Security
Identity and security management tools. Enables authentication, data protection, and system monitoring.
MCP ServersBrowse all →
- AlicenseAqualityBmaintenanceAziel Runtime is a node-meshed MCP software orchestration suite for digital forensics, auditing, provenance, research, intelligence-support, and secure agent workflows, with a single gated execution path, compartmentalized engines, verifiable receipts, temporal integrity, and explicit capability refusal. It is not merely an API aggregator or generic tool router.362Apache 2.0

Mission MCPofficial
AlicenseAqualityDmaintenanceTrust Graduation gate for AI agents: visible approval ceremonies and receipt-backed boundaries for consequential actions.4578 npmApache 2.0
AISIX AI Gatewayofficial
AlicenseAqualityAmaintenanceSelf-hosted MCP gateway that registers upstream MCP servers and fronts them behind one governed Streamable HTTP endpoint: per-tool access control by caller API key, guardrails over tool arguments and results, rate limits, and usage logs. The same Rust gateway also proxies LLM and A2A agent traffic.41157Apache 2.0
CTRLRun Approval Consoleofficial
AlicenseAqualityAmaintenanceAnswer CTRLRun approvals from your assistant: list the agent actions waiting on a human, inspect one action's full history, and approve, deny or resolve it, plus read receipts, effects and stats. Reads answer without a credential; the three write tools refuse without one that names a person.489,119 PyPI22Apache 2.0- AlicenseAqualityAmaintenancePolicy proxy that governs what AI assistants can reach and do: it refuses forbidden tool calls before the upstream is contacted, with per-user memory and a tamper-evident audit. Stops prompt-injection exfiltration and forbidden data combinations across connectors.212474 PyPI1Apache 2.0

WhisperGraphofficial
AlicenseAqualityCmaintenanceSelf-hostable MCP server for WhisperGraph — a graph of 7.39B nodes / 39B edges mapping DNS, BGP, GeoIP, WHOIS, and threat intelligence. Six read-only tools (Cypher query + schema introspection + threat assessment), six resources, eight investigation prompts. stdio and Streamable HTTP transports.835 npm1Apache 2.0
Strac MCP DLPofficial
AlicenseAqualityAmaintenanceDetect and redact PII, PHI, PCI and secrets — SSNs, credit cards, passports, API keys and cloud credentials — in text and in local files, using the Strac DLP API. Five tools: redact_text, detect_sensitive_data, detect_file, redact_file and detokenize.57MIT- AlicenseBqualityAmaintenanceGCHQ CyberChef's 504 data-transformation operations as MCP tools — encryption, encoding, compression and forensics — w/ 19 analysis tools for work a single operation cannot express, such as: hash identification, RSA and ECDSA attacks, XOR key-length recovery, cipher solving, X.509 chain validation and NIST post-quantum identification (ML-KEM/ML-DSA/SLH-DSA).823174 npm19GPL 3.0

ZeroPath MCP Serverofficial
AlicenseBqualityDmaintenanceAllows developers to query security findings (SAST issues, secrets, patches) using natural language within AI-assisted tools like Claude Desktop, Cursor, and other MCP-compatible environments.179MIT
@verigent/mcp-serverofficial
AlicenseAqualityBmaintenanceMCP server for Verigent's AI agent verification, enabling agents to verify themselves, check other agents' status, and browse the leaderboard.14578 npmApache 2.0
Fidensa MCP Serverofficial
AlicenseAqualityDmaintenanceEnables AI agents to verify trust scores, search certified capabilities, compare side-by-side, and submit experience reports through Fidensa's certification authority.754 npmMIT
Bitwarden MCP Serverofficial
AlicenseBqualityAmaintenanceEnables AI assistants to securely manage Bitwarden vault items, folders, attachments, and organization administration through the Model Context Protocol.591,718 npm258GPL 3.0
@agledger/mcp-serverofficial
AlicenseAqualityBmaintenanceConnects MCP-compatible AI agents to the AGLedger API for change control, recording every change with signed, hash-chained records. Provides API pass-through tools and an offline audit verifier.371 npm-
Hellō Admin MCP Serverofficial
AlicenseAqualityDmaintenanceEnables AI assistants to create and manage Hellō applications with full developer context, supporting app creation, updates, secret generation, and logo management through a single unified tool.133 npm4MIT
a202-mcpofficial
AlicenseAqualityBmaintenanceOfficial reference MCP server for A202, the Verifiable Agreement Protocol for Agent-Led Commerce. Gives an agent the seven capabilities two organisations need to buy and sell directly: issue a mandate, check what an agent may do under it, approve an act needing a person, form an agreement, exchange obligations, verify a record by replay, and read the transaction record back.74Apache 2.0
PatrowlIntelMCPofficial
AlicenseAqualityCmaintenanceExposes PatrowlIntel vulnerability intelligence (CVEs, EPSS, CISA KEV, public exploits, trending attacks) via MCP tools like search_cves, get_cve, and list_trending_attacks.32MIT
pageguard-mcpofficial
AlicenseAqualityFmaintenanceScan any project or website for privacy compliance issues directly in your AI coding tool. Detects tracking tech, cookies, and third-party data collection. Works in Claude Code, Cursor, and Windsurf.329 npm1MIT- AlicenseAqualityBmaintenanceEnables MCP-capable agents to create and invoke OpenServerless endpoints, manage secrets, and configure integrations such as S3, PostgreSQL, Redis, Milvus, and MongoDB.13Apache 2.0

delentia-sovereignofficial
AlicenseAqualityAmaintenanceConnects autonomous AI agents and IDEs to the Delentia Sovereign Edge Network, providing deterministic security gating, structured reasoning, context compression, and swarm coordination tools.5247 npmApache 2.0- AlicenseAqualityDmaintenanceExposes the Agent Policy Router (APR) as MCP tools, allowing any MCP-compatible AI agent to gate its actions through compliance policies before execution.12MIT
- AlicenseAqualityCmaintenanceEmail validation MCP server using MailboxValidator API to determine validity of an email address.320 npm1MIT

Symbiotic MCP Serverofficial
AlicenseAqualityDmaintenanceEnables security analysis of code and infrastructure files via MCP, using Symbiotic CLI for scanning vulnerabilities.4MIT
AgentAuditofficial
AlicenseAqualityDmaintenanceEnables AI agents to scan MCP servers and AI packages for vulnerabilities, prompt injection, and supply chain attacks.716 npmAGPL 3.0
@guardbee/mcp-db-gatewayofficial
AlicenseAqualityFmaintenanceEnables LLMs to safely query databases through a secure gateway that masks PII, enforces role-based table access, rate limits requests, and logs all queries, with Prisma support.4119 npmMIT- AlicenseAqualityCmaintenanceKaspersky OpenTIP Model Context Protocol Server. This server gives access to Kaspersky OpenTIP API to agentic applications.626Apache 2.0

crowdsec-local-mcpofficial
AlicenseBqualityCmaintenanceGenerates, validates, and deploys CrowdSec WAF rules and scenarios through natural language.2422MIT
Precogly MCPofficial
AlicenseAqualityBmaintenanceMCP server for Precogly threat modeling, enabling users to integrate threat modeling capabilities into AI assistants.1Apache 2.0- AlicenseAqualityCmaintenanceProtects AI agents from prompt injection and destructive actions while enabling self-improving prompts through a security pipeline.1050 npmMIT

@attestd/mcpofficial
AlicenseAqualityBmaintenanceEnables checking of package vulnerabilities and supply-chain risks using Attestd API. Supports single and batch checks, CVE details, and covered products listing.441 npmMIT- AlicenseBqualityAmaintenanceProvides redacted access to a private local knowledgebase for coding agents, allowing them to inspect files while hiding sensitive names and identifiers.141427 PyPI1MIT
MCP ConnectorsBrowse all →
Pre-trade token safety check for AI agents. Simulates a sell before you buy, then returns one low/medium/high/unknown verdict with the signals behind it: sellability, buy/sell tax, liquidity depth, pair age, same-ticker impersonation, owner powers from bytecode. Ethereum, BSC, Base, Solana. Fail-closed - a check that cannot run answers unknown, never low. Publishes its own measured error rate with the benchmark harness in the repo. Free, no signup, no API key, MIT.
Secure MCP Server for WordPress connects AI assistants and agents to WordPress with secure, controlled access. It lets AI interact with WordPress through MCP while helping organizations manage access, enforce policies, protect non-human identities (NHI), and require human approval for sensitive actions. Use it to securely connect tools such as ChatGPT, Claude, and Cursor with WordPress. Marketplace Link: https://wordpress.org/plugins/miniorange-secure-mcp-server/ Official website: https://plugins.miniorange.com/mcp-server-ai-policy-enforcement-wordpress ChatGpt Marketplace: https://chatgpt.com/plugins/plugin_asdk_app_6a312802286c8191bad0a7278a4e53ef Claude Marketplace: https://claude.ai/directory/miniorange-mcp-for-wordpress Cursor Marketplace: https://cursor.com/marketplace/miniorange
STIX indicators, CVE lookups/search w/ EPSS/CISA KEV, ATT&CK dossiers, alerts & subs.
Inspect one endpoint's served certificate, expiry, hostname coverage, and accepted TLS versions.
Magery Forge is a security-audit engine for people who ship code fast and don't have a security team. Use cases: • Pre-release security check • Weekly automated security monitoring • Agent-driven security scanning (MCP) • Clearing a shipped product of common vulnerabilities before users hit them
Email security and AI discoverability scores for any domain, with the exact record or tag to fix.
Agent permissions for the files your team shares
Scan text, documents, websites, and MCP metadata for prompt injection and sensitive-data risks.
Global business entity verification, sanctions screening (OFAC/UN/EU/UK HMT), UBO mapping, and jurisdiction risk scoring for AI agents. Pay per call in crypto (USDT/USDC/BTC/ETH). Built by ARM Consultancy LLC, UAE.
Scan code for quantum-vulnerable cryptography and get NIST post-quantum migration guidance.
MCP Server for the Assinafy digital signature API. A digital signature platform for Brazil.
Live BGP routing table and registry lookups: IP origin, ASN prefixes, transit, org search.
Scan, fix, verify and monitor DNS: SPF, DMARC, DKIM, propagation, health, expiry. Validated fixes.
Fraud and abuse detection for SaaS: investigate scored identities, triage escalations, tune rules.
Pre-execution policy gate for consequential agent actions with durable trust receipts.
Smart contract security screening for Base. Check any contract or token for risk before interacting with it: Solidity source verification, upgradeable proxies and admin or mint powers, holder concentration, dangerous selectors, and B20 issuer powers. It surfaces the usual rug pull and scam indicators. The free tool needs no wallet and no API key; the paid Flash Audit (3.49 USDC over x402) returns a report with an anchored SHA-256. Payment is the only gate.
Governance firewall for autonomous AI agents. Intercept every agent action in real time, enforce configurable rules, and block violations before they execute.
The PropelAuth Integration MCP Server helps you and your favorite AI agent integrate PropelAuth as quickly and easily as possible into your project. Whether you're integrating PropelAuth into your Next.js project or your FastAPI backend, the Integration MCP Server will ensure your AI agent has the best context possible for a successful integration.
Protects AI coding agents from installing malicious open source packages. Every npm and PyPI package is checked against SafeDep’s real-time threat intelligence before installation.
Trust gate for AI agents: multi-model adversarial consensus, signed and verifiable verdicts.