Skip to content
mcp/skillhub

Category

Security MCP servers

1,107 security MCP servers, ranked by popularity. Each listing has copy-paste install for Claude Code, Cursor, VS Code, Claude Desktop and Windsurf. Page 2 of 24.
  1. Query the CVE-Search API: browse vendors and products, get CVEs by ID and list the latest updated CVEs.

    Abandoned107Python
  2. Vaultboxsathergate

    Encrypted secrets for Next.js. AES-256-GCM with no vault needed.

    Maintained107Node.jsstdio
  3. Cycode Clicycodehq

    Boost security in your dev lifecycle via SAST, SCA, Secrets & IaC scanning with Cycode.

    Active99
  4. Lucidityhyperb1iss

    Improve AI-generated code quality with prompt-based analysis across 10 dimensions, from complexity to security vulnerabilities.

    Abandoned90Python
  5. Docsentinelarthurpanhku

    Automate cybersecurity assessment of documents, questionnaires and reports to surface risks, compliance gaps and remediations, using a RAG knowledge base.

    Active89Python
  6. Opnsensevespo92

    Manage and interact with the OPNsense open source firewall in natural language.

    Active89Node.js
  7. Notebooklmpantheon-security

    Security-hardened Google NotebookLM access: session-based conversations, notebook library management and source-grounded answers, with post-quantum encryption.

    Maintained85Node.jsstdio
  8. Sonatype component intelligence: versions, security analysis, and Trust Score recommendations

    Stale74remote
  9. cloud-auditgebalamariusz

    AWS security scanner with attack chain detection, breach cost estimation and remediation snippets for CLI and Terraform.

    Active72Pythonstdio
  10. Install a large security toolset and discover and run it through an authorization-gated server for CTF, pentesting, bug bounty and DFIR.

    Active69Dockerstdio
  11. Bugsymobb-dev

    Mobb Vibe Shield identifies and remediates vulnerabilities in human and AI-written code.

    Maintained69Node.js
  12. Zapdtkmn

    Self-hosted OWASP ZAP integration with guided security scans, findings summaries and report generation.

    Active67Dockerremote
  13. Dandan82ch

    Real-time security framework for MCP servers that detects and blocks malicious agent behavior by analyzing tool call patterns and intent.

    Maintained67Node.js
  14. Vorimkzino

    Agent identity, trust and audit trails: Ed25519 agent registration, permission checks, tamper-evident audit events, trust scores and credential delegation.

    Maintained66Node.jsstdio
  15. ZettelForgerolandpg

    Agentic memory for cyber threat intelligence. STIX graphs, actor aliasing, offline RAG, Sigma/YARA.

    Slowing65Pythonstdio
  16. Egcfmarzochi

    EGC is a local-first MCP runtime that gives every AI agent the same brain: persistent shared memory, security guardrails, and up to 90% token savings across 20 AI coding tools.

    Active63Node.jsstdio
  17. Kastellkastelldev

    Server security auditing and hardening (SSH, firewall, Docker, TLS) with CIS/PCI-DSS/HIPAA mapping, fleet management and forensic evidence collection.

    Maintained60Node.jsstdio
  18. Supersetbintocher

    Apache Superset: dashboards, charts, datasets, SQL Lab, security (users, roles, RLS, groups) and permissions audit, with built-in safety validations.

    Active60Pythonstdio
  19. Zapret2rcd27

    MCP knowledge server for zapret2 DPI bypass tool and blockcheckw strategy scanner

    Maintained58Node.jsstdio
  20. MCP server for automated web accessibility scanning with Playwright and Axe-core.

    Active57Node.jsstdio
  21. Security Auditqianniuspace

    Audit npm package dependencies for security vulnerabilities with real-time checks against the npm registry.

    Abandoned57Node.js
  22. Snyksnyk

    Embeds Snyk's security engines into agentic workflows to secure AI-generated code in real time and work through vulnerability backlogs faster.

    Active55Node.jsstdio
  23. Every Action1 endpoint, plus fleet-wide patch and vulnerability views across all your organizations.

    Active55stdio
  24. For Oscalawslabs

    AI agent tools for Open Security Controls Assessment Language (OSCAL)

    Abandoned53Pythonstdio
  25. Roadreconatomicchonk

    Analyze ROADrecon gather results from Azure tenant enumeration.

