Security

25,251 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

agent-envelope-mcp

2305

BlackBoxEngineering/agent-envelope-mcp

MCP server Claude CodeCodexCursor +2

Neutral MCP server for AgentEnvelope authority: sovereign verify + vault verify/lookup/mint. Runs locally from the agent-envelope-mcp npm package. Needs 1 environment variable to run.

not rated 1 +1 6d ago A tokens not measured original Apache-2.0

sealgate

2306

Edison-Watch/sealgate-mcp

Skill Claude CodeCodex

Govern how AI agents access data through your organisation's Sealgate gateway. Use when you need to list governed MCP servers, review agent session and audit status, or check whether a tool call is allowed by policy.

not rated 1 +1 8d ago A 47 tokens original MIT

mcp

2307

Hookwarden/hookwarden

MCP server Claude CodeCodexCursor +2

Webhook signature-verification audit. Stripe, GitHub, Shopify, Twilio +17. Local. Deterministic. Runs locally from the @hookwarden/mcp npm package.

not rated 1 26d ago A tokens not measured original Apache-2.0

argus3

2308

alexar76/argus

MCP server Claude CodeCodexCursor +2

ARGUS-3 stdio MCP with WARDEN firewall: argusask, argusstatus, arguscapabilities. Runs locally from the @alexar76/argus3 npm package.

not rated 1 yesterday A tokens not measured original MIT

isittrustready

2309

mnemom/mcp

MCP server Claude CodeCodexCursor +2

One of 2 in server.json

Scan any website or MCP server for agent-trust-readiness; returns a signed, verifiable scorecard. Remote server at api.isittrustready.ai.

not rated 1 2d ago A tokens not measured

oakallow-governance

2310

oakallow/oakallow-mcp

Skill Claude CodeCodex

Use this skill when an AI agent needs to act safely through oakallow, the runtime permission, approval, and audit layer for AI agent tool execution. Trigger it whenever you are about to take a tool action that could be risky, irreversible, or that touches another system, and you need to know whether it is allowed…

not rated 1 2mo ago A 205 tokens original MIT

npm-research

2311

ofershap/mcp-server-npm-plus

Skill Claude CodeCodex

Research npm packages with bundle size, vulnerability scanning, and download trends via MCP. Use when comparing or auditing packages.

not rated 1 6mo ago A 27 tokens original MIT

x402-bazaar-mcp

2312

sukrutkrdg/x402-bazaar-mcp

MCP server Claude CodeCodexCursor +2

Base token-safety for agents: the only B20 freeze/seize/rug suite + pre-trade gates, over x402. Runs locally from the x402-bazaar-mcp npm package. Needs 3 environment variables to run.

not rated 1 4d ago A tokens not measured original MIT

cybersec-mcp

2313

xu-c0/cybersec-mcp

MCP server Claude CodeCodexCursor +2

Cybersecurity MCP server: 323 prompts + 7 workflows for red team, blue team, SOC, cloud, OSINT. Runs locally from the @xu-c0/cybersec-mcp npm package.

not rated 1 3mo ago A tokens not measured

threatlocker-mcp

2314

Space-C0wboy/ThreatLocker-MCP

MCP server Claude CodeCodexCursor +2

MCP server for the ThreatLocker Portal API. Runs locally from the threatlocker-mcp Python package.

not rated 1 2mo ago A tokens not measured original MIT

mitmproxy-mcp

2315

Rockheung/mitmproxy-mcp

MCP server Claude CodeCodexCursor +2

MITM proxy manager with MCP integration. Runs locally from the mitmproxy-mcp Python package.

not rated 1 6mo ago A tokens not measured

zeek-mcp

2316

lidless-labs/zeek-mcp

MCP server Claude CodeCodexCursor +2

MCP server for Zeek network analysis framework - query and analyze Zeek logs via AI. Runs locally from the zeek-mcp npm package.

not rated 1 +1 1mo ago A tokens not measured original MIT

mipiti-mcp

2317

Mipiti/mipiti-mcp

MCP server Claude CodeCodexCursor +2

MCP server for Mipiti — AI-powered security posture platform. Runs locally from the mipiti-mcp Python package.

not rated 1 +1 4d ago A tokens not measured

dos-mcp

2318

64kramsystem/dos-mcp

MCP server Claude CodeCodexCursor +2

DOSBox-X control tools for DOS malware analysis. Runs locally from the dos-mcp Python package.

not rated 1 +1 5d ago A tokens not measured original Apache-2.0

kontrol-freek-mcp

2319

berkbayri/kontrol-freek-mcp

MCP server Claude CodeCodexCursor +2

AI assumption firewall for MCP agents — intercepts risky decisions, detects contradictions, and gates human approval via Telegram or Slack. Runs locally from the kontrol-freek-mcp Python package.

not rated 1 5mo ago A tokens not measured

airlock

2320

cjaston/airlock

Skill Claude CodeCodex

Use Airlock before installing or executing packages, running risky shell commands, committing generated code, or declaring an agent task complete. Airlock detects hallucinated/slopsquatted dependencies, destructive commands, leaked secrets, and suspicious test changes.

not rated 1 2mo ago A ✓ AI review 50 tokens original MIT

nullsec-redteam-ai

2321

Panda1847/NullSec-RedTeam-AI

MCP server Claude CodeCodexCursor +2

MCP server "nullsec-redteam-ai" as configured in Panda1847/NullSec-RedTeam-AI. Runs locally from the nullsec-redteam-ai Python package.

not rated 1 26d ago A tokens not measured original MIT

ctf-forensics-plus

2322

cornhub69-x/botduachuot_mcp

Skill Claude CodeCodex

Deep-dive CTF forensics with evidence-first triage: media metadata, PCAP, disk images, and memory images. Use after initial triage when the challenge is a media/pcap/disk/memory artifact and the technique family is uncertain.

not rated 1 +1 22d ago A 0 tokens

mcp2agy-fixer-agent

2323

uziii2208/mcp2agy

Skill Claude CodeCodex

Code Fixer subagent definition for the mcp2agy pipeline. This agent produces minimal, correct, testable fixes for verified security findings. Do NOT use this agent directly — it is invoked by the audit pipeline orchestrator.

not rated 1 14d ago A 54 tokens original MIT

ton-dev-skills

2324

TesseraeVentures/ton-dev-skills

MCP server Claude CodeCodexCursor +2

TON blockchain development toolkit — security scanner, migration engine, MCP server, and CLI. Runs locally from the @tesserae/ton-dev-skills npm package.

not rated 1 6mo ago A tokens not measured original MIT

api-gateway

2325

kalilurrahman/kr-claudiator-skills-original-prompts

Skill Claude Code

Design and configure API gateway architecture covering routing, authentication, rate limiting, request transformation, and observability. Outputs gateway configuration for Kong, AWS API Gateway, or Nginx, with traffic management and security policies.

not rated 1 5mo ago A 47 tokens

ethersflow

2326

Ethersflow/EthersFlow

MCP server Claude CodeCodexCursor +2

Model Context Protocol (MCP) server for EthersFlow — run proposed agent actions through federated adversarial multi-model consensus before executing them. Runs locally from the @ethersflow/mcp-server npm package. Needs 1 environment variable to run.

not rated 1 4d ago A tokens not measured original MIT

whitepact

2327

Guruprasath-Annadurai/Whitepact

Plugin Cursor

Bundles 1 MCP server

AI governance for agent tool calls: trust scoring, PII/harmful-content guardrails, hallucination detection, and compliance checks (NIST AI RMF, EU AI Act, ISO 42001) via 27 read-only MCP tools.

not rated 1 today A tokens not measured original MIT

shield-kya

2328

The-Pixel-Boys/shield-kya

Plugin Cursor

Bundles 1 skill, 1 MCP server · 41 tokens together

Know Your Agent: fail-closed eval (ALLOW | DENY | REQUIREAPPROVE), dual-plane host=ide|runtime, human approval. This plugin is a thin MCP gate — the control plane is the sole PEP.

not rated 1 today A tokens not measured original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: