π
Security MCP Servers
Security-focused MCP servers for scanning, auditing, secrets management, and threat analysis β giving AI agents safe, scoped access to the tools security teams already rely on.
G
GhidraMCP
13bm
MCP server for integrating Ghidra with AI assistants. This plugin enables binary analysis, providing tools for function inspection, decompilation, memory exploration, and import/export analysis via the Model Context Protocol.
3 0 0
M
MCP Dandan
82ch
Real-time security framework for MCP servers that detects and blocks malicious AI agent behavior by analyzing tool call patterns and intent across multiple threat detection engines.
2 0 0
U
Unphurl Mcp
123Ergo
URL intelligence for AI agents. 13 tools for security signals and data quality: redirect behaviour, brand impersonation detection, domain age, SSL validation, parked detection, URL structural analysis, DNS enrichment.
1 0 0
A
Arc Gate Mcp
9hannahnine-jpg
Runtime governance for MCP tool calls. Blocks prompt injection and capability abuse before tool results reach your agent.
1 0 0
A
Aegis
Acacian
Policy-based governance for AI agent tool calls. YAML policies, approval gates, risk assessment, and audit logging. Cross-platform: LangChain, OpenAI, Anthropic, MCP.
1 0 0
A
Agent Passport Mcp
aeoess
Agent identity, scoped delegation, and governance: issue passports, build and verify narrowing-only delegation chains, enforce policy at a gateway, and emit signed admission and outcome records. 150 tools. npx -y agent-passport-system-mcp
1 0 0
A
AgentValet
AgentValet
Identity and credential governance broker for MCP servers. Issues scoped, short-lived credentials per agent to stop credential inheritance. Audit log, human approval gates, AIMS-aligned.
1 0 0
M
Mcp
agntor
MCP audit server for agent discovery and certification. Provides trust and payment rail for AI agents including identity verification, escrow, settlement, and reputation management.
1 0 0
A
Air Blackbox Mcp
airblackbox
EU AI Act compliance scanner for Python AI agents. Scans, analyzes, and remediates LangChain/CrewAI/AutoGen/OpenAI code across 6 articles with 10 tools including prompt injection detection, risk classification, and trust layer integration. The only MCP compliance server that generates fix code, not just findings.
1 0 0
A
Aimarket Mcp
alexar76
SSRF-hardened web gateway MCP β webfetch, websearch, metisverify; one audited security core for Metis, ARGUS, and the ecosystem. stdio + optional HTTP Β· Python Β· Glama Β· Registry io.github.alexar76/aimarket-mcp.
1 0 0
A
Aimarket Oracle Gateway
alexar76
Verifiable oracle MCP server: Platon VRF (getrandom), Chronos VDF (computevdf / verifyvdf), LUMEN reputation (getreputationscores) as agent tools. Pay-per-call over AIMarket Hub; every result independently verifiable. stdio Β· Python Β· Glama.
1 0 0
A
Agent Trust Stack Mcp
alexfleetcommander
Cryptographic provenance, bilateral blind reputation scoring, and tamper-evident logging for AI agent interactions. 7 interlocking trust protocols (CoC, ARP, ASA, AJP, ALP, AMP, CWEP) available in Python (pip) and TypeScript (npm). 663 tests. Bitcoin-anchored provenance chains, anti-Goodhart reputation scoring, machine-readable contracts, dispute resolution, lifecycle management, trust-weighted matchmaking, and context-window cost allocation. Also on Smithery and PyPI.
1 0 0
S
Shield
AperionAI
Local guardrail proxy for AI coding agents. Wraps any MCP server (stdio or Streamable HTTP) and blocks destructive tool calls β DROP TABLE, rm -rf, force-push β before they execute. MCP supply-chain protection: TOFU tool-catalog pinning against rug pulls, plus tool-description and tool-result scanning for tool poisoning and prompt injection. 51 starter rules, approval gates, audit logging. Single binary, Apache-2.0.
1 0 0
A
Arkforge Mcp
ark-forge
Third-party certifying proxy β sign any HTTP call (AI agents, webhooks, microservices) with an independent Ed25519 signature, RFC 3161 timestamp, and Sigstore Rekor anchor. Works with Claude, GPT-4, Mistral, LangChain, AutoGen, or any HTTP client.
1 0 0
A
Agentradar Mcp
Bichev
On-chain trust oracle for the ERC-8004 + x402 agent economy. 18 tools for verifying AI agents: 6-signal composite trust scoring (0-100), 272-wallet scam database, ERC-8004 identity lookup, EAS attestations on Base mainnet. x402-payable. Free getscore / checkscam. Live at vvpro.ai Β· npm @agentradar/mcp.
1 0 0
B
Blackwall Mcp
bluetieroperations-create
Pre-action risk gate for AI agents. One forecast tool the agent calls before any irreversible action (send money, run SQL, delete data); returns a risk score (0β100), reversibility class, named red flags from 28 failure modes, and a gate: proceed / confirm / human-required.
1 0 0
M
Mcp Shodan
BurtTheCoder
MCP server for querying the Shodan API and Shodan CVEDB. This server provides tools for IP lookups, device searches, DNS lookups, vulnerability queries, CPE lookups, and more.
1 0 0
W
Wireshark MCP
bx33661
Wireshark network packet analysis MCP Server with capture, protocol stats, field extraction, and security analysis capabilities.
1 0 0
C
Csl Core
Chimera-Protocol
Deterministic AI safety policy engine with Z3 formal verification. Write, verify, and enforce machine-verifiable constraints for AI agents via MCP.
1 0 0
P
Promptspeak Mcp Server
chrbailey
Pre-execution governance for AI agents. Intercepts and validates every agent tool call through an 8-stage pipeline before execution β risk classification, behavioral drift detection, hold queue for dangerous operations, and complete audit trail. 45 tools, 658 tests.
1 0 0
A
Attestable Mcp Server
co-browser
An MCP server running inside a trusted execution environment (TEE) via Gramine, showcasing remote attestation using RA-TLS. This allows an MCP client to verify the server before conencting.
1 0 0
S
State Of Cwv Mcp
corewebvitals
Free remote MCP for Core Web Vitals metrics by CMS, CDN, and framework (Chrome field data + multi-site crawl). No auth. Endpoint: https://www.corewebvitals.io/api/state-of-cwv/mcp.
1 0 0
O
Opnsense Mcp
coreyhines
OPNsense firewall operations via API. Query ARP, DHCP, firewall rules, logs, interfaces, system status, and packet capture via STDIO or SSE.
1 0 0
A
Avp Sdk
creatorrmode-lead
Trust, identity (W3C DID), and EigenTrust reputation for AI agents. Attestations, disputes, sybil detection, IPFS audit anchoring.
1 0 0
M
Mcp Server
datanexusmcp
55 tools for verified public data lookups β CVE/SBOM security audits, licence compliance, patents, federal contracts, NPI provider lookups, nonprofit 990 filings, and domain intelligence. No API key required.
1 0 0
S
Solvitor Mcp
adeptus-innovatio
Solvitor MCP server provides tools to access reverse engineering tools that help developers extract IDL files from closed-source Solana smart contracts and decompile them.
0 0 0
A
Agentgraph
agentgraph-co
Trust verification and security scanning for AI agents. Checks security posture of third-party MCP servers and tools with signed attestations (Ed25519/JWS) before interaction.
0 0 0
A
Agentward
agentward-ai
Permission control plane for AI agents. MCP proxy that enforces least-privilege YAML policies on every tool call, classifies sensitive data (PII/PHI), detects dangerous skill chains, and generates compliance audit trails. Supports stdio and HTTP proxy modes.
0 0 0
A
AIM Guard MCP
AIM-Intelligence
Security-focused MCP server that provides safety guidelines and content analysis for AI agents.
0 0 0
F
Fida
ajipurn
Local-first MCP gateway for coding agents that redacts detected secrets from file reads and command output before they reach model context.
0 0 0
S
Shieldapi Mcp
alberthild
Security intelligence for AI agents: password breach checks (900M+ HIBP hashes), email/domain/IP/URL reputation, prompt injection detection (200+ patterns), and skill supply chain scanning. Pay-per-request via x402 USDC micropayments or free demo mode, no API key needed.
0 0 0
A
Argus
alexar76
ARGUS-3 as a stdio MCP server (argus mcp β argusask, argusstatus). WARDEN vets third-party MCP servers before any tool runs (LUMEN-scored firewall, tool-def pinning, drift sentinel). Distinct from aimarket-oracle-gateway (oracle tools) and aimarket-plugins (hub packager). npm @alexar76/argus3 Β· live.
0 0 0
N
Nobulex
arian-gogani
Proof-of-behavior enforcement for AI agents. Define behavioral covenant rules (permit/forbid/require), enforce at runtime before execution, get SHA-256 hash-chained tamper-evident audit logs, and verify compliance independently. Cross-agent verification handshake β no proof, no transaction. MIT licensed, 4,244 tests.
0 0 0
H
Hejdar Mcp
ARKALDA
Runtime policy enforcement for AI agents. Evaluate actions against organization policies before execution, with observe and enforce modes.
0 0 0
D
DocSentinel
arthurpanhku
MCP server for AI agent for cybersecurity: automate assessment of documents, questionnaires & reports. Multi-format parsing, RAG knowledge base,Risks, compliance gaps, remediations.
0 0 0
T
Truecopy
askalf
Supply-chain gate for agent skills and MCP servers β scans tool definitions for poisoned instructions, pins vetted servers by content hash in a committed lock, and verifies drift in CI; the bundled truecopy-mcp proxy exposes only pinned, unmodified tools from a live server.
0 0 0
A
Agentaegis Mcp
astafford8488
Security & trust layer for AI agents. Scan an MCP server or skill before you install it (scanmcpplugin, scanskill) β flags exfiltration, prompt-injection sinks, dangerous capabilities, install hooks and obfuscation β PROCEED/CAUTION/BLOCK. Plus vetendpoint (endpoint safety verdict before an agent calls or pays it) and 25 more tools: vuln scans, threat intel, compliance (SOC 2/ISO 27001/HIPAA), code security (SAST/secret/dependency), identity β 28 total. Per-call billing via API key or x402 USDC on Base; free discovery tier.
0 0 0
R
Roadrecon Mcp Server
atomicchonk
MCP server for analyzing ROADrecon gather results from Azure tenant enumeration
0 0 0
M
Mcpskills Server
BeBraveBeKind
Pre-install trust layer for MCP servers, AI skills, and npm packages. Scores any repo or package across 15 signals (incl. OSV/KEV/EPSS vulnerability intelligence) with safety scanning for prompt injection, credential theft, and supply-chain risk; the autogate tool returns a go/no-go install decision. Listed in the official MCP Registry as io.mcpskills/server. npm: @mcpskillsio/server. https://mcpskills.io
0 0 0
C
Chronoverify Mcp
beeswaxpat
Verify a photo's capture time and provenance before an agent trusts it: cryptographic C2PA Content Credentials validation against the official trust lists, EXIF and XMP consistency checks, and classical pixel forensics fused into one typed verdict with a 0 to 100 confidence. Free keyless tier, opt-in shareable verdict permalinks, and key-gated signed PDF audit reports. Provenance validation, not a deepfake detector. npx chronoverify-mcp
0 0 0
M
Mcp Firewall
behrensd
Deterministic security proxy (iptables for MCP) that intercepts tool calls, enforces YAML policies, scans for secret leakage, and logs everything. No AI, no cloud.
0 0 0
A
Anonymize Mcp
Buggy1111
Anonymize PII and redact text for GDPR across Czech and 35+ languages. Real NLP via ΓFAL/LINDAT (MasKIT + NameTag NER, not just regex), 80+ PII patterns, plus morphology, translation, and spellcheck. Czech-first, non-commercial. Install: pip install anonymize-mcp.
0 0 0
M
Mcp Dnstwist
BurtTheCoder
MCP server for dnstwist, a powerful DNS fuzzing tool that helps detect typosquatting, phishing, and corporate espionage.
0 0 0
M
Mcp Maigret
BurtTheCoder
MCP server for maigret, a powerful OSINT tool that collects user account information from various public sources. This server provides tools for searching usernames across social networks and analyzing URLs.
0 0 0
M
Mcp Virustotal
BurtTheCoder
MCP server for querying the VirusTotal API. This server provides tools for scanning URLs, analyzing file hashes, and retrieving IP address reports.
0 0 0
C
Calllint
calllint
Pre-flight security linter for MCP servers, agent tools, and skills. Scans a config before it runs β offline, deterministic, evidence-backed β and returns SAFE / REVIEW / BLOCK / UNKNOWN verdicts without executing the server it judges. CLI (npx calllint scan), MCP server (npx calllint-mcp), SARIF + CI gate. UNKNOWN is never SAFE.
