Security

24,943 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

skilltotal

1969

pezhik/skilltotal

MCP server Claude CodeCodexCursor +2

AI Component Security Platform — static security analysis for AI components (CLI engine). Runs locally from the skilltotal Python package.

not rated 1 today A tokens not measured original Apache-2.0

mcp-server

1971

marchward/marchward

MCP server Claude CodeCodexCursor +2

Runtime authority for AI agents: credential mediation, spend cap, approval gates, audit log. Runs locally from the @marchward/mcp-server npm package. Needs 2 environment variables to run.

not rated 1 2mo ago A tokens not measured original Apache-2.0

mcp

1972

arcjet/mcp

MCP server Claude CodeCodexCursor +2

An MCP server for Arcjet - the runtime security platform that ships with your AI code. Remote server at api.arcjet.com.

not rated 1 5mo ago A tokens not measured

mcp

1973

ianreboot/safeprompt

MCP server Claude CodeCodexCursor +2

Detect prompt injection, jailbreaks, and code injection in untrusted text before it reaches an LLM. Runs locally from the @safeprompt.dev/mcp npm package. Needs 3 environment variables to run.

not rated 1 4d ago A tokens not measured original MIT

policy-gate

1974

fieldproofhq/policy-gate

MCP server Claude CodeCodexCursor +2

Deterministic allow/requireapproval/deny verdicts for agent actions, before they happen. Remote server at policy-gate.3labsio.workers.dev.

not rated 1 28d ago A tokens not measured original MIT

qeaas-mcp

1975

PeterJasSK/Quantum-research

MCP server Claude CodeCodexCursor +2

QRNG-seeded random bytes, seeds, and ML-KEM-768 keys with signed provenance receipts. Remote server at api.qeaas.eu.

not rated 1 today A tokens not measured

phishunt

1976

0xDanielLopez/phishunt-mcp

MCP server Claude CodeCodexCursor +2

Public phishing feed: suspicious/confirmed phishing URLs detected hourly. No auth, CC0. Remote server at mcp.phishunt.io.

not rated 1 today A tokens not measured original MIT

rubric-protocol

1977

0xsims/rubric-mcp-server

MCP server Claude CodeCodexCursor +2

AI compliance attestation for EU AI Act, SR 11-7, HIPAA. Free local tier, no key required. Runs locally from the @rubric-protocol/mcp-server npm package. Needs 1 environment variable to run.

not rated 1 1mo ago A tokens not measured

agentfence

1978

ANAMIZED/OpenMesha

Skill Claude CodeCodex

Apply OpenMesha two-layer AgentFence (ingest scan + act gate) and HOTL escalation. Use when reviewing untrusted tool output, inbound messages, or irreversible/money-moving actions.

not rated 1 17d ago A 43 tokens

pentagonal-clawd

1979

Pentagonal-ai/pentagonal

Skill Claude CodeCodex

Use when the user asks to create, generate, build, audit, fix, compile, or look up smart contracts and tokens. Pentagonal Clawd is a sovereign smart contract forge and token intelligence platform with AI-powered 8-agent security pen testing across Ethereum, Solana, Polygon, Base, Arbitrum, Optimism, and BSC.

not rated 1 1mo ago A 75 tokens original MIT

vibescan-mcp-server

1980

Aguantar/vibescan-mcp-server

MCP server Claude CodeCodexCursor +2

MCP server for VibeScan — scan projects for leaked secrets and security issues. Runs locally from the vibescan-mcp-server Python package.

not rated 1 5mo ago A tokens not measured original MIT

agentradar

1981

Bichev/agentradar-mcp

MCP server Claude CodeCodexCursor +2

Trust scoring, scam detection, and EAS attestations for ERC-8004 + x402 agents on Base. Runs locally from the @agentradar/mcp npm package. Needs 2 environment variables to run.

not rated 1 2mo ago A tokens not measured original MIT

proofof-ai-mcp

1982

CSOAI-ORG/proofof-ai-mcp

Skill Claude CodeCodex

Digital content verification and deepfake detection. Verify text authenticity, detect AI-generated images, generate blockchain-anchored certificates.

not rated 1 7d ago A 0 tokens original MIT

sbom-cyclonedx-mcp

1983

CSOAI-ORG/sbom-cyclonedx-mcp

MCP server Claude CodeCodexCursor +2

Software Bill of Materials generation + validation in CycloneDX 1.6 and SPDX 2.3 formats. Required by EO 14028 + NIS2 + CRA. Runs locally from the sbom-cyclonedx-mcp Python package.

not rated 1 10d ago A tokens not measured original MIT

iso-42001-ai-mcp

1984

CSOAI-ORG/iso-42001-ai-mcp

MCP server Claude CodeCodexCursor +2

AI-powered iso 42001 ai MCP server for agents. Supports audit management system, assess ai risk, generate policy template. By MEOK AI Labs. Runs locally from the iso-42001-ai-mcp Python package.

not rated 1 9d ago A tokens not measured original MIT

evermint-mcp

1985

EverMint-app/evermint-mcp

MCP server Claude CodeCodexCursor +2

Mint tamper-evident receipts for AI agent actions. The notary layer for agent-to-agent transactions. Runs locally from the evermint-mcp npm package. Needs 1 environment variable to run.

not rated 1 4mo ago A tokens not measured original MIT

hubvibe

1986

Its-fortunatefolly/HubVibe

MCP server Claude CodeCodexCursor +2

Rule-based site audits: accessibility, SEO, security headers, performance. Metered per call. Remote server at hubvibe-io.com.

not rated 2 changed today A tokens not measured

chain-signer

1988

Kevthetech143/chain-signer

MCP server Claude CodeCodexCursor +2

Security suite for AI agents — catch the dangerous thing before it's signed. Preflight an unsigned EVM transaction for drains, inspect EIP-712 signatures for permit-phishing, and gate agent actions by policy. Pairs with any wallet or MCP stack; ships a non-custodial wallet too. Runs locally from the chain-signer…

not rated 1 2mo ago A tokens not measured original MIT

openttt

1989

Helm-Protocol/OpenTTT

MCP server Claude CodeCodexCursor +2

Proof-of-Time attestation — Ed25519-signed timestamps with multi-source corroboration and explicit error bounds. IETF draft-helmprotocol-tttps. Runs locally from the @helm-protocol/ttt-mcp npm package.

not rated 1 1mo ago A tokens not measured

agentseal

1990

JoeyBrar/agentseal-mcp

MCP server Claude CodeCodexCursor +2

Verifiable action logs for AI agents. Every action is recorded in a SHA-256 hash chain. Runs locally from the agentseal-mcp npm package. Needs 1 environment variable to run.

not rated 1 4mo ago A tokens not measured original MIT

OjasKord/url-safety-validator-mcp

MCP server Claude CodeCodexCursor +2

AI URL safety validator: SAFE/SUSPICIOUS/DANGEROUS verdict, trust score, threat intel. Runs locally from the url-safety-validator-mcp npm package. Needs 3 environment variables to run.

not rated 1 6d ago A tokens not measured original MIT

yagami

1992

MatthewTracy/yagami

MCP server Claude CodeCodexCursor +2

Open-source AI context firewall for governed model, retrieval, memory, and tool access. Runs locally from the yagami Python package. Needs 3 environment variables to run.

not rated 1 2d ago A tokens not measured original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: