24,612 mods in this category, of every kind an
agent can take. Each one carries what it costs per session, what the
scan found, and whether it is the original.
Automated smart contract security audit pipeline. Auto-detects codebase size and scales accordingly — standard mode for small codebases, chunk mode with persistent state for large ones. Runs context building, dual-expert review, adversarial triage, and structured reporting. Use when auditing smart contracts, reviewing…
MCP server for 1Password service accounts — tools and resources for vaults and credentials. Runs locally from the @takescake/1password-mcp npm package. Needs 3 environment variables to run.
★not rated 20 11d agoA
tokens not measured
originalApache-2.0
Orchestrates end-to-end resilience testing for LLM agents with AgentBreak, including LLM infrastructure failures, prompt injection, agent skill supply-chain risk, guardrail verification, and MCP server/tool failures. Use when the user asks to "test my agent for resilience", "chaos test this agent", "find failure modes…
QA testing and validation of GoGatoZ features against the local GoGatoZ CTF lab. Invoke for post-change testing, live flag validation, lab infrastructure checks, payload smoke tests, enumerate/attack/search/pivot/notify validation, or any request to confirm that GoGatoZ still works.
Gate dependency installs (npm/pip/cargo/go/gem/maven/nuget) with OSV-backed advisory checks, approved-spec ledger, and post-install reorg rollback. Run safedeps check @ before any install command.
A general reverse-engineering toolkit for Windows programs, Android apps, iOS apps, web interfaces, and APIs. Reverse engineering means examining software to understand how it works and, where appropriate, how to modify and rebuild it.
Audit and enable security-oriented Xcode build settings. Progressively enables compiler warnings, static analyzer checkers, and Enhanced Security features. Use when: user wants to secure their Xcode project, audit security settings, enable hardening, review security posture of build configuration, set up…
Elliot — offensive security engagement plugin with Hexstrike MCP integration for Kali Linux. Provides slash commands, auto-activating skills, and subagents for systematic penetration testing workflows.
★not rated 20 5mo agoA
tokens not measured
originalMIT
Give a local AI agent a remote hand over SSH: read, run, diagnose and pull data from a remote Linux server behind a tiered, unprivileged, ACL-read-only safety model.
★not rated 19 16d agoA
tokens not measured
originalMIT
OpenText Fortify AppSec skills. Use for SAST/DAST/SCA scanning, vulnerability triage, audit workflows, CI/CD pipeline integration, and FCLI commands. Supports Fortify on Demand (FoD) and Software Security Center (SSC).
★not rated 19 1mo agoA
tokens not measured
originalMIT
Add Firebase Authentication (Phone SMS OTP, Google Sign-In, Email/Password) to a Better Auth app using the better-auth-firebase-auth plugin. Use when adding phone authentication to Better Auth without Twilio, integrating Firebase Auth with Better Auth sessions, working with the better-auth-firebase-auth package, or…
Cyberbro IOC analysis toolkit. Extract, enrich, and analyze observables with 5 MCP tools.
★not rated 19 1mo agoA
tokens not measured
originalMIT
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: