Security

24,943 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

control-plane

1465

thinkneo-ai/mcp-server

MCP server Claude CodeCodexCursor +2

Enterprise AI Control Plane: governance, guardrails, spend tracking, compliance & smart routing. Remote server at mcp.thinkneo.ai.

not rated 3 2mo ago A tokens not measured original Apache-2.0

pci-dss-mcp

1467

shyshlakov/pci-dss-mcp

MCP server Claude CodeCodexCursor +2

MCP server "pci-dss-mcp" as configured in shyshlakov/pci-dss-mcp. Launched with /path/to/pci-dss-mcp.

not rated 3 20d ago A tokens not measured original MIT

keyblind

1468

aarifmms/keyblind

MCP server Claude CodeCodexCursor +2

Encrypted secrets vault for AI agents — secrets resolved at runtime, never seen by LLMs. Runs locally from the keyblind npm package.

not rated 3 3mo ago A tokens not measured original MIT

mcp-seatbelt

1469

KryptosAI/mcp-seatbelt

MCP server Claude CodeCodexCursor +2

MCP runtime security proxy. Blocks dangerous AI agent tool calls with a policy engine. Runs locally from the @kryptosai/mcp-seatbelt npm package.

not rated 3 1mo ago A tokens not measured original MIT

safeinstall

1470

Mickdownunder/SafeInstall

MCP server Claude CodeCodexCursor +2

Local-first CLI that blocks risky npm, pnpm, and bun installs before they run. Open source. Runs locally from the safeinstall-cli npm package.

not rated 3 2d ago A tokens not measured original MIT

brokre

1471

Furowu/brokre

MCP server Claude CodeCodexCursor +2

AI-safe credential broker for MCP — run saved SSH/MySQL/psql aliases; passwords never reach AI. Runs locally from the brokre npm package.

not rated 3 9d ago A tokens not measured original MIT

deepidv-verify

1472

Deep-Identity-Inc/agent-skills

Skill Codex

Identity verification, KYC, face liveness, deepfake detection, adverse media screening, and AML/sanctions checks via the deepidv API. Use when a user needs to verify someone's identity, check if media is AI-generated, screen for sanctions/PEP status, or run adverse media checks.

not rated 3 2mo ago A 68 tokens original Apache-2.0

palimpsest

1473

beepboop2025/palimpsest

MCP server Claude CodeCodexCursor +2

Rights-aware censorship, China-economic status, and tamper-evident AI evaluation tools. Remote server at api.seiche.info.

not rated 3 today A tokens not measured original MIT

eset-mcp

1474

maciekaz/ESET-MCP

MCP server Claude CodeCodexCursor +2

MCP server "eset-mcp" as configured in maciekaz/ESET-MCP. Runs in Docker (ghcr.io/maciekaz/eset-mcp:1.0.3).

not rated 3 26d ago A tokens not measured original MIT

ziti-mcp-server

1475

openziti/ziti-mcp-server

MCP server Claude CodeCodexCursor +2

MCP server "ziti-mcp-server" as configured in openziti/ziti-mcp-server. Launched with https://github.com/openziti/ziti-mcp-server/releases/download/v0.9.0/ziti-mcp-se.

not rated 3 2mo ago A tokens not measured original Apache-2.0

cli

1476

getmcpm/cli

MCP server Claude CodeCodexCursor +2

MCP package manager with trust scoring, a runtime guard, and Sigstore provenance verification. Runs locally from the @getmcpm/cli npm package.

not rated 3 yesterday A tokens not measured original MIT

inkog

1477

inkog-io/inkog-mcp

MCP server Claude CodeCodexCursor +2

Scan AI agents for security vulnerabilities. Audit MCP servers before installation. Runs locally from the @inkog-io/mcp npm package. Needs 1 environment variable to run.

not rated 3 8d ago A tokens not measured original Apache-2.0

npm-mcp

1478

alisaitteke/npm-mcp

MCP server Claude CodeCodexCursor +2

MCP server for npm package management, security analysis, and compatibility checking. Runs locally from the @alisaitteke/npm-mcp npm package.

not rated 3 7mo ago A tokens not measured original MIT

3ilm-mcp

1479

holistis/3ilm-mcp

MCP server Claude CodeCodexCursor +2

Search 1,032 verified smart contract vulnerability findings from Sherlock audits by pattern. Runs locally from the 3ilm-mcp npm package.

not rated 3 5d ago A tokens not measured original MIT

tripwire

1480

aliboIly/Tripwire

MCP server Claude CodeCodexCursor +2

MCP for Roblox Studio and Open Cloud: drive Studio, run headless tests, and review game security. Runs locally from the tripwire-roblox npm package. Needs 3 environment variables to run.

not rated 3 19d ago A tokens not measured original MIT

x402station

1481

sF1nX/x402station-mcp

MCP server Claude CodeCodexCursor +2

MCP adapter for x402station.io, the independent risk-signal layer for x402 agentic commerce: endpoint evidence before an agent authorizes payment. Runs locally from the x402station-mcp npm package. Needs 1 environment variable to run.

not rated 3 3mo ago A tokens not measured original MIT

mcp-server-malcolm

1482

nagameTW/mcp-server-malcolm

MCP server Claude CodeCodexCursor +2

MCP server for the Malcolm network traffic analysis platform (Zeek + Suricata + Arkime + OpenSearch + NetBox) — full read surface plus opt-in, audited write tools. Runs locally from the mcp-server-malcolm Python package.

not rated 3 11d ago A tokens not measured original MIT

sigil

1483

cdrn/sigil

MCP server Claude CodeCodexCursor +2

Local keystore + MCP server. Claude can sign EVM transactions but never sees the private key. Runs locally from the sigild npm package. Needs 2 environment variables to run.

not rated 3 today A tokens not measured original Apache-2.0

conarium

1484

dogrucanemek-alt/conarium

MCP server Claude CodeCodexCursor +2

Governed database access for AI assistants: masking, signed receipts, coverage reconciliation. Runs locally from the @conarium-ai/core npm package.

not rated 3 yesterday A tokens not measured original MIT

code-sentinel

1485

salrad22/code-sentinel

MCP server Claude CodeCodexCursor +2

Code quality analysis MCP server - detects security issues, deceptive patterns, and placeholders. Runs locally from the code-sentinel-mcp npm package.

not rated 3 8mo ago A tokens not measured

mcp-guardian

1487

rudraneel93/mcp-guardian

MCP server Claude CodeCodexCursor +2

Security, cost, and health governance proxy for MCP infrastructure. Runs locally from the @mcp-guardian/server npm package. Needs 3 environment variables to run.

not rated 3 3mo ago A tokens not measured original MIT

bughunterpro

1488

sector-b79/web-hunter-pro

Skill Claude CodeCodex

Operate only in authorized scope: bug bounty targets explicitly in scope, owned systems, defensive reviews, or labs. Decline or pause on requests involving unauthorized access, stealth, persistence, service disruption, credential abuse, real data theft, or abuse of third-party systems.

not rated 3 4mo ago A 0 tokens