Scans MCP server packages and directories for malicious code, prompt injection, and supply chain risks.
Key Features: Scans npm packages for malicious patterns Scans local JavaScript and TypeScript directories Detects exfiltration, code execution, obfuscation, and sensitive file access Local MCP proxy that enforces adaptive guardrails to block destructive AI agent tool calls and protect supply chain.
Key Features: Intercepts and blocks destructive tool calls with 65+ adaptive rules Supports local stdio and remote Streamable HTTP MCP servers TOFU pinning of tool catalogs to prevent supply-chain attacks Permission control proxy enforcing least-privilege policies and auditing AI agent tool calls at runtime.
Key Features: Runtime enforcement of YAML-defined least-privilege policies Sensitive data classification with compliance framework hints Detection of supply chain threats including deserialization attacks MCP server for Maigret, an OSINT tool to search usernames and analyze URLs across public social networks.
Key Features: Username search with site filtering and format options URL parsing and analysis for associated usernames Supports multiple output formats: txt, html, pdf, json, csv, xmind Adds named-human approval, trust receipts, verification, disputes, and delegation for consequential AI-agent actions.
Key Features: Named-human approval for irreversible actions Offline-verifiable Ed25519 Trust Receipts MCP server integrating Ghidra to enable LLMs to reverse engineer binaries with decompilation and renaming tools.
Key Features: Decompile binaries using Ghidra Rename methods and data automatically List methods, classes, imports, exports Passive security scanner: audits MCP servers against the OWASP MCP Top 10, graded A-F.
MCP server exposing dnstwist for DNS fuzzing to detect typosquatting, phishing, and domain impersonation risks.
Key Features: Domain fuzzing with multiple algorithms Registration and DNS record checks (A, AAAA, MX, NS) Local MCP server providing real-time cybersecurity reconnaissance including WHOIS, DNS, port scanning, SSL inspection, and CVE lookup.
Key Features: WHOIS domain registration data retrieval DNS record enumeration with subdomain brute-forcing Nmap-based port scanning with service and version detection AI agent security middleware with 8 defense layers for prompt injection, data exfiltration, PII detection, and compliance scanning.
Key Features: 8-layer defense including prompt guard, input auditor, tool blocker, output scanner Data loss prevention with full data return and outbound send blocking PII detection for Chinese and international identifiers with low false positives Create and read AES-256-GCM encrypted notes that self-destruct after one read.
Key Features: Create encrypted notes up to 2 KB Read and permanently destroy notes Use AES-256-GCM end-to-end encryption Binary Ninja plugin and MCP server enabling AI-assisted binary analysis and reverse engineering via MCP clients.
Key Features: Real-time integration between Binary Ninja and MCP clients Support for multiple MCP clients including Cline, Claude Desktop, Roo Code, Cursor, Windsurf, Claud… Automatic switching between multiple open binaries