Security
544 servers · Pentesting, auth, secrets and compliance — secure your apps and data
Ghidra MCP Server — 200+ MCP tools for AI-powered reverse engineering. GUI plugin + headless server, lazy tool loading, convention enforcement, batch operations, Ghidra Server integration, and Docker deployment.
The missing open-source Kubernetes UI with a built-in MCP server for AI agents. See what's broken, why, and what changed. Issues, Topology, event timeline, Helm, GitOps, live service traffic, and cluster audits - all in one Go binary.
The full-stack TypeScript framework to build, test, and deploy production-ready MCP servers and AI-native apps.
The Enterprise Architecture Governance Harness — strategy, architecture, delivery, and assurance using AI coding assistants
ToolHive is an enterprise-grade platform for running and managing Model Context Protocol (MCP) servers.
Open-source AI pentester that proves every finding. Machine oracles re-run each exploit; verified bugs ship a proof capsule you can replay yourself.
The only browser automation that bypasses anti-bot systems. AI writes network hooks, clones UIs pixel-perfect via simple chat.
🔌 Plug-and-play library to enable agents to call MCP and UTCP tools via code execution.
ADR secures enterprise AI agents through observability, security benchmarking, and threat detection. Deployed at Uber.
AI-powered OSINT agent with interactive REPL, MCP server, and CLI. 19 tools. Works with Claude, GPT-4, or local models. For authorized security research only.
Arkon: Enterprise AI Knowledge Hub & MCP Server. Self-hosted knowledge base for teams to manage RAG contexts, access policies, and AI skills. Connect Claude and other LLMs via Model Context Protocol (MCP) for automated, secure organizational knowledge integration.
Production-grade MCP server giving Claude 27 security intelligence tools across 21 APIs — CVE lookup, EPSS scoring, CISA KEV, MITRE ATT&CK, Shodan, VirusTotal, and more.
Agent-native reverse-engineering lab with a 197-article knowledge base, MCP tools, and CTF/APK/PE automation workflows.
MCP Server Framework and Tool Development library for building custom capabilities into agents.
Official remote MCP server for Atlassian. Securely connect Jira, Confluence, Jira Service Management, Bitbucket, and Compass to Claude, ChatGPT, Cursor, VS Code, and other AI tools using OAuth 2.1 or API tokens.
A middleware to provide an openAI compatible endpoint that can call MCP tools
Code research platform for AI agents; find, understand, and prove context across your code and all of GitHub, in a fraction of the tokens. One toolset, MCP or CLI
Consequence firewall for machine actions. EMILIA Gate verifies exact authority before money, code, permissions, infrastructure, or regulated state changes; the open protocol makes the evidence independently verifiable.
Query MCP enables end-to-end management of Supabase via chat interface: read & write query executions, management API support, automatic migration versioning, access to logs and much more.
Ultimate Context Engineering Infrastructure, starting from MCPs and Integrations
A universal CLI client for MCP. mcpc supports persistent sessions, stdio/HTTP, OAuth 2.1, tasks, JSON output for code mode, proxy for AI sandboxes, x402, and more.
一款证据驱动的 FOFA 资产测绘智能体:支持自然语言侦察、AI 反思、CLI / MCP / Skill / REST API,以及经人工审批的 Nuclei 扫描。
A secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)
The action firewall for AI agents. Enforce policy and human approval before risky tool calls, shell commands, workflows, and production changes, with auditable evidence.
🔌 A curated list of OSINT MCP servers. Pull requests are welcomed!
MCP SSH Server: 37 tools for remote SSH management | Claude Code & OpenAI Codex | DevOps automation, backups, database operations, health monitoring
Cross-Code Organizer (formerly Claude Code Organizer): cross-harness config dashboard for Claude Code, Codex CLI, MCP servers, skills, memories, agents, sessions, security scanning, context budget, and backups.
🚀 自动化资产侦察与漏洞监控平台 (ARL-Next)。重构自经典 ARL,全面升级 Puppeteer + Nuclei 引擎,打通「天眼查/ICP ➔ 资产发现 ➔ 漏洞扫描 ➔ 威胁情报追踪」安全闭环。支持 Docker 极简部署,AI 二开友好。
Wireshark for MCP. A transparent proxy that shows every real tool call between your AI client and your MCP servers, live in your terminal.
66-tool MCP server for dark web intelligence — breach data, ransomware tracking, Tor .onion access, malware analysis, blockchain intel, exploit search, stealer logs
Secure MCP runtime for AI agents to operate local machines, servers, and containers with multi-device orchestration.
🛡️ The approval and policy layer for AI agents. Intercept risky actions before they run, block them, or approve them remotely.
An agentic law firm. Yours. 67 specialist AI agents that review documents through evidence-backed debate, with mandatory human gates and a 10-pass verification loop. Apache 2.0.
120-tool MCP server for real-time global intelligence: markets, SEC filings, conflict, military, cyber, climate, news, and 30+ domains. AI situation briefs that cite their sources, user-defined geofences with escalation scoring, cited daily digests, live SSE dashboard. MIT, no paid API keys.
Offensive security framework for AI agent infrastructure - recon, credential looting, model exfiltration, poisoning, and attack-path analysis across MCP, A2A, gateways, and AI services. BloodHound for the agentic stack.
Desktop app that automatically scans and blocks malicious MCP traffic in AI apps like Cursor, Claude, VS Code and Windsurf.
AURA is a production-tested SRE agent platform you can deploy in minutes. AURA handles the guardrails, APIs, state management, streaming, and failure handling required to put AI to work safely on production infrastructure.
Production-grade MCP server for Wazuh SIEM — 55 security tools for alert triage, threat hunting, vulnerability management, compliance (PCI DSS, GDPR, HIPAA, NIST CSF, ISO 27001) and active response. Connect Claude or any LLM to your SOC. OAuth 2.1, RBAC, multi-cluster, air-gap ready.
Open-source, multi-platform harness for AI agents — a native, multi-threaded operator's console (JVM, not Electron) to run Claude Code, Codex, Gemini or OpenCode with a real browser, terminal, editor, secrets & 100+ MCP tools. Built for enterprises, science & research.
AI-powered MCP server for Burp Suite Professional — 149 tools across proxy, scanner, inline fuzzer, race conditions, guided injection, JWT/IDOR attacks, recon & OOB, with a real-time dashboard and hardened localhost security. Drive Burp from Claude Code or any MCP client.
Secure MCP server for whitelisted shell command execution with stdin, argv pipelines, timeouts, and structured audit logging.
CI-native security testing for MCP servers. Attack simulation, schema drift detection, and health scoring before agents depend on them.
MCP server for the complete Zabbix API - 237 tools, multi-server, OAuth 2.1 + bearer auth, PDF reports, systemd ready. Works with ChatGPT, Claude, VS Code, Codex, JetBrains and any MCP client.
The enterprise gateway for autonomous agents. Identity management, per-channel isolation, credential vault, per-session tamper-evident audit log.
MCP server for Shodan — search internet-connected devices, IP reconnaissance, DNS lookups, and CVE/CPE vulnerability intelligence. Works with Claude Code, Codex, Gemini CLI, and Claude Desktop.
See what your AI agents can access. Scan MCP configs for exposed secrets, shadow APIs, and AI models. Generate AI-BOMs for compliance.
A Model Context Protocol (MCP) server that provides secure, read-only access to BigQuery datasets. Enables Large Language Models (LLMs) to safely query and analyze data through a standardized interface.
MCP server for VirusTotal API — analyze URLs, files, IPs, and domains with comprehensive security reports, relationship analysis, and pagination support.
A simple and performant Model Context Protocol framework for Python.
NOT for educational purposes: An MCP server for professional penetration testers including STDIO/HTTP/SSE support, nmap, go/dirbuster, nikto, JtR, hashcat, wordlist building, and more.
MCP server providing comprehensive Microsoft Teams and Graph API access for AI assistants including messaging, search, and user management.
MCP Armor continuously secures and monitors Model Context Protocol operations through static and dynamic scans, revealing hidden risks in agent-to-tool communications.
A curated list of awesome MCP (Model Context Protocol) tools, platforms, and services for enterprises.
Drive x64dbg with your AI. MCP server: 23 mega-tools / 153 endpoints for breakpoints, memory, disasm, tracing, anti-debug & PE dumping. Claude/Cursor/Windsurf/Cline. All local.
Real-time cost observability for Model Context Protocol (MCP) tool calls. Wraps any MCP server, attributes spend per tool/project/customer. Free tier 25K calls/mo. EU-hosted
Composable data security plane for Model Context Protocol. Pluggable layers — collect, analyze, guard — across 50+ enterprise providers. Open architecture.
A local MCP runtime that attacks what you own and only reports what it proved. 17 CVEs across 9 projects came out of this repo. Install: npx -y hacker-bob@latest install /path/to/project, then run /bob-evaluate target.com
A curated, DevOps-focused list of Model Context Protocol (MCP) servers—covering source control, IaC, Kubernetes, CI/CD, cloud, observability, security, and collaboration—with a bias toward maintained, production-ready integrations.
Context compression for MCP. Same upstream call, exact results recoverable.
Model Context Protocol (MCP) server for pfSense firewall management. Control firewall rules, VPNs, DNS, DHCP and diagnostics in natural language from Claude Desktop, Claude Code or any MCP client — 333 wire-format-verified tools for the pfSense REST API, with safety guardrails, config backup and rollback on every change.
The deterministic merge gate for AI-generated agent capability changes — a local-first, static Tool-Use Readiness review for MCP, OpenAPI, and SDK tool surfaces. Open-source CLI + GitHub Action.
Governance gateway for AI agents — bounded, auditable, session-aware control with MCP proxy, shell proxy & HTTP API. Works with Cursor, Claude Code, Codex, and any MCP-compatible agent.
List MCP Server configurations in your system used by AI applications like Cursor, Claude Desktop, VS Code and others
Enhanced MCP server for Godot 4.5-4.7: 33 tools / 199 actions, 3-layer architecture (headless + editor + game bridge), secure sandbox, recording & frame-verify, cross-version CI.
Secure NotebookLM MCP Server - Query Google NotebookLM from Claude/AI agents with 17 security hardening layers
Curated + scored map of official MCP servers and agents for DevOps, Cloud, SRE, and Platform Engineering — every entry rated on production access, approval gates, and audit evidence.
A powerful Model Context Protocol (MCP) server for IMAP email integration with Claude
🔐 SSH MCP Tool - AI-powered SSH management through MCP protocol | 基于MCP协议的SSH工具,为AI提供SSH远程操作能力
44 plug-and-play skills for OpenClaw — self-modifying AI agent with cron scheduling, security guardrails, persistent memory, knowledge graphs, and MCP health monitoring. Your agent teaches itself new behaviors during conversation.
Model eXecution + Context Protocol: Enterprise-Grade Data-to-AI Infrastructure
MCP server for Meta Marketing API v25.0 — 135 tools for Facebook & Instagram ad campaign management
⚡ C̷h̷u̷c̷k̷N̷o̷r̷r̷i̷s̷ MCP server: Helping LLMs break limits. Provides enhancement prompts inspired by elder-plinius' L1B3RT4S
RedTeam-Agent: AI-Powered Autonomous Red Team Framework via Model Context Protocol. AI红队与内网渗透自动化框架,支持 gogo, fscan, httpx, nuclei, impacket, playwright 等 15+ 渗透工具,让 LLM 直接化身安全审计黑客。
MCP Security Solution for Agentic AI — real-time proxying, behavior analysis, and malicious tool detection
한국 사업자용 계약서 자동 생성 Claude Code 스킬. 9종 계약서(근로·알바·유연·일용·프리랜서·외주·변경·연봉) + MCP 개인정보 보호 서버. 2026 최저임금·최신 대법원 판례 반영.
The Control Plane for MCP — secure vault, managed runtime, audit trail, and policy-based approvals.
Fail-closed execution firewall for AI agents: quarantine MCP tools, proxy OpenAI-compatible requests, emit signed receipts, and verify EvidencePacks offline.
A powerful MCP (Model Context Protocol) Server that audits npm package dependencies for security vulnerabilities. Built with remote npm registry integration for real-time security checks.
An MCP server that integrates Wireshark/tshark with AI tools and IDEs. Capture live traffic, parse .pcap files, apply display filters, follow streams, and export JSON - all via Claude Desktop, VS Code, or CLI. Cross‑platform, typed, tested, and pip‑installable.
Security control plane for AI agents — identity and delegation, capability policy, data-flow taint and a live audit trail, enforced over MCP. Guards a real Claude Code end to end.
Advanced Shodan-based scanner for discovering, verifying, and enumerating Model Context Protocol (MCP) servers and AI infrastructure tools over HTTP & SSE.
Tamper-evident integrity monitor for the MCP config & server files your local AI agents load.
MCP Server for a Matrix home server integration; chat, manage rooms, etc.
Elevate your AI assistants (like Claude & Cursor) into autonomous cybersecurity experts. Pentester-MCP integrates 200+ pentesting tools via the Model Context Protocol (MCP) using a secure Docker sandbox.
[L0 CONSTITUTION] arifOS — constitutional MCP kernel. Law, identity, F1–F13, VAULT999. Judges but never executes. DITEMPA BUKAN DIBERI.
AI-Powered Offensive Security Research Engine - desktop-native security testing platform with native MCP integration. 90 tools, MITM proxy, stealth browser, autonomous AI agent. Built on Tauri + Rust + React.
Heimdall — MCP server for the Apple App Store Connect API and App Store Server API (StoreKit 2). 883 tools across 13 profiles, generated from Apple's official OpenAPI spec, plus review triage and reply drafting that runs on your own model, and confirm-before-write safety. Works with Claude, Codex, Cursor and any MCP client.
OSINT intelligence MCP server for AI agents — 37 tools, 12 sources. Shodan, VirusTotal, Censys, SecurityTrails, DNS reconnaissance, WHOIS, certificate transparency, BGP routing, Wayback Machine, GeoIP. Automated open source intelligence and attack surface mapping via Model Context Protocol.
A Model-Context Protocol server for the MITRE ATT&CK knowledge base
57-tool supervised Meta Ads MCP server for Claude Code. Open-core: full CRUD, multi-asset ads, targeting, diagnostics, safety gates. Premium adds 41 tools: optimization engine, vault intelligence, copy generation.
Model Context Protocol (MCP) Gateway & Registry - Central hub for managing tools, resources, and prompts for MCP-compatible LLMs. Translates REST APIs into MCP, builds virtual MCP servers with security and observability, and bridges multiple transports (stdio, SSE, streamable HTTP).
MCP server for Kali Linux penetration testing - 130 tools for AI-assisted security testing - Giving Agents access to full pentesting tools
Collaborative application security testing between humans and agents via CLI and MCP
C# MCP server for kernel & user-mode Windows debugging — DbgEng COM, KDNET, Frida, dbgsrv, TTD, and integrated VM control. 29 tools for LLM agents.
Universal MCP server for AI agents to interact with any* blockchain via natural language and plugins. Supports swaps, bridges, gas, staking, lending, and more across Ethereum, Arbitrum, Base, Polygon, BSC, and testnets.
A Model Context Protocol (MCP) server for Zammad integration, enabling AI assistants to interact with tickets, users, and organizations.
One command installs 670+ security tools on Linux & Termux. Its authorization-gated MCP server works with Claude Code, OpenCode, Codex, Gemini CLI, Ollama-backed agents and other MCP clients. Includes 870+ agent skills for CTF, pentesting, bug bounty, DFIR and red/blue teams—companion by default, autonomous when asked.
AppControl MCP is a local server connecting AI agents and IDEs like Claude, Cursor, and Windsurf to system history provided by the AppControl desktop app. Ask which apps used CPU, GPU, RAM, or disk, and what caused slowdowns, heat spikes, or webcam, mic, and location access. Built for deep historical monitoring and useful real-world PC insights.
Agent Identity Protocol - Zero-trust security layer for AI agents. Policy enforcement proxy for MCP with Human-in-the-Loop approval, DLP scanning, and audit logging.
Verifiable and free cloud compute for AI agents. webMCP + MCP native. Check out our sandboxed Beta + research in the README
Local-first security scanner, MCP protocol inspector, dynamic fuzzer, Docker sandbox, and report generator for Model Context Protocol servers.
The Proxmox MCP you can hand the keys. All four products: PVE, PBS, PMG, PDM.
MCP security testing framework for evaluating Model Context Protocol server vulnerabilities
Runtime visibility for Python MCP servers. Captures tool calls, session lifecycle, module imports (SHA-256), and subprocess execution as structured NDJSON. No code changes.
MCP server with 55 security intelligence tools — CVE/KEV, MITRE ATLAS+D3FEND, Sigma detection rules, email security posture (SPF/DMARC), domain & web intel, threat intel.
Open standard for Provenance & Intent Contracts (PIC) in AI agents. Verify intent, provenance, and evidence before high-impact tool calls.
MCP tools for Novyx governed actions, shared memory, audit, rollback, and evidence workflows.
Open-source guardrails between AI agents and FHIR clinical data — PHI redaction, immutable audit, step-up auth, tenant isolation. MCP server + OpenAI/Gemini adapters. A healthclaw.io project.
Telegram MCP server (MTProto). Connect Claude, Cursor, Claude Code, VS Code, Codex, Cline, Windsurf to a real Telegram account — read/search/send messages, moderate channels, manage stories/contacts/folders, transcribe voice, and call any raw MTProto method. Browser-based sign-in. 100+ tools.
MCTS (Model Context Threat Scanner) is a local-first security scanner for MCP servers -- static and live tool discovery, multiple analyzers, auditable risk scores, and JSON, SARIF, and HTML output. For authors and platform teams; CI-ready, no cloud API.
Local-first MCP policy proxy. Tool-block, SQL-mutation gate, PII redact, audit, rate-limit, OpenTelemetry, vault secrets, first-use quarantine, schema pre-inject. No hosted gateway. One YAML Lens wraps any MCP, 20 included (Postgres, MySQL, MongoDB, GitHub, Stripe, Snowflake, etc.). 84% fewer tokens, ~3x faster, holds PII leaks. AGPL or commercial.
A Model Context Protocol (MCP) server with Strava OAuth integration, built on Cloudflare Workers. Enables secure authentication and tool access for MCP clients like Claude and Cursor through Strava login. Perfect for developers looking to integrate Strava authentication with AI tools.
RamiBot v3.8.0 is a local-first AI security operations platform integrating multi-LLM support, a dynamic red/blue team skill pipeline, MCP tool orchestration, Docker terminal access, Tor proxy management, and an auto-integrated Kali-based tool server (rami-kali) for controlled, extensible offensive and defensive workflows
Noisegate: a differential privacy gateway that lets an untrusted LLM agent query sensitive data over MCP (Model Context Protocol), with a formal guarantee no individual's record can leak even if the agent is adversarial - enforcement lives in trusted code below the model, validated by a runnable attack gallery.
AI Governance Infrastructure — local evaluation. The governance layer for AI agents: a single compiled Rust binary that authenticates, authorises, rate-limits, logs, and costs every AI interaction. Self-hosted, air-gap capable, provider-agnostic.
Security scores for 800+ MCP servers. 9 analyzers scan for prompt injection, toxic flows, and attack surface risks. Updated daily. 🛡️
🔐 50+ MCP Security Servers for AI-Powered Pentesting | Integrate Nmap, Burp Suite, Nuclei, Shodan, BloodHound, Semgrep, Trivy | Model Context Protocol for Cybersecurity
Discover, govern and control access to MCP servers and agent skills across your organization
Offensive MCP server auditor: detects tool poisoning, credential leaks, RCE vectors, SSRF, session hijacking, and supply chain vulnerabilities across stdio, HTTP, and SSE transports.
Transform any HTTP endpoint into an MCP server. Aggregate multiple MCP servers, manage configuration profiles, and serve them through a unified gateway with multi-tenant isolation.
Fastn MCP server — give AI agents governed, audited access to integrations and tools across your customers' systems of record.
Open-source asset inventory — turn scattered, contradictory tool data into one reliable inventory, then chat with it using the LLM of your choice. Tagging, posture rules, and alerting built in.
Demo agents showcasing CapiscIO Agent Guard and MCP Guard — trust badges, identity verification, and tool-level authorization for A2A and MCP protocols
An AI-driven dynamic protocol fuzzer for the Model Context Protocol (MCP). Prove runtime exploitability by discovering state violations, transport crashes, and application-layer logic flaws (SSRF, LFI) before your AI agents do.
MCP server for Local Falcon's local SEO and AI visibility platform: geo-grid rank tracking, campaign management, and competitor analysis via Model Context Protocol
MCP server for authorized pentest workflows: Nmap/Gobuster orchestration, context aggregation, AI-assisted triage, and reporting.
MCP is being adopted rapidly. Security guidance is lagging behind. This checklist gives security engineers, platform teams, and technical leaders a clear, actionable baseline for securing MCP deployments , whether you're shipping an internal tool or a customer-facing AI agent.
MCP server giving AI agents full debugger control over running Java applications — inspect state, set breakpoints, evaluate expressions, and mutate values at runtime via JDWP/JDI
An Open Sourced Model Context Protocol (MCP) Local server that gives AI Clients real-time cybersecurity reconnaissance capabilities
Deterministic CI scanner and surface-risk scoring for MCP (Model Context Protocol) servers.
Shodan MCP server for Claude, Cursor & VS Code. 20 tools for passive reconnaissance, CVE/CPE intelligence, DNS analysis, and device search. 4 tools work free without an API key. OSINT and vulnerability research from your IDE.
The merge gate for AI-written code, with signed, replayable attestation. Works across Claude Code, Codex, Cursor, and Gemini CLI.
Reference MCP App for Elastic Security — interactive SOC dashboards inside Claude, Cursor, and other MCP hosts.
Stealth Chrome MCP server — 100++ tools for AI agents. One-liner Cloudflare Turnstile bypass (proven), dual-mode HTTP with TLS fingerprint, AI Vision reCAPTCHA solver. Python + nodriver + curl_cffi + FastMCP.
23-tool MCP server for CVE & vulnerability intelligence. NVD, EPSS, CISA KEV, GitHub Advisory, OSV — unified in one server. Risk scoring, bulk triage, exploit search. 2 dependencies, runs with npx.
The open-source safety layer for AI agents — block unsafe tool calls, require approval, enforce budgets, audit, replay.
Detonate files & URLs in cloud malware sandboxes (Hybrid Analysis, tria.ge, ANY.RUN) and enrich IOCs across MalwareBazaar, ThreatFox, URLhaus, Feodo, URLScan & VirusTotal — straight from Claude. BYOK, async, MITRE ATT&CK.
Agent Receipts — cryptographically signed audit trails for AI agent actions. Protocol spec, SDKs (Go, TypeScript, Python), and MCP proxy.
Servidor MCP para AFIP/ARCA: automatiza certificados, autorización de Web Services, emisión/consulta de comprobantes y generación de PDF con QR.
Security-first MCP server for TP-Link Omada, with a stdio-first runtime, capability-gated tools, and OpenAPI-based network automation.
Cloud security audit tools for AI agents — AWS, Azure, GCP misconfiguration detection via MCP. 38 tools, 60+ checks. The agent finds vulns, not you.
通用逆向分析 KernelSU 模块:手机侧只做原子能力,智能全在 PC 侧(Claude Code + MCP)。仅限授权安全研究与教育用途。
Route, manage, and analyze your LLM requests across multiple providers with a unified API interface
Safety-first MCP server for self-hosted UniFi. 57 Network + 11 Protect + 18 Access tools, dry-run previews, JSONL audit log, composite rollback. Multi-site. Stdio + Streamable HTTP.
Curated directory of Model Context Protocol servers, tools, transports, categories, and contribution-ready MCP metadata. Test new MCP servers using isolated VM sandboxes before installing to your machine.
MCP server for stealth browser automation via Camoufox — 79 tools, npx install, anti-bot stealth
Python SDK for accurate and verifiable agent tool use. Agents verify that answers came from the right source and were not changed. Downstream agents detect 100% of errors and retry to achieve a 50% jump in answer accuracy.
Public SDK, CLI, and docs for Hive Intelligence: crypto MCP access for AI agents.
MCP server that gives LLM agents read-only shell access over SSH. Powers Fawdy (fawdy.com)
Open-source AI security platform providing perimeter defense for LLMs and AI agents through swarm analysis, policy enforcement, adversarial testing, and real-time threat detection.
The ultimate OWASP MCP Top 10 security checklist and pentesting framework for Model Context Protocol (MCP), AI agents, and LLM-powered systems.
🛡️ The security firewall for AI agent tools & MCP servers (Claude, GPT-5.6, Gemini 3.7, Antigravity, Cursor, Codex, Hermes). Catch command injection, secret theft & toxic flows in <50ms. 100% offline Rust SAST + 1-click auto-fix + SARIF.
Headless CLI reflection debugger for .NET assemblies with MCP server support
Infrastructure for AI agent swarms - 88 MCP tools, A2A, mesh VPN, CDP browser, 2FA
Know what your AI agents cost. API gateway with budget enforcement, session tracking, and MCP tools.
A trustless MCP server that replaces the generic shell tool with validated, sandboxed, purpose-built execution tools for AI coding agents.
[CyberChef-MCP] Model Context Protocol Server for CyberChef ... exposing GCHQ's "Cyber Swiss Army Knife" as 463+ executable AI agent tools spanning encryption, encoding, compression, and forensic data analysis
Put an AI agent on rails: mount a Burr state machine as an MCP server so the agent can only take the next allowed step, with every step recorded and replayable.
LLM guardrails & prompt injection detection for Python. Auto-instruments LangChain, CrewAI, OpenAI, LiteLLM + 8 more frameworks. PII masking, toxicity detection, policy CI/CD. One line, zero code changes.
MCP server implementation for managing domains, DNS, and SSL via the Porkbun API.
Self hosted secure gateway for AI agents. One token. Full control. Complete audit trail.
MCP server for the Proton privacy suite — Mail, Pass, Drive, Calendar, VPN. 36 tools for Claude and other MCP-compatible AI agents.
Forensic auditor for local AI coding agents (Claude Code, Codex CLI, OpenClaw) and project-surface scanner for repos containing skills, plugins, and MCP manifests. Reads session logs, configs, and instruction files, detects known-bad patterns using 296 bundled rules in total.
MCP server for managing cPanel hosting through AI assistants — DNS, email, databases, domains, SSL, PHP, cron, security, backups, and more (164 tools).
AI Access Proxy Layer — granular permission gateway for AI agents. Connect services, define scopes, get an MCP endpoint.
MCP server for checking RU counterparties via FNS open data (EGRUL/EGRIP, EFRSB, KAD, FSSP)
Multi-engine security scanner for AI agents, MCP servers & plugins — 13 engines, one report.
npx mcp-spec-check <url> — black-box readiness probe for the 2026-07-28 MCP spec release. Zero dependencies. Includes a scan of all 7,850 registry servers.
MCP server for AI-powered network scanning with Nmap. Port scanning, service detection, OS fingerprinting, and vulnerability scanning for AI agents. By Vorota AI.
Murmur — encrypted agent-to-agent messaging bus for AI coding agents. MCP-native, E2E encrypted (XChaCha20-Poly1305), NATS transport with optional JetStream durability, cross-host and cross-org federation + A2A interop. Connect Claude Code, Codex and friends across machines.
Claude Code + Meta Ads without disasters. A drop-in skill, 3 subagents, and safety hooks for marketers automating Facebook/Instagram campaigns. 13 field guides, 23 production pitfalls solved.
Heddle — The policy-and-trust layer for MCP tool servers. Turn YAML configs into validated, policy-enforced MCP tools.
The first DMCA takedown & host-reveal MCP server for AI agents
Model Context Protocol server for BlackDuck Coverity Connect static analysis platform
Agent-native browser and MCP server for lightweight, Chrome-free web discovery, with explicit escalation to Unchained for browser-only flows.
Claude Code skill for verifying OpenEvidence biomedical citations against PubMed with parallel accuracy scoring and audit reports
Give your AI agents structure, guardrails, and full observability — the Agent control plane built on MCP.
A comprehensive Model Context Protocol (MCP) server that turns any AI assistant into a powerful mathematical computation engine.
MCP-native infrastructure for persistent AI agent memory with encrypted storage, semantic retrieval and cross-agent continuity.
Private, local-first AI assistant for Windows with permissioned tools, durable memory, and evidence-driven small-model improvements.
Workerd-based hypervisor with a declarative Cap'n Proto manifest. Substrate-level identity, audit, and per-bundle credential scoping. Today's primary application: hosting MCP servers behind one HTTP face.
MCP server that integrates with Keycloak, allowing you to manage Keycloak users and realms through a standardized protocol. It uses the official Keycloak Admin Client to interact with Keycloak's API.
Неофициальный MCP-сервер для Checko.ru - проверка контрагентов (ЕГРЮЛ, ЕГРИП, арбитраж, контракты, финансы). 12 инструментов и 6 готовых сценариев.
A secure MCP server for managing OPNsense firewalls through AI assistants. 62 tools across 10 domains with read-only default, savepoint rollback, and security auditing.
🔪 Open-source safety firewall for AI agents. Intercepts tool calls before they execute, enforces YAML policies, and kills dangerous operations in real-time. Works with OpenAI, Anthropic, LangChain, and MCP. She doesn't guard. She kills.
Secure, local-first MCP server exposing ArcGIS Pro's ArcPy engine over stdio JSON-RPC.
The MCP gateway platform. PlexMCP gives you a unified gateway to manage, orchestrate, and secure your MCP servers.
GitHub security posture analysis for AI agents — 39 MCP tools, 45 checks across org, repos, Actions, secrets, supply chain, and access control
Open-source security gateway for MCP agents and tools. Inspect tool calls before execution, enforce policy, block risky operations, and emit audit-ready evidence.
MCP EU AI Act Compliance Scanner - Open source tool to detect EU AI Act violations in codebases
Transparent MCP proxy with OpenTelemetry tracing. Wrap any MCP server and persist traces to SQLite, Postgres or MySQL.
Glass Box Framework — runtime constitutional verification for AI answers. Trust Cards with claim-level reasoning chains, formal ECS scoring, the 7-angle Glassbox Court red team, and deterministic audit logs. MCP-native.
Практический гайд по AI для 1С: MCP, Agent Skills, OData, безопасность и проверяемые сценарии
Pre-install security for AI agents, npm packages, and MCP servers. Zero-dep local static analysis; normal scans never execute package code.
Your data, explored locally — and your AI agents kept on a leash. A federated data explorer with governed agentic access.
The Open-Source MCP Firewall & Security Gateway for AI Agents. Inspect, redact, and control tool calls. Proxy mode (universal) and Inline SDK mode (Go).
A complete Model Context Protocol (MCP) server for Fortinet FortiOS 7.6.6
Agent control plane for governed AI coding: validate changes, enforce policy gates, track findings, proofs, and evals based on your habits.
Comprehensive security scanner for Model Context Protocol (MCP) servers
MCP middleware that blocks dangerous AI agent actions using a simple YAML config
Self-hosted, GDPR-safe AI agent for law firms. Zero-cloud, hash-chained audit trail (AI Act art. 12), bring-your-own-model, 9 language editions. Hard fork of willchen96/mike, AGPL-3.0.
Governance proxy for MCP - enforce policies, cap cumulative cross-tool spend, route approvals, check evidence, and audit every AI agent tool call. No changes to agent code or MCP servers.
🚀 Ultimate Developer Productivity Suite - 11 specialized MCP servers for AI-powered code analysis, security scanning, browser automation, and workflow orchestration. FastAPI + React + TypeScript + Docker ready.
Catch stdout pollution and handshake failures in MCP stdio servers before clients do.
Zero Trust for AI agents. Generates and protects MCP servers for both internal copilots and customer-facing agents. Apache 2.0, self-hosted.
Federated MCP gateway: one OAuth 2.1-protected, spec-compliant MCP server in front of all your apps. Backends stay plain HTTP (~120-line contract) or proxied native MCP servers with a per-user token vault. Scope-filtered tools, live discovery, audit trail. Give agents curated, governed access to your whole stack — one URL, one token.
MCP server for Zitadel identity management — manage users, projects, apps, roles, and service accounts from AI tools
Community GitLab MCP Server — works with any GitLab tier (Free/Premium/Ultimate), no Duo required. GraphQL schema discovery, repo browsing, multi-client support (Claude Code, LibreChat).
A production-ready Model Context Protocol (MCP) server for Idira (formerly CyberArk) Privilege Cloud integration. Enables AI assistants and MCP clients to securely interact with privileged account management, safe operations, and platform configurations.
MCP server bridging Kali and FlareVM for automated Windows malware analysis. 48 tools, 5 prompts, 5 resources, composite playbooks (triage, behavioral, unpack, persistence audit).
Python SDK for protecting MCP servers and OAuth 2.1 resource servers with tokens issued by the Authplane authorization server. Includes framework adapters (e.g. MCP, FastMCP).
Verifiable agent actions. Every action becomes signed context for the next. Ed25519 signatures, Merkle log proofs, independently verifiable by anyone.
Security scanner for Model Context Protocol (MCP) with capability graph analysis. Detects emergent attack chains across multi-server AI agent deployments that no individual tool scan can find.
Privacy guardrails for Spring AI: request-scoped PII tokenization and least-privilege disclosure across model/tool calls, with Presidio and JVM-local OpenNLP.
Multi-account tool broker for AI agents — use tools on demand from the CLI or connect through MCP, with credentials kept local.
Open-source governed memory for AI agents: prompt-injection-resistant writes, purpose-bound retrieval, provenance, and tamper-evident audit.
Smart contract security auditor for Claude Code — vuln detection, exploit PoCs, mainnet-fork simulation, audit cards, on-chain certificates. Solidity + Vyper · 38 commands · 19 agents · 33 skills · 9 MCP servers.
Agent skill (npx skills) for evidence-based SAP API Policy alignment assessments — sourced, confidence-rated, never legal advice.
mailpouch — MCP server for Proton Mail. 69 tools, local-only, permission-gated agentic email access via Proton Bridge.
The trust and intelligence layer between AI agents and your database. Read-only by architecture, semantic knowledge graph + audit log, MCP-native.
Stop storing API keys in mcp.json and shell profiles. kprun solves this by keeping secrets in an encrypted KeePass vault and injecting them only into spawned processes. Designed for MCP servers, coding agents, and dev scripts. Features: per-proces injection, audit logging, cross-platform, KeePassXC-compatible, CI/CD-ready.
End-to-end encrypted inbox for AI agents — deliver artifacts to humans via HTTP API.
Open-source package registry for MCP (Model Context Protocol) servers with built-in security scanning, trust scoring (L1-L4), and CLI. Every bundle verified across 25 supply-chain controls.
Open-source, self-hosted Zero Trust policy enforcement layer for MCP servers.
Activation-probe security scanner for AI agent tooling. Reads a model's internal activations to detect poisoned MCP servers, skills, and packages before install.
10 intentionally malicious MCP servers that exploit protocol features to attack AI clients. For security research and defense testing.
Vet a package before your AI coding agent uses it — authoritative facts (CVEs, license, maintenance) via an MCP server + CLI. Local, no account.
A security-first bridge between Claude Code (MCP) and Chrome — HMAC pairing, domain allowlist, per-domain evaluate opt-in.
Engineering MCP suite — all-inclusive catalog and installer for RF/EMC/PCB/test-gear MCPs (atlc3-now-lineforge, openEMS, NEC2, EMC regs, drawio, VNA, and more)
A safety layer for AI coding agents. CLAUDE.md/AGENTS.md generator, MCP runtime guardrail, pre-commit hook, GitHub Action.
OAuth 2.1 and enterprise SSO for remote MCP servers without API keys in client configs.
MCP server for self-hosted Sentry: issues, events, releases, users, org stats, and project diagnostics for AI assistants.
Open source control-plane proxy for AI agents: identity, policy, budget, audit for MCP and beyond
Checks AI-generated code changes before merge: scope, validation, risk, review evidence, and optional Verity receipts.
Community-contributed agents, skills, MCP servers, and playbooks for the CyberAgents Exchange
Bring HackTricks pentesting knowledge into Claude Desktop. Search 1000+ security techniques, exploits, and payloads without leaving your AI assistant. MCP-powered, npx-ready.
Trust infrastructure for AI agents — constitution enforcement and cryptographic receipts. Python SDK.
MCP server for secure SSH remote management — 337 tools across 74 groups for DevOps, Docker, Kubernetes, databases, systemd, Windows, cloud, compliance & more. Built in Rust.
MCP server for Nordic company registries (Norway, Denmark, Finland, Sweden)
MCP server for remote SSH operations -- persistent sessions, structured command output, SFTP file transfer, port forwarding, and secret-safe environment variable injection with automatic output redaction.
Give any AI a real computer. Open source MCP server with Ubuntu sandbox, browser automation, desktop control, and 30+ tools. Works with Claude Code, Cursor, Claude Desktop.
Self-hosted encrypted tunnel for webhooks, AI pipelines, and local development. End-to-end Noise encryption, pipeline tracing, web dashboard, MCP server for AI tools.
A config-driven Model Context Protocol (MCP) reverse proxy built in Rust. Aggregates multiple MCP backends behind a single endpoint with per-backend middleware, authentication, and observability.
Query SEC EDGAR filings, XBRL financials, and company data through MCP. STDIO & Streamable HTTP.
A self-hosted MCP Gateway for enterprise environments. Secure AI agent connections to MCP servers with tool governance, multi-tenant isolation, and full observability. Built with Rust and Vue.
Security-first WordPress MCP server for Claude, ChatGPT, and Gemini. API key + OAuth 2.1 auth, full activity log, Elementor clone-and-customize tools.
AI governance infrastructure for agentic systems. Rust library behind systemprompt.io — MCP, A2A, OAuth2, audit trails, compile-time extensions. Evaluate with systemprompt-template.
Model Context Protocol authentication demos - AI assistant integration examples
Auth for AI agents and humans. First-class agent identity, MCP OAuth 2.1, delegation, audit. TypeScript, edge-native, MIT.
MCP server for FortiManager using the Code Mode pattern — 2 tools (search + execute) with QuickJS WASM sandbox instead of 590+ individual API tools
Use ChatGPT as the brain and your local computer as the hands — a safe, permissioned local MCP gateway with default-deny security, local approvals, and full audit logging.
MCP servers expose tools with no information about what they actually do at runtime. mcpsafetywarden sits between your agent and any MCP server, profiling tool behavior, blocking destructive calls, and running active security audits before you trust them in a workflow.
AI-Tadpole-OS a local-first "development platform" a Lily Pad to jump from for running autonomous AI agent teams on your own hardware. Coordinate parallel workflows, maintain full data privacy, and oversee every decision — no cloud required.
Model Context Protocol server for Open Policy Agent (OPA). Author, validate, debug, and explain Rego policies through any MCP-compatible client.
MCP-сервер для Claude, который ищет российское ПО в каталогпо.рф (26 000+ продуктов). Подбор отечественных аналогов, продукты с сертификатами ФСТЭК/ФСБ, список производителей — прямо из диалога.
MCP server for controlling HomeMatic smart home devices via the CCU JSON-RPC API
Production-ready MCP server for Tenable Security Center with intelligent caching. 90% token savings, 1000x faster responses.
OSINT graphs are point-and-click busywork. maltego-mcp lets an LLM author the .mtgx and run the whois, DNS, ASN, and crt.sh lookups. Works on the Basic plan.
Local guardrails for AI coding agents. Wraps any MCP server and blocks destructive tool calls — DROP TABLE, rm -rf, force-push, unscoped UPDATE/DELETE — before they execute. Free, open-source, runs entirely on your machine.
The definitive open-source registry of Model Context Protocol (MCP) servers for Web3, blockchain, and decentralized applications. 130+ chains, DeFi, NFTs, analytics, and identity tools
Execution control layer for AI agents — prevents duplicate or incorrect real-world actions under retries, uncertainty, and stale context.
the memory layer of your codebase. Knows the WHY, the WHAT, the WHERE-IT-BREAKS.
Policy engine for AI agents — enforceable rules, risk limits, approval gates, obligation tracking, and violation detection. One .acon file. Rust core + MCP server.
Detect fake recruiter & job-offer scams with free OSINT — an MCP server for Claude. No API keys.
The open-source autonomy kernel MELRA — Modular Execution Layer for Reliable Autonomy. An agent-independent effect runtime for governed, durable, and verifiable autonomous execution. MELRA begins where the tool call leaves the model loop.
MCP server for Claude AI providing automatic enforcement of critical rules - Prevents 96 documented failure patterns
The agent eval standard for MCP — score output quality, catch safety failures, enforce cost budgets
Turn an M5Stack Cardputer-Adv into a physical approval + usage surface for an AI coding agent (BLE + MCP).
Pure-Go browser for AI: fetch pages, optionally render JS (no Chromium), get clean token-budgeted Markdown over MCP
MCP server for analyzing and managing technical debt in codebases via the Model Context Protocol
TypeScript SDK for protecting MCP servers and OAuth 2.1 resource servers with tokens issued by the Authplane authorization server. Includes framework adapters (e.g. MCP, FastMCP).
AI-driven pentest orchestration that hands Claude the full PTES methodology over real MCP tool calls. 80+ tools, 33 verification probes, scope guard on every request. Python orchestrator + React/Ink TUI.
Discover and audit MCP servers for security vulnerabilities across Claude Code, Cursor, VS Code, and more
MCP server for unified threat intelligence - AlienVault OTX, AbuseIPDB, GreyNoise, and abuse.ch feeds
OAuth 2.1 + PKCE + Dynamic Client Registration for Payload CMS MCP, so it connects to the Claude desktop and web apps.
Policy-as-code enforcement and observability for MCP tool calls. Wraps AI agent sessions with cryptographic integrity checks, argument-level CEL policies, and a full audit trail.
MCP Server for WordPress with Undo. Connect ChatGPT, Claude Desktop, and other MCP clients via OAuth 2.1 and safely roll back AI changes.
The open standard for cryptographic identity and trust verification of autonomous AI agents.
An MCP server for AI agents that handles captcha bypass workflows through dedicated tools instead of prompt hacks. Includes session-based browser automation, reCAPTCHA v2 solving, Selenium workflows, and a clean agent-to-tool architecture for verification-heavy web flows.
Open-source DNS & email security scanner. One MCP endpoint, 57 checks, zero install. Cloudflare Workers.
Agentic security control plane for MCP and AI agent tool calls. MCP-native policy gateway with topology discovery and audit.
A secure MCP (Model Context Protocol) file server providing AI assistants with comprehensive file operations. Features multi-tier authentication, multiple connection modes (stdio/HTTP/public), and safe directory restrictions.
Secure email proxy for AI agents — content filtering, PII redaction, and prompt injection detection over MCP
agentcentral hosted Amazon MCP server, Amazon Seller Central MCP server, and Amazon Ads MCP server metadata for Claude, ChatGPT, Cursor, and HTTP-capable MCP clients
Free B2B email finder & verification MCP server. Find, verify, and enrich business emails without paid API subscriptions. Self-contained DNS/SMTP verification. Hunter.io alternative for AI agents.
Sherlock MCP Server: Find truth and counter propaganda through ethical OSINT. FastMCP integration for social media username searches across 400+ platforms using Model Context Protocol. Empowering investigators, journalists, and AI assistants with transparent, verifiable tools.
Give ChatGPT fast, safe, and auditable visibility into your VPS through MCP.
Self-hostable MCP server for SimpleLogin email aliases, mailbox lookups, and account info via stdio or Streamable HTTP. Docker-ready.
Stateless NPC intelligence with layered memory cycles, personality evolution, voice interaction, and MCP-based agency in game environments.
Runtime security proxy for MCP: lockfile enforcement, drift detection, artifact pinning, Sigstore/Ed25519 signing, CEL policy, OpenTelemetry tracing. Works with Claude Desktop, LangChain, AutoGen, CrewAI.
Agent Identity Protocol -- verifiable, delegable identity for AI agents across MCP and A2A. IETF Internet-Draft. PyPI: agent-identity-protocol
🛡️ Automated security scanner for MCP (Model Context Protocol) servers — 52 rules for prompt injection, credential exposure, SSRF & tool poisoning. pip install mcp-safeguard
An AI that administers Linux through typed, approval-gated, Ed25519-audited actions. The model selects the action; the daemon builds the command.
MCP server for Standard Notes with end-to-end encryption (protocol 004). Read/write notes from Claude while keeping E2EE intact.
Per-agent scoped MCP tool proxy — credential isolation, resource scoping, and audit logging for AI agent deployments
A curated list of awesome Model Context Protocol (MCP) servers, tools, SDKs and resources for AI assistants like Claude.
Snapshot, diff, and validate MCP (Model Context Protocol) tool schemas. Brings OpenAPI-level contract safety to the MCP ecosystem — catch breaking changes before they hit production.
Real-time alert bot for Robinhood Chain - Telegram, Discord, and X (Twitter). Tracks new launches, graduations, whale trades, Stock Token premium/discount arbitrage, holder milestones, and liquidity-pull rug warnings. Free tier, x402 USDG premium.
Encrypted secrets store for Claude Code (MCP) + CLI + .env placeholder expansion. macOS Keychain backed.
MCP server for AI-assisted tax filing through FreeTaxUSA using Playwright browser automation
Security for AI agents & MCP — map how MCP servers, skills, and memory chain into exposure paths. Toxic-flow detection, cross-surface graph, drift & policy-as-code. Local-only, no telemetry.
Go SDK for protecting MCP servers and OAuth 2.1 resource servers with tokens issued by the Authplane authorization server. Includes framework adapters (e.g. MCP, net/http).
Native Model Context Protocol (MCP) server for Zabbix with an embedded AI assistant. Auto-generates API tools from the installed Zabbix version, enforces RBAC, supports OpenAI/Anthropic/Gemini/Ollama.
Reliability & security proxy for the Model Context Protocol (MCP). Self-healing connections, runtime tool-poisoning/shadowing defense, and NIST AI RMF + OWASP LLM Top-10 audit trails for any MCP server. Works with Claude, Cursor, Cline, Windsurf.
Open-source security gateway for MCP tool calls — blocks secret leaks, enforces agent policies, and requires human approval for risky actions
Model Context Protocol servers for the official Robinhood Crypto Trading API — the credentialed brokerage API at trading.robinhood.com, documented at docs.robinhood.com/crypto/trading.
Assay — a canary-oracle benchmark for MCP security: a frozen task set scored by a recomputable HMAC-canary oracle (structural-zero false positives), not an LLM judge. Maintained by Verosek.
A fast, OS-sandboxed Model Context Protocol gateway with an embedded Code Mode engine and shell-output token compression, in a single Rust binary.
MCP-native secret scanner in one fast Rust binary: engine, CLI, and MCP server. Finds API keys and secrets, skips known-public fixtures, verifies live keys with a real provider call, and applies env-var rewrites. Privacy invariant: the raw secret never leaves disk.
OAuth 2.1 Authorization Server. Implements the MCP Authorization Spec
Server MCP locale che pseudonimizza documenti legali italiani prima di esporli a un LLM (privacy by design, offline).
Collateralized execution engine for AI agents: bond-and-slash accountability with Ed25519 identities, bounded exposure, and progressive trust tiers.
Instant SEO, performance, and security audits for any URL — an MCP server for AI agents
Engineering OS — a suite of Model Context Protocol (MCP) servers that bring engineering discipline to AI coding assistants: dependency & version governance, hallucination detection, security/architecture/QA/performance review, multi-agent code review, self-healing, and compliance.
AI-native Solana wallet CLI with scoped MCP server — let AI agents manage your wallets with granular permissions, spend limits, and audit logging
The open-source run log for MCP agents. Get a shareable report to verify and reproduce what the agent did — plus a protective mode for common dangerous SQL.
MCP server for Sliver C2 - Adversary emulation framework integration for AI assistants
Runtime policy enforcement and audit control plane for MCP tool execution. Deterministic, non-AI policy engine that intercepts MCP tools/call requests before execution.
Agents change faster than audits. Ancilis discovers what agents can do, classifies the data they touch, activates the right controls, and continuously proves compliance. Trust your agents in production.
Authorization, delegation, provenance, and verifiable-audit engine for AI agents. MCP adapter published.
Tamper-evident audit log for Go: an append-only, hash-chained, optionally Ed25519-signed log/slog handler, with offline logx verify. Built on the standard library, zero third-party dependencies. Also a full slog toolkit (colored output, JSON, rotation, fan-out, CLI).
Enterprise and government control plane for AI agents and MCP servers: govern, secure, observe, and audit. Rust, multi-provider (incl. major Chinese models).
A local proxy that wraps your MCP servers and checks each tool call against policy and live state before it runs - allow, block, or request a refresh, with a reason the agent can act on.
Server-side, framework-permissioned MCP server for Django/DRF. Per-agent permission gating with dispatcher-pattern schema compression.
Outlook.com SNDS (Smart Network Data Services) as an MCP server — OAuth sign-in, IP Data & IP Status reports in Claude, Cursor, and any MCP client. Zero dependencies.
An MCP (Model Context Protocol) server that brings the capabilities of the enigmapython library to LLMs, allowing them to encrypt and decrypt messages using historically accurate Enigma machine emulators
Local-first permission gateway for AI agents: connector-based SSH, Postgres, and Redis access with scoped tokens, human approval, audit logs, and encrypted local credentials.
104-tool DNS Security Intelligence MCP Server — DNSSEC, hijacking, tunneling, typosquatting, email security, CT monitoring, blocklist, infrastructure audit. 100% local, zero API keys required.
SWAG reverse proxy configuration management via MCP. Create, edit, view, and manage nginx proxy configurations with auth integration.
Chia Health MCP Server — Patient workflow integration for a licensed US telehealth platform. Browse GLP-1 medications (semaglutide, tirzepatide), peptide therapies (sermorelin, NAD+, glutathione), and longevity treatments. HIPAA-compliant. 34 tools.
Let Claude use the Chrome you're already logged into — real sessions, real cookies, no second browser. MCP server (CLI) + MV3 extension.
Self-hosted AI agents and workflow automation with human-in-the-loop approvals, a policy engine, connectors, MCP, and a hash-chained audit log.
AgenticStore: The secure toolkit for AI agents. Instantly equip Claude Desktop, Cursor, and Windsurf with 27+ MCP tools, persistent memory, and SearXNG search, all protected by a built-in PII prompt firewall to protect your data from being exposed to AI agents.
MCP server for validating legal citations against CourtListener's 9M+ opinion database — detects AI-hallucinated citations, name mismatches, and ambiguous reporters with an interactive citation panel.
Model Context Protocol server for Scalekit - manage organizations, users, connections via AI assistants
Governed MCP access to Odoo data with Odoo permission preservation, built-in AI chat, and embedded or external Foggy engines.
Professional multi-AI development environment with intelligent cost optimization (<5/month)
Conversational cloud security compliance auditing. MCP server enabling natural language queries about AWS security posture via Claude and other AI assistants.
Authenticated, self-hosted WhatsApp MCP server that serves 96 tools for the token cost of 29, with a labeled eval for tool-retrieval accuracy. Go bridge + Python FastMCP.
Read-only MCP (Model Context Protocol) server for Laravel. Give Claude Code, Cursor, and AI coding agents safe live access to your database, logs, queue, cache, routes, and config. No Sanctum, no user table, no write access.
Comprehensive security scanner for MCP (Model Context Protocol) servers. 12+ analyzers, 117 YARA rules, ML-powered threat detection, dual scoring system. Detects prompt injection, tool poisoning and more
Official QubitOn plugin for the Cursor marketplace — validate and enrich global business data via the Model Context Protocol
Cross-platform WhatsApp Model Context Protocol server with multi-account support and optional local Whisper transcription
A security-first MCP server for pfSense — READ-only today by design; WRITE is staged behind explicit safety architecture, not a feature flag.
Belay is an open-source, local-first security layer for AI coding agents (Claude Code, Codex, Cursor, OpenClaw, Hermes Agent and MCP) that blocks dangerous commands, secret leaks, and prompt injection at the tool-call boundary in under 100ms — no LLM in the decision path by default, no cloud, no phone-home.
Cut API bills 40–70% and stop rogue agent behaviour with a single static binary that sits between any agent and its MCP server — enforcing tool-level security, deduplicating and semantically caching calls, and exposing Datadog‑style observability.
AI-driven DFIR framework: an MCP server that turns Claude Code into an autonomous digital-forensics analyst on SANS SIFT - correlates disk + memory evidence, enforces a deterministic evidence-provenance gate, and produces auditable, hash-chained investigation reports.
Runtime artifact existence & freshness verification for AI agent completion claims — a lightweight, zero-LLM MCP gate that source-binds 'done' claims to real files. MIT.
Agent Skills - 44 skills for AI agents (Sisyphus, opencode): frontend-perfection (Lighthouse audit), secret-scanner, security-review, version-bumper, commit-lint, coverage-analyzer, api-contract-testing, seo-toolkit, sql-helper, docs-system, code-review, github-repo-hygiene. skill.json manifests, CI, Conventional Commits.
A PostgreSQL MCP server that automatically detects and redacts PII in query results before they reach AI agents.
Cryptographic trust infrastructure for MCP servers — signed manifests, TOFU pinning, two-gate enforcement, and the "npm audit" scanner.
A local-first permission firewall and approval layer for AI agent tool calls.
Secure infrastructure for AI agents operating Linux hosts — persistent terminal sessions powered by rmux, full-chain audit logging, MCP-native interface for all major AI clients, with file transfer and multi-host orchestration.
Full-spectrum wireless security MCP server — WiFi, Bluetooth, RF/SDR, NFC/RFID, Cellular/5G, IoT, MouseJack, air-gap, UWB, WIDS/WIPS, compliance. 34 tools, 9 knowledge bases.
MCP server that gives AI agents a local security scanner before they install or trust third-party tools.
Drop-in MCP proxy for debugging AI agents. Real-time timeline, replay, diff. Local-first, no telemetry, one binary.
Safety first. Hardware-verified DeFi for AI agents — designed for when the AI can be compromised.
Open-source zero-trust proxy for MCP servers — adds OAuth 2.1, tool-level RBAC, audit logging, and rate limiting to any MCP server. One Docker command, zero code changes.
MCP-native embedded memory database for AI agents built in Rust. REMEMBER/RECALL/FORGET/SHARE primitives with hybrid vector search, AES-256-GCM encryption, DuckDB/PostgreSQL backends & SDKs for Python, TypeScript and Go.
Audit all locally configured MCP servers for permission risks, prompt injection threats, and schema drift
EnigmAgent — 6-layer encrypted vault for AI agents (AES-256 + ChaCha20 + Blowfish + Fernet + 3DES + RSA). P2P sync via Gun.js. Zero cloud. Part of P2PCLAW.
Security scanner and install and runtime protection suite for Model Context Protocol (MCP) servers
AI Agent Skill for NSAuditor AI — gives any AI coding agent built-in knowledge of NSAuditor's MCP tools, schemas, plugins, and security audit workflows. Works with Claude Code, Cursor, Windsurf, and any MCP-aware agent.
Production-ready, zero-knowledge AI DevOps deployment, infrastructure provisioning, self-healing execution engine, and runbook generator for VPS servers via Model Context Protocol (MCP).
🛡️ Ultra-fast local security firewall, secret sanitizer, and context token compressor for Claude Code, Cursor, and MCP AI agents.
Official SupraWall MCP (Model Context Protocol) Security Plugin. Enforces deterministic guardrails, least-privilege tool access, and PII interception for AI agents.
Production middleware for MCP servers. Auth, sessions, health checks, graceful shutdown, transport ergonomics. Wraps the official Model Context Protocol SDK.
MCP server for the MITRE ATT&CK knowledge base: map alerts to techniques, profile threat groups, analyze detection coverage, and enrich SOC workflows from an AI client.
The quality gate for the MCP ecosystem. Spec compliance, security scanning, and performance benchmarks for MCP servers.
A tamper-evident, local-first audit trail for AI-agent work — an MCP server with typed tools behind workflow gates and a signed, hash-chained log anyone can verify without a secret.
Zero-dependency Model Context Protocol (MCP) server in pure Go — stdio + HTTP transports, built-in tools (RAG, fetch, filesystem, shell, KV), SSRF guard, sandboxed filesystem, allowlisted shell. Paired with mcpc.
SkillSync MCP — security-gated skill management for Claude Code, OpenClaw, Cursor & Windsurf. 60+ threat pattern scanner.
passwd.team for AI agents — MCP server, agent-safe CLI, and full CLI. Agents use credentials without ever seeing the raw values.
Security-first MCP server for Odoo 17/18/19 — YAML-driven security, zero Odoo-side code, 27 tools + 5 resources + 7 prompts
Unauthenticated MCP server exposing read-only chain-data tools and pay-per-call Web3/market/travel tools settled via x402 — built on the official MCP SDK and NestJS.
A content moderation system that leverages OpenAI's moderation API through Google's Agent Development Kit (ADK) and Model Context Protocol (MCP).
Mobile app security analysis MCP server for Android APK and iOS IPA files
Salesforce Meta Tool (MCP Server) with end-to-end identity propagation via On-Behalf-Of (JWT Bearer) flow through Azure AI Foundry and APIM
TypeScript middleware toolkit for MCP servers - authentication, caching, rate limiting, CORS, logging (beta)
Official MCP server and TypeScript client for Onplana — connect Claude, ChatGPT, Cursor, and any MCP-compatible AI agent to your project portfolio.
MCP server for AI-mintable tokens via EIP-7702. OAuth 2.1 + SIWE wallet auth. Powers $SHIT on Ethereum mainnet.
A Model Context Protocol (MCP) server for calculating MD5 and SHA-256 hashes, complete with tools and guides for understanding and building MCP servers. Works with Claude Desktop & VSCode.
MCP server — read-only log access for AI assistants. Debug your Linux server with AI, without giving the AI shell access.
OmniBridge is an MCP server that gives AI agents an ephemeral, gVisor-isolated sandbox to run, test, and cryptographically prove their code works — before it ever reaches production.
Legal Cite PL — MCP server weryfikujący aktualne brzmienie przepisu PL/UE prosto ze źródła (Sejm ELI, EUR-Lex). Anti-halucynacja dla Claude. Apache 2.0.
MCP server for Chestniy ZNAK — product marking, CRPT verification (Russia)
Official MCP server for ipgeolocation.io. IP geolocation, VPN/proxy detection, timezone, astronomy, ASN, and user-agent parsing for Claude, Cursor, Copilot, and other MCP clients.
Open Agent Security Fabric — red-team agentic AI, MCP firewall SDK, action oracles & SARIF CI gates. Assure, Enforce & Govern. Python + TypeScript. OWASP LLM/Agentic/MCP Top 10.
OAuth 2.1 reverse proxy for MCP servers — RFC 9728 metadata + JWT validation
OpenTelemetry + Wireshark + Cloudflare for AI Agents. Monitor, inspect, secure, replay, and optimize all traffic between Users, AI Agents, LLMs, and MCP Servers.
Local MCP server that exposes your Apple Health data (synced to your Mac by the HealthMirror iOS app) to AI tools like Claude — runs locally, no network access.
MCP server for Microsoft Patch Tuesday - query MSRC security updates, CVEs, and KBs with EPSS + CISA KEV enrichment. No API keys. Works with Claude, Copilot, Cursor, and any MCP client.
Open-source MCP gateway: 0.02ms overhead, 46K+ RPS cache hits, auth, guardrails, plugins, multi-server routing. 1341 tests.
See what your AI-coding session actually cost — and what is eating your context. Local, read-only CLI for Claude Code.
Open-source compliance engine for AI agents. Rules, SDKs, and examples.
Universal cyber assistant: ~80 audited Kali tools + an expert skills library, driven by any model over MCP or direct run
The guardian layer for AI agents — identity, secrets, audit via MCP. Gate + Vault + Watch.
DPO/SafeDPO/OPAD training + eval for teaching tool-using LLMs to refuse falsely-benign MCP exploits
Obsidian Turbocharged — governed, agent-ready Obsidian MCP server. 141 tools across 31 domains, multi-vault native, pluggable embeddings. TypeScript + Rust. AGPL-3.0-only.
Trust and quality infrastructure for AI agents. 225+ quality-scored capabilities, SQS scoring, EU AI Act support.
Orchestrate multi-hop pivots, SOCKS/forwards, and intranet recon through MCP tools. Authorized use only.
MCP server for VMware Aria Operations for Logs — log search, incident detection, vROps correlation
Intercept & tamper proxy for MCP traffic — X-ray and rewrite the JSON-RPC between an AI agent and its MCP servers. Burp Suite for AI agents. Authorized testing only.
Forensic biopharma catalyst auditor — 10-tool MCP server that cross-references CT.gov, SEC EDGAR, openFDA, PubMed & Yahoo Finance to return a single deterministic verdict (CLEAN / BEAR_SIGNAL / BLACK_FLAG).
Focusing on building both MCP servers and clients using the Python SDK to make sure these three core primitives—tools, resources, and prompts—and understand how they integrate with Claude AI, Gemini AI, Copilot and Grok to create powerful applications without writing extensive integration code.
Verifiable agent identity for A2A and MCP. Cryptographic claims, append-only transparency log, recovery-key revocation. Apache 2.0.
An AI organism - the human-AI interface layer. A safety reflex that refuses known lethal actions even when the model is fooled, and a memory that only keeps what actually worked. For code, research, writing, or a fleet of agents. 100% local.
Afterlogin: The Hunt × Helper Patrol — a cinematic identity & data-governance training game powered by real gpt-4o tool-calling agents + Foundry IQ grounding. Microsoft Agents League · Creative Apps.
Stop AI agents from doing dangerous things through MCP. Wraps any MCP server with allow/block/hold-for-approval guardrails.
MCP server exposing datos.gob.do — Dominican Republic open government data — to any AI assistant. Search, browse, and preview 1000+ public datasets from 266 government institutions.
Local PII and secret redaction for Python LLM apps and AI agents. Zero dependencies. Prompts, tool calls, MCP, memory, logs, and traces.
MCP server for SolarWinds Service Desk: tickets, service catalog, KB, change/release workflows, assets/CMDB, procurement, and risk.
Security scanner for Model Context Protocol servers. Catch tool poisoning, prompt injection, and supply-chain attacks before your AI agent runs them.
Serveur MCP pour Ara — Audits d'accessibilité RGAA 4.1 du gouvernement français. Permet des flux de travail d'audit assistés par l'IA via le protocole MCP (Model Context Protocol).
Security-first MCP bridge for Codex-supervised Reasonix ACP workers
MCP server for the Monzo banking API with OAuth, local transaction cache, and spending analysis
Sandbox any MCP server in one line. Firecracker microVM isolation for Claude Desktop, Cursor, Windsurf, and every MCP client.
Zero-trust security sidecar for AI agents - MIT, single Go binary, <5ms p99 overhead, protects Claude Code/Cursor/Codex/Gemini CLI/Windsurf
Open-source MCP server giving AI agents 9 deterministic tools for the EU AI Act (Regulation 2024/1689). No LLM in the loop.
Cage untrusted MCP servers in containers, compose them into agents, and share them over any OCI registry. Signed, sandboxed, no Docker required.
Local-first secrets manager for macOS. Encrypted vault, menu bar app, CLI, and an MCP server that loads secrets into your coding agent's shell instead of the chat. No cloud, no account, no subscription.
Deterministic MCP Security Architecture. FrozenNamespace as Root of Trust for Model Context Protocol tool verification
Secure SSH gateway for AI assistants — MCP server with connection pooling, session isolation, command safety, and web audit panel
Command-line interface for Declaw — security-first sandboxing for AI agents
Code-enforced incident-response agent that investigates SigNoz alerts, publishes evidence-backed root-cause claims, and gates every action behind a safety policy. Built for Agents of SigNoz hackathon.
Headless MCP server that gives AI agents the full power of JADX for Android (APK/DEX/AAB) reverse engineering.
