Vet a Model Context Protocol (MCP) server for safety before installing or connecting it. Use when the user wants to check, audit, scan, or review an MCP server for prompt-injection, data-exfiltration, or malicious capabilities — given a directory, npm package, GitHub repo, or a tools/list JSON dump.
Scan a public GitHub MCP-server repository for security issues before installing or connecting to it. Calls the hosted compuute-scan API at scan.compuute.se and returns severity counts, a 0-100 score, the most severe findings, and an honest triage disclaimer. Use BEFORE recommending or installing an unfamiliar MCP…
Use this skill when the user is building, securing, or auditing a browser-based AI agent (Playwright, Puppeteer, Stagehand, browser-use, or custom browser automation). Triggers on requests to "secure my browser agent", "detect prompt injection in web pages", "block my agent from visiting bad URLs", "scan this page for…
Send and receive private encrypted messages between AI agents for private agent-to-agent messaging, encrypted communication between autonomous agents, hidden state exchange, confidential multi-agent workflow coordination, delegation, expert review, plan synchronization, negotiation, inbox processing, and sharing…
Check CVEs and security advisories for a Chainguard image or APK package. Use when the user asks about vulnerabilities, CVEs, or the security status of an image.
Comprehensive security audit of all project dependencies. Scans package manifests and reports vulnerabilities, license issues, and quality concerns prioritized by severity.
You are operating with Carapace, a security and alignment layer that monitors your actions, verifies sensitive operations, and keeps you anchored to the user's goals.
List connector types and bindings before executing an action. Use connectorsrun with a stored binding. Do not request or expose raw secrets. A delegated grant can limit one exact binding and action, and cannot exceed the receiving agent's standing capabilities.
Como a autenticação Cognito do MCP Guedder liga e o que cada env var faz. Use ao configurar deploy autenticado, depurar 401 no MCP, ou decidir entre modo público e modo com token.
Inspect and fix email authentication (SPF, DKIM, DMARC, MTA-STS, BIMI) with Palisade. When to use: a domain's mail is being rejected or spoofed, a DMARC record needs writing or moving to p=reject, DMARC reports need reading, or an IT team or MSP wants ongoing monitoring across many domains. Not for sending or…
★not rated 0 yesterdayA96 tokens
originalMIT
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: