安全
「MCP」栏目下「安全」分类的已发布内容,按本站发布日期从新到旧排列。
236 条
- 安全
123Ergo/unphurl-mcp
(英文原文)URL security signals: redirects, brand impersonation, domain age, SSL validation, parked-domain detection, structural analysis and DNS enrichment.
- 安全
13bm/GhidraMCP
(英文原文)Ghidra plugin for binary analysis: function inspection, decompilation, memory exploration and import/export analysis.
- 安全
26zl/cybersec-toolkit
(英文原文)Install a large security toolset and discover and run it through an authorization-gated server for CTF, pentesting, bug bounty and DFIR.
- 安全
82ch/MCP-Dandan
(英文原文)Real-time security framework for MCP servers that detects and blocks malicious agent behavior by analyzing tool call patterns and intent.
- 安全
9hannahnine-jpg/arc-gate-mcp
(英文原文)Runtime governance for MCP tool calls that blocks prompt injection and capability abuse before tool results reach the agent.
- 安全
Acacian/aegis
(英文原文)Policy-based governance for agent tool calls across LangChain, OpenAI, Anthropic and MCP: YAML policies, approval gates, risk assessment and audit logging.
- 安全
adeptus-innovatio/solvitor-mcp
(英文原文)Reverse engineering tools from Solvitor: extract IDL files from closed-source Solana smart contracts and decompile them.
- 安全
aeoess/agent-passport-mcp
(英文原文)Agent identity, scoped delegation and governance: issue passports, verify narrowing-only delegation chains, enforce gateway policy and emit signed records.
- 安全
AgentAvow/AgentAvow
(英文原文)Signed, recomputable safety scores for MCP servers, packages and tools, with offline-verifiable attestations and a GitHub Action to gate CI merges.
- 安全
AgentValet/AgentValet
(英文原文)Identity and credential broker for MCP servers: issues scoped, short-lived credentials per agent, with audit logging and human approval gates.
- 安全
agentward-ai/agentward
(英文原文)MCP proxy that enforces least-privilege YAML policies on tool calls, classifies PII/PHI, detects dangerous skill chains and generates compliance audit trails.
- 安全
aggrete/aggrete
(英文原文)Policy proxy that refuses forbidden tool calls, stopping prompt-injection exfiltration and forbidden data combinations across Slack, Drive, GitHub and more.
- 安全
agntor/mcp
(英文原文)Agent discovery and certification with a trust and payment rail: identity verification, escrow, settlement and reputation management.
- 安全
AIM-Intelligence/AIM-Guard-MCP
安全导向的 MCP 服务器,为 AI 代理提供安全指导和内容分析。
- 安全
AIops-tools/Compliance-AIops
(英文原文)Turn other AIops tools' audit trails into tamper-evident, hash-chained evidence bundles mapped to HIPAA, PCI-DSS, SOC 2 and GDPR.
- 安全
airblackbox/air-blackbox-mcp
(英文原文)EU AI Act compliance scanner for Python AI agents (LangChain, CrewAI, AutoGen, OpenAI) with prompt injection detection, risk classification and fix generation.
- 安全
ajipurn/fida
(英文原文)Local-first MCP gateway for coding agents that redacts detected secrets from file reads and command output before they reach model context.
- 安全
alberthild/shieldapi-mcp
(英文原文)Security intelligence: HIBP password breach checks, email/domain/IP/URL reputation, prompt injection detection and skill supply chain scanning.
- 安全
alexar76/aimarket-mcp
(英文原文)SSRF-hardened web gateway with web fetch, web search and Metis verification, sharing an audited security core with Metis and ARGUS.
- 安全
alexar76/aimarket-oracle-gateway
(英文原文)Verifiable oracle tools via AIMarket Hub: Platon VRF randomness, Chronos VDF computation and verification, and LUMEN reputation scores.
- 安全
alexar76/argus
(英文原文)Query ARGUS-3 and check its status; WARDEN vets third-party MCP servers with a scored firewall, tool-definition pinning and drift detection.
- 安全
alexfleetcommander/agent-trust-stack-mcp
(英文原文)Cryptographic provenance, blind reputation scoring and tamper-evident logging for agent interactions, with dispute resolution and trust-based matchmaking.
- 安全
AperionAI/shield
(英文原文)Local guardrail proxy for MCP servers: blocks destructive tool calls, pins tool catalogs against rug pulls and scans for tool poisoning and prompt injection.
- 安全
arian-gogani/nobulex
(英文原文)Proof-of-behavior enforcement for AI agents: define permit/forbid/require rules, enforce them at runtime and keep hash-chained, tamper-evident audit logs.
- 安全
ark-forge/arkforge-mcp
(英文原文)Third-party certifying proxy that signs any HTTP call with an independent Ed25519 signature, RFC 3161 timestamp and Sigstore Rekor anchor.
- 安全
ARKALDA/hejdar-mcp
(英文原文)Runtime policy enforcement for AI agents: evaluate actions against organization policies before execution, in observe or enforce mode.
- 安全
arthurpanhku/DocSentinel
(英文原文)Automate cybersecurity assessment of documents, questionnaires and reports to surface risks, compliance gaps and remediations, using a RAG knowledge base.
- 安全
askalf/truecopy
(英文原文)Supply-chain gate for agent skills and MCP servers: detects poisoned tool definitions, pins servers by hash, checks drift in CI and proxies only pinned tools.
- 安全
astafford8488/agentaegis-mcp
(英文原文)Scan MCP servers and skills before install, vet endpoints before calling them, and run vulnerability scans, threat intel and compliance checks.
- 安全
atomicchonk/roadrecon_mcp_server
(英文原文)Analyze ROADrecon gather results from Azure tenant enumeration.
- 安全
aurelio-nakamura/cmdxray
(英文原文)Offline safety gate for agent shell commands: rates each command as danger, caution or none and explains every flag, pipe, redirect and subshell.
- 安全
aurumflux20/seal
(英文原文)Exactly-once payments for agents: prevents double settlement across processes and retries, confirms charges with the provider and reconciles out-of-band spend.
- 安全
BeBraveBeKind/mcpskills-server
(英文原文)Scores MCP servers, AI skills and npm packages before install, scanning for prompt injection, credential theft and supply-chain risk, with a go/no-go gate.
- 安全
beeswaxpat/chronoverify-mcp
(英文原文)Verify a photo's capture time and provenance: C2PA Content Credentials validation, EXIF/XMP consistency checks and pixel forensics combined into one verdict.
- 安全
behrensd/mcp-firewall
(英文原文)Deterministic security proxy for MCP that intercepts tool calls, enforces YAML policies, scans for secret leakage and logs everything.
- 安全
Bichev/agentradar-mcp
(英文原文)On-chain trust oracle for ERC-8004 and x402 agents: composite trust scoring, a scam wallet database, ERC-8004 identity lookup and EAS attestations on Base.
- 安全
bluetieroperations-create/blackwall-mcp
(英文原文)Risk gate that agents call before irreversible actions, returning a risk score, reversibility class, red flags and a proceed/confirm/human-required decision.
- 安全
boy-offi9-inc/hexforge-gateway
(英文原文)APK reverse engineering workspace that orchestrates jadx, apktool, adb and Frida through a workflow engine, on Termux (Android) or PC.
- 安全
Buggy1111/anonymize-mcp
(英文原文)Anonymize PII for GDPR in Czech and many other languages using ÚFAL/LINDAT NLP (MasKIT, NameTag), plus morphology, translation and spellcheck.
- 安全
BurtTheCoder/mcp-dnstwist
dnstwist 的 MCP 服务器,这是一个强大的 DNS 模糊测试工具,可帮助检测域名抢注、钓鱼和企业窃密行为.
- 安全
BurtTheCoder/mcp-maigret
maigret 的 MCP 服务器,maigret 是一款强大的 OSINT 工具,可从各种公共来源收集用户帐户信息。
- 安全
BurtTheCoder/mcp-shodan
MCP 服务器用于查询 Shodan API 和 Shodan CVEDB。
- 安全
BurtTheCoder/mcp-virustotal
用于查询 VirusTotal API 的 MCP 服务器。
- 安全
bx33661/Wireshark-MCP
具有抓包、协议统计、字段提取和安全分析功能的 Wireshark 网络数据包分析 MCP 服务器。
- 安全
calllint/calllint
(英文原文)Offline pre-flight security linter for MCP servers, agent tools and skills that returns SAFE, REVIEW, BLOCK or UNKNOWN verdicts without executing them.
- 安全
chasdaddy/basescope
(英文原文)Read-only safety checks for Base and EVM: honeypot and rug-pull detection, risky approvals, verified source, balances, ENS and Basenames, gas and prices.
- 安全
Chimera-Protocol/csl-core
(英文原文)Deterministic AI safety policy engine with Z3 formal verification: write, verify and enforce machine-verifiable constraints for AI agents.
- 安全
chrbailey/promptspeak-mcp-server
(英文原文)Pre-execution governance for agent tool calls: risk classification, behavioral drift detection, a hold queue for dangerous operations and an audit trail.
- 安全
Chronolapse411/sicarius-guard
(英文原文)Solana token safety oracle: byte-level SPL mint analysis, honeypot detection, freeze/mint authority checks, Birdeye market data and composite risk scoring.
- 安全
co-browser/attestable-mcp-server
(英文原文)Demonstrates remote attestation of an MCP server running in a Gramine TEE via RA-TLS, so clients can verify the server before connecting.
- 安全
corewebvitals/state-of-cwv-mcp
(英文原文)Core Web Vitals metrics by CMS, CDN and framework, based on Chrome field data and a multi-site crawl.
- 安全
coreyhines/opnsense-mcp
(英文原文)OPNsense firewall operations via API: query ARP, DHCP, firewall rules, logs, interfaces, system status and packet captures.
- 安全
creatorrmode-lead/avp-sdk
(英文原文)Trust, W3C DID identity and EigenTrust reputation for AI agents, with attestations, disputes, sybil detection and IPFS audit anchoring.
- 安全
CTRLRun/ctrlrun
(英文原文)Execution safety for agent actions: a YAML-policy gateway that allows, holds or denies tool calls, plus an approval queue and hash-chained receipts.
- 安全
Cubiczan/governed-mcp-gateway
(英文原文)HTTP MCP gateway that attaches a principal to tool calls and SSE streams, with allowlists and vault rotation.
- 安全
Cubiczan/trust-ledger-os
(英文原文)Trust and risk control plane for AI teams, with phases, routes and a package catalog.
- 安全
cuttalo/depscope
(英文原文)Package intelligence across many ecosystems: health, vulnerabilities (OSV, CISA KEV, EPSS), typosquats, malicious packages, alternatives and breaking changes.
- 安全
cyntrisec/cyntrisec-cli
(英文原文)Local-first AWS security analyzer that discovers attack paths and generates remediations using graph theory.
- 安全
dambuchs/redact-pdf-mcp
(英文原文)Permanently redact PII (names, emails, phone numbers, addresses, IBANs, card numbers) from PDFs, scans and screenshots, with multilingual OCR.
- 安全
datanexusmcp/mcp-server
(英文原文)Public data lookups: CVE/SBOM security audits, license compliance, patents, federal contracts, NPI providers, nonprofit 990 filings and domain intelligence.
- 安全
Declade/lucairn-sdks
(英文原文)Privacy gateway that sanitizes German and English PII before prompts reach an LLM and issues a signed, timestamped certificate for each call.
- 安全
dengyier/OpenWorkProof
(英文原文)Verifiable execution protocol for agent tool calls: signed policy decisions, causal evidence chains and offline verification from a SQLite ledger.
- 安全
dnsdoctor/claude-plugin
(英文原文)Scan and fix a domain's email authentication (SPF, DMARC, DKIM, MX), blacklist status and domain/SSL expiry, with deterministic, validated fix records.
- 安全
doublegate/CyberChef-MCP
(英文原文)GCHQ CyberChef's encryption, encoding, compression and forensics operations, plus analysis tools such as hash identification, cipher solving and RSA attacks.
- 安全
Drumworks/ssid-mcp
(英文原文)MAC address (OUI) vendor lookup with randomized-address detection, plus router default login IPs and admin credentials cited to manufacturer documentation.
- 安全
dtkmn/mcp-zap-server
(英文原文)Self-hosted OWASP ZAP integration with guided security scans, findings summaries and report generation.
- 安全
duriantaco/skylos
(英文原文)Dead code detection, security scanning and code quality analysis for Python, TypeScript and Go, with AI-assisted remediation.
- 安全
elang2/mcp-audit-gateway
(英文原文)Transparent MCP proxy that keeps a signed, hash-chained audit trail of agent tool calls, with YAML policy enforcement and OpenTelemetry export.
- 安全
elberacasa/umbra
(英文原文)Trust scores and guardrails for AI-generated code: static security rules, Docker-verified build/boot checks and receipts that catch agents lying about tests.
- 安全
eliottreich/taskbounty-check
(英文原文)Local, read-only scanner for GitHub Actions and CI maintenance issues in AI-built apps, with finding explanations and fix plans.
- 安全
emiliaprotocol/emilia-protocol
(英文原文)Requires a named human's approval before irreversible agent actions such as payments or deploys, then issues an offline-verifiable Ed25519 trust receipt.
- 安全
epistemedeus/skillguard
(英文原文)Static scanner that checks Claude Code skills, plugins and MCP servers for exfiltration, install hooks and prompt injection before you install them.
- 安全
Erodenn/fetch-guard
(英文原文)URL fetcher and HTML-to-Markdown converter with layered prompt injection defense: hidden-element sanitization, risk scanning and content boundary wrapping.
- 安全
felixpg13-glitch/spendshield
(英文原文)Payment guardrails for AI agents: spend caps, budget and approval gates, prompt-injection defense, an encrypted secret vault and an audit trail.
- 安全
firstorderai/authenticator_mcp
一个安全的 MCP(Model Context Protocol)服务器,使 AI 代理能够与认证器应用程序交互。
- 安全
forest6511/secretctl
(英文原文)Secrets manager that injects credentials into commands as environment variables so agents never see plaintext secrets, and sanitizes command output.
- 安全
forgemeshlabs/x402-notary-mcp
(英文原文)Notarize AI model outputs with signed Ed25519 attestations, SHA-256 content hashes and Merkle anchoring on Base or Solana, paid via x402.
- 安全
fosdickio/binary_ninja_mcp
(英文原文)Binary Ninja plugin and bridge for automating binary analysis and reverse engineering.
- 安全
FoundryNet/mint-mcp
(英文原文)MINT Protocol work attestation for agents: cryptographically attest, verify, rate and discover agent work to build portable on-chain reputation.
- 安全
fr0gger/MCP_Security
用于查询 ORKL API 的 MCP 服务器。
- 安全
fredyee/hallucc-mcp
(英文原文)Claim-level hallucination detection with sources, agent trajectory verification, risk gating for computer-use actions and prompt-injection defense.
- 安全
Fronesis-Labs/dcl-webhook
(英文原文)Deterministic audit layer that checks LLM and agent outputs against jailbreak, safety and trading compliance policies and logs verdicts to a hash chain.
- 安全
Gaffx/volatility-mcp
(英文原文)Memory forensics with Volatility 3, exposing plugins such as pslist and netscan through REST APIs.
- 安全
gaoharimran29-glitch/Cybersecurity-MCP-Server
(英文原文)Local security reconnaissance: WHOIS, DNS and subdomain enumeration, Nmap scanning, TLS inspection, tech fingerprinting, CVE and IP reputation lookups.
- 安全
gautam-u/sieve-mcp
(英文原文)Local macOS scanner for secrets leaked into AI tool chat transcripts, with redacted findings, placeholder-only redaction and Keychain-backed command execution.
- 安全
gbrigandi/mcp-server-cortex
(英文原文)Cortex integration for observable analysis and automated security responses.
- 安全
gbrigandi/mcp-server-thehive
(英文原文)TheHive integration for collaborative security incident response and case management.
- 安全
gbrigandi/mcp-server-wazuh
(英文原文)Access real-time security alerts and event data from Wazuh SIEM.
- 安全
gebalamariusz/cloud-audit
(英文原文)AWS security scanner with attack chain detection, breach cost estimation and remediation snippets for CLI and Terraform.
- 安全
getaegis/aegis
(英文原文)Credential isolation proxy that injects secrets at the network boundary, with domain restrictions, agent authentication and audit logging.
- 安全
goklab/guardvibe
(英文原文)Security scanner for vibe-coded apps (Next.js, Supabase, Stripe, Prisma and more): taint analysis, auto-fix, SARIF export, pre-commit hook and CVE detection.
- 安全
goldmembrane/cleaner-code
(英文原文)Locally scans AI-generated code for invisible Unicode, Trojan Source, homoglyphs, rules file backdoors and typosquatting using static analysis and CodeBERT.
- 安全
gostanos/smallprint-action
(英文原文)Query the Small Print record: versioned, diffed tool descriptions and schemas of MCP servers, skills and plugins, with graded changes and public advisories.
- 安全
Gowthaman90/mcp-bastion
(英文原文)Security proxy for MCP servers: tool-definition pinning, tool-poisoning and exfiltration detection, injection blocking, secret redaction and audit trails.
- 安全
gridinsoft/mcp-inspector
(英文原文)Domain and URL security analysis with GridinSoft Inspector to verify website and link safety.
- 安全
GUCCI-atlasv/skillssafe-mcp
(英文原文)Scan SKILL.md files, MCP configs and system prompts for credential theft, prompt injection, zero-width character attacks and ClawHavoc indicators.
- 安全
HaroldFinchIFT/vuln-nist-mcp-server
(英文原文)Query the NIST National Vulnerability Database (NVD) API.
- 安全
haruodev/tamperlens-mcp
(英文原文)Document forensics via the Tamperlens API: detect post-creation edits, failed redactions and embedded prompt injection in PDFs, Office files and images.
- 安全
hernaninverso/eleion-scanner-mcp
(英文原文)Register and verify domains, queue security scans (headers, TLS, DNS, ports, CVEs and AI-specific checks) and read findings.
- 安全
hieutran/entraid-mcp-server
(英文原文)Microsoft Entra ID (Azure AD) directory, user, group, device, sign-in and security operations via Microsoft Graph.
- 安全
honeylabshq/honeylabs-mcp
(英文原文)Honeypot threat intelligence from a sensor network: IP reputation, scanner classification, CVE probing trends and JA4, JA4H and HASSH fingerprints.
- 安全
I4cTime/quantum_ring
(英文原文)Quantum-inspired keyring for AI coding agents, securing secrets with superposition, entanglement, tunneling and teleportation.
- 安全
iamredmh/volta-mcp-server
(英文原文)Burn-after-read encrypted Volta Notes for agents: hand off credentials between users and agents without secrets appearing in chat history.
- 安全
icoretech/warden-mcp
(英文原文)Manage Bitwarden and Vaultwarden vaults via the bw CLI: search, create, edit and organize logins, notes, cards, identities, SSH keys, folders and Sends.
- 安全
infai-tech/vulnfeed-mcp
(英文原文)Scans dependency lockfiles for vulnerabilities, prioritizes them by EPSS exploit probability and recommends fix versions, with monitoring and alerting.
- 安全
inkog-io/inkog-mcp
(英文原文)Audits agents and MCP servers for prompt injection, infinite loops, token bombing and missing human oversight, with EU AI Act and OWASP mapping.
- 安全
intruder-io/intruder-mcp
MCP 服务器用于访问 Intruder,帮助你识别、理解并修复基础设施中的安全漏洞。
- 安全
itsalissonsilva/ModelSafetyMCP
(英文原文)Scan ML model artifacts, URLs and directories for unsafe serialization, malicious patterns and risky packaging using ModelScan, PickleScan and heuristics.
- 安全
jaimenbell/rails-mcp
(英文原文)Self-hosted default-deny action registry, append-only spend-intent ledger and human sign-off audit trail for gating irreversible agent actions.
- 安全
jamesdfinance-dev/lazaretto-mcp
(英文原文)Check lockfiles against malicious-package advisories and scan artifacts for credential theft, exfiltration, obfuscation, prompt injection and droppers.
- 安全
jamjet-labs/jamjet-policy
(英文原文)MCP interceptor that applies one YAML policy (block, require approval, audit, budget cap) to tool calls, also usable in Claude Code hooks and agent SDKs.
- 安全
Jiangw2718i/frisk
(英文原文)Screen x402 payment counterparties before paying: address sanity, payTo swap, transport safety and spend policy checks with an allow, review or block verdict.
- 安全
jimmyracheta/AI-Runtime-Guard
(英文原文)Runtime policy enforcement for AI agents that prevents accidental system damage and unauthorized access, with automatic backups before file writes.
- 安全
jnMetaCode/shellward
(英文原文)Agent security middleware with layered defenses: prompt injection detection, DLP data flow tracking, command blocking and PII detection.
- 安全
joergmichno/clawguard-mcp
Security scanner for AI agents that detects prompt injections using 42+ regex patterns.
- 安全
JoeyBrar/agentseal-mcp
(英文原文)Action logs for AI agents: records every action in a SHA-256 hash chain as an audit trail.
- 安全
jonnybottles/patch-tuesday-mcp
(英文原文)Microsoft Patch Tuesday triage from the MSRC Security Update Guide: monthly rollups, CVE/KB lookups, supersedence chains and EPSS/CISA KEV urgency ranking.
- 安全
jstibal/openterms-mcp
(英文原文)Ed25519-signed consent receipts and a policy engine for agents: spending caps, action allowlists, escalation thresholds and JWKS-backed provider verification.
- 安全
jtang613/GhidrAssistMCP
一个用于 Ghidra 的原生 Model Context Protocol 服务器。
- 安全
juanisidoro/securecode-mcp
(英文原文)Encrypted secrets vault for Claude Code that injects secrets into local files so the AI never sees raw values, with audit logs and per-model access rules.
- 安全
jyjune/mcp_vms
(英文原文)Retrieve live and recorded video from a CCTV recording program (VMS) and control it, such as opening live or playback dialogs for specific channels and times.
- 安全
kakunin-ai/kakunin-mcp
(英文原文)Agent compliance and identity: verify an agent's X.509 certificate scope, read its behavioral risk score and append to an immutable audit trail.
- 安全
kastelldev/kastell
(英文原文)Server security auditing and hardening (SSH, firewall, Docker, TLS) with CIS/PCI-DSS/HIPAA mapping, fleet management and forensic evidence collection.
- 安全
kent-tokyo/shohei
(英文原文)Infrastructure diagnostics: DNS checks, TLS certificate chain inspection, email security, global DNS propagation and DNS latency benchmarking.
- 安全
Kjopstad-IT/rqwstr
(英文原文)HTTP security testing toolkit (send, intruder, race, chain, out-of-band) with low-level HTTP/1.1 and HTTP/2 control: raw framing and connection pinning.
- 安全
KOVY/agentforge-trust-mcp
(英文原文)Query AgentForge Trust Scores for MCP servers before connecting, covering security, code health, behavioral audit, community trust and EU compliance.
- 安全
Kzino/vorim-mcp-server
(英文原文)Agent identity, trust and audit trails: Ed25519 agent registration, permission checks, tamper-evident audit events, trust scores and credential delegation.
- 安全
LaurieWired/GhidraMCP
(英文原文)Autonomous reverse engineering with Ghidra: decompile binaries, rename methods and data, and list methods, classes, imports and exports.
- 安全
layervai/qurl-mcp
(英文原文)Mint, resolve, audit and rotate expiring, scope-limited access links (qURLs) via the qURL API.
- 安全
loglux/authmcp-gateway
(英文原文)Auth proxy for MCP servers: OAuth2 with DCR, JWT, RBAC, rate limiting, multi-server aggregation and a monitoring dashboard.
- 安全
luiacuaniello/perspectivegraph
(英文原文)Attack-path engine for cloud and Kubernetes: list routes from internet exposure to sensitive assets, explain each hop, find choke points and simulate fixes.
- 安全
M2M-Sentinel/m2m-sentinel-sdk
(英文原文)EVM bytecode capability analysis, EIP-1967 proxy resolution, gas recommendations and preflight safety checks for agents on Base.
- 安全
mariocandela/beelzebub
(英文原文)Honeypot framework for building decoy MCP tools that an agent would never use in normal work, to detect prompt injection and malicious agent behavior.
- 安全
MARUCIE/authbox
(英文原文)Zero-knowledge password manager and MCP credential gateway: policy-gated agent access, deterministic passwords, BIP-39 recovery and a hash-chain audit trail.
- 安全
mastyf-ai/mastyf.ai
(英文原文)Runtime security proxy for MCP that blocks prompt injection, SSRF, shell/SQL injection and credential exfiltration, plus trust scores for npm MCP packages.
- 安全
maxfain/basedagents
(英文原文)Agent identity registry (reputation, capability search, task marketplace, messaging) plus a local encrypted vault that leases provider keys to agents.
- 安全
mcp-hangar/mcp-hangar
(英文原文)Self-hosted policy enforcement for MCP server fleets: deterministic admission and egress policies, attributable audit logs and SIEM export.
- 安全
mcpindex-ai/mcp-server-mcpindex
(英文原文)Find MCP servers by describing a task and get advisory trust screens before connecting, using the mcpindex directory.
- 安全
meloliva14/verity-mcp
(英文原文)Fail-closed trust gate for agents: fact-checking, prompt-injection detection, content moderation, PII and secret detection, and a pre-action guardrail.
- 安全
mirajmahmudul/agentdevx-sdk
(英文原文)Identity and credential gateway for agents: Ed25519 identity, encrypted credential vault, OPA policies with audit logging, per-agent memory and web scraping.
- 安全
mobb-dev/mobb-vibe-shield-mcp
(英文原文)Mobb Vibe Shield identifies and remediates vulnerabilities in human and AI-written code.
- 安全
MoltyCel/moltrust-mcp-server
(英文原文)Trust infrastructure for AI agents: register DIDs, verify identities, query reputation scores, rate agents and manage W3C Verifiable Credentials.
- 安全
mopanc/depguard
(英文原文)Pre-install npm package checks: static analysis, supply-chain attack detection, vulnerability audits, AI hallucination guard and CycloneDX SBOM generation.
- 安全
moxno/privacyscrubber-mcp
(英文原文)Local, zero-trust masking of PII and secrets.
- 安全
mrexodia/ida-pro-mcp
(英文原文)IDA Pro plugin for binary analysis: decompilation, disassembly and automatic malware analysis reports.
- 安全
mrz1880/mcp-keycloak-admin
(英文原文)Administer Keycloak via its Admin REST API: users, roles, clients, groups, identity providers, federation and events, with a read-only mode.
- 安全
msaad00/agent-bom
(英文原文)AI supply chain security scanner: discovers MCP clients, scans dependencies for CVEs, maps blast radius to credentials and tools, and generates SBOMs.
- 安全
muhannad-hash/mcp-shield
(英文原文)Pre-install security scanner for MCP servers: detects backdoors, exfiltration code, obfuscation, dangerous execution, prompt injection and supply chain risks.
- 安全
nagameTW/mcp-server-malcolm
(英文原文)Malcolm threat hunting: search and aggregate network traffic, query Suricata alerts, browse Arkime sessions and resolve NetBox assets.
- 安全
nh4ttruong/secobserve-mcp
(英文原文)SecObserve vulnerability and license management: triage observations, manage products and rules, import scan reports and SBOMs, run scans and generate VEX.
- 安全
nickgeorgeseo/mcp-gatehouse
(英文原文)Permission tiers, approval gates and secret-redacting audit logging enforced inside MCP servers at the tool boundary, with a demo order-desk server.
- 安全
nickpending/mcp-recon
(英文原文)Conversational recon with httpx and asnmap: domain analysis, security header inspection, certificate analysis and ASN lookups at multiple recon levels.
- 安全
node-man/dechonet-mcp
(英文原文)Domain security checks: DNS, DNSSEC, TLS grading, HTTP security headers, SPF, DKIM and DMARC, port scans, ASN, RDAP and WHOIS, plus an overall health score.
- 安全
OksigeniaSL/checker-mcp
(英文原文)Local-first domain security and privacy checker: live SPF, DMARC, DKIM, DNSSEC, TLS, CAA and security header checks, scored with remediation advice.
- 安全
oleg-vdv/kepil
(英文原文)Accountability layer for AI agents: per-version passports, per-job mandates with spending limits, a fail-closed action gate and a hash-chained journal.
- 安全
operantlabs/operant-mcp
(英文原文)Security testing tools for penetration testing, network forensics, memory analysis and vulnerability assessment.
- 安全
OrygnsCode/opa-mcp-server
(英文原文)OPA and Rego policy toolkit wrapping the OPA CLI and Regal: format, lint, evaluate, test and benchmark policies, manage the OPA REST API and explain decisions.
- 安全
P4ST4S/mcp-audit
(英文原文)Transparent proxy that intercepts, signs, rate-limits, redacts and audits MCP tool calls without modifying client or server.
- 安全
panther-labs/mcp-panther
(英文原文)Use Panther's SIEM platform in natural language to write detections, query logs and manage alerts.
- 安全
Pentagonal-ai/pentagonal
(英文原文)Generate, audit, fix and compile smart contracts on Ethereum, Solana, Base and other chains, with adversarial multi-agent pen testing and honeypot detection.
- 安全
Perufitlife/web-exposure-mcp
(英文原文)Read-only check of a live URL for publicly exposed secret files: .git, .env, JS source maps, backup/SQL dumps, directory listings and dotfiles.
- 安全
piiiico/proof-of-commitment
(英文原文)Supply chain risk scoring for npm, PyPI, Cargo and Go packages from behavioral signals: publisher depth, release consistency and maintenance patterns.
- 安全
ppcvote/misp-mcp-server
(英文原文)Read-only MISP threat intelligence (events, attributes, search, tags, feeds, galaxies) with prompt injection scanning of every response.
- 安全
project-feldspar-resources/feldspar-scan
(英文原文)Deterministic security scan of public git repositories: vulnerable dependencies via OSV, hard-coded secrets and risky config lint, as file:line findings.
- 安全
pullkitsan/mobsf-mcp-server
(英文原文)Static and dynamic analysis of Android and iOS apps with MobSF.
- 安全
qianniuspace/mcp-security-audit
一个强大的 MCP (模型上下文协议) 服务器,审计 npm 包依赖项的安全漏洞。
- 安全
qinisolabs/qiniso
(英文原文)Verify IBAN, VAT, VIN, barcodes, national and tax IDs, crypto addresses, phone numbers, dates and holidays against checksums and curated data.
- 安全
quantakrypto/pqc-tools
面向 AI 编程代理的后量子就绪工具。
- 安全
rad-security/mcp-server
(英文原文)Query the RAD Security API for Kubernetes and cloud security findings, reports and runtime data.
- 安全
radareorg/r2mcp
(英文原文)Disassemble and inspect binaries for reverse engineering with the Radare2 disassembler.
- 安全
rafapra3008/cervellaswarm
(英文原文)Verify agent communication protocols with session types and Lean 4 proofs to catch deadlocks and role violations; includes a linter, formatter and LSP.
- 安全
rev2ret/SecureAudit-MCP
(英文原文)Static C/C++ memory-safety scanning and PE/ELF binary protection audits (ASLR, DEP/NX, SafeSEH, PIE), with remediation via secure templates.
- 安全
roadwy/cve-search_mcp
CVE-Search MCP服务器, 提供CVE漏洞信息查询、漏洞产品信息查询等功能。
- 安全
rob925/mcp-shield
(英文原文)Static security scanner for MCP servers and agent tools: detects secrets, shell execution, risky tool descriptions, environment access and prompt injection.
- 安全
RoscoNL/intodns-mcp-server
(英文原文)DNS and email security scans via IntoDNS.ai: SPF, DKIM, DMARC, DNSSEC, MTA-STS, BIMI, TLS, blacklist and deliverability checks plus security header analysis.
- 安全
rudimentall1/agentic-wallet-guardian-v3
(英文原文)Self-hosted security layer that evaluates AI agents' proposed blockchain transactions and returns an explainable allow, warn or block decision.
- 安全
rudraneel93/mcp-guardian
(英文原文)Security and governance proxy for MCP with YAML policies (blocklists, rate limits, token budgets), token cost tracking, health monitoring and RBAC.
- 安全
Rul1an/assay
(英文原文)Fail-closed policy-as-code proxy for MCP that denies risky tool calls, produces offline-verifiable evidence bundles and enforces egress via eBPF and Landlock.
- 安全
sachio222/54ch10-mcp
(英文原文)JSON risk briefs for wallet addresses, tokens and URLs: scores, flags and sources from phishing, scam and URL-reputation heuristics, including OpenPhish.
- 安全
safedep/vet
(英文原文)Locally check npm and PyPI packages, such as those suggested by AI coding tools, for vulnerabilities and malicious code.
- 安全
samvas-codes/dawshund_mcp
(英文原文)Enumerate AWS IAM data, analyze effective permissions and visualize access relationships across users, roles and resources, based on dAWShund.
- 安全
sanyambassi/ciphertrust-manager-mcp-server
(英文原文)Thales CipherTrust Manager integration for key management, cryptographic operations and compliance monitoring.
- 安全
sanyambassi/thales-cdsp-cakm-mcp-server
(英文原文)Thales CDSP CAKM integration for key management, cryptographic operations and compliance monitoring for Microsoft SQL Server and Oracle databases.
- 安全
sanyambassi/thales-cdsp-crdp-mcp-server
(英文原文)Integration with the Thales CipherTrust Manager RESTful Data Protection service.
- 安全
SaravananJaichandar/etch-mcp
(英文原文)Signed audit chain for AI agent decisions: events are signed, Merkle-chained per project, anchored to public transparency logs and verifiable offline.
- 安全
scalekit-inc/scalekit-mcp-server
(英文原文)Manage Scalekit organizations, users and SSO.
- 安全
scamverifyai/scamverify-mcp
(英文原文)Scam and threat checks for phone numbers, URLs, texts, emails, documents and QR codes using FTC/FCC complaints, URLhaus and ThreatFox, with risk scores.
- 安全
ScopeBlind/verify-mcp
(英文原文)Offline verification of Ed25519/JCS-signed artifacts such as receipts, manifests and audit bundles.
- 安全
securityfortech/secops-mcp
(英文原文)Security testing toolbox that combines open source tools behind a single interface for pentesting, bug bounty hunting and threat hunting.
- 安全
sekera-radim/impri
(英文原文)Self-hostable human-in-the-loop approval inbox: humans approve, reject or edit proposed agent actions via web, mobile, Slack, Discord or Telegram.
- 安全
semgrep/semgrep
(英文原文)Scan code for security vulnerabilities using Semgrep.
- 安全
sgateway/s-gw
(英文原文)Local credential gateway for coding agents: agents get handles instead of raw secrets, and one-time approvals inject credentials only into approved commands.
- 安全
shieldly-io/mcp
(英文原文)Analyze AWS IAM policies and CloudFormation templates with Shieldly to flag privilege-escalation paths, wildcards and over-permissive access.
- 安全
shyshlakov/pci-dss-mcp
(英文原文)PCI DSS static analysis for Go payment code: finds PAN/CVV exposure, weak crypto, missing audit logs and vulnerable deps, each mapped to a PCI requirement.
- 安全
sidclawhq/platform
(英文原文)Governance proxy that wraps MCP servers with policy evaluation, human approval workflows and hash-chain audit trails.
- 安全
sint-ai/sint-protocol
(英文原文)MCP governance proxy with capability tokens, tiered approvals, fail-closed execution and tamper-evident audit receipts, plus preflight tool-risk scanning.
- 安全
Skyrxin/sast-mcp-server
(英文原文)SAST/DAST scanners (Bandit, Semgrep, Trivy, CodeQL, OWASP ZAP and more) with closed-loop remediation, SARIF/SBOM/VEX export and compliance reporting.
- 安全
slouchd/cyberchef-api-mcp-server
(英文原文)Use CyberChef operations through the CyberChef server API.
- 安全
snyk/studio-mcp
(英文原文)Embeds Snyk's security engines into agentic workflows to secure AI-generated code in real time and work through vulnerability backlogs faster.
- 安全
sp3ak/safenode-mcp-gateway
(英文原文)Fail-closed policy proxy for MCP tool calls that denies, warns on or holds each call for human approval before forwarding, with client-side redaction.
- 安全
srinivasan-sundaresan95/orihime
(英文原文)Cross-repository code knowledge graph for Java, Kotlin, JavaScript and TypeScript: call-flow tracing, taint analysis, reachability and license compliance.
- 安全
StacklokLabs/osv-mcp
(英文原文)Query the OSV (Open Source Vulnerabilities) database by package version or commit, batch-query multiple packages and get vulnerability details by ID.
- 安全
suhui-organization/pod
(英文原文)Least-privilege compiler for agents: record real tool calls, compile a minimal policy, enforce it at an MCP gateway and keep a hash-chained audit.
- 安全
swnotmetal/Project-Koma
(英文原文)Classify input for prompt injection and out-of-scope content with Koma Gate's LLM-based classifier.
- 安全
Synvoya/codeinspectus
(英文原文)Local security scanner for AI-generated JS/TS that combines Opengrep, Gitleaks and Trivy with checks for exposed secrets, Supabase RLS and prompt injection.
- 安全
takleb3rry/zitadel-mcp
(英文原文)Zitadel identity management: manage users, projects, OIDC apps, roles and service accounts in natural language.
- 安全
taniwhaai/arai
(英文原文)Enforces rules from existing agent instruction files (CLAUDE.md, .cursorrules) by blocking prohibited tool calls and logging per-rule compliance verdicts.
- 安全
teodorofodocrispin-cmyk/trustboost-pii-sanitizer
(英文原文)Redacts emails, phone numbers, national IDs, private keys and financial data before text reaches LLMs, in English, Spanish, Portuguese, German and Japanese.
- 安全
Thezenmonster/agentscore-mcp-server
(英文原文)Security trust layer that monitors MCP packages on npm for install scripts, command injection, hardcoded secrets, capability drift and publisher posture.
- 安全
thyn-ai/algenta-sdk
(英文原文)Algenta decision engine: dataset discovery, exact queries, utility models, decision memory and governed agent runs with approvals and execution receipts.
- 安全
timescale/rsigma
(英文原文)Author, lint, validate and convert Sigma detection rules with RSigma, evaluate and explain detections against log events, and inspect correlation state.
- 安全
toan203/osv-ui
(英文原文)Visual CVE audit dashboard for npm, Python, Go and Rust using OSV data, with browser-based human review and fixes applied only after confirmation.
- 安全
tomjwxf/scopeblind-gateway
(英文原文)Security gateway that wraps MCP servers with per-tool policies, approval gates and optional signed receipts, in shadow (log-only) or enforce mode.
- 安全
Top-Celestial-Company-Ltd/DROS-VajraClaw-Hacker
(英文原文)Deterministic execution governance gateway and W3C DID security guardrail for AI agent MCP tool calls.
- 安全
trustscoreagent/trustscoreagent
(英文原文)Check the reputation of AI microservices and public APIs before calling them and submit ratings afterward, via an open trust registry.
- 安全
uchit/mcp-regulated-ai-compliance
(英文原文)Regulated-industry AI compliance knowledge: control lookup, use-case classification and crosswalks for EU AI Act, NIST AI RMF, ISO 42001, APRA, GDPR and more.
- 安全
ucsandman/DashClaw
(英文原文)Fail-closed approval layer for unattended agent runs: checks actions against org policy, requests human approval and logs every decision to a causal ledger.
- 安全
UnboundCompute/lachesis
(英文原文)Code property graph for C, Python and TypeScript: callers/callees, data and taint flow with source-to-sink witnesses, points-to and guard/sink structure.
- 安全
UPinar/contrastapi
(英文原文)Security intelligence: CVE/EPSS/KEV lookups, domain recon (DNS, WHOIS, SSL, subdomains), IOC threat intel, OSINT and code scanning for secrets and injection.
- 安全
urldna/mcp
(英文原文)URL scanning and phishing triage: capture DOM snapshots, network requests and screenshots, and hunt historical scans with a custom query language.
- 安全
vaulted-fyi/vaulted-mcp-server
(英文原文)Share end-to-end encrypted, self-destructing secrets from an agent, reading them from env vars or files so they stay out of LLM context.
- 安全
velvetway/minreestr-mcp
(英文原文)Search the Russian software registry for import-substitution and FSTEC/FSB-certified products, with full-text search and manufacturer listings.
- 安全
vespo92/OPNSenseMCP
(英文原文)Manage and interact with the OPNsense open source firewall in natural language.
- 安全
vikasny30/aletheia-mcp
(英文原文)Deterministic pre-execution filter for agent tool calls that blocks scope creep (credential reads, SSRF, destructive shell/SQL) and prompt injection.
- 安全
vinaybhosle/agentstamp
(英文原文)Trust intelligence for AI agents: identity stamps, reputation scoring, a registry, forensic audit trails and A2A passports via x402 micropayments.
- 安全
wei9072/aegis
(英文原文)Admission control for agent file edits: checks syntax, structural-cost regressions and workspace boundaries, returning BLOCK, WARN or PASS verdicts.
- 安全
williamblakecunningham-max/screenverity-mcp
(英文原文)U.S. exclusion, debarment and license screening (OIG LEIE, SAM.gov, state boards) with an Ed25519-signed receipt of the exact list snapshots checked.
- 安全
WRG-11/wrg-sigma-rules
(英文原文)Write, validate and convert Sigma detection rules for Splunk, Elastic, Kibana and Wazuh, backed by a rule corpus covering MITRE ATT&CK tactics.
- 安全
yessGlory17/job-verify
(英文原文)Check recruiters and job offers for scams: cross-checks company registration, domain age, look-alike domains, blocklists and crypto-scam databases.
- 安全
zboralski/ida-headless-mcp
(英文原文)Headless IDA Pro binary analysis with concurrent sessions and Il2CppDumper and Blutter metadata import for Unity and Flutter reverse engineering.
- 安全
zekebuilds-lab/captcha-mcp
(英文原文)Middleware that gates MCP tool calls behind a Hashcash proof-of-work challenge or an L402 Lightning payment via self-hosted LNbits.
- 安全
zinja-coder/apktool-mcp-server
(英文原文)Automate reverse engineering of Android APKs with Apktool.
- 安全
zinja-coder/jadx-ai-mcp
(英文原文)JADX decompiler plugin providing live, LLM-assisted reverse engineering.
- 安全
zkproofport/proofport-ai
(英文原文)Generate zero-knowledge proofs of identity claims (Coinbase KYC, country, Google OIDC, Microsoft 365) without revealing personal information.
- 安全
zw008/VMware-Harden
(英文原文)Read-only VMware vSphere compliance scanning and drift detection against CIS, vSphere SCG, China DJCP 2.0 and PCI-DSS, with remediation suggestions.
- 安全
zyx77550/sparda
(英文原文)Injects a live, reversible MCP server into a running Express, FastAPI or Next.js app, with safe reads by default and writes gated behind human confirmation.