Permission control proxy enforcing least-privilege policies and auditing AI agent tool calls at runtime.
Key Features: Runtime enforcement of YAML-defined least-privilege policies Sensitive data classification with compliance framework hints Detection of supply chain threats including deserialization attacks MCP server for Maigret, an OSINT tool to search usernames and analyze URLs across public social networks.
Key Features: Username search with site filtering and format options URL parsing and analysis for associated usernames Supports multiple output formats: txt, html, pdf, json, csv, xmind Local MCP server providing real-time cybersecurity reconnaissance including WHOIS, DNS, port scanning, SSL inspection, and CVE lookup.
Key Features: WHOIS domain registration data retrieval DNS record enumeration with subdomain brute-forcing Nmap-based port scanning with service and version detection Local MCP proxy that enforces adaptive guardrails to block destructive AI agent tool calls and protect supply chain.
Key Features: Intercepts and blocks destructive tool calls with 65+ adaptive rules Supports local stdio and remote Streamable HTTP MCP servers TOFU pinning of tool catalogs to prevent supply-chain attacks Adds named-human approval, trust receipts, verification, disputes, and delegation for consequential AI-agent actions.
Key Features: Named-human approval for irreversible actions Offline-verifiable Ed25519 Trust Receipts MCP server exposing dnstwist for DNS fuzzing to detect typosquatting, phishing, and domain impersonation risks.
Key Features: Domain fuzzing with multiple algorithms Registration and DNS record checks (A, AAAA, MX, NS) Create and read AES-256-GCM encrypted notes that self-destruct after one read.
Key Features: Create encrypted notes up to 2 KB Read and permanently destroy notes Use AES-256-GCM end-to-end encryption MCP server for VirusTotal API providing URL, file hash, IP, and domain security analysis with relationship data.
Key Features: Automatic relationship data fetching with batched API calls Cached-report-first URL lookups with fallback scanning Detailed file hash analysis including sandbox behavior summaries Binary Ninja plugin and MCP server enabling AI-assisted binary analysis and reverse engineering via MCP clients.
Key Features: Real-time integration between Binary Ninja and MCP clients Support for multiple MCP clients including Cline, Claude Desktop, Roo Code, Cursor, Windsurf, Claud… Automatic switching between multiple open binaries MCP server integrating Ghidra to enable LLMs to reverse engineer binaries with decompilation and renaming tools.
Key Features: Decompile binaries using Ghidra Rename methods and data automatically List methods, classes, imports, exports Local-first security scanner for AI-generated JS/TS code with integrated SAST, secrets, dependency, and AI-specific vulnerability checks.
Key Features: Bundles Opengrep, Gitleaks, and Trivy scanners with unified CWE schema Adds AI-specific checks for Supabase RLS, prompt injection, XSS sinks Local-first operation with zero network egress and no telemetry Local security MCP scanning AI-generated web app code with 460+ rules, cross-file analysis, CVE detection, auto-fix, and pre-commit hooks.
Key Features: 462 security rules and 39 tools tailored for AI-generated code Daily CVE rule updates from GHSA, OSV.dev, and CISA KEV Cross-file taint analysis and auth coverage across routes