Security MCP servers

1,823 tagged Security, measured the same way as everything else here.

Browse within: mcp-server 265model-context-protocol 240compliance 74ai-security 70cli 66ai-governance 62AI Safety 58LLM 53cybersecurity 44devsecops 40agent-security 35agentic-ai 33ai-tools 33audit 32

tripwire

505

bonesdefi/Tripwire

MCP server Claude CodeCodexCursor +2

Security gateway for MCP agents: blocks prompt-injection-driven tool calls before they execute. Runs locally from the tripwire-mcp npm package.

not rated 1 2mo ago A tokens not measured original MIT

attest-mcp

506

chudah1/attest-dev

MCP server Claude CodeCodexCursor +2

Credential enforcement middleware for MCP servers — verifies scoped tokens on every tool call. Runs locally from the @attest-dev/mcp npm package. Needs 1 environment variable to run.

not rated 1 4mo ago A tokens not measured original Apache-2.0

mcp-pymetasploit3

507

daedalus/mcp-pymetasploit3

MCP server Claude CodeCodexCursor +2

MCP server for Metasploit Framework via pymetasploit3. Runs locally from the mcp-pymetasploit3 Python package.

not rated 1 2mo ago A tokens not measured original MIT

mcp-shodan

508

daedalus/mcp-shodan

MCP server Claude CodeCodexCursor +2

MCP server exposing all Shodan API functionality. Runs locally from the mcp-shodan Python package.

not rated 1 4mo ago A tokens not measured original MIT

dingdawg-governance

509

dingdawg/dingdawg-governance

MCP server Claude CodeCodexCursor +2

Universal governance layer for AI agents. MCP-native, fail-closed, audit proofs and rollback. Runs locally from the dingdawg-governance npm package. Needs 1 environment variable to run.

not rated 1 1mo ago A tokens not measured copy · 100% MIT

synapse-audit

510

digidenone/SynapseAudit

MCP server Claude CodeCodexCursor +2

AI-Powered Security Scanner for LLMs. Detects vulnerabilities and syncs with SynapseAudit. Runs locally from the @digidenone/synapseaudit-mcp npm package.

not rated 1 7mo ago A tokens not measured

dingdawg-compliance

511

dingdawg/dingdawg-compliance

MCP server Claude CodeCodexCursor +2

EU AI Act + Colorado AI Act compliance scoring. 87/100 in 60 seconds. Free local scan. Runs locally from the dingdawg-compliance npm package. Needs 1 environment variable to run.

not rated 1 3mo ago A tokens not measured

mcp-server

512

declaw-ai/mcp-server

MCP server Claude CodeCodexCursor +2

Secure Firecracker microVM sandboxes for AI agents: network policy, PII & injection guardrails. Runs locally from the @declaw/mcp-server npm package. Needs 2 environment variables to run.

not rated 1 24d ago A tokens not measured original Apache-2.0

waxseal

513

degenlegion-com/waxseal-sdk

MCP server Claude CodeCodexCursor +2

Ed25519 identity for AI agents. Verify seals, sign documents, gate actions with approvals. Runs locally from the @waxseal/mcp npm package. Needs 1 environment variable to run.

not rated 1 2mo ago A tokens not measured original MIT

agent-receipts-mcp

514

dhanushs1912-svg/agent-receipts-mcp

MCP server Claude CodeCodexCursor +2

EU AI Act-ready audit trail: signed, tamper-evident receipts proving what your AI agents did. Runs locally from the agent-receipts-mcp npm package. Needs 1 environment variable to run.

not rated 1 1mo ago A tokens not measured original MIT

secrets-audit-mcp

515

eltociear/secrets-audit-mcp

MCP server Claude CodeCodexCursor +2

MCP server "secrets-audit-mcp" as configured in eltociear/secrets-audit-mcp. Runs in Docker (ghcr.io/eltociear/secrets-audit-mcp:1.0.1).

not rated 1 19d ago A tokens not measured original MIT

mcp-keycloak

516

dockndevai/mcp-keycloak

MCP server Claude CodeCodexCursor +2

Keycloak admin for AI agents — realms, users, clients, roles; safe-by-default governance. Runs locally from the @dockndevai/mcp-keycloak npm package. Needs 4 environment variables to run.

not rated 1 3d ago A tokens not measured original MIT

mcp

517

entropy0dev/sdk

MCP server Claude CodeCodexCursor +2

Entropy0 MCP server — source trust and URL safety tools for AI agents. Runs locally from the @entropy0/mcp npm package. Needs 1 environment variable to run.

not rated 1 3mo ago A tokens not measured

taskbounty-mcp-server

518

eliottreich/taskbounty-mcp-server

MCP server Claude CodeCodexCursor +2

Post/fund GitHub bug bounties, enable Autopilot, solve bounties, check coverage. Paid in crypto. Runs locally from the taskbounty-mcp-server npm package. Needs 2 environment variables to run.

not rated 1 10d ago A tokens not measured original MIT

domscan

519

estevecastells/domscan-mcp

MCP server Claude CodeCodexCursor +2

Domain intelligence for DNS, WHOIS/RDAP, TLS, reputation, valuation, and brand protection. Remote server at domscan.net.

not rated 1 1mo ago A tokens not measured original MIT

fetter-mcp

520

fetter-io/fetter-mcp

MCP server Claude CodeCodexCursor +2

Real-time Python package and vulnerability data for AI coding agents. Remote server at mcp.fetter.io.

not rated 1 6mo ago A tokens not measured

codesafer

521

goldmembrane/cleaner-code

MCP server Claude CodeCodexCursor +2

Scans AI-generated code for invisible Unicode, Trojan Source, and supply-chain threats. Runs locally from the cleaner-code npm package.

not rated 1 4mo ago A tokens not measured original MIT

inspector

522

gridinsoft/mcp-inspector

MCP server Claude CodeCodexCursor +2

Website safety and trust analysis. Verify domain reputation and detect phishing with GridinSoft. Runs locally from the @gridinsoft/mcp-inspector npm package. Needs 1 environment variable to run.

not rated 1 7mo ago A tokens not measured original MIT

mcpsentinel

523

gentaArnezzi/MCPSentinel

MCP server Claude CodeCodexCursor +2

Precision-first security scanner for Model Context Protocol servers. Runs locally from the mcp-guardian-scan Python package. Needs 2 environment variables to run.

not rated 1 17d ago A tokens not measured original MIT

djd-agent-score

524

jacobsd32-cpu/djd-agent-score-mcp

MCP server Claude CodeCodexCursor +2

Reputation scoring for AI agent wallets on Base. Trust scores, fraud checks, x402. Runs locally from the djd-agent-score-mcp npm package. Needs 2 environment variables to run.

not rated 1 6mo ago A tokens not measured original MIT

kakunin

525

kakunin-ai/kakunin-mcp

MCP server Claude CodeCodexCursor +2

X.509 identity, risk scoring, and audit logging for AI agents. MiCA + EU AI Act compliant. Runs locally from the @kakunin/mcp npm package. Needs 2 environment variables to run.

not rated 1 6d ago A tokens not measured original Apache-2.0

securecode

526

juanisidoro/securecode-mcp

MCP server Claude CodeCodexCursor +2

Secrets vault for Claude Code with audit logs, access rules, and AES-256 encryption. Runs locally from the @securecode/mcp-server npm package.

not rated 1 5mo ago A tokens not measured original MIT

visus-mcp

527

visus-mcp/visus-mcp

MCP server Claude CodeCodexCursor +2

Security-first web access for Claude. Sanitizes pages, blocks injection, redacts PII. Runs locally from the visus-mcp npm package. Needs 3 environment variables to run.

not rated 1 3mo ago A tokens not measured original MIT archived

cordon

528

marras0914/cordon

MCP server Claude CodeCodexCursor +2

Cordon for MCP. Security gateway with policy enforcement, audit log, and HITL approvals. Runs locally from the @getcordon/cli npm package.

not rated 1 1mo ago A tokens not measured original MIT