Security

25,251 mods in this category, of every kind an agent can take. Each one carries what it costs per session, what the scan found, and whether it is the original.

symbi

2329

Ezee234/symbi-gemini-cli

Plugin Gemini CLI

Zero-trust AI agent governance for Gemini CLI. Adds ORGA runtime, Cedar policy enforcement, SchemaPin tool verification, and cryptographic audit trails to your development workflow.

not rated 1 yesterday B tokens not measured original Apache-2.0

legitagent

2331

kiruxich/legitAgent

Plugin Cursor

Bundles 8 skills · 340 tokens together

A website checker for common risks under several Russian laws, including personal-data, advertising, and consumer-protection rules. Its results are heuristics, not legal advice.

not rated 1 5d ago A tokens not measured original MIT

72stack-sec

2332

Little-H-lying-flat/72stack-sec

Skill Claude CodeCodex

A Chinese-language workflow for authorized security testing and bug bounty work, where researchers look for and report vulnerabilities in websites, applications, and cloud systems.

not rated 0 changed yesterday A 206 tokens original

twzrd-trust

2333

twzrd-sol/twzrd-trust

Skill Claude CodeCodex

Don't let your agent sign blind. Discover x402 callables then check the seller BEFORE paying. Free resource join (GET /v1/intel/resources) lists listed|live402 claims; free preflight returns a ReadinessCard (allow / warn / block) from the observed Solana x402 corpus. Composes with any x402 payer skill: discover →…

not rated 0 changed today A 345 tokens original MIT

frida-mcp

2334

haochen4748/frida-mcp

MCP server Claude CodeCodexCursor +2

Model Context Protocol implementation for Frida. Runs locally from the frida-mcp Python package.

not rated 0 1mo ago A tokens not measured copy · 100% MIT

agent-rewind

2335

YanhanLi/agent-rewind

MCP server Claude CodeCodexCursor +2

Flight recorder + undo button for AI agents. MCP interception proxy: journals every tool call, snapshots state before destructive actions, holds oversized ones for approval, and gives operators per-action Undo, Rewind-to-T, and a kill switch. Runs locally from the agent-rewind npm package.

not rated 0 1mo ago A tokens not measured original MIT

hayate-mcp

2336

hayatepy/hayate-mcp

MCP server Claude CodeCodexCursor +2

MCP Streamable HTTP for hayate across ASGI and Cloudflare Workers, with OAuth resource-server support. Runs locally from the hayate-mcp Python package.

not rated 0 11d ago A tokens not measured copy · 86% MIT

mcp

2337

realhandles/mcp

MCP server Claude CodeCodexCursor +2

MCP server to look up and cryptographically verify RealHandles identities. Runs locally from the @realhandles/mcp npm package.

not rated 0 25d ago A tokens not measured original MIT

scopegate

2338

NexgenSystemsMX/scopegate

Skill Claude CodeCodex

Use this skill whenever you (the agent) need credentials, API keys, tokens, or access to an MCP/API — or when a connection fails with auth errors. ScopeGate is the credentials gateway: you never handle secret values; you request ephemeral capabilities instead. Also use it to onboard new services ("connect X", "add the…

not rated 0 26d ago A 82 tokens original Apache-2.0

anjian-audit

2339

ck3938700-ship-it/anjian-agent

Skill Claude CodeCodex

Use AnJian MCP tools for an authorization-gated website security assessment and Chinese report.

not rated 0 1mo ago A 23 tokens original MIT

elastic-security-mcp

2340

AndreuCrespo/elastic-security-mcp

MCP server Claude CodeCodexCursor +2

MCP server "elastic-security-mcp" as configured in AndreuCrespo/elastic-security-mcp. Runs locally from the elastic-security-mcp Python package.

not rated 0 1mo ago A tokens not measured original MIT

llmsecurity-mcp

2341

afterdarksys/llmsecurity-mcp

MCP server Claude CodeCodexCursor +2

MCP server "llmsecurity-mcp" as configured in afterdarksys/llmsecurity-mcp. Runs locally from the llmsecurity-mcp Python package.

not rated 0 1mo ago A tokens not measured original MIT

unifi-protect

2342

devjourney/unifi-mcp

Plugin Claude Code

Bundles 3 skills · 197 tokens together

UniFi Protect MCP server — manage security cameras, NVR, recordings, and smart detections.

not rated 0 1mo ago A tokens not measured copy · 86% MIT

gatehouse-mcp

2343

agent-gatehouse/gatehouse-mcp

MCP server Claude CodeCodexCursor +2

The Gatehouse registry as an MCP server: ask an agent-tooling question (is X safe, what's out there, give me the audit) and get Gatehouse's vetted verdict, live. Read-only, no telemetry. Runs locally from the gatehouse-mcp npm package.

not rated 0 1mo ago A tokens not measured original MIT

osf-data-marketplace

2344

onefreeman1337/osf-data-marketplace

MCP server Claude CodeCodexCursor +2

MCP server for OSF, Open Source Filings. Federal debarment and exclusion screening that sanctions APIs do not cover: 259,803 SAM.gov exclusions, HHS OIG LEIE healthcare exclusions, World Bank debarment and Federal Reserve enforcement, screened alongside O. Runs locally from the osf-data-marketplace npm package.

not rated 0 1mo ago A tokens not measured original MIT

cb-analytics-security

2345

celticht32/Enterprise-Analytics-MCP

Skill Claude CodeCodex

Use this skill when the user wants to manage Couchbase users, groups, roles, or check permissions on the cluster — creating service accounts, rotating passwords, granting analytics privileges, or auditing who can do what. Trigger when they mention "user", "group", "role", "RBAC", "permission", "upsertuser"…

not rated 0 1mo ago A 96 tokens original MIT

ElusiveHacker/MCPKaliServer

Skill Claude CodeCodex

Methodology and playbook for authorized cloud, API and web-application penetration testing driven through the MCP Kali Server. Use when the user wants to plan or run a pentest engagement against cloud/API/web targets, perform reconnaissance, service enumeration or exploitation via the Kali MCP tools, or wants guidance…

not rated 0 1mo ago A 101 tokens

pentest-mcp

2347

omamishra8051-source/PenTest-MCP

MCP server Claude CodeCodexCursor +2

MCP server "pentest-mcp" as configured in omamishra8051-source/PenTest-MCP. Runs locally from the pentest-mcp Python package.

not rated 0 1mo ago A tokens not measured

ssh-mcp

2348

aaronckj/ssh-mcp

MCP server Claude CodeCodexCursor +2

MCP server exposing policy-gated, audited SSH access for Linux and Windows hosts via the Model Context Protocol. Runs locally from the ssh-mcp npm package.

not rated 0 1mo ago A tokens not measured copy · 100% MIT

fortigate-mcp-server

2349

humyai99/mcp-fortigate

MCP server Claude CodeCodexCursor +2

MCP server "fortigate-mcp-server" as configured in humyai99/mcp-fortigate. Runs locally from the fortigate-mcp-server Python package.

not rated 0 1mo ago A tokens not measured copy · 100% MIT

connectsecure-mcp

2350

MSPbotsAI/connectsecure-mcp

MCP server Claude CodeCodexCursor +2

MCP server "connectsecure-mcp" as configured in MSPbotsAI/connectsecure-mcp. Runs locally from the connectsecure-mcp Python package.

not rated 0 10d ago A tokens not measured

air-assessments

2351

VericyIO/mcp-air

MCP server Claude CodeCodexCursor +2

MCP server for AIR (AI Responsibly) — run risk assessments from Cursor, Claude Code, VS Code, and other MCP clients. Runs locally from the @thalus-ai/mcp-air npm package.

not rated 0 25d ago A tokens not measured original MIT

henrymbuguakiarie/entra-identity-posture-mcp

MCP server Claude CodeCodexCursor +2

MCP server "entra-identity-posture-mcp" as configured in henrymbuguakiarie/entra-identity-posture-mcp. Runs locally from the entra-identity-posture-mcp Python package.

not rated 0 1mo ago A tokens not measured original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: