25,251 mods in this category, of every kind an
agent can take. Each one carries what it costs per session, what the
scan found, and whether it is the original.
Screen names against the consolidated OFAC, EU, UK, and UN sanctions lists and resolve legal entities against GLEIF, fuzzy-matched offline over a local SQLite + FTS5 mirror. A screening aid, not a compliance determination.
★not rated 1 19d agoA
tokens not measured
originalApache-2.0
MCP server to scan smart contracts on Base for honeypots, rug pulls, and vulnerabilities. Runs locally from the base-security-scanner-mcp npm package. Needs 1 environment variable to run.
A security-focused MCP server for self-hosted n8n Community Edition. Runs locally from the n8n-mcp-community npm package. Needs 4 environment variables to run.
★not rated 1 4d agoA
tokens not measured
originalMIT
Cryptographic truth infrastructure for AI agents: seal, verify, anchor, cite, audit. Runs locally from the apex-psi-mcp npm package. Needs 2 environment variables to run.
MCP tools for x402 payment safety — vet the counterparty (risk score, allow/review/block, spending policy) AND vet the payment itself (buyer-side firewall: routing/drain/injection). Thin client for 402sentinel.com. Runs locally from the @kaditang/402sentinel-mcp npm package. Needs 2 environment variables to run.
QA/QC agent. Reads ALL pipeline artifacts (BA + TechLead + PM + BE + FE + Tester) and produces quality-report.md, compliance-check.md, and sign-off.md. Declares Gate 3: Release Sign-off (advisory only — operator has final authority). Part of the Virtual Team Skill pipeline.
MCP server "awslabs.aws-security-posture-advisor" as configured in timwukp/aws-security-posture-advisor-mcp. Runs locally from the awslabs.aws-security-posture-advisor Python package.
★not rated 1 4mo agoA
tokens not measured
originalApache-2.0
Forces the model to always use the mcp-security demo MCP server tools instead of native capabilities. Use this skill whenever the user is working in the mcp-security project and asks to read files, count lines, write files, check npm packages, inspect npm config, verify registry, or do any file/npm operation. This…
MCP server for autonomous API logic penetration testing — OWASP API Top 10 / BOLA-IDOR detection via LLM-driven analysis. Runs locally from the mcp-api-pentest Python package.
★not rated 1 1mo agoA
tokens not measured
originalMIT
LLM prompt injection firewall with session tracking, explainability and multilingual detection. Runs locally from the promptwall Python package.
★not rated 1 28d agoA
tokens not measured
originalMIT
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: