1,029 projects whose own agent configuration covers security. These are not mods to install — they are how the maintainers of these repositories tell an agent what to do, and what to avoid.
All projects Building agents7,410Claude Code6,578Data and AI3,695Backend and APIs3,487Languages3,404Planning3,188Git and workflow3,106Code review2,712Memory and context2,351Testing2,325Research2,289DevOps and cloud2,283
Any agent Claude CodeCodexOpenCodeGitHub CopilotGemini CLICursorWindsurfKiro
| Project | Stars | Configures | Files | Always loaded |
|---|---|---|---|---|
| nbiish/gikendaasowin-aabajichiganan-mcp ᑭᑫᓐᑖᓱᐎᓐ ᐋᐸᒋᒋᑲᓇᓐ - Gikendaasowin Aabajichiganan - Cognitive Tools MCP server implemented fr | 4 | Codex, OpenCode | 1 | 801 tok |
| windoze95/servicewow-mcp ServiceNow MCP Server — per-user delegated access via OAuth 2.0 | 4 | Claude Code, Codex, GitHub Copilot, OpenCode | 3 | 1,233 tok |
| agenthill/vaultpilot-mcp vaultpilot-mcp.ai Safety first. Hardware-verified DeFi for AI agents — designed for when the AI can be compr | 4 | Claude Code, Codex, OpenCode | 2 | 7,302 tok |
| gelse/caldav-mcp An MCP server that bridges AI assistants to CalDAV calendars. 14 tools for listing, creati | 4 | Codex, OpenCode | 1 | 1,579 tok |
| beriktassuly/solana-audit-skill Evidence-backed Solana audit skill for Claude Code and Agent Skills: report-backed taxonom | 4 | Codex, OpenCode | 1 | 279 tok |
| thekie/read-no-evil-mcp A secure email gateway MCP server that protects AI agents from prompt injection attacks hi | 4 | Claude Code, Codex, Gemini CLI, OpenCode | 3 | 1,233 tok |
| berntpopp/genefoundry-router genefoundry.org MCP gateway federating 21 biomedical MCP servers — gnomAD, ClinVar, HPO, UniProt, Ensembl | 4 | Claude Code, Codex, OpenCode | 12 | 1,672 tok |
| 0xSoftBoi/suwappubot suwappu.bot Cross-chain DEX infrastructure for humans and AI agents — swap tokens across 14 chains via | 3 | Claude Code, Codex, OpenCode | 41 | 5,802 tok |
| vibgrate/cli vibgrate.com The Vibgrate CLI scans your codebase for upgrade drift — the gap between the dependency ve | 3 | Codex, OpenCode | 1 | 953 tok |
| JinNing6/CyberHuaTuo-Plugin AI Agent Error Doctor: paste MCP / LangChain / CrewAI tracebacks, get root cause, exact fi | 3 | Claude Code, Codex, OpenCode | 4 | 156 tok |
| soden46/engineer-flow Framework-agnostic AI engineering control plane with project-aware routing, 0–2 specialist | 3 | Codex, OpenCode | 1 | 587 tok |
| densmirnov/hidden-achievements-skill Sealed hidden daily achievements for team agents: anti-spam, prompt-injection safe, no ret | 3 | Codex, OpenCode | 1 | 2,394 tok |
| chtnnh/know-code kc.chtnnhfoundation.org k(no)w-code - your agents dont push until you know exactly whats changed | 3 | Claude Code, Codex, OpenCode | 3 | 362 tok |
| Calvin-LLC/agentic-hardening-skill Evidence-driven codebase hardening skill. Audits OWASP Top 10:2025, supply chain (SBOM vs | 3 | Codex, OpenCode | 1 | 91 tok |
| KSEGIT/Version-Sentinel Claude Code plugin that hard-blocks dependency additions, bumps, and downgrades until a fr | 3 | Claude Code, Codex, GitHub Copilot, Gemini CLI, OpenCode | 4 | 3,209 tok |
| MuhammedZohaib/patchman Defensive AI security audit skill for Claude and Codex. Reviews codebases and web apps for | 3 | Claude Code, Codex, OpenCode | 2 | 250 tok |
| chris-peterson/ClaudeWatch chris-peterson.github.io bridge.ai/ClaudeWatch: screen dangerous shell commands/scripts | 3 | Claude Code, Codex, OpenCode | 4 | 2,951 tok |
| punt-labs/beadle Claude Code via e-mail based on an addressbook with UNIX style rwx permissions per interac | 3 | Claude Code, Codex, OpenCode | 4 | 2,678 tok |
| HendrikReh/llm-guard AI Coding Hackathon Project - Experimenting with AI-assisted development workflows | 3 | Codex, OpenCode | 1 | 3,941 tok |
| kent-tokyo/shohei Rust MCP server with 168 security tools for Claude — DNS/DNSSEC, TLS, email security, OSIN | 3 | Codex, OpenCode | 1 | 2,537 tok |
| ggoodman/mcp-server-go Golang implementation of the streaming MCP HTTP transport with sessions, auth and horizont | 3 | Codex, OpenCode | 1 | 701 tok |
| onesimplecode/agent-engineering-standards This repo hands your AI coding agent a rulebook and your CI the checks that enforce it, ca | 3 | Codex, OpenCode | 1 | 7,802 tok |
| hidetsugu-miya/claude-plugins | 3 | Claude Code, Codex, OpenCode | 6 | 1,318 tok |
| SecondLifes/delphi-expert An opinionated ecosystem of rules, skills and steerings to elevate Delphi development to s | 3 | Claude Code, Codex, GitHub Copilot, Gemini CLI, OpenCode | 4 | 11,182 tok |
| stefanoverna/basecamp-mcp MCP server for Basecamp 3 with OAuth, TypeScript, and 47 tools for projects, messages, tod | 3 | Codex, OpenCode | 1 | 5,538 tok |
| lidless-labs/wazuh-mcp lidless.dev Your SIEM answers live behind a console you babysit. wazuh-mcp reads Wazuh alerts, agents, | 3 | Codex, OpenCode | 1 | 1,156 tok |
| Suzu-Testing/metasploit-cursor-harness Agentic penetration testing harness bridging Cursor AI agents with Metasploit Framework vi | 3 | Claude Code, Codex, Cursor, OpenCode | 63 | 2,469 tok |
| Nosmoht/talos-mcp-server MCP server for Talos Linux cluster management via the native gRPC API | 3 | Claude Code, Codex, OpenCode | 18 | 9,678 tok |
| sukoji/loadout npmjs.com 🎯 Loadout — profile your project and gear up Claude Code with the right skills, MCP serve | 3 | Claude Code, Codex, OpenCode | 6 | 791 tok |
| Shad0wMazt3r/The-Scaffolding Solve CTF challenges, find bugs, better accuracy. Plug and play with any agent. | 3 | Claude Code, Codex, OpenCode | 2 | 1,137 tok |
| s977043/river-review river-review.the3396.com Turn reviews into organizational decision assets. Review Judgment as Code for AI-assisted | 3 | Claude Code, Codex, GitHub Copilot, Gemini CLI, OpenCode | 10 | 9,600 tok |
| Mearman/agent-permissions Cross-agent permission policy for AI coding agents. MCP sync daemon, CLI, codecs, and eval | 3 | Claude Code, Codex, OpenCode | 2 | 4 tok |
| brandonkramer/trelly Trello CLI + MCP server with multi-profile auth. JSON output for scripts and AI agents. | 3 | Codex, OpenCode | 1 | 1,084 tok |
| oumaimah-QA/QIOS Structured QA skill framework for AI agents enabling consistent, risk-aware, and execution | 3 | Codex, OpenCode | 1 | 488 tok |
| snyk-labs/snyk-vulnbench | 3 | Claude Code, Codex, OpenCode | 12 | 2,521 tok |
| brovar/10x-pentest 10x pentest workflow build on agentic skills | 3 | Claude Code, Codex | 20 | — |
| Enovatr-Labs/SpecRoute Open source framework for spec-driven agentic software engineering. PRDs, prompts, agents, | 3 | Claude Code, Codex, Gemini CLI, OpenCode | 7 | 3,090 tok |
| MMoMM-org/miyo-kado Where AI meets your vault, on your terms... Obsidian Vault MCP Server | 3 | Claude Code, Codex, OpenCode | 3 | 1,884 tok |
| wallidsaydi-creator/HOM-AIMOS hom.autos Agent-security system built on cryptographically auditable persistent memory, native retri | 2 | Codex, OpenCode | 1 | 231 tok |
| Agnuxo1/enigmagent-mcp npmjs.com Local encrypted vault MCP server. AES-256-GCM + Argon2id. Resolves {{PLACEHOLDER}} secrets | 2 | Codex, OpenCode | 1 | 481 tok |
| barateza/mcp-plesk-dev-docs A unified MCP server that indexes and retrieves Plesk documentation using vector embedding | 2 | Claude Code, Codex, GitHub Copilot | 7 | 2,967 tok |
| calllint/calllint calllint.com Pre-flight risk linting for MCP and agent tools — check the blast radius before your agent | 2 | Codex, GitHub Copilot, OpenCode | 2 | 1,203 tok |
| matematicsolutions/mcp-saos matematicsolutions.com MCP server for Polish common and Supreme Court case law via the SAOS API - verifiable cita | 2 | Claude Code, Codex, OpenCode | 3 | 1,183 tok |
| nifrajs/nifra nifra.dev Full-stack TypeScript framework built for AI agents: typed server and client with no codeg | 2 | Claude Code, Codex, OpenCode | 2 | 2,352 tok |
| AUTHENSOR/AUTHENSOR authensor.com We audit the instruments the AI industry measures itself with — and file every fix upstrea | 2 | Claude Code, Codex, Cursor, OpenCode | 3 | 2,309 tok |
| LeonMelamud/claude-code-security-review AI-powered security audit skill for code changes with false positive filtering. Based on A | 2 | Codex, OpenCode | 1 | 530 tok |
| raccioly/websec-validator pypi.org Local-first security recon that briefs your AI coding agent: facts + tailored probes, code | 2 | Codex, OpenCode | 1 | 1,080 tok |
| NexusOne23/noid-privacy-workstation noid-privacy.com 🛡️ Fully-hardened Security & Privacy OS based on Fedora 44 + GNOME · for Dev, Admin, Crea | 2 | Codex, OpenCode | 1 | 4,403 tok |
| drsh4dow/bevy-agent-feedback-plugin Let AI coding agents (Claude, Codex, Pi) see and control your Bevy game - remote input inj | 2 | Codex, OpenCode | 1 | 177 tok |
| php-workx/fuse A local firewall for AI agent commands | 2 | Claude Code, Codex, OpenCode | 2 | 2,996 tok |