Security MCP servers

1,823 tagged Security, measured the same way as everything else here.

Browse within: mcp-server 265model-context-protocol 240compliance 74ai-security 70cli 65ai-governance 62AI Safety 58LLM 53cybersecurity 44devsecops 40agent-security 35agentic-ai 33ai-tools 33audit 32

pop-pay

457

100xPercent/pop-pay

MCP server Claude CodeCodexCursor +2

The runtime security layer for AI agent commerce. Drop-in CLI + MCP server — blocks hallucinated purchases and keeps card credentials out of agent context. It only takes 0.1% of hallucination to drain 100% of your wallet. Runs locally from the pop-pay npm package. Needs 5 environment variables to run.

not rated 1 2mo ago A tokens not measured original MIT

mcp

458

ianreboot/safeprompt

MCP server Claude CodeCodexCursor +2

Detect prompt injection, jailbreaks, and code injection in untrusted text before it reaches an LLM. Runs locally from the @safeprompt.dev/mcp npm package. Needs 3 environment variables to run.

not rated 1 19d ago A tokens not measured original MIT

policy-gate

459

fieldproofhq/policy-gate

MCP server Claude CodeCodexCursor +2

Deterministic allow/requireapproval/deny verdicts for agent actions, before they happen. Remote server at policy-gate.3labsio.workers.dev.

not rated 1 20d ago A tokens not measured original MIT

qeaas-mcp

460

PeterJasSK/Quantum-research

MCP server Claude CodeCodexCursor +2

QRNG-seeded random bytes, seeds, and ML-KEM-768 keys with signed provenance receipts. Remote server at api.qeaas.eu.

not rated 1 5d ago A tokens not measured

phishunt

461

0xDanielLopez/phishunt-mcp

MCP server Claude CodeCodexCursor +2

Public phishing feed: suspicious/confirmed phishing URLs detected hourly. No auth, CC0. Remote server at mcp.phishunt.io.

not rated 1 9d ago A tokens not measured original MIT

rubric-protocol

462

0xsims/rubric-mcp-server

MCP server Claude CodeCodexCursor +2

AI compliance attestation for EU AI Act, SR 11-7, HIPAA. Free local tier, no key required. Runs locally from the @rubric-protocol/mcp-server npm package. Needs 1 environment variable to run.

not rated 1 1mo ago A tokens not measured

keymaster-mcp

463

AInoAKARI/keymaster-mcp

MCP server Claude CodeCodexCursor +2

Read-only runtime secret retrieval from HashiCorp Vault via Keymaster for autonomous AI agents. Runs locally from the @akari-os/keymaster-mcp npm package. Needs 2 environment variables to run.

not rated 1 6d ago A tokens not measured

pentagonal-mcp

464

Pentagonal-ai/pentagonal

MCP server Claude CodeCodexCursor +2

AI smart contract forge — 8-agent security audits, generation, and compilation across 8 chains. Runs locally from the pentagonal-mcp npm package. Needs 1 environment variable to run.

not rated 1 1mo ago A tokens not measured original MIT

vibescan-mcp-server

465

Aguantar/vibescan-mcp-server

MCP server Claude CodeCodexCursor +2

MCP server for VibeScan — scan projects for leaked secrets and security issues. Runs locally from the vibescan-mcp-server Python package.

not rated 1 5mo ago A tokens not measured original MIT

CSOAI-ORG/eu-ai-act-compliance-mcp

MCP server Claude CodeCodexCursor +2

EU AI Act compliance for AI agents. 410 articles from EUR-Lex via FTS5 search. Instant risk scan, deadline tracker, 42-point audit, documentation generator, penalty calculator. Zero-config free tier. Built by MEOK AI Labs. Runs locally from the eu-ai-act-compliance-mcp Python package.

not rated 1 2d ago A tokens not measured original MIT

agentradar

467

Bichev/agentradar-mcp

MCP server Claude CodeCodexCursor +2

Trust scoring, scam detection, and EAS attestations for ERC-8004 + x402 agents on Base. Runs locally from the @agentradar/mcp npm package. Needs 2 environment variables to run.

not rated 1 2mo ago A tokens not measured original MIT

sbom-cyclonedx-mcp

468

CSOAI-ORG/sbom-cyclonedx-mcp

MCP server Claude CodeCodexCursor +2

Software Bill of Materials generation + validation in CycloneDX 1.6 and SPDX 2.3 formats. Required by EO 14028 + NIS2 + CRA. Runs locally from the sbom-cyclonedx-mcp Python package.

not rated 1 3d ago A tokens not measured original MIT

iso-42001-ai-mcp

469

CSOAI-ORG/iso-42001-ai-mcp

MCP server Claude CodeCodexCursor +2

AI-powered iso 42001 ai MCP server for agents. Supports audit management system, assess ai risk, generate policy template. By MEOK AI Labs. Runs locally from the iso-42001-ai-mcp Python package.

not rated 1 2d ago A tokens not measured original MIT

evermint-mcp

470

EverMint-app/evermint-mcp

MCP server Claude CodeCodexCursor +2

Mint tamper-evident receipts for AI agent actions. The notary layer for agent-to-agent transactions. Runs locally from the evermint-mcp npm package. Needs 1 environment variable to run.

not rated 1 4mo ago A tokens not measured original MIT

whitepact

471

Guruprasath-Annadurai/Whitepact

MCP server Claude CodeCodexCursor +2

ResponsibleAI — Enterprise AI Governance Platform: trust scoring, bias detection, hallucination detection, guardrails, compliance (NIST AI RMF / EU AI Act / ISO 42001), cost intelligence, drift monitoring. Runs locally from the rai-governance-platform Python package. Needs 1 environment variable to run.

not rated 1 yesterday A tokens not measured original MIT

hubvibe

472

Its-fortunatefolly/HubVibe

MCP server Claude CodeCodexCursor +2

Rule-based site audits: accessibility, SEO, security headers, performance. Metered per call. Remote server at hubvibe-831480473793.us-south1.run.app.

not rated 1 yesterday A tokens not measured

chain-signer

473

Kevthetech143/chain-signer

MCP server Claude CodeCodexCursor +2

Security suite for AI agents — catch the dangerous thing before it's signed. Preflight an unsigned EVM transaction for drains, inspect EIP-712 signatures for permit-phishing, and gate agent actions by policy. Pairs with any wallet or MCP stack; ships a non-custodial wallet too. Runs locally from the chain-signer…

not rated 1 2mo ago A tokens not measured original MIT

openttt

474

Helm-Protocol/OpenTTT

MCP server Claude CodeCodexCursor +2

Proof-of-Time attestation — Ed25519-signed timestamps with multi-source corroboration and explicit error bounds. IETF draft-helmprotocol-tttps. Runs locally from the @helm-protocol/ttt-mcp npm package.

not rated 1 1mo ago A tokens not measured

agentseal

475

JoeyBrar/agentseal-mcp

MCP server Claude CodeCodexCursor +2

Verifiable action logs for AI agents. Every action is recorded in a SHA-256 hash chain. Runs locally from the agentseal-mcp npm package. Needs 1 environment variable to run.

not rated 1 4mo ago A tokens not measured original MIT

OjasKord/url-safety-validator-mcp

MCP server Claude CodeCodexCursor +2

AI URL safety validator: SAFE/SUSPICIOUS/DANGEROUS verdict, trust score, threat intel. Runs locally from the url-safety-validator-mcp npm package. Needs 3 environment variables to run.

not rated 1 13d ago A tokens not measured original MIT

yagami

477

MatthewTracy/yagami

MCP server Claude CodeCodexCursor +2

Open-source AI context firewall for governed model, retrieval, memory, and tool access. Runs locally from the yagami Python package. Needs 3 environment variables to run.

not rated 1 4d ago A tokens not measured original MIT

404-directory

478

MM-sheng/404-directory

MCP server Claude CodeCodexCursor +2

Identity-preserving bridge to 404.directory Agent action risk preflight. Runs locally from the @mmvv1638/404-directory-mcp npm package.

not rated 1 7d ago A tokens not measured original MIT

rugcheck-ai

479

MrWizardlyLoaf/rugcheck-ai

MCP server Claude CodeCodexCursor +2

Solana token safety for AI agents — rug-pull, honeypot & Token-2022 trap detection before you buy. Remote server at web-production-58d585.up.railway.app.

not rated 1 2mo ago A tokens not measured original MIT

agentguard

480

MukundaKatta/agentguard-mcp

MCP server Claude CodeCodexCursor +2

Network-egress firewall for agent tools: check URLs against a declarative policy. Runs locally from the @mukundakatta/agentguard-mcp npm package.

not rated 1 1mo ago A tokens not measured original MIT