0 0 0
B
Basescope
chasdaddy
The read-only safety layer for onchain AI agents. 13 read-only tools on Base + EVM: token/contract safety (honeypot & rug-pull checks cross-referenced across GoPlus + honeypot.is), risky-approval detection, verified-source lookup, balances, ENS + Basenames, gas, and prices. No private keys, no required API keys. npx -y basescope
0 0 0
S
Sicarius Guard
Chronolapse411
Solana token safety oracle for AI agents and trading bots. Byte-level SPL mint analysis, honeypot detection, freeze/mint authority checks, Birdeye market enrichment, and composite risk scoring. Deployed on Google Cloud Run.
0 0 0
D
Depscope
cuttalo
Package Intelligence for AI agents. 22 tools across 17 ecosystems (npm/pypi/cargo/go/maven/nuget/rubygems/composer/pub/hex/swift/cocoapods/cpan/hackage/cran/conda/homebrew) β check health, vulnerabilities (OSV + CISA KEV + EPSS), typosquats, malicious flags, alternatives, known bugs, breaking changes, stack compatibility and error-to-fix. 31k+ packages, 2.2k+ CVEs enriched. Zero auth, MIT. Remote URL https://mcp.depscope.dev/mcp or stdio npx depscope-mcp.
0 0 0
C
Cyntrisec Cli
cyntrisec
Local-first AWS security analyzer that discovers attack paths and generates remediations using graph theory.
0 0 0
L
Lucairn Sdks
Declade
Privacy-preserving AI gateway. Sanitises PII (German + English; Microsoft Presidio + custom recognisers) before prompts reach Anthropic / OpenAI / your LLM, then emits a signed cryptographic certificate per call (Ed25519 + RFC 3161 timestamp + Sigstore Rekor anchoring). EU GDPR + AI Act ready. Free tier 500 calls/month, BYOK. Install: npx -y @lucairn/mcp-server. Docs: https://lucairn.eu/developer/mcp.
0 0 0
O
Onepassword Mcp Server
dkvdm
An MCP server that enables secure credential retrieval from 1Password to be used by Agentic AI.
0 0 0
S
Skylos
duriantaco
Dead code detection, security scanning, and code quality analysis for Python, TypeScript, and Go. 98% recall with fewer false positives than Vulture. Includes AI-powered remediation.
0 0 0
T
Taskbounty Check
eliottreich
Local-only GitHub Actions and CI maintenance scanner for AI-built apps. Exposes scanrepo, explainfinding, and generatefixplan to MCP clients; reads only allowlisted workflow and update configuration, modifies nothing, makes no outbound requests by default, and has zero runtime dependencies. Run with npx -y taskbounty-check@0.1.6 mcp.
0 0 0
E
Emilia Protocol
emiliaprotocol
Human sign-off + trust receipts for AI agents: requires a named human's approval before an irreversible action (payment release, record change, deploy), then mints an offline-verifiable Ed25519 Trust Receipt. Also exposes trust profiles, receipt verification, disputes, and delegation. Apache-2.0; policy engine formally verified. Install: npx -y @emilia-protocol/mcp-server.
0 0 0
F
Fetch Guard
Erodenn
URL fetcher and HTML-to-markdown converter with three-layer prompt injection defense: pre-extraction sanitization of hidden/off-screen elements and non-printing Unicode, 15-pattern risk scanning (HIGH/MEDIUM/OK), and per-request session-salt content boundary wrapping.
0 0 0
A
Authenticator Mcp
firstorderai
A secure MCP (Model Context Protocol) server that enables AI agents to interact with the Authenticator App.
0 0 0
S
Secretctl
forest6511
AI-safe secrets manager with MCP integration. Run commands with credentials injected as environment variables - AI agents never see plaintext secrets. Features output sanitization, AES-256-GCM encryption, and Argon2id key derivation.
0 0 0
X
X402 Notary Mcp
forgemeshlabs
Cryptographic receipts for AI outputs: notarize any model inference with a signed Ed25519 attestation, sha256 content hash, and Merkle chain-anchor on Base or Solana. $0.001 per call via x402 USDC micropayments; verification is free and needs no wallet. Notarizes the hash, never your prompts. npx -y @forgemeshlabs/x402-notary-mcp
0 0 0
B
Binary Ninja Mcp
fosdickio
A Binary Ninja plugin, MCP server, and bridge that seamlessly integrates Binary Ninja with your favorite MCP client. It enables you to automate the process of performing binary analysis and reverse engineering.
0 0 0