    Abandoned53Python
  26. Securityfr0gger

    Query the ORKL API to fetch threat reports, analyze threat actors and retrieve intelligence sources.

    Abandoned52Node.js
  27. Memory forensics with Volatility 3, exposing plugins such as pslist and netscan through REST APIs.

    Abandoned52
  28. Dnstwistburtthecoder

    Run dnstwist, a DNS fuzzing tool, to detect typosquatting, phishing and corporate espionage.

    Abandoned51Node.js
  29. Local security scanner for AI-generated JS/TS that combines Opengrep, Gitleaks and Trivy with checks for exposed secrets, Supabase RLS and prompt injection.

    Active48Node.jsstdio
  30. Pantherpanther-labs

    Use Panther's SIEM platform in natural language to write detections, query logs and manage alerts.

    Active47Python
  31. Authenticatorfirstorderai

    Securely interact with the Authenticator App.

    Stale45Node.js
  32. Profullstackprofullstack

    Developer utilities: SEO optimization, document conversion, domain lookup, email validation, QR codes, weather data, social media posting and security scanning.

    Active45Node.js
  33. Use CyberChef operations through the CyberChef server API.

    Stale44Python
  34. Mythos Agentmythos-agent

    Open-source AI security agent: SAST, DAST, and policy-as-code over MCP.

    Slowing44Node.jsstdio
  35. Osvstackloklabs

    Query the OSV (Open Source Vulnerabilities) database by package version or commit, batch-query multiple packages and get vulnerability details by ID.

    Slowing42Go
  36. Entraidhieuttmmo

    A Python MCP server for Microsoft Entra ID (Azure AD) directory, user, group, device, sign-in, and security operations via Microsoft Graph.

    Abandoned41Python
  37. Nobulexarian-gogani

    Proof-of-behavior enforcement for AI agents: define permit/forbid/require rules, enforce them at runtime and keep hash-chained, tamper-evident audit logs.

    Active40Node.js
  38. Firewallaamittell

    Model Context Protocol (MCP) server for Firewalla MSP API - Provides real-time network monitoring, security analysis, and firewall management through 28 read-only tools, plus 11 opt-in write tools, compatible with any MCP client

    Active39Node.jsstdio
  39. Scan Solana/Anchor code against the Solana Security Standard and serve the ruleset to MCP clients.

    Slowing38Node.jsstdio
  40. Multireliga

    Parallel multi-model code review, security analysis and debate with ChatGPT, Claude and Gemini, including consensus and OWASP Top 10 checks.

    Active37Pythonstdio
  41. SSHuarlouski

    MCP server enabling AI assistants to securely execute SSH commands, transfer files via SFTP, manage port forwarding, and use parameterized command templates with comprehensive security controls

    Slowing37Node.jsstdio
  42. Osint Agent Skillsfrangelbarrera

    OSINT MCP server — 23 tools: DNS, WHOIS, Shodan, breaches, GEOINT, crypto. Works with Claude Code.

    Active36Node.jsstdio
  43. Adr Analysistosin2013

    Architectural analysis for software projects: technology stack detection, ADR management, security checks, TDD workflow and deployment readiness validation.

    Active35Node.jsstdio
  44. Security intelligence: CVE/EPSS/KEV lookups, domain recon (DNS, WHOIS, SSL, subdomains), IOC threat intel, OSINT and code scanning for secrets and injection.

    Active33Pythonremote
  45. Dynatrace Manageddynatrace-oss

    Query problems, logs, events, SLOs, security insights and performance metrics from self-hosted Dynatrace Managed environments.

    Active32Node.jsstdio
  46. Analyze code quality, security issues, and coverage across repositories

    Slowing32Pythonstdio
  47. agent-bommsaad00

    AI supply chain security scanner: discovers MCP clients, scans dependencies for CVEs, maps blast radius to credentials and tools, and generates SBOMs.

    Active31Pythonstdio
  48. Reconnickpending

    Conversational recon with httpx and asnmap: domain analysis, security header inspection, certificate analysis and ASN lookups at multiple recon levels.

    Abandoned31Go

Related categories