Modified JADX decompiler with MCP server enabling live reverse engineering and AI-assisted code review using Claude.
Key Features: Integrated MCP server inside modified JADX-GUI HTTP access to currently selected class and project code Real-time AI code review and recommendations Scores a web domain's public resilience using TLS, security headers, DNS, and response-time checks.
MCP server integrating Apk Tool for automated reverse engineering and analysis of Android APKs using LLMs.
Key Features: Decode APKs to smali and resources using Apk Tool List and retrieve smali files and directories Modify smali and resource files with AI assistance Validates photo capture time and provenance via C2PA credentials, metadata, and pixel forensics with a confidence score.
Key Features: C2PA Content Credentials cryptographic validation EXIF and XMP metadata consistency checks Classical pixel forensics analysis Permission control proxy enforcing least-privilege policies and auditing AI agent tool calls at runtime.
Key Features: Runtime enforcement of YAML-defined least-privilege policies Sensitive data classification with compliance framework hints Detection of supply chain threats including deserialization attacks Remote MCP server for querying RAD Security findings, reports, and runtime data across Kubernetes and cloud environments.
Key Features: Hosted Streamable HTTP MCP endpoint Security findings queries Security report retrieval A transparent Go proxy that audits, signs, redacts, rate-limits, and enforces policies on MCP JSON-RPC calls.
Key Features: Transparent proxy for MCP JSON-RPC traffic Signed audit trails with JSONL or SQLite logs Redaction of sensitive payload fields MCP server for Maigret, an OSINT tool to search usernames and analyze URLs across public social networks.
Key Features: Username search with site filtering and format options URL parsing and analysis for associated usernames Supports multiple output formats: txt, html, pdf, json, csv, xmind Audit websites for SEO, performance, security, accessibility and agent experience issues.
A fail-closed policy-as-code proxy for MCP that enforces, records, and produces offline-verifiable evidence of privileged tool calls on Linux.
Key Features: Deterministic, fail-closed policy enforcement for MCP tool calls Offline-verifiable, tamper-evident evidence bundles of decisions and observations Kernel-level IPv4/TCP egress enforcement via eBPF/LSM and Landlock on Linux MCP server to query NIST NVD API for CVE data with date filtering, chunking, and parallel processing.
Key Features: Temporal context tool for accurate time-relative queries Search CVEs with relative or absolute date filtering Automatic chunking and parallel requests for large date ranges Automates security vulnerability remediation by analyzing SAST reports or scanning repos, providing fix recommendations via MCP.
Key Features: Supports SAST tools: Checkmarx, CodeQL, Fortify, Snyk Two modes: Scan (runs SAST scan) and Analyze (uses existing SAST report) Generates automated code fixes for detected vulnerabilities