Runtime governance for AI agents — 57 MCP tools, embedded engine, no key required. Decision gates, forensic audit, EU AI Act / NIST / SOC 2 mapping. Model-agnostic.
MCP server for Malcolm: full read surface plus opt-in, audited write tools
Universal digital fingerprinting MCP server — 103 techniques in 13 tools for TCP/TLS/SSH/HTTP/DNS/WAF/IoT fingerprinting, C2 detection, OSINT enrichment
Prompt-injection defenses for Claude Code. A PreToolUse Bash hook blocks compositional credential-exfiltration shapes (secret read plus network, env dump to network, remote script to shell, reverse shells). A sanitizing MCP server wraps untrusted URLs and files in sentinels, strips invisible unicode, flags jailbreaks.
Autonomous AI agents inside a Qubes-isolated sandbox - tag-scoped Admin API access with dom0-mediated trust boundary.
Day-zero supply-chain checker for npm + PyPI, as a local MCP server for AI coding agents. Calls check_package before installs to surface contextual anomalies.
Self-hosted MCP gateway/proxy for AI agents — OIDC auth, Casbin RBAC/ABAC, circuit breaking, PII redaction, a 42-connector catalog, and a full admin dashboard. TypeScript.
Delegate coding tasks to agents, collect artifacts, and verify results locally with standalone supervision skills for Claude, Codex, and Kimi automation.
MCP server for running Ox Security MegaLinter via mega-linter-runner
Open-source MCP governance proxy -- authentication, authorization, audit, and a marketplace for AI tools. Self-hosted via Docker.
MCP server for website health analysis — SEO, accessibility, security, broken links. Zero config, zero API keys.
Official SDK for Rulecatch — AI coding analytics, monitoring, and rule enforcement for Claude Code, Cursor, and AI coding assistants
Promote music on Spotify and grow YouTube channels through AI-powered Meta and Google ad campaigns.
128-tool MCP server for steganography analysis — LSB detection, chi-square steganalysis, RS analysis, JPEG/F5/JSteg/OutGuess detection, BPCS, video & GIF stego, network covert channels, MP3 stego, spread spectrum, archive stego, QR code analysis, audio stego, text encoding, file forensics. 100% offline, zero API keys.
An open-source modeling language and static risk scanner for secure AI agents, MCP servers, and A2A integrations. Model agent boundaries before they act.
Local-only macOS MCP daemon exposing Proton Mail to Claude clients via scoped, consent-gated tool calls.
MCP server that makes the BSI IT-Grundschutz++ compendium queryable for AI agents and ISMS tooling.
Local-first, fully offline AI assistant for an NGO's case data. A local Ollama model answers only through MCP tools, with full provenance in the UI. Nothing leaves the machine.
Production-ready MCP server for VEROQ — 52 tools for financial intelligence. Ask, verify, search, price, screen, and more.
Apple Search Ads MCP Server — Manage your Apple Search Ads campaigns with AI through the Model Context Protocol
Security vulnerability scanner for VS Code. Scans dependencies for CVEs from NVD/OSV databases. Integrates with GitHub Copilot via Model Context Protocol. Supports npm, pip, Maven, Go, Rust, and more.
MCP server that adds a fail-closed quality gate and hash-chained receipt ledger to any AI agent workflow.
MCP server for the sevDesk API — complete endpoint coverage plus a bookkeeping audit layer (§13b reverse-charge checks, duplicate detection, subscription gaps)
Trusty Squire signs up / in to websites for you so you don’t have to.
Security scanner and developer toolkit for MCP servers used by AI agents.
AI Governance Infrastructure — open gateway demo. Self-hosted systemprompt.io gateway in a single Rust binary: policy, audit trails, and cost attribution on every AI request, with the Systemprompt Bridge desktop app for Windows and macOS connecting Claude Code and Claude Cowork.
A governed control plane for AI agents — approval before action, budget before spend, receipts after every run. Local + cloud.
Security & governance guardrails for MCP agents in Java — audit trail, agent-to-tool authorization, prompt-injection detection and rate limiting as a zero-config Spring Boot starter.
MCP server for secure AI agent authentication — lets Claude, Claude Code, and other LLM agents call APIs without exposing raw tokens or credentials to the model
MCP server for WCAG accessibility, AEO, and AI agent security scanning. Connect Claude, ChatGPT, Cursor to Deveras scanners.
Trust infrastructure for AI agents — constitution enforcement and cryptographic receipts. TypeScript SDK.
Government Contracting MCP Server — AI-powered tools for federal procurement intelligence, SAM.gov analysis, and contract opportunity discovery
Runtime guardrails for AI agent MCP tools. Blocks dangerous tool calls at runtime with a default-deny policy proxy.
Hardened MCP server for TrueNAS SCALE. 270 safety-tiered actions over WebSocket JSON-RPC, single hierarchical tool, fail-closed registration gate, layered response filtering. PolyForm Noncommercial.
Stop AI agents from confidently using stale facts. MemGuard validates memories in Mem0, Zep, Letta & LangMem against reality — trust scores, quarantine, tamper-proof audit trail, MCP tools. Like Datadog for agent memory.
Veto MCP — gives every major AI CLI (Claude Code, Codex, Gemini, Cursor, Windsurf) a council of 49 specialist agents + 93 tools. Deterministic-first, self-learning, no API keys.
Security proxy for MCP servers. Catches indirect prompt injection attempts before they reach your AI agent.
Machine-readable merchant verification infrastructure for AI shopping agents and agentic commerce systems.
🔍 Enable AI-driven network security scanning with a production-ready Nmap MCP server supporting diverse tools, scan types, and timing templates.
Dual-protocol gateway: 62 MCP tools + A2A Protocol agent (82/82 TCK intentional) in a single governed runtime
Description: Local-first pre-commit policy guard for AI-agent repositories. Website: https://pypi.org/project/aigenguard/
MCP server that gives AI assistants access to a Kali Linux Docker environment for security testing
MCP server that runs sudo via a native OS password dialog so the password never enters the model context.
MCP server that gives AI coding assistants production-grade engineering standards — SOLID, testing, architecture, CI/CD — for Claude, Cursor, Copilot, Windsurf, Cline & Aider
Governance for AI-written project docs — verify, catch drift, keep them code-grounded, enforce in CI. Zero-dependency, OKF-compatible.
A complete Model Context Protocol (MCP) server for Keycloak 26.x
Safe-by-default Oracle Database MCP server, in pure Rust — fail-closed SQL guard, engine-free, stdio + HTTP.
Security, cost, and health governance proxy for MCP infrastructure — YAML policy engine, OAuth 2.1/OIDC, web dashboard, mTLS, semantic shell analysis, STRIDE threat model
Self-hosted MCP gateway: AI agents get audited, SSO-gated, read-only database access without ever holding a DB credential.
Security linter for environment variables, Docker, CI, Kubernetes, and runtime configuration.
Self-hosted MCP server: your codebase as a knowledge graph, your secrets in an encrypted vault — both reachable by your AI assistant, and by nobody else.
Open MCP server for disability insurance: an agent-callable quote_request action plus carrier/coverage research tools, by Seaworthy Insurance Agency.
Model Context Protocol (MCP) server that enables Claude to perform comprehensive security audits on Solidity smart contracts using Slither, Aderyn, and built-in pattern detection
Greenbone/OpenVAS MCP Server for AI-assisted Vulnerability Management
49 AI tools across 9 MCP servers. Enterprise AGI Runtime (1,054 tests). Free tier. ☕ buymeacoffee.com/yesinyagami
Self-hosted, extensible AI agent platform with governed MCP tools, persistent project memory, durable workflows, capability packs, autonomous execution, and distributed local-model compute.
Diagnose, secure, and benchmark your MCP servers. Zero-config CLI for Claude Code, Cursor, VS Code, and Windsurf.
Local safety-gated MCP bridge for AI agents and Outlook mail & calendar: metadata-first reads, explicit content, reviewed sends, guarded cleanup.
A Roslyn analyzer that catches prompt-injection and tool-poisoning in C# Model Context Protocol (MCP) server tool descriptions at build time. MCPGxxx diagnostics, code fixes, and a CI gate.
MCP server for SATP — query AI agent trust scores from AgentFolio. Works with Claude Code, Cursor, and Claude Desktop.
Your SIEM answers live behind a console you babysit. wazuh-mcp reads Wazuh alerts, agents, and CVEs straight into your AI client. Read-only, nothing leaves the box.
Unofficial MCP server for Proton Mail (not affiliated with Proton AG) — send, read, search & organize email over SMTP/IMAP
MCP server exposing finvariant's deterministic financial-statement integrity checks (footing, the accounting equation, cash-flow tie-outs, articulation) as tools for AI agents.
MCP server for Watchr. Competitive intelligence & brand monitoring for AI assistants. https://www.watchr.ai
Local-first MCP server that gives sandboxed Codex a narrow, auditable Git workflow surface.
90-tool MCP server for software supply chain security — OSV, GHSA, NVD, EPSS, CISA KEV, npm, PyPI, crates.io, RubyGems, NuGet, Packagist, Go, deps.dev, Scorecard, Rekor, ClearlyDefined, Repology, typosquatting detection
MCP server for AI security intelligence. Check any MCP server for supply-chain threats before installing -- from Claude, Cursor, or Windsurf.