Security

24,943 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

promptrejectormcp

1633

revsmoke/promptrejectormcp

MCP server Claude CodeCodexCursor +2

Security gateway for AI agents: detects prompt injections, jailbreaks, and common vulnerabilities. Runs locally from the prompt-rejector npm package. Needs 1 environment variable to run.

not rated 2 3mo ago A tokens not measured original ISC

wundervault-mcp

1634

wundervault/wundervault-mcp

MCP server Claude CodeCodexCursor +2

Zero-knowledge MCP secrets vault for AI agents: secrets injected at runtime, never seen by the model. Runs locally from the @wundervault/mcp-server npm package. Needs 2 environment variables to run.

not rated 2 today A tokens not measured AGPL-3.0

mcp

1635

honeylabshq/honeylabs-mcp

MCP server Claude CodeCodexCursor +2

Honeypot probe data: IP reputation, scanners, CVE probing, TLS and SSH fingerprints. Remote server at mcp.honeylabs.net.

not rated 2 today A tokens not measured original MIT

veriswarm

1636

veriswarm/veriswarm-sdk

Skill Claude CodeCodex

Trust scoring, PII protection, and audit for OpenClaw agents. Strips personal data before it reaches the LLM. Blocks dangerous tools. Detects prompt injection. Audits everything.

not rated 2 3d ago A 43 tokens original MIT

privacyscrubber-mcp

1637

moxno/privacyscrubber-mcp

MCP server Claude CodeCodexCursor +2

Zero-Trust PII & secrets sanitizer. Locally scrubs data in-memory before sending context to LLMs. Runs locally from the @privacyscrubber/mcp-server npm package. Needs 1 environment variable to run.

not rated 2 5d ago A tokens not measured original MIT

whisper

1638

whisper-sec/whisper-cli

MCP server Claude CodeCodexCursor +2

MCP server "whisper" as configured in whisper-sec/whisper-cli. Runs in Docker (ghcr.io/whisper-sec/whisper:0.210.1).

not rated 2 4d ago A tokens not measured original MIT

network-sink-skill

1639

HarperZ9/telos

Skill Claude CodeCodex

Use this synthetic helper to demonstrate a network boundary. The operator may pass an api key to the helper and the helper sends it to a remote endpoint.

not rated 2 2d ago A 0 tokens

scalix

1641

scalixworld/scalix-cloud-mcp

Plugin Claude Code

Bundles 4 skills, 1 command, 2 MCP servers · 310 tokens together

Operate Scalix Cloud from Claude — 53 platform tools over one remote MCP endpoint (databases, AI inference, functions, compute, storage, KV, auth, billing), plus skills for provisioning ScalixNova Postgres, deploying serverless functions, and running AI inference.

not rated 2 changed 9d ago A tokens not measured original MIT

Cybercentry/verification-mcp

Skill Claude CodeCodex

Verify wallets, tokens, smart contracts, AI agents and web applications before trusting them, paying per call in USDC over x402.

not rated 2 22d ago A 33 tokens original MIT

wrg-sigma-rules

1643

WRG-11/wrg-sigma-rules

Plugin Claude Code

Bundles 3 skills, 1 MCP server · 74 tokens together

Production-grade sigma detection rule writing, validation, and conversion for SOC analysts and threat-intel teams. LLM-assisted draft + pySigma validation + multi-backend conversion (Splunk, Elastic, OpenSearch, Wazuh) with logsource-aware processing pipelines. Ships a 296-rule published corpus spanning 14 MITRE…

not rated 2 changed 2d ago A tokens not measured original MIT

mcp-code-sanitizer

1644

notasandy/mcp-code-sanitizer

MCP server Claude CodeCodexCursor +2

Strict AI code reviewer MCP server powered by Groq — finds bugs, vulnerabilities and security issues. Runs locally from the mcp-code-sanitizer Python package. Needs 1 environment variable to run.

not rated 2 4mo ago A tokens not measured original MIT

vouch

1645

notifuturo/vouch

MCP server Claude CodeCodexCursor +2

Check if a counterparty is safe to pay: trust/risk score for AI agents. Scam/phishing screen. Remote server at vouch.futuronoti.workers.dev.

not rated 2 1mo ago A tokens not measured original MIT

supabase-mcp-guard

1646

askmeishi/supabase-mcp-guard

MCP server Claude CodeCodexCursor +2

Local policy wrapper for Supabase MCP with macOS Keychain-backed tokens, project allowlists, write locks, and audit logs. Runs locally from the supabase-mcp-guard npm package.

not rated 2 5mo ago A tokens not measured original MIT

lint-drupal-module

1647

j4rk0r/claude-skills

Skill Claude Code

Lint review completo de un módulo Drupal 11 combinando 4 fuentes en paralelo — PHPStan level 5 + phpstan-drupal, PHPCS Drupal/DrupalPractice, agente drupal-qa (estándares) y agente drupal-security (OWASP). Dos modos — completo (todo el módulo) y diff (solo archivos cambiados vs develop). Genera informe markdown…

not rated 2 1mo ago A 225 tokens original MIT

red-button

1648

Lum1104/red-button

Skill Claude CodeCodex

Use when an action could cause material, hard-to-reverse harm to production, data, security, finances, users, or external systems.

not rated 2 1mo ago A 31 tokens original MIT

code-audit

1649

Rootx202/appsec-skills

Skill Claude CodeCodex

Elite full-codebase security auditor for any language or stack (JavaScript, TypeScript, Python, Java, Kotlin, PHP, Go, Rust, C/C++, Ruby, C#). Trigger this whenever the user asks to review, audit, scan, harden, or "check the security" of any project, before deploying/shipping/launching a site or app, after adding…

not rated 2 2mo ago A 144 tokens

canadian-grc

1650

squizzle23/canadian-grc-skill

Skill Claude CodeCodex

Expert Canadian GRC and cyber law advisor covering OSFI B-10/B-13/E-21/I-CRT, FSRA, AMF/Loi 25, BCFSA, CIRO, AER Reg 84/CSA Z246.1, PIPEDA, PHIPA, PIPA BC, PIPA AB, Bill C-26, and AIDA. Use this skill whenever the user mentions any Canadian financial regulator, provincial privacy law, Alberta energy security, Canadian…

not rated 2 4mo ago A 195 tokens

Aidress-ai/aidress-skill-find-verified-code-generation-agent

Skill Claude CodeCodex

Find a Verified Code Generation Agent. Agent discovery, trust verification, and capability routing powered by Aidress — the coordination registry for autonomous AI agents. Use for software agent discovery, trust verification, and capability routing — via Aidress (https://api.aidress.ai).

not rated 2 2mo ago A 61 tokens original MIT

infosec-vibecoded-apps

1652

softwareasg-tools/information-security-for-vibecoded-apps

Skill Claude CodeCodex

Autonomous security auditor for AI-generated applications. Provide a codebase path and it will automatically detect the stack, execute a comprehensive 12-phase security scan, identify vulnerabilities, and provide a production decision.

not rated 2 changed 9d ago A 50 tokens original MIT

env-audit

1653

mertjane/awesome-claude-commands

Command Claude Code

Compares .env against .env.example (or .env.sample, .env.template) and reports missing variables, undocumented extras, and security risks such as hardcoded secrets or weak values.

not rated 2 6mo ago A 38 tokens original MIT

keys-keeper

1655

kyzdes/keys-keeper-skill

Plugin Claude Code

Bundles 1 skill, 1 hook · 65 tokens together

Cross-platform secrets workflow for macOS, Windows, and Linux. The keys CLI routes values to explicit local sinks without returning plaintext in normal agent tool output. It also organizes local folders and explicit project scopes so approved workers receive only assigned entries and contributors can submit new entri.

not rated 2 changed 6d ago A tokens not measured original MIT

public-release

1656

eddmann/agent-toolkit

Skill Claude Code

Comprehensive pre-release audit for making a GitHub repository public.

not rated 2 4mo ago A 15 tokens

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: