1,029 projects whose own agent configuration covers security. These are not mods to install — they are how the maintainers of these repositories tell an agent what to do, and what to avoid.
All projects Building agents7,410Claude Code6,578Data and AI3,695Backend and APIs3,487Languages3,404Planning3,188Git and workflow3,106Code review2,712Memory and context2,351Testing2,325Research2,289DevOps and cloud2,283
Any agent Claude CodeCodexOpenCodeGitHub CopilotGemini CLICursorWindsurfKiro
| Project | Stars | Configures | Files | Always loaded |
|---|---|---|---|---|
| boecht/birre BiRRe (Bitsight Rating Retriever) MCP server provides access to BitSight security rating d | 2 | Claude Code, Codex, GitHub Copilot, OpenCode | 11 | 3,670 tok |
| aself101/mcp-secure-server A universal security-by-default framework for Model Context Protocol (MCP) servers that pr | 2 | Claude Code, Codex, OpenCode | 2 | 1,585 tok |
| Reedtrullz/codex-antigravity-auth pypi.org Released local Responses API gateway bringing Google Antigravity Claude Opus/Sonnet, Gemin | 2 | Codex, OpenCode | 1 | 1,567 tok |
| piyushptiwari1/mcpkernel pypi.org The Security Kernel for AI Agents — MCP/A2A gateway with policy enforcement, taint trackin | 2 | Claude Code, Codex, GitHub Copilot | 8 | 2,161 tok |
| oaslananka/infra-lens-mcp TypeScript MCP server for infrastructure visibility, health checks, inventory inspection, | 2 | Claude Code, Codex, OpenCode | 4 | 482 tok |
| oaslananka/ssh-mcp-pro TypeScript MCP server for controlled SSH operations, remote host workflows, command execut | 2 | Claude Code, Codex, OpenCode | 4 | 1,363 tok |
| bchoor/bws-mcp Remote MCP for Bitwarden Secrets Manager on Cloudflare Workers (list, get, put, delete) | 2 | Claude Code, Codex, OpenCode | 1 | 817 tok |
| astafford8488/agentaegis-mcp MCP server for cybersecurity operations — compliance, vuln scans, code security, threat in | 1 | Codex, OpenCode | 1 | 2,212 tok |
| ali-ulu/huqan huqan.com Local-first verification layer for AI agents: evidence, provenance, policy gates, human ap | 1 | Claude Code, Codex, OpenCode | 2 | 1,022 tok |
| bysonte/ssh-manager-mcp-server | 1 | Claude Code, Codex | 1 | 2,528 tok |
| oyusypenko/rob-mcp MCP server + x402-paid API for Robinhood Chain tokenized stocks — agent-callable premium/d | 1 | Claude Code, Codex, OpenCode | 12 | 6,813 tok |
| Johnny-Z13/proofslip proofslip.ai Ephemeral verification for agent workflows. 24-hour receipts your agents check before they | 1 | Claude Code, Codex | 4 | 1,608 tok |
| dinglebear-ai/soma soma.dinglebear.ai Batteries-included RMCP runtime and scaffold for shipping Rust MCP servers with CLI/REST/H | 1 | Claude Code, Codex, Gemini CLI, OpenCode | 4 | 6,471 tok |
| Roop-World/LegalSearch Agent kit and MCP Registry metadata for Roop LegalSearch, a public Indian legal search MCP | 1 | Claude Code, Codex, Gemini CLI, OpenCode | 3 | 303 tok |
| ANAMIZED/OpenMesha OpenMesha is one of the most ambitious and intellectually open-source full-spectrum “Auton | 1 | Codex, OpenCode | 1 | 603 tok |
| AgentTanuki/agent-guild agent-guild-5d5r.onrender.com The trust + settlement layer for AI agents — discover, vet, pay, and build portable reputa | 1 | Codex, Gemini CLI, OpenCode | 2 | 2,238 tok |
| GuillaumeLessard/qector-claude-plugin qector.store QECTOR Quantum Error Correction: High-performance, mathematically verified local QEC engin | 1 | Claude Code, Codex, OpenCode | 2 | 1,878 tok |
| MrWizardlyLoaf/rugcheck-ai web-production-58d585.up.railway.app On-chain token-safety MCP for Solana AI trading agents — rug check, honeypot detection & a | 1 | Codex, OpenCode | 1 | 511 tok |
| orieg/gws-connector orieg.github.io Multi-account Google Workspace MCP server — Gmail, Calendar, and Drive with smart routing. | 1 | Codex, GitHub Copilot, OpenCode | 2 | 1,312 tok |
| davidmosiah/delx-memory npmjs.com Local-first persistent memory layer for AI agents. SQLite-backed, MCP-compatible, cross-ag | 1 | Codex, OpenCode | 1 | 416 tok |
| desper/quick-html-sharing qhs.fyi Indie SaaS for vibe coders to instantly share AI-generated HTML pages — unguessable URLs + | 1 | Claude Code, Codex, OpenCode | 2 | 3,608 tok |
| fantasyce/agent-runtime-proof fantasyce.github.io Local, read-only proof that a live Agent or MCP runtime matches an approved artifact. | 1 | Codex, OpenCode | 1 | 380 tok |
| mordiaky/vouchspec vouchspec.plyrium.com Agent-only x402 service for signed exact-commit evidence on public Agent Skills | 1 | Codex, OpenCode | 1 | 169 tok |
| nolindnaidoo/secrets-le letools.dev Find hardcoded credentials in a codebase, and never print one into the report | 1 | Claude Code, Codex, GitHub Copilot, Cursor, Gemini CLI, OpenCode | 5 | 7,758 tok |
| pedroknigge/arkgate npmjs.com If the AI writes an illegal import, the write is rejected. The same check fails the pull r | 1 | Claude Code, Codex, OpenCode | 4 | 7,869 tok |
| stevologic/security-recipes.ai security-recipes.ai Turn security findings into bounded agent work: one recipe, scoped context, required proof | 1 | Codex, GitHub Copilot, OpenCode | 5 | 758 tok |
| wei9072/aegis | 1 | Codex, OpenCode | 1 | 2,698 tok |
| srinivasan-sundaresan95/orihime smithery.ai Cross-repo code knowledge graph for Java/Kotlin/JS/TS — MCP server, taint analysis, call g | 1 | Claude Code, Codex, OpenCode | 3 | 1,402 tok |
| bajor/gmail-mcp-send-to-list-only send to list only gmail MCP for VPS | 1 | Codex, OpenCode | 1 | 130 tok |
| Synthrun/Cicada cicada-skill.vercel.app Cicada — Security Audit & Fix Skill for LLM coding agents (16 domains, cross-framework) | 1 | Codex, OpenCode | 1 | 210 tok |
| kefapps/onepassword-mcp-codex Standalone MCP server for 1Password desktop app integrations with opaque-by-default secret | 1 | Codex, OpenCode | 1 | 1,012 tok |
| richer-richard/cc-research Multi-agent deep research on Claude models: a Claude Code plugin + Agent SDK CLI sharing o | 1 | Claude Code, Codex, OpenCode | 1 | 962 tok |
| davidomil/cloudx Run and supervise Codex CLI from your phone on your own Linux build machine, with local-fi | 1 | Claude Code, Codex, OpenCode | 12 | 645 tok |
| mdabir1203/PromptBazaarAI banglaprompt-ai.pages.dev A Bangla-first AI prompt selling and creator platform built with React, Vite and Supabase. | 1 | Codex, OpenCode | 1 | 614 tok |
| PBNZ/pbnz-skills A personal collection of Agent Skills for Claude Code, Claude Cowork, Claude.ai, the Claud | 1 | Claude Code, Codex, GitHub Copilot, OpenCode | 4 | 2,921 tok |
| curserio/codex-auth-switcher A simple CLI tool to switch between multiple Codex CLI accounts by managing auth.json prof | 1 | Codex, OpenCode | 1 | 1,559 tok |
| thedatakey/apollyon Evidence-first source security scanner for human-written and AI-generated code. Rust CLI w | 1 | Claude Code, Codex, GitHub Copilot, Gemini CLI, OpenCode | 4 | 938 tok |
| Firmislabs/firmis-scanner firmislabs.com AI agent runtime security scanner - detect malicious behavior in Claude Skills, MCP Server | 1 | Claude Code, Codex, OpenCode | 2 | 3,779 tok |
| bugroo/ubuntu-server-audit-eu Read-only Ubuntu/Linux server audit skill for MSP readiness and EU cybersecurity complianc | 1 | Codex, OpenCode | 1 | 144 tok |
| rumotion/ai-agent-project-template One canonical instruction file. Many models. ~1.9K-token startup. A copyable template for | 1 | Claude Code, Codex, GitHub Copilot, Gemini CLI, OpenCode | 7 | 1,494 tok |
| Nick2bad4u/SonarCloud-Skill npmjs.com AI skill for managing findings on SonarCloud / SonarQube | 1 | Codex, OpenCode | 1 | 435 tok |
| bhuvangupta/vapt-claude Full-spectrum web application VAPT skill for Claude Code, OpenCode, Codex CLI & Gemini CLI | 1 | Codex, Gemini CLI, OpenCode | 2 | 1,377 tok |
| yunseo-kim/agent-toolbox A trusted, curated cross-tool registry for agent components, with end-to-end provenance an | 1 | Codex, OpenCode | 1 | 4,186 tok |
| ecodelearn/template-claude-code-ts npmjs.com Agent Harness — transactional npx installer that adapts one canonical template to Claude C | 1 | Claude Code, Codex, Gemini CLI, OpenCode | 6 | 1,578 tok |
| msopariw/GitHubCopilotDemo Simple Todo app to demonstrate GitHub Copilot features: Custom Instructions, Skills, Custo | 1 | Claude Code, Codex, GitHub Copilot | 7 | 532 tok |
| zexion7873/copilot-setting Agentic context engineering for GitHub Copilot — agents route, skills execute, instruction | 1 | Claude Code, Codex, GitHub Copilot, OpenCode | 25 | 11,144 tok |
| JKasteele/ai-act-companion huggingface.co Local-first, explainable EU AI Act risk classifier with risk-assessment/DPIA/bias/AI-secur | 1 | Claude Code, Codex, GitHub Copilot, OpenCode | 4 | 546 tok |
| co-native-ab/graphdo-ts A TypeScript MCP server that gives AI agents scoped, low-risk access to Microsoft Graph. | 1 | Claude Code, Codex, OpenCode | 17 | 4,416 tok |
| Vasudev-Das/we_hack_for_fun_EXE AI-powered Active Directory attack simulation and MITRE ATT&CK analysis platform built wit | 1 | Claude Code, Codex | 5 | — |
| coilyco-flight-deck/eco-mcp-app eco-mcp.coilysiren.me Inline Claude Desktop widget for any public Eco game server — live player counts, meteor c | 1 | Claude Code, Codex, OpenCode | 5 | 1,140 tok |