MCP server for VibeScan — scan projects for leaked secrets and security issues
Modified JADX decompiler with MCP server enabling live reverse engineering and AI-assisted code review using Claude.
Key Features: Integrated MCP server inside modified JADX-GUI HTTP access to currently selected class and project code Real-time AI code review and recommendations MCP server integrating IDA Pro for AI-assisted binary analysis, decompilation, disassembly, and automated malware report generation.
Key Features: Supports IDA Pro 8.3+ (excluding IDA Free) Automates decompilation and disassembly tasks Generates detailed malware analysis reports MCP server integrating Apk Tool for automated reverse engineering and analysis of Android APKs using LLMs.
Key Features: Decode APKs to smali and resources using Apk Tool List and retrieve smali files and directories Modify smali and resource files with AI assistance Detects leaked secrets (API keys, tokens, private keys) in source code.
Audit websites for SEO, performance, security, accessibility and agent experience issues.
An MCP server enabling AI assistants to manage keys, users, and connections on CipherTrust Manager via JSON-RPC.
Key Features: Key management operations User and connection management CTE client management support MCP security server offering static analysis, supply-chain attack detection, vulnerability audit, AI hallucination guard, and SBOM generation for npm…
Key Features: Pre-install package verification and audit Static code analysis and dead-dependency detection Vulnerability audit using npm and GitHub Advisory databases Rust MCP server and CLI for Tailscale devices, users, keys, policies, and auth.
AI agent tools for Open Security Controls Assessment Language (OSCAL)
Automates security vulnerability remediation by analyzing SAST reports or scanning repos, providing fix recommendations via MCP.
Key Features: Supports SAST tools: Checkmarx, CodeQL, Fortify, Snyk Two modes: Scan (runs SAST scan) and Analyze (uses existing SAST report) Generates automated code fixes for detected vulnerabilities Credential isolation proxy injecting secrets at network boundary with domain restrictions, agent auth, and audit logging.
Key Features: AES-256-GCM encrypted credential vault Transparent HTTP proxy with credential injection Agent authentication and scoped credential grants