Category
Security MCP servers
- 49
Cve SearchroadwyQuery the CVE-Search API: browse vendors and products, get CVEs by ID and list the latest updated CVEs.
Abandoned107PythonAbandoned107Python - 50
VaultboxsathergateEncrypted secrets for Next.js. AES-256-GCM with no vault needed.
Maintained107Node.jsstdioMaintained107Node.jsstdio - 51Cycode Clicycodehq
Boost security in your dev lifecycle via SAST, SCA, Secrets & IaC scanning with Cycode.
Active99Active99 - 52Lucidityhyperb1iss
Improve AI-generated code quality with prompt-based analysis across 10 dimensions, from complexity to security vulnerabilities.
Abandoned90PythonAbandoned90Python - 53Docsentinelarthurpanhku
Automate cybersecurity assessment of documents, questionnaires and reports to surface risks, compliance gaps and remediations, using a RAG knowledge base.
Active89PythonActive89Python - 54Opnsensevespo92
Manage and interact with the OPNsense open source firewall in natural language.
Active89Node.jsActive89Node.js - 55Notebooklmpantheon-security
Security-hardened Google NotebookLM access: session-based conversations, notebook library management and source-grounded answers, with post-quantum encryption.
Maintained85Node.jsstdioMaintained85Node.jsstdio - 56Dependency Managementsonatype
Sonatype component intelligence: versions, security analysis, and Trust Score recommendations
Stale74remoteStale74remote - 57cloud-auditgebalamariusz
AWS security scanner with attack chain detection, breach cost estimation and remediation snippets for CLI and Terraform.
Active72PythonstdioActive72Pythonstdio - 58Cybersec Toolkit26zl
Install a large security toolset and discover and run it through an authorization-gated server for CTF, pentesting, bug bounty and DFIR.
Active69DockerstdioActive69Dockerstdio - 59Bugsymobb-dev
Mobb Vibe Shield identifies and remediates vulnerabilities in human and AI-written code.
Maintained69Node.jsMaintained69Node.js - 60
ZapdtkmnSelf-hosted OWASP ZAP integration with guided security scans, findings summaries and report generation.
Active67DockerremoteActive67Dockerremote - 61Dandan82ch
Real-time security framework for MCP servers that detects and blocks malicious agent behavior by analyzing tool call patterns and intent.
Maintained67Node.jsMaintained67Node.js - 62Vorimkzino
Agent identity, trust and audit trails: Ed25519 agent registration, permission checks, tamper-evident audit events, trust scores and credential delegation.
Maintained66Node.jsstdioMaintained66Node.jsstdio - 63ZettelForgerolandpg
Agentic memory for cyber threat intelligence. STIX graphs, actor aliasing, offline RAG, Sigma/YARA.
Slowing65PythonstdioSlowing65Pythonstdio - 64Egcfmarzochi
EGC is a local-first MCP runtime that gives every AI agent the same brain: persistent shared memory, security guardrails, and up to 90% token savings across 20 AI coding tools.
Active63Node.jsstdioActive63Node.jsstdio - 65Kastellkastelldev
Server security auditing and hardening (SSH, firewall, Docker, TLS) with CIS/PCI-DSS/HIPAA mapping, fleet management and forensic evidence collection.
Maintained60Node.jsstdioMaintained60Node.jsstdio - 66Supersetbintocher
Apache Superset: dashboards, charts, datasets, SQL Lab, security (users, roles, RLS, groups) and permissions audit, with built-in safety validations.
Active60PythonstdioActive60Pythonstdio - 67Zapret2rcd27
MCP knowledge server for zapret2 DPI bypass tool and blockcheckw strategy scanner
Maintained58Node.jsstdioMaintained58Node.jsstdio - 68Accessibility Scannerjustasmonkev
MCP server for automated web accessibility scanning with Playwright and Axe-core.
Active57Node.jsstdioActive57Node.jsstdio - 69Security Auditqianniuspace
Audit npm package dependencies for security vulnerabilities with real-time checks against the npm registry.
Abandoned57Node.jsAbandoned57Node.js - 70Snyksnyk
Embeds Snyk's security engines into agentic workflows to secure AI-generated code in real time and work through vulnerability backlogs faster.
Active55Node.jsstdioActive55Node.jsstdio - 71
Abnormal SecurityservosityEvery Action1 endpoint, plus fleet-wide patch and vulnerability views across all your organizations.
Active55stdioActive55stdio - 72For Oscalawslabs
AI agent tools for Open Security Controls Assessment Language (OSCAL)
Abandoned53PythonstdioAbandoned53Pythonstdio - 73Roadreconatomicchonk
Analyze ROADrecon gather results from Azure tenant enumeration.
Abandoned53PythonAbandoned53Python - 74Securityfr0gger
Query the ORKL API to fetch threat reports, analyze threat actors and retrieve intelligence sources.
Abandoned52Node.jsAbandoned52Node.js - 75Volatilitygaffx
Memory forensics with Volatility 3, exposing plugins such as pslist and netscan through REST APIs.
Abandoned52Abandoned52 - 76Dnstwistburtthecoder
Run dnstwist, a DNS fuzzing tool, to detect typosquatting, phishing and corporate espionage.
Abandoned51Node.jsAbandoned51Node.js - 77CodeInspectussynvoya
Local security scanner for AI-generated JS/TS that combines Opengrep, Gitleaks and Trivy with checks for exposed secrets, Supabase RLS and prompt injection.
Active48Node.jsstdioActive48Node.jsstdio - 78Pantherpanther-labs
Use Panther's SIEM platform in natural language to write detections, query logs and manage alerts.
Active47PythonActive47Python - 79Stale45Node.js
- 80Profullstackprofullstack
Developer utilities: SEO optimization, document conversion, domain lookup, email validation, QR codes, weather data, social media posting and security scanning.
Active45Node.jsActive45Node.js - 81Stale44Python
- 82Mythos Agentmythos-agent
Open-source AI security agent: SAST, DAST, and policy-as-code over MCP.
Slowing44Node.jsstdioSlowing44Node.jsstdio - 83Osvstackloklabs
Query the OSV (Open Source Vulnerabilities) database by package version or commit, batch-query multiple packages and get vulnerability details by ID.
Slowing42GoSlowing42Go - 84Entraidhieuttmmo
A Python MCP server for Microsoft Entra ID (Azure AD) directory, user, group, device, sign-in, and security operations via Microsoft Graph.
Abandoned41PythonAbandoned41Python - 85Nobulexarian-gogani
Proof-of-behavior enforcement for AI agents: define permit/forbid/require rules, enforce them at runtime and keep hash-chained, tamper-evident audit logs.
Active40Node.jsActive40Node.js - 86Firewallaamittell
Model Context Protocol (MCP) server for Firewalla MSP API - Provides real-time network monitoring, security analysis, and firewall management through 28 read-only tools, plus 11 opt-in write tools, compatible with any MCP client
Active39Node.jsstdioActive39Node.jsstdio - 87Solana Security Standardcopenhagen0x
Scan Solana/Anchor code against the Solana Security Standard and serve the ruleset to MCP clients.
Slowing38Node.jsstdioSlowing38Node.jsstdio - 88Multireliga
Parallel multi-model code review, security analysis and debate with ChatGPT, Claude and Gemini, including consensus and OWASP Top 10 checks.
Active37PythonstdioActive37Pythonstdio - 89SSHuarlouski
MCP server enabling AI assistants to securely execute SSH commands, transfer files via SFTP, manage port forwarding, and use parameterized command templates with comprehensive security controls
Slowing37Node.jsstdioSlowing37Node.jsstdio - 90Osint Agent Skillsfrangelbarrera
OSINT MCP server — 23 tools: DNS, WHOIS, Shodan, breaches, GEOINT, crypto. Works with Claude Code.
Active36Node.jsstdioActive36Node.jsstdio - 91Adr Analysistosin2013
Architectural analysis for software projects: technology stack detection, ADR management, security checks, TDD workflow and deployment readiness validation.
Active35Node.jsstdioActive35Node.jsstdio - 92ContrastAPIupinar
Security intelligence: CVE/EPSS/KEV lookups, domain recon (DNS, WHOIS, SSL, subdomains), IOC threat intel, OSINT and code scanning for secrets and injection.
Active33PythonremoteActive33Pythonremote - 93Dynatrace Manageddynatrace-oss
Query problems, logs, events, SLOs, security insights and performance metrics from self-hosted Dynatrace Managed environments.
Active32Node.jsstdioActive32Node.jsstdio - 94Mcparmory Codacymcparmory
Analyze code quality, security issues, and coverage across repositories
Slowing32PythonstdioSlowing32Pythonstdio - 95agent-bommsaad00
AI supply chain security scanner: discovers MCP clients, scans dependencies for CVEs, maps blast radius to credentials and tools, and generates SBOMs.
Active31PythonstdioActive31Pythonstdio - 96Reconnickpending
Conversational recon with httpx and asnmap: domain analysis, security header inspection, certificate analysis and ASN lookups at multiple recon levels.
Abandoned31GoAbandoned31Go