mcp
2593MCP server Claude CodeCodexCursor +2
Zero-config MCP security scanner for AI-generated apps. 25K+ vulnerability patterns. Remote server at mcp.frogeye.ai.
25,252 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.
MCP server Claude CodeCodexCursor +2
Zero-config MCP security scanner for AI-generated apps. 25K+ vulnerability patterns. Remote server at mcp.frogeye.ai.
gambadio/onepassword-agent-mcp
MCP server Claude CodeCodexCursor +2
Local MCP access to approved 1Password fields without exposing plaintext secrets to AI agents. Runs locally from the onepassword-agent-mcp npm package.
MCP server Claude CodeCodexCursor +2
Screens public GitHub repos and PRs to generate risk maps, findings, and merge-readiness signals. Remote server at mcp-github-screen.gitlumen.com.
MCP server Claude CodeCodexCursor +2
AI agent security via MCP: C3 firewall, C4 immune system, C5 action guard, self-evolving prompts. Runs locally from the @gsep/mcp npm package. Needs 4 environment variables to run.
MCP server Claude CodeCodexCursor +2
DeFi safety checks on Base before you sign: honeypot, owner-power scan, approval risk, Aave health. Runs locally from the @iniit/defi-guard-mcp npm package. Needs 1 environment variable to run.
ingressward/ingressward-mcp-server
MCP server Claude CodeCodexCursor +2
Block prompt injection, evasive spacing, and obscene content before it reaches your LLM. Runs locally from the @ingressward/mcp-server npm package. Needs 1 environment variable to run.
MCP server Claude CodeCodexCursor +2
MCP server for DefectDojo vulnerability management — 24 tools with RBAC, HMAC audit chain, and SIEM forwarding. Runs locally from the mcp-defectdojo Python package. Needs 6 environment variables to run.
MCP server Claude CodeCodexCursor +2
Write secrets into .env without the agent ever seeing the value - Windows masked dialog (繁中 UI). Runs locally from the secret-safe-env npm package.
MCP server Claude CodeCodexCursor +2
Minimal, honest RAG-over-a-corpus MCP retrieval tool: searchknowledge(query, k) -> cited chunks. Local embeddings + embedded vector store. Auth-scoped, fail-soft, version-pinned. Runs locally from the jaimenbell-rag-mcp Python package.
MCP server Claude CodeCodexCursor +2
Self-hosted, caller-configured default-deny action registry + append-only spend ledger + human sign-off audit trail, exposed as MCP tools. classify() is unconditional GATED -- that invariant is never configurable. Governance/safety flagship: stop an agent from doing something irreversible without a human noticing.…
jamesdfinance-dev/lazaretto-mcp
MCP server Claude CodeCodexCursor +2
Free lockfile malware check plus paid pre-install scan of any skill, tool, or package. Runs locally from the lazaretto-mcp npm package.
jessepetersondev/consentgate-mcp
MCP server Claude CodeCodexCursor +2
Gate AI agent actions behind a consent policy with human approval via Telegram. Fail-closed. Runs locally from the consentgate-mcp npm package. Needs 2 environment variables to run.
MCP server Claude CodeCodexCursor +2
Thin MCP and CLI proxy for AI agent and MCP security auditing via a hosted backend. Runs locally from the ledd-mcp-audit-server npm package. Needs 2 environment variables to run.
MCP server Claude CodeCodexCursor +2
A2A TrustGate: 4-gate firewall that screens every AI-agent action before it runs. 49 tools. Runs locally from the a2a-trustgate npm package. Needs 2 environment variables to run.
MCP server Claude CodeCodexCursor +2
Agent-first secrets vault. Store, rotate, and share credentials from chat. 20 tools. Runs locally from the secretcarousel npm package. Needs 1 environment variable to run.
MCP server Claude CodeCodexCursor +2
MCP server for NetIntel — DNS, SSL, WHOIS, email security, OSINT via x402 micropayments. Runs locally from the netintel-mcp npm package. Needs 1 environment variable to run.
MCP server Claude CodeCodexCursor +2
One of 6 in
BridgeGuard MCP Server - Cross-chain bridge security audit tools for AI coding agents. Scan bri... Runs locally from the bridgeguard-mcp npm package.
laser54/telegram-managed-bot-factory
MCP server Claude CodeCodexCursor +2
A secure MCP control plane for Telegram Managed Bots. Runs locally from the telegram-managed-bot-factory Python package.
lazymac2x/code-pattern-risk-scanner-api
MCP server Claude CodeCodexCursor +2
Cloudflare Workers MCP server: code-pattern-risk-scanner. Remote server at api.lazy-mac.com.
lazymac2x/graphql-dos-shield-api
MCP server Claude CodeCodexCursor +2
Cloudflare Workers MCP server: graphql-dos-shield. Remote server at api.lazy-mac.com.
MCP server Claude CodeCodexCursor +2
Audit MCP servers from inside Claude Code. 10 OWASP checks, A-F grade, live leaderboard. Runs locally from the mcpwatch-mcp npm package.
MCP server Claude CodeCodexCursor +2
Verify-before-act safety MCP for AI coding agents: check packages, lockfiles, skill/plugin manifests, and CI workflows before installing or merging. Runs locally from the @liminallablibs/agent-guard-mcp npm package.
MCP server Claude CodeCodexCursor +2
Veragent MCP server — check the trust/security score of MCP tools before installing them in Claude. Runs locally from the veragent-mcp Python package.
MCP server Claude CodeCodexCursor +2
Action firewall for AI agents: blocks the wrong action before it runs, every verdict Ed25519-signed. Runs locally from the @fidacy/mcp npm package.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: