Directory · topic · 2,075 servers
security
Servers whose registry description an AI model classified as security. Topics are estimates, not hand-checked. All topics.
- io.github.alexar76/wardenWARDEN — MCP Security Firewalllocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.alialrikabi313/haresHares — MCP security scannerlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.alicelabs-llc/marketnowMarketNowremote and local packagesecurity · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.alifanov/scopegateScopeGateremote (hosted by the publisher)security · AI-classifiedNot tested · needs a credential or setting
- io.github.almega-ai/almega-mcpAlmegalocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.altrsoftware/altr-mcp-serverMCP server for ALTR data security: databases, tags, policies, classification, access, auditslocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.alvseek/munninMunnin — an agent identity serverremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.andrasfe/vulnicheckHTTP MCP Server for comprehensive Python vulnerability scanning and security analysis.local packagesecurity · AI-classifiedNot tested
- io.github.andrewszk/clawvault-mcp-serverAI agent payment security - spending limits, whitelists, and human approval.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.andyscott88/agentsafeReal-time URL trust scoring for AI agents. Blocks phishing and malicious sites.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.aos-standard/mcp-blast-radiusMCP Blast-Radius Auditorlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.apiiro/guardian-agentApiiro Guardian Agentremote (hosted by the publisher)security · AI-classifiedNeeds the operator's credentialtested 2026-10-08
- io.github.apilocker/apilockerAPI Lockerlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.aplaceforallmystuff/mcp-threatintelUnified threat intel - OTX, AbuseIPDB, GreyNoise, abuse.ch, Feodo Trackerlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.apurvsinghgautam/robinRobin: AI-Powered Dark Web OSINTlocal packagesecurity · AI-classifiedNot tested
- io.github.apxlabs-ai/niroNirolocal packagesecurity · AI-classifiedNot tested
- io.github.aristiun/aribotThreat modeling, code/cloud/pipeline scanning, shadow-AI discovery, compliance checks and fixes.remote (hosted by the publisher)security · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.ark-forge/mcp-eu-ai-actEU AI Act + GDPR compliance scanner. One call, no arguments, 10 seconds. 22 AI frameworks detected.remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.arose26/make-audit-mcpAudit Make.com blueprints before importing: hardcoded secrets, dangling refs, risky settings.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.arsonx-dev/gatesolve-mcpGateSolve CAPTCHA Solverlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.arthurpanhku/dvalincodeDeterministic security scanning, no model or API key, plus offline-verifiable proof a fix worked.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.arturayupov/keywardkeywardsecurity · AI-classifiedNot tested
- io.github.aryanspv/har-forensics-mcpTells you what leaked in a .har capture, who's on the page, and what to strip. No network calls.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.asherengos/verify-atomverify-atomlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.ashishrao-4/vaultguardvaultguardlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.ashlrai/phantom-secrets-mcpPhantom Secretslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.asish-singh/agent-readiness-auditorAgent Readiness Auditorlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.astafford8488/agentaegisAgentAegisremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.atmflow55/agentshieldAgentShieldlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.attestd-io/attestd-mcpCVE checks, supply chain signals, live catalog, and CVE detail for MCP clients (infra, PyPI, npm).local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.attestedintelligence/aga-mcp-serverVerifiable decision records for AI agents: signed receipts for calls to its own governed tools.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.attestifyagent/attestify-mcpAttestify OSlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.aurumflux20/sealSeallocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.authzx/mcp-gatewayAuthzX MCP Gateway — policy-enforcing proxy between AI agents and MCP serverslocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.awslabs/mcp-server-for-oscalMCP Server for OSCALlocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.azender1/safeagentExactly-once execution guard for AI agents. Prevents duplicate payments and webhooks on retry.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.bawbel/bawbel-mcpBawbel Scannerlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.bawbel/bawbel-scannerBawbel Scannerlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.bawbel/scannerBawbel Scannerlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.bch1212/agenttrustTrust scores & reputation for the agent-to-agent economy. Verify A2A counterparties.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.bch1212/agentvaultCredential vault for AI agents — Fernet-encrypted keys, per-agent budgets, audit logs.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.bch1212/injectshieldPrompt-injection firewall for AI agents — scan untrusted text before LLM calls.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.bch1212/queryshieldSecure SQL proxy for AI agents — NL→SQL, AST safety, per-agent RLS, audit log.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.beepboop2025/data-breach-detectordata-breach-detectorremote and local packagesecurity · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.beepboop2025/liquilens-evidence-carrierLiquiLens Evidence Carrierlocal packagesecurity · AI-classifiedNot tested
- io.github.beepboop2025/lucentCall-scoped Clear Signing presentation checks for EVM signing agents.local packagesecurity · AI-classifiedNot tested
- io.github.behrensd/mcpwallmcpwalllocal packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.bg4ff8mtdn-dotcom/ownership-attestation-protocolMCP protocol enforcing explicit task acceptance and attestation-tagged completion claims.security · AI-classifiedNot tested
- io.github.bgage72590/xploitscan-mcpXploitScanlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.bibinprathap/veritasgraphZero-trust, air-gapped Enterprise GraphRAG MCP server with offline, citation-grounded answers.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.bitatlas-group/bitatlasZero-knowledge encrypted storage for humans and AI agents. Client-side AES-256-GCM, EU-hosted.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.bitterdev/enpass-mcpMCP server for Enpass vaults: entries, passwords and TOTP/2FA codes, keychain-backed.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.bitterdev/veracrypt-mcpMCP server to mount and unmount VeraCrypt containers with secure stdin password handling.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.blackcow4234-lab/artifactguardArtifactGuard Signed AI Deliverable QAremote (hosted by the publisher)security · AI-classifiedNot tested · needs a credential or setting
- io.github.blackdome-ai/blackdomeBlackDome Threat Intellocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.blackdome-ai/blackdome-mcpBlackDome Threat Intellocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.bluetouff/l0gl0g.fr Risk Intelligenceremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.bobnetsec/hacker-bob-public-recordsHacker Bob public recordsremote (hosted by the publisher)security · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.bolyra/gatewayMCP auth gateway: verify agent identity, enforce per-tool permissions, block replays, emit receipts.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.bolyra/mcpMCP auth middleware: gate tool calls so only authorized agents can act.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.bolyra/sdkTypeScript SDK for mutual ZKP authentication between humans and AI agents.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.bolyra/shieldStdio MCP auth proxy: wrap any MCP server with per-tool permission enforcement.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.bonesdefi/tripwireTripwirelocal packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.bountyyfi/mcp-watchdogMCP security proxy - detects and blocks 40+ MCP attack classes. Zero config.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.bowenerchen/cipherhubCipherHUB Cryptography Toolkitremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.bpolania/bulwarkBulwarklocal packagesecurity · AI-classifiedNot tested
- io.github.brian-mitchell-sec/workspace-toolsResearch honeypot. Logs connections and tool arguments; injects instructions. Read README first.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.brkd-h1/readme-canarySecurity research canary remote MCP server for owned-account testing.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.brnbtech770/blocktrust-trustscanBLOCKTRUST TrustScanremote (hosted by the publisher)security · AI-classifiedNot tested · needs a credential or setting
- io.github.brunovicco/mcp-server-auth-templateMCP Server Auth Templatelocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.burademirung/protectwith-kbAI-security knowledge as MCP: standards-mapped tools (OWASP, NIST, MITRE) for AI agents.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.bx33661/wireshark-mcpProfessional network analysis with tshark. Security audits, deep-dives, and threat detection.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.cabbageandtea/sqlguardSQLGuard — Execution Certificate Firewallremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.caglarbozkurt/heimdallScan an MCP server or agent config for injection, exfiltration, and risky capabilities.local packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.capsolver-ai/capsolver-mcpMCP Server for CapSolver - captcha-solving capabilities for AI agentslocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.carruda-Global/ecosystem-aec-regulatoryNR-1 psychosocial risk, LGPD, whistleblower, pay equity & anti-corruption tools (Brazil)remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.carson-see/arkova-verificationArkova Verificationremote (hosted by the publisher)security · AI-classifiedNot tested · needs a credential or setting
- io.github.cdonoyan/shukaUniversal trust attestation for AI agents: create, verify, and negotiate Shuka trust proofs.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.cdrn/sigilLocal keystore + MCP server. Claude can sign EVM transactions but never sees the private key.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.ceedot-rock/json-chamber-mcpChamberlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.certindex/certindex-mcpCertificate Transparency search for AI agents: certs, subdomains, issuance history, expiry.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.cgrtml/reasongateReasonGatelocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.chirag127/secenv-mcpCentralized secrets manager MCP server. Generate .env files, rotate keys, sync to GitHub Actions.local packagesecurity · AI-classifiedNot tested
- io.github.chrbailey/promptspeakPromptSpeak Governancelocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.chudah1/attest-mcpCredential enforcement middleware for MCP servers — verifies scoped tokens on every tool calllocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.clayseal/claysealClay Seallocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.cleburn/aegis-mcpRuntime governance enforcement for AI agents. Zero token overhead.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.cmdenney/logicnodes-mcpRemote MCP for LogicNodes: Signed PII-Shield flagship + payable x402 agent tools on Base.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.cmdenney/logicnodes-mcp-bridgeSigned PII-Shield: redact PII to an EIP-191 attestation, plus x402 pay-per-call agent tools.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.cmondillo/content-moderation-apiContent Moderation APIremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.co2water/agentegressagentegresslocal packagesecurity · AI-classifiedNot tested
- io.github.coburn2716/mcpvaultMCPVaultlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.code-with-brian/vettlyContent moderation for AI applications. Moderate text, images, and video with configurable policies.security · AI-classifiedNot tested
- io.github.coderifts/api-governanceSigned, offline-verifiable contract-change authorization. Only a granted change can proceed.remote (hosted by the publisher)security · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.codespar/mcp-clearsaleMCP server for ClearSale — Brazilian fraud prevention, order risk scoring, device fingerprintinglocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.codespar/mcp-jumioMCP server for Jumio — global identity verification + KYX: documents, liveness, AML screeninglocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.codespar/mcp-onfidoMCP server for Onfido — global identity verification + KYC: applicants, documents, checks, workflowslocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.codespar/mcp-personaMCP server for Persona — developer-first identity verification + KYC (inquiries, accounts, reports)local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.codespar/mcp-siftMCP server for Sift — global ML fraud detection: real-time risk scoring, decisions, event ingestionlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.companybetatel/mcp-serverPhone verification: free keyless coverage/pricing discovery + 4-channel OTP send. 15 tools.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.compl-i-agent/csfNIST CSF 2.0 - Professional cybersecurity framework with 35 tools and 12 promptslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.corporatelad/promptscanPromptScanremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.cqnce-app/cqnce-mcpcQnce MCPremote and local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.crunchtools/trentinaTrentinalocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.csacanam/hashproofIssue verifiable credentials from AI agents for $0.10 via x402. On-chain on Celo, IPFS-pinned.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.csanadymiklos/lautherPuts Approve/Deny on your phone before an agent acts, and waits for your fingerprint.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.cx-anand-nandeshwar/dlp-mcpThe DLP MCP provides the compliance violation in the one drive, google drive documents.remote (hosted by the publisher)security · AI-classifiedNot tested · needs a credential or setting
- io.github.cyanheads/attack-surface-mcp-serverPassive external attack-surface mapping: CT subdomains, DNS, TLS, HTTP posture, RDAP/WHOIS, Shodan.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.cyanheads/cisa-cybersecurity-mcp-serverCISA KEV with BOD 26-04 deadlines, SSVC prioritization, and the ICS advisory corpus (CSAF). Keyless.remote and local packagesecurity · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.cyanheads/nist-nvd-mcp-serverSearch and audit NIST NVD CVEs by keyword, severity, CWE, CISA KEV status, and CPE.remote and local packagesecurity · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.cyanheads/osv-advisory-mcp-serverQuery OSV.dev for package vulnerabilities and batch-audit dependency lists via MCP.remote and local packagesecurity · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.cyanheads/pentest-mcp-serverOffline methodology engine for authorized penetration testing, CTF, and security research.remote and local packagesecurity · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.daedalus/mcp-cryptographyMCP server exposing cryptography library functionalitylocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.daedalus/mcp-ecdsaMCP server for ECDSA cryptographylocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.daedalus/mcp-pwntoolsMCP server exposing pwntools 4.15.0 functionality for binary exploitationlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.daedalus/mcp-pymetasploit3MCP server for Metasploit Framework via pymetasploit3local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.daedalus/mcp-recon-ngMCP server exposing full recon-ng OSINT framework functionalitylocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.daedalus/mcp-shodanMCP server exposing all Shodan API functionalitylocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.daedalus/mcp-smbmapMCP server exposing smbmap SMB enumeration functionalitylocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.daffa2555/razorTokenectomy Razorlocal packagesecurity · AI-classifiedNot tested
- io.github.dailyaiagents-cpu/plist-drift-detectorEvery 6h, compare loaded launchd labels (launchctl list) against source-of-truth plists in config...security · AI-classifiedNot tested
- io.github.dalisecurity/frayFray — WAF Security Testing MCP Serverlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.dambuchs/redact-pdf-mcpPermanently redact PII from PDFs and scans. EU/Swiss-hosted, never used to train AI models.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.danielarif26/freerdcFreeRDCremote (hosted by the publisher)security · AI-classifiedNeeds the operator's credentialtested 2026-10-08
- io.github.dario933/grith-mcpGRITH MCP for persistent citizen identity, private memory, return proof, and city doors.remote (hosted by the publisher)security · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.darkmatter-hub/mcp-serverDarkMatterlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.darkmatter-hub/verifiable-agent-audit-trailDarkMatterlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.darrenjrobinson/entra-scim-mcpMicrosoft Entra SCIMlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.darrenjrobinson/entrapulse-polyarchyInteractive Entra ID identity relationship visualization — the 2003 polyarchy, live as an MCP Applocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.darrenjrobinson/hibpA Model Context Protocol (MCP) server for the Have I Been Pwned (HIBP) APIlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.datahogo/datahogoScan a project for security issues locally with the open-source Data Hogo engine.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.davisvillelabs/scopeproofScopeProofremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.declaw-ai/mcp-serverSecure Firecracker microVM sandboxes for AI agents: network policy, PII & injection guardrails.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.degenlegion-com/waxsealEd25519 identity for AI agents. Verify seals, sign documents, gate actions with approvals.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.delentia-labs/delentia-mcpDelentia Sovereign AI Operating Systemlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.dengyier/OpenWorkProofVerifiable execution for AI agents: Ed25519-signed work contracts and audit trails.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.denial-web/agent-immuneAI agent security: prompt injection detection, semantic memory, output scanning, prompt hardeninglocal packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.denyn1/aifeed-mcp-serverAIFeedlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.detection-forge/agentic-detection-lookupsAgentic Detection Lookupssecurity · AI-classifiedNot tested
- io.github.dev-prathap/attestAttestlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.dev-prathap/attest-proxyAttest proxylocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.dewtech-technologies/obsidian-mcp-secureSecure MCP server for Obsidian with OWASP Top 10 controls and full audit logging.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.dewtech-technologies/tubemind-secure-mcpSecure MCP server for YouTube intelligence — 18 tools, OAuth2, OWASP Top 10 controls.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.dfkunstler/mcp-server-for-oscalMCP Server for OSCALlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.dhanushs1912-svg/agent-receipts-mcpEU AI Act-ready audit trail: signed, tamper-evident receipts proving what your AI agents did.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.diemoeve/mcpampelMCPAmpel - MCP Security Scannerlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.digidenone/synapse-auditAI-Powered Security Scanner for LLMs. Detects vulnerabilities and syncs with SynapseAudit.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.dingdawg/dingdawg-complianceEU AI Act + Colorado AI Act compliance scoring. 87/100 in 60 seconds. Free local scan.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.dingdawg/dingdawg-governanceUniversal governance layer for AI agents. MCP-native, fail-closed, audit proofs and rollback.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.dingdawg/dingdawg-shieldAI security scanning and trust scoring. Stack-specific threat models. Free local scan.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.dir-ai/voyager-netA safe, read-only, authorized audit of one host you own: DNS, ports, TLS, HTTP hygiene.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.disclose/lookup-disclose-ioFind the right security-disclosure contact for any internet asset (domain, IP, package, repo, app).remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.dl-eigenart/agentshield-mcpDetect prompt injection, jailbreak, and social-engineering attacks in LLM agents.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.dmarc-examiner/mcpRead your own DMARC aggregate and forensic reports: sources, alignment, alerts, CSV export.remote and local packagesecurity · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.dockndevai/mcp-keycloakKeycloak admin for AI agents — realms, users, clients, roles; safe-by-default governance.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.dogrucanemek-alt/cedulonCedulonlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.dominic-righthere/envibeSecure permission layer between AI agents and your .env fileslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.doteyeso-ops/mcp-server-vibes-codedVibes-Coded Agent Security and Commerce Toolsremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.doublegate/cyberchef-mcpCyberChef's 504 data-transformation operations as MCP tools: encryption, encoding, forensics.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.drzamarian/n8n-mcp-communityn8n MCP Communitylocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.dtkmn/mcp-zap-serverMCP ZAP Serverlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.dulzuradev/liveauth-mcpMCP server for LiveAuth: PoW + Lightning auth, L402 bundles, and paid MCP tool receipts.local packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.eason4kim-rocket/purify-feeds-mcpPurify Security Feedslocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.egoughnour/code-firewall-mcpStructural similarity-based code filter. Stops malicious code pattern reaching execution tools.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.elberacasa/umbraUmbralocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.eltociear/contract-guard-mcpEVM contract/token risk check + ERC20 approval (proxy, EIP-7702, unlimited-allowance). Zero deps.local packagesecurity · AI-classifiedNot tested
- io.github.eltociear/repo-security-scannerRepo Security Scanner — Malicious Code & Supply Chainremote (hosted by the publisher)security · AI-classifiedNot tested · needs a credential or setting
- io.github.eltociear/secrets-audit-mcpDetects leaked secrets & API keys: 32+ provider rules (AWS, GitHub, Stripe, OpenAI…), zero deps.local packagesecurity · AI-classifiedNot tested
- io.github.eltociear/skill-audit-mcpMCP server: static security scanner for MCP servers, agent skills & plugins. 17 attack patterns.remote and local packagesecurity · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.elwsls/verifiable-claim-seedverifiable-claim-seedlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.emiliaprotocol/mcp-serverEmilia Protocollocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.endoflife-ai/endoflife-mcpendoflife.ai — Software Lifecycle Intelligenceremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.entradox/perimeter-watch-scannerPerimeter Watchremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-09
- io.github.entradox/trust-scanTrustScanremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.entropy0dev/mcpEntropy0 MCP server — source trust and URL safety tools for AI agentslocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.eobi/nemesis-shieldPositive-security for apps, APIs, LLMs and edge, plus fraud scoring and identity/AML screening.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.equinoxaifinance-rgb/living-stackLiving Stack Communitylocal packagesecurity · AI-classifiedNot tested
- io.github.ericm1018/skillfm-byok-vault-api-key-provider-usageSkillFM BYOK Vaultlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.erikirby/brand-monitorMonitor domain expiry, SSL certs, and social handle availability across platforms.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.ertugrulakben/dep-oraclePredictive dependency security engine. Trust scores, zombie detection, blast radius analysis.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.estevecastells/domscanDomScanremote (hosted by the publisher)security · AI-classifiedNeeds the operator's credentialtested 2026-10-08
- io.github.ethanolivertroy/fedramp-docs-mcpQuery FedRAMP 20x KSIs, NIST controls, and compliance docs via 20 MCP tools.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.extralabs/octowatch-mcpOctoWatch DLPlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.fantasyce/agent-runtime-proofAgent Runtime Prooflocal packagesecurity · AI-classifiedNot tested
- io.github.federico2001/openglass-mcpLook up any AI agent before you act; register, attest actions, run sealed sessions.remote (hosted by the publisher)security · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.fentz26/envcpEncrypted environment variable vault with AI access policies, keeping secrets safe from AI agents.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.fieldcure/filesystemSecure MCP server for sandboxed filesystem operations with document parsing support.local packagesecurity · AI-classifiedNot tested
- io.github.fileseal/mcp-sendFileSeal Secure Sendlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.fingerprintjs/fingerprint-mcp-serverFingerprintremote (hosted by the publisher)security · AI-classifiedNeeds the operator's credentialtested 2026-10-08
- io.github.fino-oss/contract-scannerContract Security Scannerlocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.firasmosbehi/compliance-auditorCompliance Auditor MCPremote (hosted by the publisher)security · AI-classifiedNot tested · needs a credential or setting
- io.github.firatmio/mcp-audit-proxymcp-auditlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.flagrix-io/flagrixScan GitHub repos and profiles for malware before cloning — commit-pinned risk verdicts for agentslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.flovoice53-tech/agent-identity-mcpGives an AI agent a disposable email and a real UK phone number to test signup flows.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.forgemeshlabs/x402-notary-mcpx402 Notary MCPlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.forgemeshlabs/x402-scan-mcpx402 Endpoint Scanner — a free local health probe for x402 paid endpoints as an MCP server.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.fpetitit/mcpcheckupScans remote MCP servers for protocol, security, and TLS issues; exposes scan tools via MCP.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.frangelbarrera/osint-agent-skillsOSINT MCP server — 23 tools: DNS, WHOIS, Shodan, breaches, GEOINT, crypto. Works with Claude Code.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.frank-bot07/usrcpUSRCP — User Context Protocollocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.fraudlabspro/mcp-fraudlabsproFraud Prevention MCP server using FraudLabs Pro API.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.frogeye-ai/mcpFrogeye Security Scannerremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.gaiabio12-design/quantumscan-pqc-scannerQuantumScan PQC Scannerremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.gambadio/onepassword-agent-mcpLocal MCP access to approved 1Password fields without exposing plaintext secrets to AI agents.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.garagon/aguara-mcpAguara MCPlocal packagesecurity · AI-classifiedNot tested
- io.github.garagon/mcp-aguaraAguara MCPlocal packagesecurity · AI-classifiedNot tested
- io.github.gaurav-kumar-sinha-060705/singularitySingularity - MCP Discovery & Security Gatewayremote (hosted by the publisher)security · AI-classifiedNeeds the operator's credentialtested 2026-10-08
- io.github.gautamvarmadatla/mcpsafetywardenMCP Safety Wardenlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.gebalamariusz/cloud-auditcloud-auditlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.geekmarine/mcp-domain-auditorDNS resolution, HTTP security headers, and SPF/DMARC email hygiene audits.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.geekmarine/mcp-ssl-inspectorAudits TLS/SSL handshake latency, HSTS headers, and HTTPS availability on the edge.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.gentaArnezzi/mcpsentinelMCPSentinellocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.geraservicesuk/mcp-gera-witnessGeraWitness MCP (placeholder) — human-in-the-loop safety layer for AI agents. Launching 2026.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.geraservicesuk/mcp-geracomplianceEU AI Act and GDPR compliance: checks, audits, generate policies.local packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.geraservicesuk/mcp-geraguardPrivacy protection: scans, tracker detection, data broker opt-outs.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.getaegis/aegisCredential isolation for AI agents. Inject secrets at the network boundary.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.getcyphrex/cyphrex-mcpCyphrexremote (hosted by the publisher)security · AI-classifiedNot tested · needs a credential or setting
- io.github.getmcpm/climcpmlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.getrelove/solveCloudflare Turnstile CAPTCHA solver for AI agents. $0.002/call, 100 free on signup. P95 2.2s.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.getstack-run/stackSTACKremote (hosted by the publisher)security · AI-classifiedNeeds the operator's credentialtested 2026-10-08
- io.github.getverdict-ai/verdictVerdict — Compliance for AI-Generated Codelocal packagesecurity · AI-classifiedNot tested
- io.github.ghostsecurity/ghost-mcp-serverMinimal MCP server for Ghost Security API - compatible with all MCP clientslocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.giancarloerra/januscopeLocal MCP proxy for tool restrictions, response redaction, audit logs, and database schema context.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.githubscum/lotorLotorlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.gitlumen-team/gitlumen-mcpGitLumen MCPremote (hosted by the publisher)security · AI-classifiedNot tested · needs a credential or setting
- io.github.goatgaucho/trustlayerTrustLayerremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.godwin105/arbiterIs this transaction safe to sign? Decodes what it really does and answers allow, warn or block.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.goklab/guardvibeDeterministic security layer your AI can't be. 540 rules, 39 tools, CLI + doctor + host audit.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.goldmembrane/codesaferScans AI-generated code for invisible Unicode, Trojan Source, and supply-chain threats.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.gomission/mcpMission — Trust Graduation Gateremote and local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.goran-revops/mcp-write-gateMCP Write Gatelocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.governmyai/mcp-serverAI compliance obligations across EU AI Act, ISO 42001, Colorado AI Act, NIST, HIPAA, SOX, FTClocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.goww7/acttraceActTracelocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.greencore-solutions/rco-a2aRCO-A2A - Regulatory Compliance Objectsremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.gridinsoft/inspectorWebsite safety and trust analysis. Verify domain reputation and detect phishing with GridinSoft.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.gsepcore/gsep-mcpAI agent security via MCP: C3 firewall, C4 immune system, C5 action guard, self-evolving prompts.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.hardeyhemy/revnuvo-trust-mcpRevnuvo Trustremote and local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.harisnopen/diavlosDiavloslocal packagesecurity · AI-classifiedNot tested
- io.github.hashgraph-online/hol-guardHOL Guardlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.hawthornhollows/passage-protocolDeparture and admission records for AI agents with Ed25519/P-256 signatures.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.hellocoop/admin-mcpModel Context Protocol (MCP) for Hellō Admin API.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.hernaninverso/eleion-scanner-mcpEleion Scannerlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.hodlxxi/hodlxxi-readonlyHODLXXI Read-Onlyremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.holistis/3ilm-mcpSearch 1,032 verified smart contract vulnerability findings from Sherlock audits by pattern.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.holistis/bug-bounty-intelligence-mcpBug Bounty Intelligenceremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.homeofe/supply-chain-guardSupply-chain malware scanner and MCP server: vet packages in 15 ecosystems before install, offline.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.hsm-kit/hsmkitHSM Kitlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.hungnguyenhtbvn-max/autron-coreOpen Identity Standard for AI Agents — DID, Agent Cards, delegation, reputation, payment & escrowlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.husk-security/huskHusklocal packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.hxckya/pkgtruthCatches hallucinated and slopsquatted npm and PyPI packages before an agent installs them.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.icohangar-ops/governed-mcp-gatewayHTTP MCP gateway: principal on tools/call + SSE, allowlists, vault rotate, CHP gates.local packagesecurity · AI-classifiedNot tested
- io.github.imouiche/mitre-attack-mcp-serverMCP server providing 50+ tools for MITRE ATT&CK techniques, groups, and mitigationslocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.inamprotocol/inam-mcpCheck an agent's INAM reputation before trusting it, and sign a receipt when work is done.remote and local packagesecurity · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.index365usa/index365index365 MCPlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.infai-tech/vulnfeedVulnFeedlocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.infoinlet-marketplace/mcp-codeauditSecurity audit for AI agents — scan code/diffs for leaked secrets, check deps via OSV.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.infoinlet-marketplace/mcp-filesystemHardened filesystem for AI agents — jailed root, read-only default, traversal/symlink-safe.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.infraveilhq/agent-guardInfraveil Agent Guardlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.ingressward/mcp-serverBlock prompt injection, evasive spacing, and obscene content before it reaches your LLM.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.inkog-io/inkogSecurity co-pilot for AI agents. Scan for vulnerabilities, audit MCP servers, verify governance.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.insivotron/agent-utility-mcpAgent Utility MCPremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.inspicere/mcp-defectdojoDefectDojolocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.integsec/turbopentestAI-powered penetration testing. Launch scans, review findings, download reports.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.intended-so/intendedIntended's authority layer as MCP tools: ALLOW/ESCALATE/DENY decisions with signed tokens.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.inventor1975/ztl-judgeZTL Judgeremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.ipezygj/agent-guardSafety checks an agent runs before it acts: package malware, destructive command, secret leak.local packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.irrenwill/secret-safe-envWrite secrets into .env without the agent ever seeing the value - Windows masked dialog (繁中 UI)local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.j-doi/domain-banninドメイン番人remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jaimenbell/rails-mcpDefault-deny action registry, append-only spend ledger, and human sign-off audit trail (MCP tools).local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jamesdfinance-dev/lazarettoFree lockfile malware check plus paid behavioral scan of packages, agent skills and MCP tools.remote and local packagesecurity · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jarekpiot/provenonceCryptographic identity, SIGIL naming, heartbeat, and passports for AI agents.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jarod-vyent/xrpl-identity-mcpMCP server for XRPL identity: DIDs, credentials, signer lists, and safe transaction workflows.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.jasonxkensei/xproofxProofremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jayjodev/vivory-mcp-verificationVivory Verification Gatewaylocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.jdhart81/agent-covenantDeny-by-default authority leases for agents wielding real power.remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jdhart81/agent-identity-registryVerifiable agent DIDs + capability discovery — the passport & directory of the A2A economy.remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jdhart81/agent-market-networkSigned agent discovery, security attestations, paid work, and verified settlement reputation.remote (hosted by the publisher)security · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.jdhart81/agent-notaryVerifiable delivery for the agent economy: commit-reveal content notarization. Sellers commit to a dremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jdhart81/agent-provenanceGenesis certificates, lineage, and cascading recalls: birth certificates + bloodlines for the agentremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jdhart81/agent-trust-oracleDecay-weighted reputation + tamper-evident trust attestations for the agent economy.remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jdhart81/agent-verified-relayViridis Verified: wrap any MCP server with tamper-evident delivery receipts + metered fees.remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jdhart81/maxwell-defenseModel proof-of-work policy and latency for AI agents. $1 USDC rehearsal; no runtime protection.remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jdhart81/security-preflightStatic MCP, source-code and injection-indicator checks with redacted signed receipts.remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jellewas/eu-audit-mcpEU Audit Traillocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.jeneric/stig-mcpMCP server mapping MITRE ATT&CK® -> NIST 800-53r5 -> DISA STIG fix/check stepslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jessepetersondev/consentgate-mcpGate AI agent actions behind a consent policy with human approval via Telegram. Fail-closed.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.jmcentire/signet-evalsignet-evalsecurity · AI-classifiedNot tested
- io.github.jmshinhwa/age-gate-lint8 rules for Ofcom's highly effective age assurance duty, in force since 25 July 2025, where the penalocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/ai-act-article-50-auditFinds the AI call sites, generation code and system prompts that trigger EU AI Act Article 50 disclolocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.jmshinhwa/ai-companion-safety-lintReads your companion chatbot's system prompt against California SB 243, New York GBL Article 47, Illlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.jmshinhwa/auftragsverarbeitung-avv-lint17 rules: 13 Pflichtpunkte aus Art. 28 Abs. 3 DSGVO + 4 veraltete Transfer-Grundlagen, mit Zeile jelocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/base-image-eol-lintMarks every base image in your Dockerfiles, compose files and CI workflows whose security patches halocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/connection-string-secret-audit26 rules and 32 safe-replacement snippets for hardcoded connection strings, keys and kubeconfigs acrlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/container-hardening-800-190Reads a Dockerfile or compose file and names the hardening controls it fails, with the NIST SP 800-1local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/cra-24-72-14-reporting-lintReads your SECURITY.md against the EU Cyber Resilience Act reporting clock that started on 11 Septemlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/cra-readiness-auditFlags the lines in your repo that break the EU Cyber Resilience Act - default passwords, disabled TLlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.jmshinhwa/crypto-export-notice-lintTen checks on the export paragraph of a repository that ships encryptionlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/datenschutz-auskunft-lint15 Prüfungen für Auskunftsschreiben nach Art. 15 DSGVO – samt Monatsfrist ab Eingangsdatumlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/eudi-rp-request-lintNine rules that read the JSON your service sends to an EU Digital Identity Walletlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/fedramp-oscal-ssp-lint16 checks on a system-security-plan JSON, in your editor, before a validator returns the packagelocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.jmshinhwa/firestore-rules-guardAudits firestore.rules and storage.rules for public access, expired test-mode dates and missing ownelocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/gaibu-soshin-tag-lint-jp同梱の54行の採用サイトHTML(外部送信タグ4本+GTMコンテナ1つ)で公表もれ6件を行番号つきで名指し。電気通信事業法27条の12(2023年6月16日施行)の公表4項目を15 checksで照合local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.jmshinhwa/gdpr-privacy-notice-lint16 rules read your privacy.md the way Articles 13 and 14 read itlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/hardcoded-credential-auditOpen any config file and see every hardcoded credential — and every setting that quietly undoes yourlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/image-host-transfer-lintNames every image, font, badge and embed in your docs that sends an EU reader's IP outside the EEAlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/impressum-check-ddg-dePrüft Impressum-Dateien im Editor gegen § 5 DDG, § 18 Abs. 2 MStV und § 36 VSBGlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/jest-snapshot-pii-audit15 rules that find the real customer data your .snap files committedlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.jmshinhwa/log-pii-telemetry-lint22 rules that name the lines where a Node or TypeScript service writes personal data into logs, craslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/mcp-config-auditAudit one mcp.json for what an agent config gives away — inline API keys, unpinned npx launches, plalocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/nis2-incident-runbook-lintReads your incident-response runbook and says which of the three Article 23 clocks it gets wronglocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/openapi-security-contract-lintFinds the lines in an OpenAPI file that publish an endpoint with no authentication, an API key in thlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.jmshinhwa/pci-payment-page-script-auditPCI DSS 4.0.1 requirements 6.4.3 and 11.6.1 have been mandatory since 2025-03-31, and the PCI SSC relocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/personal-data-map-dsar-auditReads a migration, Prisma schema, Django model or TypeORM entity and marks every column a subject aclocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.jmshinhwa/pqc-deprecation-lintDates every quantum-vulnerable algorithm in your code against the NIST IR 8547 clock: deprecated aftlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.jmshinhwa/security-headers-csp-lintReads security headers and CSP line by line in your config file and names the lines that silently dolocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/security-txt-cra-lint13 rules that decide whether a vulnerability report ever reaches youlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/spf-dmarc-record-lint19 offline checks on the SPF, DMARC and DKIM records in your branch — including the DMARC rewrite oflocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/sql-card-data-lintNames every column, index, view and seed row in a .sql migration that stores card data, with its PCIlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jmshinhwa/ssdf-attestation-workflow-audit14 rules, four CISA attestation sections, one workflow filelocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.jmshinhwa/tls-cert-lifetime-lintFinds the 12 settings that break when public TLS certificates fall to 100 days on 2027-03-15: opensslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.jmshinhwa/vvt-pruefer-art-30-dsgvoPrüft Ihr Verzeichnis von Verarbeitungstätigkeiten in Markdown mit 12 Regeln gegen Art. 30 Abs. 1 DSlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jnMetaCode/shellwardAI agent security: 7 MCP tools for injection detection, PII scanning, command safety, DLP.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.joepangallo/mcp-audit-serverThin MCP and CLI proxy for AI agent and MCP security auditing via a hosted backendlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.joepangallo/mcp-server-security-auditScan websites for security vulnerabilities, headers, TLS, and email security.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.joepangallo/web-recon-agentOwned-target web security assessment MCP server for authenticated, high-friction apps.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.joeyough/mcpcheckScan any MCP server for tool-poisoning, security, auth & license. Trust score before install.remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.johnInarti/agent-passportPost-quantum (ML-DSA-65/FIPS-204) agent identity + AI-decision receipts, verifiable offline.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.johnInarti/fractalaiFractalAI Post-Quantum Proofslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.jonnybottles/patch-tuesdayQuery Microsoft Patch Tuesday security updates (MSRC) with EPSS and CISA KEV enrichmentremote and local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.josephibra/shadowgate-mcpSecurity firewall for AI agents — scans MCP calls for injection, secrets, and risks.remote (hosted by the publisher)security · AI-classifiedNeeds the operator's credentialtested 2026-10-08
- io.github.juanisidoro/securecodeSecrets vault for Claude Code with audit logs, access rules, and AES-256 encryption.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.julian-martin89/pkg-oraclepkg-oracle — Dependency Trust Oracleremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.julian-martin89/url-oracleurl-oracle — URL Trust Oracleremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jwgale/sanctumSanctumAI — Credential Vault for AI Agentslocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.jyswee/a2a-trustgateA2A TrustGate: 4-gate firewall that screens every AI-agent action before it runs. 50 tools.remote and local packagesecurity · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.jyswee/authshoreAuth infrastructure for coding agents. User pools, secrets vault, token management. As easy as git.remote and local packagesecurity · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.jyswee/secretcarouselAgent-first secrets vault. Store, rotate, and share credentials from chat. 20 tools.remote and local packagesecurity · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.jyswee/sslwebsitesSSL certificate management for coding agents. Issue, renew, monitor certs. 10 tools stdio.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.kadopi/aegis-aiAegisAIremote (hosted by the publisher)security · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.kadopi/guardrail-mcpGuardrail MCPremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.kajaril/sovereignty-scan-mcpSovereignty Scanremote (hosted by the publisher)security · AI-classifiedNeeds the operator's credentialtested 2026-10-08
- io.github.kakunin-ai/kakuninX.509 identity, risk scoring, and audit logging for AI agents. MiCA + EU AI Act compliant.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.kaleckh/authproofAuthProoflocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.kandikandikandi/behavioral-auditAgentic Diaries Auditremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.kanywst/mcp-opa-authzAuthorization answers from real policy code: evaluate Rego locally, or ask an AuthZEN 1.0 PDP.local packagesecurity · AI-classifiedNot tested
- io.github.kastelldev/kastellServer security audit (413 checks), hardening, and fleet management across 4 cloud providers.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.kawal393/apex-psi-mcpAPEX PSIlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.kayembahamid/cybersim-proCybersecurity training, simulation, and incident response MCP serverlocal packagesecurity · AI-classifiedNot tested
- io.github.kjgueye/netintel-mcpMCP server for NetIntel — DNS, SSL, WHOIS, email security, OSINT via x402 micropaymentslocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.knowledgepa3/gia-mcp-serverGIA — Governed Intelligence Architectureremote and local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.kota1026/bridgeguard-mcpBridgeGuard MCP Server - Cross-chain bridge security audit tools for AI coding agents. Scan bri...local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.kota1026/quantumguard-mcpPost-quantum cryptography security scanner. Detect ECDSA/RSA vulnerabilities, NIST compliance.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.kota1026/smartguard-mcpSmartGuard MCP Server - AI-powered smart contract security audit tools for Claude Code, Cursor,...local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.kuzivaai/regulaOffline AI governance code indicators (EU AI Act, Korea, Colorado). Indication, not legal advice.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.kynosure-ai/norma-mcp-serverNORMA MCP Serverremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.l0gfr/blackproofBLACKPROOF Local MCPlocal packagesecurity · AI-classifiedNot tested
- io.github.labaccessnow/secops-field-notes-mcpSecOps Field Noteslocal packagesecurity · AI-classifiedNot tested
- io.github.layervai/qurl-mcpqURLlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.lazymac2x/mcpwatchAudit MCP servers from inside Claude Code. 10 OWASP checks, A-F grade, live leaderboard.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.leakdatahq/leakdata-mcpLeakDataremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.leakferrethq/leakferretContext-aware secret scanner: lets an AI agent scan, verify, and rewrite secrets before committing.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.legalithm/legalithm-mcp-serverEU AI Act compliance in your editor: classify risk, cite obligations, draft Article 50 text.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.lemmaoracle/mcpVerifiable provenance for AI agents — ZK proofs over confidential documents, no plaintext exposure.remote and local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.leochong/visus-mcpSecurity-first web access for Claude. Sanitizes pages, blocks injection, redacts PII.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.leonidahqadmin-cell/agentflowAgentFlowremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.les-k/mcp-confirmAn MCP server whose confirmation cannot be replayed against a different call.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.liminalpepe/agent-guard-mcpVerify-before-act safety checks for AI agents: packages, lockfiles, manifests, CI workflows.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.linagora/llng-mcpLemonLDAP::NG MCP Serverlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.lithtrix/lithtrixIdentity, memory, trust, and swarm MCP tools for AI agents. Free MIRC + free floors at lithtrix.ai.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.lixiaowww/veragentVeragentlocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.lm203688/aishieldAIShield Security Scannerlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.lonniev/tollbooth-oauth2-collectorUnauthenticated OAuth2 callback collector for Tollbooth MCP servicesremote (hosted by the publisher)security · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.loopgridio/loopgrid-mcpLoopGrid MCPlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.lordbasilaiassistant-sudo/base-security-scanner-mcpMCP server to scan smart contracts on Base for honeypots, rug pulls, and vulnerabilities.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.lordbasilaiassistant-sudo/contract-scannerSmart contract security scanner — vulnerabilities, risk scores, and calldata decodinglocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.louissarvin/proctorHuman oversight for AI agents: block a tool call on a verified human, with on-chain proof.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.lovec-tech/lovec-mcpLoveclocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.lozit/mcp-standardnotesEnd-to-end encrypted access to a Standard Notes vault (protocol 004, local stdio only).local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.lucaslubi/fidacy-mcpAI Agent Firewall. Enforce signed authority before consequential actions. Free API key required.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.luiacuaniello/perspectivegraphPerspectiveGraphlocal packagesecurity · AI-classifiedNot tested
- io.github.luongnv89/mitre-mcpMITRE ATT&CKlocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.lupingQAQ/ntobjmanager-mcpStateful Windows RPC attack-surface research for AI agents: 22 tools on NtObjectManager.security · AI-classifiedNot tested
- io.github.lutfizp/keelKeellocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.lvsmanhole/clearscreenScreen people & companies against 12 US sanctions & exclusion lists (OFAC, LEIE, SAM, Medicaid).remote (hosted by the publisher)security · AI-classifiedNeeds the operator's credentialtested 2026-10-08
- io.github.maciekaz/eset-mcpMCP server for the ESET ecosystem - Connect cloud + PROTECT On-Prem, multi-tenant, RO/RWlocal packagesecurity · AI-classifiedNot tested
- io.github.maco144/nullconeNullcone Threat Intelligenceremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.majorelalexis-stack/maxiaAI Codexremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.makash/agent-blast-radiusAgent Blast Radiuslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.makosdDavid/package-riskPackage risk checks: maintenance, licence, advisories. Paid per call in USDC, no signup.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.manumarri-sudo/quillPre-execution gate for AI-agent tool calls. Touch ID approval. Tamper-evident audit log.local packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.marcosnovo/lexvibeOne-step legal compliance for vibe-coded apps: privacy, terms, cookie banner and EU AI Act check.remote and local packagesecurity · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.marras0914/cordonCordon for MCPlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.martc03/cybersecurity-vulnCybersecurity Vulnerability Intelremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.maskflow/mcpMaskFlow PII proxylocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.mastrophot/contract-security-scannerMCP smart contract scanner with NEAR-focused security context.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.mastyf-ai/mastyf.aiRuntime proxy for MCP security, cost governance & auditlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.matematicsolutions/mcp-eu-complianceOffline MCP server: EU digital/data/cyber compliance full text (14 regs), verbatim + citations.local packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.mattijsmoens/sovereign-mcp-gatewaySovereign Gatewaylocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.maxgerhardson/sentrikSentriklocal packagesecurity · AI-classifiedNo sessiontested 2026-10-08
- io.github.mclose/dns-mcpDNS MCP Serverlocal packagesecurity · AI-classifiedNot tested
- io.github.mcp-dir/antecedentes_criminais_mg-mcpAntecedentes Criminais: MGremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mcp-dir/antecedentes_policia_civil-mcpAntecedentes (Polícia Civil)remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mcp-dir/antecedentes_policia_federal-mcpAntecedentes (Polícia Federal)remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mcp-dir/captcha-mcpCaptcha Solverremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mcp-dir/compliance-mcpCompliance & Sançõesremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mcp-dir/fbi_most_wanted-mcpFBI Most Wantedremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mcp-dir/identidade_ar-mcpVerificação de Identidade (Argentina)remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mcp-dir/interpol-mcpInterpolremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mcp-dir/pf_regularidade_empresa-mcpPolícia Federal: Situação e Regularidade de Empresa de Segurança Privadaremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mcp-dir/sancoes_onu-mcpSanções ONU (Conselho de Segurança)remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mcp-dir/sancoes_suica-mcpSanções Suíça (SECO)remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mcp-fortress/mcp-fortressMCP Fortressremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.mcp-protocol/node-runtimeThis package is intended for demonstration only. Maintained by JFrog Security.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mcpcustoms/mcp-customsMCP Customslocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.mcpsbom/sbom-mcpSBOMApp - SBOM Generator & Vulnerability Scannerremote (hosted by the publisher)security · AI-classifiedNot tested · needs a credential or setting
- io.github.mdfifty50-boop/agent-securitySecurity scanning and threat detection for AI agentslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.mdfifty50-boop/compliance-shieldZATCA, UAE CT, EU AI Act regulatory compliance for AI agentslocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.mdfifty50-boop/secure-vaultEncrypted secrets and credential management for agentslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.megabrainee/sectoraThreat intel + your scans/findings/Shield posture. CVE, EPSS, KEV, package vuln lookup, DAST.remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.melavern/api-key-caseAPI Key Caselocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.meloliva14/verity-mcpFail-closed verify-before-you-act gate for AI agents. Signed receipts. Pay-per-call via x402.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.meob/pg-cve-mcpPostgreSQL CVE & Release Intelligencelocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.meshpop/vaultvaultsecurity · AI-classifiedNot tested
- io.github.meysam81/parse-dmarcParse-DMARC MCP Serverlocal packagesecurity · AI-classifiedNot tested
- io.github.mgleonard-ops/double-checkDouble Checkremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.michal-lefler/secure-flowsMCP server for secureFlows (secure-flows.com). Alias of io.github.michal-lefler/secureflows-mcp.remote (hosted by the publisher)security · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.microsoft/EnterpriseMCPMicrosoft MCP Server for Enterpriseremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.microtoll/pqc-scanpqc-scanlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.middleBrick/mcp-serverScan APIs for OWASP Top 10, LLM, and GraphQL security vulnerabilities.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.mikerawsonnz/auth-token-serviceHash passwords with bcrypt and issue/verify JWT session tokens over A2A + MCP.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.mikerawsonnz/authenticated-llm-agentJWT-gated LLM gateway: authenticate (bcrypt/JWT), then run a LangChain-on-Vertex Gemini completion.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.mikerawsonnz/authenticated-mcp-agentJWT-gated LLM gateway: authenticate (bcrypt/JWT), then run a LangChain-on-Vertex Gemini completion.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.mikerawsonnz/authenticated-multi-llm-agentGoogle-OAuth-gated LLM gateway: verify a Google ID token, then run a Gemini (Vertex AI) completion fremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.mindstone/mcp-server-vantaVantalocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.mintmas/oracle42-intelligenceAI-powered threat intelligence, smart contract auditing, and cybersecurity OSINT.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.mirajmahmudul/agentdevxGive your AI hands. Identity, credential vault, and API gateway for autonomous agents.remote (hosted by the publisher)security · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.mishrasanjeev/grantexOAuth 2.0 for AI agents — scoped delegation tokens, audit trails, and revocation.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.mityda/clausekeeperClauseKeeper Compliance Scannerlocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.mlawsonking/agent-firewall-mcpInput/output safety for AI agents: known-pattern injection and obfuscation scan, URL/IP, secrets.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.mlawsonking/code-guard-mcpSecurity scan for AI-generated code: injection, SSRF, secrets, weak crypto, unsafe deserialization.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.mlawsonking/email-guard-mcpEmail safety for AI agents: scan inbound for prompt-injection/phishing + outbound for secret leaks.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.mlawsonking/package-guard-mcpSupply-chain guard for AI coding agents: verify packages, check vulns/malware, detect typosquats.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.mlugo-apx/detectzestack-mcpDetect any website's tech stack, security headers, SSL, DNS and CVEs via DetectZeStack.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.mnemom/isittrustreadyIs It Trust Ready — agent-trust-readiness scannerremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.mnemom/mnemomMnemom — Trust Ratings for AI Agentsremote (hosted by the publisher)security · AI-classifiedOpen without sign-in · its tools were not calledtested 2026-10-08
- io.github.moelayyan90/xguard-control-planeXGuard — Agent Execution Gatewayremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.motiveflowllc/agentvaultAgentVaultlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.moxno/privacyscrubber-mcpZero-Trust PII & secrets sanitizer for AI agents with in-memory local redaction.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.moxno/ztdsOpen standard MCP server for Zero-Trust Data Sanitization (ZTDS RFC v1.0). In-memory PII masking.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.mrfentmen/abuseipdb-mcpMCP server for AbuseIPDB: IP abuse reports, reputation. Free key.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/bitwarden-mcpBitwarden public API: members, collections, groups, event logs.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/certspotter-mcpCertificate transparency lookups from Cert Spotter. No key required.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/checksum-mcpCompute file and text checksums locally with sha and md5. No network and no key.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/cisa-kev-mcpUse this MCP server to CISA Known Exploited Vulnerabilities catalog search. Tools include search...local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/crypto-tools-mcpHash, sign, and encrypt text locally with standard algorithms. No network and no key.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/cyberark-mcpCyberArk PVWA API: safes and accounts.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.mrfentmen/delinea-mcpDelinea Secret Server API: secrets search and retrieval.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/dnstwister-mcpDNS twister domain threat intelligence: fuzz domains for typosquatting, check whois.local packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.mrfentmen/doppler-mcpDoppler API: projects, configs, secrets.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/greynoise-mcpMCP server for GreyNoise: IP noise classification, tags. Free key.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/hudsonrock-mcpInfostealer breach intelligence from Hudson Rock. No key required.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.mrfentmen/infisical-mcpInfisical API: manage secrets via universal auth.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/jwt-tools-mcpDecode and verify JSON Web Tokens locally. No network and no key.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.mrfentmen/logto-mcpMCP server for Logto: users, applications. Works with Cloud or self-hosted.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/maltiverse-mcpThreat intelligence for IPs and domains from Maltiverse. No key required.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/mitre-attack-mcpSearch the MITRE ATT&CK enterprise knowledge base for adversary techniques and tactics.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/nvd-cve-mcpSearch CVE vulnerability records from the NIST NVD database. No key required.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/osv-mcpUse this MCP server to OSV open source vulnerability data and package security checks. Tools...local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/otp-mcpGenerate and verify time based one time passwords locally. No network and no key.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/otx-mcpMCP server for AlienVault OTX: pulses, indicators. Free key.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.mrfentmen/password-breach-check-mcpCheck if a password has appeared in known breaches without sending the password. No key required.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/password-generator-mcpGenerate strong random passwords locally. No network and no key.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/password-strength-mcpScore password strength locally with the zxcvbn algorithm. No network and no key.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/port-scanner-mcpScan local or remote hosts for open TCP ports. Runs locally.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/secret-hygiene-mcpCount secret-like patterns in bounded local files without returning values, keys, paths,...local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/ssl-cert-mcpInspect TLS certificates of a host: issuer, expiry, and SAN. No key required.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/ssl-labs-mcpTLS security grades from SSL Labs. No key required.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.mrfentmen/unicode-security-mcpLocal first MCP checks for Unicode confusables, mixed scripts, invisible controls, and...local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/urlscan-mcpURL scanning from urlscan.io. No key required.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.mrfentmen/zitadel-mcpMCP server for Zitadel: users, organizations. Works with any instance.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-08
- io.github.mrorigo/hashfileHashfile MCPlocal packagesecurity · AI-classifiedNot tested
- io.github.mrz1880/mcp-keycloak-adminKeycloak Adminlocal packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.msaad00/agent-bomagent-bomlocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.mscharfetter/kavra-siegelKavra Siegel — Qualified eIDAS Timestampingremote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.mughalhere/prompt-protectionprompt-protectionlocal packagesecurity · AI-classifiedNo sessiontested 2026-10-09
- io.github.mwstech/auditraAuditraremote (hosted by the publisher)security · AI-classifiedNot tested · needs a credential or setting
- io.github.mydatapass/mydatapassNeutral escrow for customer-data offboarding (GDPR/EU Data Act): query MyDataPass facts.remote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.mythos-agent/mythos-agentOpen-source AI security agent: SAST, DAST, and policy-as-code over MCP.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-08
- io.github.nagameTW/mcp-server-malcolmMCP server for Malcolm (Zeek/Suricata/Arkime/OpenSearch): threat-hunting access for AI agentslocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.nan786521/recon-kit-mcpRead-only network & security recon tools (DNS, TLS, headers, CORS) for AI agents, each graded.local packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.narekmalk/safedb-mcpA secure MCP server that lets AI agents query databases safely.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.ndl-systems/kevrosKevros — Agentic Identity Trustremote (hosted by the publisher)security · AI-classifiedNot probed (no operator authorization)tested 2026-10-08
- io.github.ned-del/fairseal-mcp-serverVerifiable entropy, provably-fair games, and receipt verification for AI agents (FairSeal API).local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.netallion/netallion-mcp-liteNetallion MCP Litelocal packagesecurity · AI-classifiedPackage does not starttested 2026-10-09
- io.github.neus/neus-mcpNEUS MCPremote (hosted by the publisher)security · AI-classifiedNeeds the operator's credentialtested 2026-10-08
- io.github.nexus-api-lab/digest-mcpExact hashing, base64/hex/URL encoding, JWT decoding and UUIDs for AI agents. No auth required.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.nexus-api-lab/nexus-mcpJapanese LLM security — prompt injection detection (jpi-guard) + PII masking (PII Guard). Free.remote (hosted by the publisher)security · AI-classifiedNo sessiontested 2026-10-09
- io.github.nh4ttruong/secobserve-mcpMCP server for SecObserve: triage findings, import scan reports and SBOMs, generate VEX.local packagesecurity · AI-classifiedNot tested · needs a credential or setting
- io.github.nickgeorgeseo/gatehousemcp-gatehouselocal packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.nickjlamb/redacta-mcpPseudonymise and restore patient identifiers & PII in text — local, HIPAA Safe Harbor mode.local packagesecurity · AI-classifiedNot probed (read-only run)tested 2026-10-09
- io.github.nickjlucker/greynoiseMCP server for GreyNoise API - Check if IPs are internet background noise or targeted attackslocal packagesecurity · AI-classifiedNot tested · needs a credential or setting