Security

24,943 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

tailscale-mcp

1561

GumbyEnder/mcp-tailscale

Skill Claude CodeCodex

Secure homelab networking with Tailscale + self-hosted Hermes agents via the mcp-tailscale MCP server.

not rated 3 2mo ago B ✓ AI review 29 tokens original MIT

prompt-injection-mcp

1562

Xiangyu-Li97/prompt-injection-mcp

MCP server Claude CodeCodexCursor +2

MCP server "prompt-injection-mcp" as configured in Xiangyu-Li97/prompt-injection-mcp. Runs locally from the prompt-injection-mcp npm package.

not rated 3 7mo ago A tokens not measured

chaos-mcp

1563

AraneaDev/Chaos-MCP

MCP server Claude CodeCodexCursor +2

security holding package. Runs locally from the chaos-mcp npm package.

not rated 3 today A tokens not measured original MIT

tenable-vpr-mcp

1564

Sabastiaz/tenable-vpr-mcp

MCP server Claude CodeCodexCursor +2

MCP server "tenable-vpr-mcp" as configured in Sabastiaz/tenable-vpr-mcp. Runs locally from the tenable-vpr-mcp Python package.

not rated 3 1mo ago A tokens not measured original MIT

sentinel-mcp

1566

fncreator22/sentinel-mcp

MCP server Claude CodeCodexCursor +2

SENTINEL MCP server — pre-execution transaction safety oracle for AI agents, paid autonomously via x402 on Base. Runs locally from the sentinel-mcp Python package.

not rated 3 17d ago A tokens not measured original MIT

aegis-mcp

1567

BennedictQuanTon/AegisMCP

MCP server Claude CodeCodexCursor +2

A deterministic MCP server that maps threat-model context to actionable coding requirements. Runs locally from the aegis-mcp Python package.

not rated 3 1mo ago A tokens not measured original MIT

agent-skill-risk-scan

1569

doteyeso-ops/mcp-server-vibes-coded

Skill Claude CodeCodex

Use before installing an untrusted SKILL.md, MCP plugin, package script, or agent installer. Buys a deterministic supply-chain risk report for $0.05 USDC through FiatDock.

not rated 3 4d ago A 46 tokens original MIT

signet-eval

1570

jmcentire/signet-eval

Plugin Claude Code

Bundles 1 hook

Deterministic policy enforcement for AI agent tool calls across Claude Code, Codex, Antigravity, and OpenCode.

not rated 3 16d ago A tokens not measured original MIT

moltrust-mcp-server

1571

MoltyCel/moltrust-mcp-server

Skill Claude CodeCodex

MCP server providing 45 tools for AI agent trust verification, identity, and reputation scoring.

not rated 3 9d ago A 0 tokens original MIT

lachesis

1572

UnboundCompute/lachesis

MCP server Claude CodeCodexCursor +2

A compiler-precise code property graph with an embedded columnar store and a navigation layer for security reasoning over source code. Runs locally from the lachesis-cpg Python package.

not rated 3 6d ago A tokens not measured AGPL-3.0

malwareanalyzermcp

1573

abdessamad-elamrani/MalwareAnalyzerMCP

MCP server Claude CodeCodexCursor +2

MCP server "malwareanalyzermcp" as configured in abdessamad-elamrani/MalwareAnalyzerMCP. Runs locally from the malwareanalyzermcp npm package.

not rated 3 1y ago A tokens not measured

abusech-mcp

1574

lokallost/abusech-mcp

MCP server Claude CodeCodexCursor +2

MCP server "abusech-mcp" as configured in lokallost/abusech-mcp. Runs locally from the abusech-mcp Python package.

not rated 3 1y ago A tokens not measured original MIT

mcp-guard

1575

alramalho/mcp-guard

MCP server Claude CodeCodexCursor +2

Simple HTTP proxy that gates MCP servers with block rules. Runs locally from the @alramalho/mcp-guard npm package.

not rated 3 6mo ago A tokens not measured

hunter

1576

GeniusHu-tgty/Hunter

Skill Claude CodeCodex

Use for authorized web/API security assessment, CTF vulnerability research, Hunter health checks, MCP orchestration, local knowledge-base lookup, evidence registration, and report generation. All HTTP tools go through RequestBroker — WAF blocks, captchas, and rate limits never produce false findings.

not rated 3 1mo ago A 58 tokens GPL-3.0

mcp

1577

Tuteliq/mcp

MCP server Claude CodeCodexCursor +2

Detect grooming, bullying, fraud, and 16+ online threats across text, voice, image, and video. Runs locally from the @tuteliq/mcp npm package. Needs 1 environment variable to run.

not rated 3 +1 3d ago A tokens not measured original MIT

auth-guard

1578

Njengah/claude-code-tracker

Agent Claude Code

Read-only reviewer for JWT login, password hashing, and /auth routes in this tracker. Use when the user asks to review auth.py, registration, login tokens, or getcurrentuser. Use after changes to auth helpers or auth routes. Do not use for session/cost exploration or for implementing features.

not rated 3 21d ago A 65 tokens

ip-rotator

1579

Aladeen12541/claude-ip-rotator

Plugin Claude Code

Bundles 1 skill, 1 command · 211 tokens together

AWS API Gateway IP rotation for security testing. Single switch routes ALL HTTP/HTTPS traffic (nuclei, httpx, ffuf, curl, everything) through rotating AWS IPs to bypass WAF rate limits and IP blocks.

not rated 3 2mo ago A tokens not measured original MIT

arcjet

1580

arcjet/skills

Skill Claude CodeCodex

Add Arcjet security protection to HTTP routes, AI agent tool calls, MCP servers, background jobs, and queue workers. Covers rate limiting, bot detection, email validation, prompt injection, sensitive information blocking (including Rampart NER), content moderation, capture/flush, remote Guard policies, typed inputs…

not rated 3 +1 changed 8d ago A Socket: passSnyk: pass 240 tokens original Apache-2.0

megaeth-labs/skills

Skill Claude CodeCodex

Reviews an existing MOSS wallet integration for security and correctness before launch on MegaETH. Use when auditing partner code rather than building it: produces findings grouped as Critical, Risky defaults, and Recommendations with concrete remediations. Checks for frontend-owned trust decisions, missing backend…

not rated 3 26d ago A 127 tokens

web

1582

Shad0wMazt3r/The-Scaffolding

Skill Claude CodeCodex

Execute web-application assessment from setup and recon through injection, access control, auth/session issues, API, and SSRF chains.

not rated 3 23d ago A 28 tokens GPL-3.0

mcp-redteam

1583

m0rvayne/mcp-redteam

Plugin Claude Code

Bundles 1 skill · 31 tokens together

Full audit and penetration testing of MCP servers — health, architecture, completeness, security.

not rated 3 +1 changed 4d ago A tokens not measured original MIT

ASK191225/bugbounty-kit

Skill Claude CodeCodex

Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI Inference. Detects attack vectors where attacker-controlled input reaches AI agents running in CI/CD pipelines, including env var intermediary patterns, direct…

not rated 3 1mo ago A 105 tokens

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: