Category
Security MCP servers
- 433Active1Node.jsstdio
- 434Depscopecuttalo
Package intelligence across many ecosystems: health, vulnerabilities (OSV, CISA KEV, EPSS), typosquats, malicious packages, alternatives and breaking changes.
Slowing1Node.jsSlowing1Node.js - 435Digidenonedigidenone
AI-Powered Security Scanner for LLMs. Detects vulnerabilities and syncs with SynapseAudit.
Stale1Node.jsstdioStale1Node.jsstdio - 436Dingdawg Code Reviewdingdawg
AI code review — security, quality, performance. Learns your patterns. Receipted.
Maintained1Node.jsstdioMaintained1Node.jsstdio - 437Dingdawg Shielddingdawg
AI security scanning and trust scoring. Stack-specific threat models. Free local scan.
Maintained1Node.jsstdioMaintained1Node.jsstdio - 438Dockerfile Lintbasitalisandhu
Lint Dockerfiles for root users, latest tags, secrets in ENV or ARG, missing HEALTHCHECK and more.
Active1DockerstdioActive1Dockerstdio - 439Domain Securityortamarco
Audit a domain's email and web security: SPF, DKIM, DMARC, MTA-STS, DNSSEC, TLS, WHOIS. No API keys.
Active1Node.jsstdioActive1Node.jsstdio - 440Drone CI/CDyusiwen
MCP server for Drone CI/CD: 45 tools for builds, repos, secrets, users and templates
Active1DockerstdioActive1Dockerstdio - 441Eidolonsudohnim
Privacy-first OSINT scanner: breaches, credentials, Shodan, username sweep. Scored PDF report.
Active1Active1 - 442Elicitation Auditorguardbee
MCP elicitation anti-patterns: secrets in forms, third-party authorize URLs, credentials in URLs
Active1Node.jsstdioActive1Node.jsstdio - 443Fedramp Oscal Ssp Lintjmshinhwa
16 checks on a system-security-plan JSON, in your editor, before a validator returns the package
Active1Node.jsstdioActive1Node.jsstdio - 444Fetch Guarderodenn
URL fetcher and HTML-to-Markdown converter with layered prompt injection defense: hidden-element sanitization, risk scanning and content boundary wrapping.
Stale1PythonStale1Python - 445Stale1remote
- 446
GhostFreeshane-jsMCP server that scans your repo's dependencies for security vulnerabilities based on published CVEs.
Stale1Node.jsstdioStale1Node.jsstdio - 447Grant Fit Scannerwyattpalm2-eng
Find US federal grants your organization is actually eligible to apply for. Free, no API key.
Maintained1remoteMaintained1remote - 448Guard Coreguard-core
Guard Core security MCP: SecurityConfig validation, docs search, live threat detection.
Active1PythonstdioActive1Pythonstdio - 449Maintained1Node.jsstdio
- 450Hejdararkalda
Runtime policy enforcement for AI agents: evaluate actions against organization policies before execution, in observe or enforce mode.
Active1PythonActive1Python - 451Infinihash Kytinfinihash
Screen crypto wallets vs OFAC SDN + threat intel; pre-payment checks, signed receipts; SAR drafts
Active1PythonstdioremoteActive1Pythonstdioremote - 452Jikidauneslam
Security tools for your AI: scan, pentest, check headers, guard code and scan repos for secrets.
Active1Node.jsstdioActive1Node.jsstdio - 453K8s ROyour-ko
Read-only Kubernetes MCP server: inspect resources, logs, events, and metrics. Secrets are masked.
Active1DockerstdioActive1Dockerstdio - 454Loaditoutloaditoutadmin
Search and install 20,000+ security-graded MCP servers and agent skills.
Stale1Node.jsstdioStale1Node.jsstdio - 455MCPSentinelgentaarnezzi
Precision-first security scanning for Model Context Protocol servers.
Active1PythonstdioActive1Pythonstdio - 456Memory Poisoning Scannerguardbee
Scans agent code for untrusted input poisoning persistent cross-session memory
Active1Node.jsstdioActive1Node.jsstdio - 457Microsoft Sentinel Data Explorationmicrosoft
Find relevant security data from Sentinel data lake for building effective agents. More:aka.ms/s/de
Stale1remoteStale1remote - 458Mimecastwyre-technology
MCP server for Mimecast email security: message queue, held messages, domains, and threats.
Active1DockerstdioActive1Dockerstdio - 459Mimecastwyre-ai
MCP server for Mimecast email security: message queue, held messages, domains, and threats.
Active1DockerstdioActive1Dockerstdio - 460Model Scannerguardbee
Scans ML model files (PyTorch, safetensors, Keras, ONNX) for supply-chain risks
Active1Node.jsstdioActive1Node.jsstdio - 461Modelsafetyitsalissonsilva
Scan ML model artifacts, URLs and directories for unsafe serialization, malicious patterns and risky packaging using ModelScan, PickleScan and heuristics.
Slowing1PythonSlowing1Python - 462Motion Intelligencertkmotion
Mocap, rehab biomechanics, threat intel, fleet vision. 21 MCP tools, 10 free. x402/USDC paid.
Maintained1remoteMaintained1remote - 463Node Runtimemcp-protocol
This package is intended for demonstration only. Maintained by JFrog Security.
Stale1Node.jsstdioStale1Node.jsstdio - 464OSINTrjn32s
26 free OSINT tools as MCP tools for AI agents. Auto-installs everything on first run.
Slowing1PythonstdioSlowing1Pythonstdio - 465Onlinecybertoolsjambozx
Developer and security utilities via the onlinecybertools.com API: encoding, hashing, JWT decoding, regex testing, formatters, network diagnostics and OSINT.
Slowing1Node.jsSlowing1Node.js - 466OpenAPI Lintbasitalisandhu
Lint OpenAPI 3.x documents for missing security, responses, descriptions and versioning.
Active1DockerstdioActive1Dockerstdio - 467Openapi Security Contract Lintjmshinhwa
Finds the lines in an OpenAPI file that publish an endpoint with no authentication, an API key in th
Active1Node.jsstdioActive1Node.jsstdio - 468Orihimesrinivasan-sundaresan95
Cross-repository code knowledge graph for Java, Kotlin, JavaScript and TypeScript: call-flow tracing, taint analysis, reachability and license compliance.
Slowing1PythonSlowing1Python - 469Package Guardmlawsonking
Supply-chain guard for AI coding agents: verify packages, check vulns/malware, detect typosquats.
Active1Node.jsstdioActive1Node.jsstdio - 470PageLens AIpagelens-ai
AI website audit: security, SEO, performance, UX and accessibility checks with actionable fixes.
Slowing1remoteSlowing1remote - 471Pentestcyanheads
Offline methodology engine for authorized penetration testing, CTF, and security research.
Active1Node.jsstdioremoteActive1Node.jsstdioremote - 472Podsuhui-organization
Least-privilege compiler for agents: record real tool calls, compile a minimal policy, enforce it at an MCP gateway and keep a hash-chained audit.
Active1Node.jsActive1Node.js - 473Pqc Khepranouchix
Post-quantum CMMC compliance scanner & AI agent attestation. FIPS 140-3, ML-DSA-65, 36K+ mappings.
Active1DockerstdioActive1Dockerstdio - 474Prompt Injection Scannerguardbee
Scans RAG content/scraped pages for indirect prompt injection
Active1Node.jsstdioActive1Node.jsstdio - 475Prompt Leak Scannerguardbee
Catches leaked credentials and PII in outbound LLM prompts
Active1Node.jsstdioActive1Node.jsstdio - 476Proofport AIzkproofport
Generate zero-knowledge proofs of identity claims (Coinbase KYC, country, Google OIDC, Microsoft 365) without revealing personal information.
Active1Node.jsActive1Node.js - 477Recon Kitnan786521
Read-only network & security recon tools (DNS, TLS, headers, CORS) for AI agents, each graded.
Maintained1PythonstdioMaintained1Pythonstdio - 478Rubrik Security Cloudrubrikinc
Connect AI assistants to the Rubrik Security Cloud GraphQL API to discover, query, and automate.
Active1PythonstdioActive1Pythonstdio - 479Scamverifyscamverifyai
Scam and threat checks for phone numbers, URLs, texts, emails, documents and QR codes using FTC/FCC complaints, URLhaus and ThreatFox, with risk scores.
Stale1Node.jsStale1Node.js - 480SecHelixomarmohelal
Evidence-first security review of authorized repositories. Read-only, root-confined, no shell.
Active1PythonstdioActive1Pythonstdio