Search: sec
Search MCP servers and agent skills by name, description, category or topic — 418 results.
phuryn/create-prd
Create a PRD with 8-section template covering problem to release
phuryn/product-strategy
Create product strategy using 9-section Product Strategy Canvas
pydantic/pydantic-ai/mcp-run-python
Run Python code in a secure sandbox via MCP tool calls
googleapis/genai-toolbox
Open source MCP server specializing in easy, fast, and secure tools for Databases.
mrexodia/ida-pro-mcp
MCP server for IDA Pro, allowing you to perform binary analysis with AI assistants. This plugin implement decompilation, disassembly and allows you to generate malware analysis reports automatically.
safedep/vet
vet-mcp checks open source packages—like those suggested by AI coding tools—for vulnerabilities and malicious code. It supports npm and PyPI, and runs locally via Docker or as a standalone binary for fast, automated vetting.
NVIDIA/NeMo-RL/brev-etiquette
Brev instance operating guidance for NeMo-RL agents working in /home/ubuntu/RL with limited workspace disk, a larger /ephemeral volume, and optional /home/ubuntu/RL/.env secrets.
NVIDIA/NemoClaw/nemoclaw-maintainer-find-review-pr
Finds open GitHub PRs with security and priority-high labels, links each to its issue, detects duplicates (multiple PRs fixing the same issue), and presents a table of review candi...
cloudflare/cloudflare
Comprehensive Cloudflare platform skill covering Workers, Pages, storage, AI, networking, security, and IaC
cloudflare/sandbox-sdk
Build sandboxed applications for secure, isolated code execution on Workers
trailofbits/ask-questions-if-underspecified
Prompt for clarification on ambiguous requirements
trailofbits/audit-context-building
Deep architectural context via ultra-granular code analysis
trailofbits/burpsuite-project-parser
Search and extract data from Burp Suite project files
trailofbits/claude-in-chrome-troubleshooting
Diagnose and fix Claude in Chrome MCP extension connectivity issues
trailofbits/constant-time-analysis
Detect compiler-induced timing side-channels in crypto code
trailofbits/differential-review
Security-focused diff review with git history analysis
trailofbits/entry-point-analyzer
Identify state-changing entry points in smart contracts
trailofbits/firebase-apk-scanner
Scan Android APKs for Firebase misconfigurations and security vulnerabilities
trailofbits/modern-python
Modern Python tooling with uv, ruff, ty, and pytest best practices
trailofbits/property-based-testing
Property-based testing for multiple languages and smart contracts
trailofbits/semgrep-rule-creator
Create and refine Semgrep rules for vulnerability detection
trailofbits/semgrep-rule-variant-creator
Port existing Semgrep rules to new target languages with test-driven validation
trailofbits/spec-to-code-compliance
Specification-to-code compliance checker for blockchain audits
trailofbits/static-analysis
Static analysis toolkit with CodeQL, Semgrep, and SARIF
trailofbits/testing-handbook-skills
Testing Handbook skills: fuzzers, static analysis, sanitizers
trailofbits/variant-analysis
Find similar vulnerabilities via pattern-based analysis
mariocandela/beelzebub
Beelzebub is a honeypot framework that lets you build honeypot tools using MCP. Its purpose is to detect prompt injection or malicious agent behavior. The underlying idea is to provide the agent with tools it would never use in its normal work.
designcomputer/mysql_mcp_server
MySQL database integration with configurable access controls, schema inspection, and comprehensive security guidelines
NeoLabHQ/code-review
Comprehensive PR code review using specialized agents: bug-hunter, security-auditor, code-quality-reviewer, contracts-reviewer, historical-context-reviewer, test-coverage-reviewer
dynatrace-oss/dynatrace-mcp
Leverage AI-driven observability, security, and automation to analyze anomalies, logs, traces, events, metrics.
timescale/rsigma
Exposes the RSigma Sigma detection-engineering toolkit to AI agents over stdio or Streamable HTTP with `rsigma mcp serve`. Tools to author, lint, validate, and convert Sigma detection rules, evaluate and explain detections against log events, and inspect correlation state, all backed by a native Rust engine.
alinaqi/claude-bootstrap
Opinionated project initialization with security-first guardrails, spec-driven atomic todos, LLM testing patterns, and CLI tool orchestration (gh, vercel, supabase)
jtang613/GhidrAssistMCP
A native Model Context Protocol server for Ghidra. Includes GUI configuration and logging, 31 powerful tools and no external dependencies.
mobb-dev/mobb-vibe-shield-mcp
[Mobb Vibe Shield](https://vibe.mobb.ai/) identifies and remediates vulnerabilities in both human and AI-written code, ensuring your applications remain secure without slowing development.
zinja-coder/jadx-ai-mcp
JADX-AI-MCP is a plugin and MCP Server for the JADX decompiler that integrates directly with Model Context Protocol (MCP) to provide live reverse engineering support with LLMs like Claude.
vshulcz/deja-vu
Local memory layer over the session histories coding agents already write (Claude Code, Codex CLI, opencode): lexical search, recall tools, session-start auto-recall, secret redaction at index time, cross-machine sync over SSH.
duriantaco/skylos
Dead code detection, security scanning, and code quality analysis for Python, TypeScript, and Go. 98% recall with fewer false positives than Vulture. Includes AI-powered remediation.
TheLunarCompany/lunar
MCPX is a production-ready, open-source gateway to manage MCP servers at scale—centralize tool discovery, access controls, call prioritization, and usage tracking to simplify agent workflows.
bvisible/mcp-ssh-manager
Manage multiple SSH servers from one MCP: command execution, file transfer/rsync, database dump/import/query (MySQL/PostgreSQL/MongoDB), backups & restore, health monitoring, persistent sessions, tunnels, ProxyJump/bastion, and opt-in per-server security modes (readonly/restricted) with audit log. Linux, macOS & Windows OpenSSH.
carterlasalle/mac_messages_mcp
An MCP server that securely interfaces with your iMessage database via the Model Context Protocol (MCP), allowing LLMs to query and analyze iMessage conversations. It includes robust phone number validation, attachment processing, contact management, group chat handling, and full support for sending and receiving messages.
openaccountants/openaccountants
Open-source AI accounting skills, checked by licensed accountants jurisdiction by jurisdiction. 3 tools: list skills by country/category, get full skill content, and get individual sections. Skills teach AI agents tax computations (income tax, VAT, payroll) across 134 countries plus US states and Canadian provinces. Hosted at `https://www.openaccountants.com/api/mcp`.
KryptosAI/mcp-observatory
Regression testing for MCP servers. Auto-discovers servers from Claude configs, checks capabilities, invokes tools, detects schema drift between versions, and recommends new servers based on your environment. Works as both a CLI and an MCP server.
bx33661/Wireshark-MCP
Wireshark network packet analysis MCP Server with capture, protocol stats, field extraction, and security analysis capabilities.