Security

25,252 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

cve-risk-mcp

2859

sarveshkapre/cve-risk-mcp

MCP server Claude CodeCodexCursor +2

MCP server "cve-risk-mcp" as configured in sarveshkapre/cve-risk-mcp. Runs locally from the cve-risk-mcp Python package.

not rated 0 7mo ago A tokens not measured original MIT

devsecops-mcp-server

2861

JesusDavidQuarksoft/MCP_Security

MCP server Claude CodeCodexCursor +2

MCP server "devsecops-mcp-server" as configured in JesusDavidQuarksoft/MCPSecurity. Runs locally from the devsecops-mcp-server npm package.

not rated 0 7mo ago A tokens not measured original MIT

principles-security

2862

rwking/wellness_planner

Cursor rule Cursor

USE ALWAYS to prevent accidental exposure of secrets, credentials, and sensitive data in code or version control.

not rated 0 6mo ago A 563 tokens

veracode-mcp

2863

landscapedotcl/mcp-veracode

MCP server Claude CodeCodexCursor +2

MCP server "veracode-mcp" as configured in landscapedotcl/mcp-veracode. Runs locally from the veracode-mcp npm package.

not rated 0 6mo ago A tokens not measured

sonarqube-mcp-server

2864

anggakawa/sonarqube-ce-mcp

MCP server Claude CodeCodexCursor +2

MCP Server for SonarQube - allows AI assistants to query bugs, vulnerabilities, code smells, security hotspots and more. Runs locally from the sonarqube-mcp-server Python package.

not rated 0 6mo ago A tokens not measured

cloakllm-mcp

2865

cloakllm/cloakllm-mcp

MCP server Claude CodeCodexCursor +2

MCP server for CloakLLM — PII cloaking tools for Claude Desktop. Runs locally from the cloakllm-mcp Python package.

not rated 0 2mo ago A tokens not measured original MIT

mcp-base

2866

sesopenko/mcp-filesystem-readonly

MCP server Claude CodeCodexCursor +2

CLI tools for MCP (Model Context Protocol) server setup and management with OIDC support (Auth0, Dex, Keycloak). Runs locally from the mcp-base Python package.

not rated 0 6mo ago A tokens not measured GPL-3.0

sqli-mcp

2867

vivashu27/SQLinjector_MCP

MCP server Claude CodeCodexCursor +2

MCP server "sqli-mcp" as configured in vivashu27/SQLinjectorMCP. Runs locally from the sqli-mcp Python package.

not rated 0 7mo ago A tokens not measured

memory-engine-mcp

2869

kagioneko/memory-engine-mcp

MCP server Claude CodeCodexCursor +2

Testing package used for research. On explicit opt-in, sends your git/GitHub email, username, and hostname to the maintainer's research endpoint (see README). Runs locally from the memory-engine-mcp Python package.

not rated 0 6mo ago A tokens not measured

okta-workspace-mcp

2870

oreneHack/okta_mcp

MCP server Claude CodeCodexCursor +2

MCP server "okta-workspace-mcp" as configured in oreneHack/oktamcp. Runs locally from the okta-workspace-mcp npm package. Needs 9 environment variables to run.

not rated 0 26d ago A tokens not measured original MIT

mcp-trust-layer

2871

pst291291/mcp-trust-layer

MCP server Claude CodeCodexCursor +2

MCP server "mcp-trust-layer" as configured in pst291291/mcp-trust-layer. Runs locally from the mcp-trust-layer Python package.

not rated 0 1mo ago A tokens not measured

turbopentest

2872

IntegSec/turbopentest-mcp

MCP server Claude CodeCodexCursor +2

AI-powered penetration testing. Launch scans, review findings, download reports. Runs locally from the @turbopentest/mcp-server npm package. Needs 2 environment variables to run.

not rated 0 yesterday A tokens not measured original MIT

aga-mcp-server

2873

attestedintelligence/aga-mcp-server

MCP server Claude CodeCodexCursor +2

MCP governance proxy and evidence engine for AI agent tool calls: evaluate each call against a sealed policy, permit or deny it at the proxy boundary, and prove every decision with signed, offline-verifiable evidence bundles. Runs locally from the @attested-intelligence/aga-mcp-server npm package.

not rated 0 15d ago A tokens not measured original MIT

Seiya-wasabi/mcp-server-security-snapshot

MCP server Claude CodeCodexCursor +2

MCP server for Website Security Snapshot API — scan HTTP security headers from Claude and AI agents. Runs locally from the mcp-server-security-snapshot npm package.

not rated 0 5mo ago A tokens not measured original MIT

credential-downscope

2876

kbroughton/downscoping-mcp

Plugin Claude Code

Bundles 1 MCP server

Least-privilege credential injection for CLI tools and MCP servers. Intercepts Bash tool calls and MCP tool calls, swapping in the least-privileged auth token for each operation based on .claude/downscoping.yaml config.

not rated 0 5mo ago A tokens not measured

ssh-mcp-server-copilot

2877

bhayanak/ssh-mcp-server

MCP server Claude CodeCodexCursor +2

Hardened SSH MCP server for VS Code / Copilot Chat — run policy-scoped commands on remote hosts via natural language. Runs locally from the ssh-mcp-server-copilot Python package.

not rated 0 6mo ago A tokens not measured original MIT

mcp

2878

Apviso/apviso-mcp

MCP server Claude CodeCodexCursor +2

MCP server for interacting with APVISO penetration testing platform. Runs locally from the @apviso/mcp npm package.

not rated 0 5mo ago A tokens not measured

depscan

2880

robcqm-bot/depscan-api

Skill Claude CodeCodex

Verify the health of a skill's external dependencies before installing. Checks uptime, SSL, domain reputation, and blacklists. Returns a trust score and a clear install/block verdict.

not rated 0 6mo ago A 38 tokens

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: