Security MCP Servers

Security-focused MCP servers for scanning, auditing, secrets management, and threat analysis β€” giving AI agents safe, scoped access to the tools security teams already rely on.

192 serversOpen in interactive directoryBest Security servers β†’
G

GhidraMCP

13bm
MCP server for integrating Ghidra with AI assistants. This plugin enables binary analysis, providing tools for function inspection, decompilation, memory exploration, and import/export analysis via the Model Context Protocol.
M

MCP Dandan

82ch
Real-time security framework for MCP servers that detects and blocks malicious AI agent behavior by analyzing tool call patterns and intent across multiple threat detection engines.
U

Unphurl Mcp

123Ergo
URL intelligence for AI agents. 13 tools for security signals and data quality: redirect behaviour, brand impersonation detection, domain age, SSL validation, parked detection, URL structural analysis, DNS enrichment.
A

Arc Gate Mcp

9hannahnine-jpg
Runtime governance for MCP tool calls. Blocks prompt injection and capability abuse before tool results reach your agent.
A

Aegis

Acacian
Policy-based governance for AI agent tool calls. YAML policies, approval gates, risk assessment, and audit logging. Cross-platform: LangChain, OpenAI, Anthropic, MCP.
A

Agent Passport Mcp

aeoess
Agent identity, scoped delegation, and governance: issue passports, build and verify narrowing-only delegation chains, enforce policy at a gateway, and emit signed admission and outcome records. 150 tools. npx -y agent-passport-system-mcp
A

AgentValet

AgentValet
Identity and credential governance broker for MCP servers. Issues scoped, short-lived credentials per agent to stop credential inheritance. Audit log, human approval gates, AIMS-aligned.
M

Mcp

agntor
MCP audit server for agent discovery and certification. Provides trust and payment rail for AI agents including identity verification, escrow, settlement, and reputation management.
A

Air Blackbox Mcp

airblackbox
EU AI Act compliance scanner for Python AI agents. Scans, analyzes, and remediates LangChain/CrewAI/AutoGen/OpenAI code across 6 articles with 10 tools including prompt injection detection, risk classification, and trust layer integration. The only MCP compliance server that generates fix code, not just findings.
A

Aimarket Mcp

alexar76
SSRF-hardened web gateway MCP β€” webfetch, websearch, metisverify; one audited security core for Metis, ARGUS, and the ecosystem. stdio + optional HTTP Β· Python Β· Glama Β· Registry io.github.alexar76/aimarket-mcp.
A

Aimarket Oracle Gateway

alexar76
Verifiable oracle MCP server: Platon VRF (getrandom), Chronos VDF (computevdf / verifyvdf), LUMEN reputation (getreputationscores) as agent tools. Pay-per-call over AIMarket Hub; every result independently verifiable. stdio Β· Python Β· Glama.
A

Agent Trust Stack Mcp

alexfleetcommander
Cryptographic provenance, bilateral blind reputation scoring, and tamper-evident logging for AI agent interactions. 7 interlocking trust protocols (CoC, ARP, ASA, AJP, ALP, AMP, CWEP) available in Python (pip) and TypeScript (npm). 663 tests. Bitcoin-anchored provenance chains, anti-Goodhart reputation scoring, machine-readable contracts, dispute resolution, lifecycle management, trust-weighted matchmaking, and context-window cost allocation. Also on Smithery and PyPI.
S

Shield

AperionAI
Local guardrail proxy for AI coding agents. Wraps any MCP server (stdio or Streamable HTTP) and blocks destructive tool calls β€” DROP TABLE, rm -rf, force-push β€” before they execute. MCP supply-chain protection: TOFU tool-catalog pinning against rug pulls, plus tool-description and tool-result scanning for tool poisoning and prompt injection. 51 starter rules, approval gates, audit logging. Single binary, Apache-2.0.
A

Arkforge Mcp

ark-forge
Third-party certifying proxy β€” sign any HTTP call (AI agents, webhooks, microservices) with an independent Ed25519 signature, RFC 3161 timestamp, and Sigstore Rekor anchor. Works with Claude, GPT-4, Mistral, LangChain, AutoGen, or any HTTP client.
A

Agentradar Mcp

Bichev
On-chain trust oracle for the ERC-8004 + x402 agent economy. 18 tools for verifying AI agents: 6-signal composite trust scoring (0-100), 272-wallet scam database, ERC-8004 identity lookup, EAS attestations on Base mainnet. x402-payable. Free getscore / checkscam. Live at vvpro.ai Β· npm @agentradar/mcp.
B

Blackwall Mcp

bluetieroperations-create
Pre-action risk gate for AI agents. One forecast tool the agent calls before any irreversible action (send money, run SQL, delete data); returns a risk score (0–100), reversibility class, named red flags from 28 failure modes, and a gate: proceed / confirm / human-required.
M

Mcp Shodan

BurtTheCoder
MCP server for querying the Shodan API and Shodan CVEDB. This server provides tools for IP lookups, device searches, DNS lookups, vulnerability queries, CPE lookups, and more.
W

Wireshark MCP

bx33661
Wireshark network packet analysis MCP Server with capture, protocol stats, field extraction, and security analysis capabilities.
C

Csl Core

Chimera-Protocol
Deterministic AI safety policy engine with Z3 formal verification. Write, verify, and enforce machine-verifiable constraints for AI agents via MCP.
P

Promptspeak Mcp Server

chrbailey
Pre-execution governance for AI agents. Intercepts and validates every agent tool call through an 8-stage pipeline before execution β€” risk classification, behavioral drift detection, hold queue for dangerous operations, and complete audit trail. 45 tools, 658 tests.
A

Attestable Mcp Server

co-browser
An MCP server running inside a trusted execution environment (TEE) via Gramine, showcasing remote attestation using RA-TLS. This allows an MCP client to verify the server before conencting.
S

State Of Cwv Mcp

corewebvitals
Free remote MCP for Core Web Vitals metrics by CMS, CDN, and framework (Chrome field data + multi-site crawl). No auth. Endpoint: https://www.corewebvitals.io/api/state-of-cwv/mcp.
O

Opnsense Mcp

coreyhines
OPNsense firewall operations via API. Query ARP, DHCP, firewall rules, logs, interfaces, system status, and packet capture via STDIO or SSE.
A

Avp Sdk

creatorrmode-lead
Trust, identity (W3C DID), and EigenTrust reputation for AI agents. Attestations, disputes, sybil detection, IPFS audit anchoring.
M

Mcp Server

datanexusmcp
55 tools for verified public data lookups β€” CVE/SBOM security audits, licence compliance, patents, federal contracts, NPI provider lookups, nonprofit 990 filings, and domain intelligence. No API key required.
S

Solvitor Mcp

adeptus-innovatio
Solvitor MCP server provides tools to access reverse engineering tools that help developers extract IDL files from closed-source Solana smart contracts and decompile them.
A

Agentgraph

agentgraph-co
Trust verification and security scanning for AI agents. Checks security posture of third-party MCP servers and tools with signed attestations (Ed25519/JWS) before interaction.
A

Agentward

agentward-ai
Permission control plane for AI agents. MCP proxy that enforces least-privilege YAML policies on every tool call, classifies sensitive data (PII/PHI), detects dangerous skill chains, and generates compliance audit trails. Supports stdio and HTTP proxy modes.
A

AIM Guard MCP

AIM-Intelligence
Security-focused MCP server that provides safety guidelines and content analysis for AI agents.
F

Fida

ajipurn
Local-first MCP gateway for coding agents that redacts detected secrets from file reads and command output before they reach model context.
S

Shieldapi Mcp

alberthild
Security intelligence for AI agents: password breach checks (900M+ HIBP hashes), email/domain/IP/URL reputation, prompt injection detection (200+ patterns), and skill supply chain scanning. Pay-per-request via x402 USDC micropayments or free demo mode, no API key needed.
A

Argus

alexar76
ARGUS-3 as a stdio MCP server (argus mcp β†’ argusask, argusstatus). WARDEN vets third-party MCP servers before any tool runs (LUMEN-scored firewall, tool-def pinning, drift sentinel). Distinct from aimarket-oracle-gateway (oracle tools) and aimarket-plugins (hub packager). npm @alexar76/argus3 Β· live.
N

Nobulex

arian-gogani
Proof-of-behavior enforcement for AI agents. Define behavioral covenant rules (permit/forbid/require), enforce at runtime before execution, get SHA-256 hash-chained tamper-evident audit logs, and verify compliance independently. Cross-agent verification handshake β€” no proof, no transaction. MIT licensed, 4,244 tests.
H

Hejdar Mcp

ARKALDA
Runtime policy enforcement for AI agents. Evaluate actions against organization policies before execution, with observe and enforce modes.
D

DocSentinel

arthurpanhku
MCP server for AI agent for cybersecurity: automate assessment of documents, questionnaires & reports. Multi-format parsing, RAG knowledge base,Risks, compliance gaps, remediations.
T

Truecopy

askalf
Supply-chain gate for agent skills and MCP servers β€” scans tool definitions for poisoned instructions, pins vetted servers by content hash in a committed lock, and verifies drift in CI; the bundled truecopy-mcp proxy exposes only pinned, unmodified tools from a live server.
A

Agentaegis Mcp

astafford8488
Security & trust layer for AI agents. Scan an MCP server or skill before you install it (scanmcpplugin, scanskill) β€” flags exfiltration, prompt-injection sinks, dangerous capabilities, install hooks and obfuscation β†’ PROCEED/CAUTION/BLOCK. Plus vetendpoint (endpoint safety verdict before an agent calls or pays it) and 25 more tools: vuln scans, threat intel, compliance (SOC 2/ISO 27001/HIPAA), code security (SAST/secret/dependency), identity β€” 28 total. Per-call billing via API key or x402 USDC on Base; free discovery tier.
R

Roadrecon Mcp Server

atomicchonk
MCP server for analyzing ROADrecon gather results from Azure tenant enumeration
M

Mcpskills Server

BeBraveBeKind
Pre-install trust layer for MCP servers, AI skills, and npm packages. Scores any repo or package across 15 signals (incl. OSV/KEV/EPSS vulnerability intelligence) with safety scanning for prompt injection, credential theft, and supply-chain risk; the autogate tool returns a go/no-go install decision. Listed in the official MCP Registry as io.mcpskills/server. npm: @mcpskillsio/server. https://mcpskills.io
C

Chronoverify Mcp

beeswaxpat
Verify a photo's capture time and provenance before an agent trusts it: cryptographic C2PA Content Credentials validation against the official trust lists, EXIF and XMP consistency checks, and classical pixel forensics fused into one typed verdict with a 0 to 100 confidence. Free keyless tier, opt-in shareable verdict permalinks, and key-gated signed PDF audit reports. Provenance validation, not a deepfake detector. npx chronoverify-mcp
M

Mcp Firewall

behrensd
Deterministic security proxy (iptables for MCP) that intercepts tool calls, enforces YAML policies, scans for secret leakage, and logs everything. No AI, no cloud.
A

Anonymize Mcp

Buggy1111
Anonymize PII and redact text for GDPR across Czech and 35+ languages. Real NLP via ÚFAL/LINDAT (MasKIT + NameTag NER, not just regex), 80+ PII patterns, plus morphology, translation, and spellcheck. Czech-first, non-commercial. Install: pip install anonymize-mcp.
M

Mcp Dnstwist

BurtTheCoder
MCP server for dnstwist, a powerful DNS fuzzing tool that helps detect typosquatting, phishing, and corporate espionage.
M

Mcp Maigret

BurtTheCoder
MCP server for maigret, a powerful OSINT tool that collects user account information from various public sources. This server provides tools for searching usernames across social networks and analyzing URLs.
M

Mcp Virustotal

BurtTheCoder
MCP server for querying the VirusTotal API. This server provides tools for scanning URLs, analyzing file hashes, and retrieving IP address reports.
C

Calllint

calllint
Pre-flight security linter for MCP servers, agent tools, and skills. Scans a config before it runs β€” offline, deterministic, evidence-backed β€” and returns SAFE / REVIEW / BLOCK / UNKNOWN verdicts without executing the server it judges. CLI (npx calllint scan), MCP server (npx calllint-mcp), SARIF + CI gate. UNKNOWN is never SAFE.
B

Basescope

chasdaddy
The read-only safety layer for onchain AI agents. 13 read-only tools on Base + EVM: token/contract safety (honeypot & rug-pull checks cross-referenced across GoPlus + honeypot.is), risky-approval detection, verified-source lookup, balances, ENS + Basenames, gas, and prices. No private keys, no required API keys. npx -y basescope
S

Sicarius Guard

Chronolapse411
Solana token safety oracle for AI agents and trading bots. Byte-level SPL mint analysis, honeypot detection, freeze/mint authority checks, Birdeye market enrichment, and composite risk scoring. Deployed on Google Cloud Run.
D

Depscope

cuttalo
Package Intelligence for AI agents. 22 tools across 17 ecosystems (npm/pypi/cargo/go/maven/nuget/rubygems/composer/pub/hex/swift/cocoapods/cpan/hackage/cran/conda/homebrew) β€” check health, vulnerabilities (OSV + CISA KEV + EPSS), typosquats, malicious flags, alternatives, known bugs, breaking changes, stack compatibility and error-to-fix. 31k+ packages, 2.2k+ CVEs enriched. Zero auth, MIT. Remote URL https://mcp.depscope.dev/mcp or stdio npx depscope-mcp.
C

Cyntrisec Cli

cyntrisec
Local-first AWS security analyzer that discovers attack paths and generates remediations using graph theory.
L

Lucairn Sdks

Declade
Privacy-preserving AI gateway. Sanitises PII (German + English; Microsoft Presidio + custom recognisers) before prompts reach Anthropic / OpenAI / your LLM, then emits a signed cryptographic certificate per call (Ed25519 + RFC 3161 timestamp + Sigstore Rekor anchoring). EU GDPR + AI Act ready. Free tier 500 calls/month, BYOK. Install: npx -y @lucairn/mcp-server. Docs: https://lucairn.eu/developer/mcp.
O

Onepassword Mcp Server

dkvdm
An MCP server that enables secure credential retrieval from 1Password to be used by Agentic AI.
S

Skylos

duriantaco
Dead code detection, security scanning, and code quality analysis for Python, TypeScript, and Go. 98% recall with fewer false positives than Vulture. Includes AI-powered remediation.
T

Taskbounty Check

eliottreich
Local-only GitHub Actions and CI maintenance scanner for AI-built apps. Exposes scanrepo, explainfinding, and generatefixplan to MCP clients; reads only allowlisted workflow and update configuration, modifies nothing, makes no outbound requests by default, and has zero runtime dependencies. Run with npx -y taskbounty-check@0.1.6 mcp.
E

Emilia Protocol

emiliaprotocol
Human sign-off + trust receipts for AI agents: requires a named human's approval before an irreversible action (payment release, record change, deploy), then mints an offline-verifiable Ed25519 Trust Receipt. Also exposes trust profiles, receipt verification, disputes, and delegation. Apache-2.0; policy engine formally verified. Install: npx -y @emilia-protocol/mcp-server.
F

Fetch Guard

Erodenn
URL fetcher and HTML-to-markdown converter with three-layer prompt injection defense: pre-extraction sanitization of hidden/off-screen elements and non-printing Unicode, 15-pattern risk scanning (HIGH/MEDIUM/OK), and per-request session-salt content boundary wrapping.
A

Authenticator Mcp

firstorderai
A secure MCP (Model Context Protocol) server that enables AI agents to interact with the Authenticator App.
S

Secretctl

forest6511
AI-safe secrets manager with MCP integration. Run commands with credentials injected as environment variables - AI agents never see plaintext secrets. Features output sanitization, AES-256-GCM encryption, and Argon2id key derivation.
X

X402 Notary Mcp

forgemeshlabs
Cryptographic receipts for AI outputs: notarize any model inference with a signed Ed25519 attestation, sha256 content hash, and Merkle chain-anchor on Base or Solana. $0.001 per call via x402 USDC micropayments; verification is free and needs no wallet. Notarizes the hash, never your prompts. npx -y @forgemeshlabs/x402-notary-mcp
B

Binary Ninja Mcp

fosdickio
A Binary Ninja plugin, MCP server, and bridge that seamlessly integrates Binary Ninja with your favorite MCP client. It enables you to automate the process of performing binary analysis and reverse engineering.
Browse all 192 Security servers β†’

Explore related categories

Developer Tools(432)Finance & Fintech(389)Knowledge & Memory(270)Search & Data Extraction(193)Other Tools and Integrations(191)Databases(122)Communication(119)Aggregators(103)