched. Zero auth, MIT. Remote

★ 1 TypeScript Updated 3mo ago Score 36 Security

gbrigandi/mcp-server-cortex D MCP Server Stale

gbrigandi/mcp-server-cortex

A Rust-based MCP server to integrate Cortex, enabling observable analysis and automated security responses through AI.

★ 16 Rust Updated 8mo ago Score 35 Security

gbrigandi/mcp-server-thehive D MCP Server Stale

gbrigandi/mcp-server-thehive

A Rust-based MCP server to integrate TheHive, facilitating collaborative security incident response and case management via AI.

★ 15 Rust Updated 8mo ago Score 35 Security

pullkitsan/mobsf-mcp-server F MCP Server Inactive

pullkitsan/mobsf-mcp-server

A MCP server for MobSF which can be used for static and dynamic analysis of Android and iOS application.

★ 21 TypeScript Updated 1y ago Score 33 Security

muhannad-hash/mcp-shield F MCP Server Stale

muhannad-hash/mcp-shield

Security scanner for MCP servers. Detects backdoors, exfiltration code, obfuscation, dangerous code execution, prompt injection, and supply chain risks before you install. Four tools: scan npm packages, scan local directories, check prompt injection, and audit supply chain trust score. `npx @muhannad-hash/mcp-shield`

★ 2 TypeScript Updated 4mo ago Score 33 Security

jstibal/openterms-mcp F MCP Server Stale

jstibal/openterms-mcp

Ed25519-signed consent receipts and programmable policy engine for AI agents. Spending caps, action whitelists, escalation thresholds, and JWKS-backed provider verification. Independently verifiable.

★ 2 Python Updated 3mo ago Score 33 Security

bluetieroperations-create/blackwall-mcp F MCP Server Maintained

bluetieroperations-create/blackwall-mcp

Pre-action risk gate for AI agents. One `forecast` tool the agent calls before any irreversible action (send money, run SQL, delete data); returns a risk score (0–100), reversibility class, named red flags from 28 failure modes, and a gate: proceed / confirm / human-required.

★ 0 JavaScript Updated 1mo ago Score 33 Security

123Ergo/unphurl-mcp F MCP Server Stale

123Ergo/unphurl-mcp

URL intelligence for AI agents. 13 tools for security signals and data quality: redirect behaviour, brand impersonation detection, domain age, SSL validation, parked detection, URL structural analysis, DNS enrichment.

★ 1 TypeScript Updated 3mo ago Score 31 Security

agntor/mcp F MCP Server Stale

agntor/mcp

MCP audit server for agent discovery and certification. Provides trust and payment rail for AI agents including identity verification, escrow, settlement, and reputation management.

★ 1 TypeScript Updated 5mo ago Score 31 Security

alberthild/shieldapi-mcp F MCP Server Stale

alberthild/shieldapi-mcp

Security intelligence for AI agents: password breach checks (900M+ HIBP hashes), email/domain/IP/URL reputation, prompt injection detection (200+ patterns), and skill supply chain scanning. Pay-per-request via x402 USDC micropayments or free demo mode, no API key needed.

★ 1 JavaScript Updated 5mo ago Score 31 Security

Erodenn/fetch-guard F MCP Server Stale

Erodenn/fetch-guard

URL fetcher and HTML-to-markdown converter with three-layer prompt injection defense: pre-extraction sanitization of hidden/off-screen elements and non-printing Unicode, 15-pattern risk scanning (HIGH/MEDIUM/OK), and per-request session-salt content boundary wrapping.

★ 1 Python Updated 4mo ago Score 31 Security

gridinsoft/mcp-inspector F MCP Server Stale

gridinsoft/mcp-inspector

MCP server for domain and URL security analysis powered by GridinSoft Inspector, enabling AI agents to verify website and link safety.

★ 1 JavaScript Updated 6mo ago Score 31 Security

ARKALDA/hejdar-mcp F MCP Server Stale

ARKALDA/hejdar-mcp

Runtime policy enforcement for AI agents. Evaluate actions against organization policies before execution, with observe and enforce modes.

★ 1 Python Updated 4mo ago Score 31 Security

itsalissonsilva/ModelSafetyMCP F MCP Server Stale

itsalissonsilva/ModelSafetyMCP

MCP server for scanning machine learning model artifacts for unsafe serialization, malicious model patterns, risky packaging, URL-based artifact scanning, and directory-level triage using ModelScan, PickleScan, and heuristic inspection.

★ 1 Python Updated 4mo ago Score 31 Security

JoeyBrar/agentseal-mcp F MCP Server Stale

JoeyBrar/agentseal-mcp

Action logs for AI agents. Records every agent action in a SHA-256 hash chain, making an audit trail. Install via `npx agentseal-mcp`.

★ 1 JavaScript Updated 3mo ago Score 31 Security

juanisidoro/securecode-mcp F MCP Server Stale

juanisidoro/securecode-mcp

Secrets vault for Claude Code with audit logs, MCP access rules, and AES-256 encryption. Secrets are injected to local files so the AI never sees raw values. Includes session lock, device approval, and per-model access policies.

★ 1 TypeScript Updated 4mo ago Score 31 Security

scamverifyai/scamverify-mcp F MCP Server Stale

scamverifyai/scamverify-mcp

AI-powered scam and threat verification MCP server. Check phone numbers, URLs, text messages, emails, documents, and QR codes against 8M+ threat intelligence records (FTC/FCC complaints, carrier analysis, URLhaus, ThreatFox). Returns risk scores, verdicts, and detailed signals. 10 tools, OAuth 2.1 + API key auth, Streamable HTTP transport.

★ 1 JavaScript Updated 4mo ago Score 31 Security

Thezenmonster/agentscore-mcp-server F MCP Server Stale

Thezenmonster/agentscore-mcp-server

MCP security trust layer. Continuously monitors 800+ MCP packages on npm for install scripts, command injection, hardcoded secrets, capability drift, and publisher posture. Ships a GitHub Action policy gate for PR-level allow/warn/block decisions with OIDC auto-provisioning. 5 MCP tools, no API key required.

★ 1 TypeScript Updated 3mo ago Score 31 Security

GUCCI-atlasv/skillssafe-mcp F MCP Server Stale

GUCCI-atlasv/skillssafe-mcp

Free AI agent skill security scanner. Scan SKILL.md, MCP configs, and system prompts for credential theft, prompt injection, zero-width character attacks, and ClawHavoc indicators. Supports OpenClaw, Claude Code, Cursor, and Codex. No signup required.

★ 1 JavaScript Updated 5mo ago Score 31 Security

iamredmh/volta-mcp-server F MCP Server Stale

iamredmh/volta-mcp-server

Burn-after-read encrypted notes for AI agents. Create and read self-destructing notes via Volta Notes with AES-256-GCM E2E encryption — the decryption key never leaves the URL fragment. Secure credential handoff between users and agents without secrets appearing in chat history.

★ 1 TypeScript Updated 3mo ago Score 31 Security

vaulted-fyi/vaulted-mcp-server F MCP Server Stale

vaulted-fyi/vaulted-mcp-server

Share encrypted, self-destructing secrets from your AI agent. Zero-knowledge E2E encryption. Agent-blind input sources (env:, file:, dotenv:) keep secrets out of LLM context.

★ 1 TypeScript Updated 3mo ago Score 31 Security

adeptus-innovatio/solvitor-mcp F MCP Server Stale

Adeptus-Innovatio/solvitor-mcp

Solvitor MCP server provides tools to access reverse engineering tools that help developers extract IDL files from closed-source Solana smart contracts and decompile them.

★ 3 Rust Updated 10mo ago Score 29 Security

hernaninverso/eleion-scanner-mcp F MCP Server Maintained

hernaninverso/eleion-scanner-mcp

Register/verify your domains, queue security scans (headers, TLS, DNS, ports, CVEs + AI-specific checks) and read findings, for AI agents. Install with `npx -y eleion-scanner-mcp`.

★ 0 JavaScript Updated 1mo ago Score 28 Security

fr0gger/MCP_Security F MCP Server Inactive

fr0gger/MCP_Security

MCP server for querying the ORKL API. This server provides tools for fetching threat reports, analyzing threat actors, and retrieving intelligence sources.

★ 51 Python Updated 1y ago Score 27 Security

hieutran/entraid-mcp-server F MCP Server Inactive

hieuttmmo/entraid-mcp-server

A MCP server for Microsoft Entra ID (Azure AD) directory, user, group, device, sign-in, and security operations via Microsoft Graph Python SDK.

★ 40 Python Updated 1y ago Score 26 Security

srinivasan-sundaresan95/orihime F MCP Server Stale

srinivasan-sundaresan95/orihime

Cross-repository code knowledge graph MCP server for Java, Kotlin, JavaScript, and TypeScript. Indexes source into embedded KuzuDB via tree-sitter; 30+ tools for call-flow tracing, multi-hop taint analysis (OWASP/CWE/PCI/STIG reports), entry-point reachability filtering, performance hotspot detection, and license compliance — without reading source files. 95% fewer tokens vs source-reading baselin

★ 1 Python Updated 3mo ago Score 26 Security

samvas-codes/dawshund_mcp F MCP Server Stale

samvas-codes/dawshund_mcp

An MCP server based on dAWShund to enumerate AWS IAM data, analyze effective permissions, and visualize access relationships across users, roles, and resources. Built for cloud security engineers who want fast, easy and effective insights into AWS identity risk.

★ 1 Python Updated 9mo ago Score 26 Security

nickpending/mcp-recon F MCP Server Inactive

nickpending/mcp-recon

Conversational recon interface and MCP server powered by httpx and asnmap. Supports various reconnaissance levels for domain analysis, security header inspection, certificate analysis, and ASN lookup.

★ 30 Go Updated 1y ago Score 25 Security