Security mcp servers

1,924 tagged Security, measured the same way as everything else here.

Browse within: compliance 73ai-security 68ai-governance 60AI Safety 57cybersecurity 46devsecops 40agent-security 35audit 32pipeworx 31llm-security 30Guardrails 25fastmcp 24CVE 23ed25519 23

dfir-siem

121

samaritan0/dfir-agentic-suite

MCP server Claude CodeCodexCursor +2

MCP server "dfir-siem" as configured in samaritan0/dfir-agentic-suite. Runs dfir_siem_mcp with python3. Needs 8 environment variables to run.

16 5mo ago A tokens not measured

dfir-edr-response

122

samaritan0/dfir-agentic-suite

MCP server Claude CodeCodexCursor +2

MCP server "dfir-edr-response" as configured in samaritan0/dfir-agentic-suite. Runs dfir_edr_response_mcp with python3. Needs 7 environment variables to run.

16 5mo ago A tokens not measured

red-team-mcp

123

skjortan23/read-team-mcp-server

MCP server Claude CodeCodexCursor +2

MCP server "red-team-mcp" as configured in skjortan23/read-team-mcp-server. Runs locally from the red-team-mcp Python package.

16 4mo ago A tokens not measured

pycti-mcp

124

ckane/pycti-mcp

MCP server Claude CodeCodexCursor +2

Model Context Protocol (MCP) Server for OpenCTI. Runs locally from the pycti-mcp Python package.

16 1y ago A tokens not measured original MIT

tie-mcp-server

125

taherkaraki/tie-mcp-server

MCP server Claude CodeCodexCursor +2

MCP server for Tenable Identity Exposure API. Runs locally from the tie-mcp-server npm package.

16 +10 1mo ago A tokens not measured original MIT

akf

126

HMAKT99/AKF

MCP server Claude CodeCodexCursor +2

MCP server for AKF — check, stamp, and audit trust metadata on any file. Runs locally from the mcp-server-akf Python package.

15 1mo ago A tokens not measured original MIT

prodlint

127

prodlint/prodlint

MCP server Claude CodeCodexCursor +2

Production readiness for vibe-coded apps. 52 checks for security, reliability, and performance. Runs locally from the prodlint npm package.

15 3d ago A tokens not measured original MIT

scopegate

128

alifanov/scopegate

MCP server Claude CodeCodexCursor +2

Permission gateway for AI agents: scoped MCP endpoints over 27 services, audited and revocable. Remote server at scopegate.dev.

15 4d ago A tokens not measured original MIT

kawaiidra

129

wagonbomb/kawaiidra-mcp

MCP server Claude CodeCodexCursor +2

MCP server "kawaiidra" as configured in wagonbomb/kawaiidra-mcp. Runs run_server.py with python. Needs 1 environment variable to run.

15 5mo ago A tokens not measured original MIT

aegis

130

Acacian/aegis

MCP server Claude CodeCodexCursor +2

Auto-instrument AI agent frameworks with runtime security. One line to govern LangChain, CrewAI, OpenAI, Anthropic — injection blocking, PII masking, action policy, audit trail. Zero code changes. Runs locally from the agent-aegis Python package. Needs 1 environment variable to run.

15 4d ago A tokens not measured original MIT

agentveil

131

agentveil-protocol/agentveil-sdk

MCP server Claude CodeCodexCursor +2

Python SDK for routed AI-agent action decisions, approvals, receipt records, and bounded evidence. Runs locally from the agentveil Python package.

15 8d ago A tokens not measured original MIT

defectdojo-mcp

132

jamiesonio/defectdojo-mcp

MCP server Claude CodeCodexCursor +2

DefectDojo MCP server for integrating with DefectDojo vulnerability management system. Runs locally from the defectdojo-mcp Python package.

15 1y ago A tokens not measured original MIT

qualys-mcp

133

nelssec/qualys-mcp

MCP server Claude CodeCodexCursor +2

MCP server for Qualys security APIs - natural language interaction with vulnerability, asset, and cloud security data. Runs locally from the qualys-mcp Python package.

15 +1 1mo ago A tokens not measured original MIT

sidclawhq/platform

MCP server Claude CodeCodexCursor +2

Governance proxy for MCP servers — policy evaluation, human approval, audit trails. Runs locally from the @sidclaw/sdk npm package. Needs 5 environment variables to run.

14 9d ago A tokens not measured original Apache-2.0

mcp-diagnostics

136

lin037/mcp-diagnostics-trae

MCP server Claude CodeCodexCursor +2

Website & Server Diagnostics MCP Server. DNS, SSL, HTTP headers, security scan, performance audit. Runs locally from the mcp-diagnostics npm package.

13 1y ago A tokens not measured original MIT

crowdstrike-mcp

137

willwebster5/crowdstrike-mcp

MCP server Claude CodeCodexCursor +2

MCP server for the CrowdStrike Falcon platform. Runs locally from the crowdstrike-mcp Python package.

13 21d ago A tokens not measured original MIT

palo-alto-mcp

138

cdot65/pan-os-mcp

MCP server Claude CodeCodexCursor +2

MCP server "palo-alto-mcp" as configured in cdot65/pan-os-mcp. Runs locally from the palo-alto-mcp Python package.

13 1y ago A tokens not measured

aegis

139

getaegis/aegis

MCP server Claude CodeCodexCursor +2

Credential isolation for AI agents. Inject secrets at the network boundary. Runs locally from the @getaegis/cli npm package. Needs 11 environment variables to run.

13 27d ago A tokens not measured original Apache-2.0

mitre-mcp

140

Montimage/mitre-mcp

MCP server Claude CodeCodexCursor +2

MCP server for MITRE ATT&CK framework. Runs locally from the mitre-mcp Python package.

13 9mo ago A tokens not measured original MIT

tap

141

holonym-foundation/tap-oss

MCP server Claude CodeCodexCursor +2

Credential isolation for AI agents: placeholder secrets, policy checks, optional human approval. Remote server at mcp.tap.human.tech.

12 1mo ago A tokens not measured original Apache-2.0

vaara

142

vaaraio/vaara

MCP server Claude CodeCodexCursor +2

Accountable Autonomy for AI agents under the EU AI Act: policy-gated tool calls, hash-chained tamper-evident audit trails with external time anchoring, and independently verifiable attestation plus execution receipts per MCP tool call. Runs locally from the vaara Python package.

12 4d ago A tokens not measured AGPL-3.0

vaara-server

143

vaaraio/vaara

MCP server Claude CodeCodexCursor +2

Accountable Autonomy for AI agents under the EU AI Act: policy-gated tool calls, hash-chained tamper-evident audit trails with external time anchoring, and independently verifiable attestation plus execution receipts per MCP tool call. Runs locally from the vaara Python package. Needs 2 environment variables to run.

12 4d ago A tokens not measured AGPL-3.0

pi-security

144

pi-sloane/claude-plugin

MCP server Claude CodeCodexCursor +2

Part of pi-security

MCP server "pi-security", hosted remotely at mcp.pi.security, as configured in pi-sloane/claude-plugin.

12 7d ago A tokens not measured original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: