Skip to main content
Glama
61,217 servers. Last updated

Matching MCP tools:

Matching MCP Connectors:

"Local" matching MCP servers:

  • A
    license
    -
    quality
    C
    maintenance
    Manual listener MCP server that bridges OpenCode with local security tools via a Flask HTTP service, enabling AI-assisted security operations.
    Last updated
    MIT
  • A
    license
    -
    quality
    B
    maintenance
    Config-driven MCP server that exposes Kali Linux penetration testing tools to AI agents, with automatic tool discovery, man page integration, and local/remote execution modes.
    Last updated
    MIT
  • A
    license
    -
    quality
    F
    maintenance
    Connects AI assistants to HackerOne to pull bug bounty history, program scopes, and report details into a local SQLite database, exposing tools for searching, analyzing, and generating attack briefings using both personal and public disclosed reports.
    Last updated
    325
    MIT
  • A
    license
    -
    quality
    C
    maintenance
    A collection of MCP tools for cybersecurity threat intelligence and local network hacking, integrating APIs like GreyNoise, Malpedia, OpenCTI, and more.
    Last updated
    8
    BSD 2-Clause "Simplified"
  • A
    license
    -
    quality
    A
    maintenance
    Security scanner for MCP servers — vet an MCP before you wire it into an agent. Detects prompt-injection, credential exfiltration (via taint analysis), RCE, and supply-chain risks, and catches cross-server exfil chains no single server reveals. Zero-dependency local CLI, SARIF output, CI-gateable, no account.
    Last updated
    609
    MIT
  • A
    license
    -
    quality
    B
    maintenance
    A local Python MCP server for safe, human-led bug bounty recon, providing lightweight helpers for scope checks, headers, robots.txt, sitemap.xml, JavaScript URL collection, endpoint extraction, URL deduplication, evidence notes, and manual test planning.
    Last updated
    MIT
  • F
    license
    -
    quality
    B
    maintenance
    Exposes a hardened Docker container with Kali Linux security tools (nmap, sqlmap, dig, whois, etc.) as MCP tools, enabling network reconnaissance, web analysis, and vulnerability scanning through natural language commands.
    Last updated
  • A
    license
    A
    quality
    A
    maintenance
    Local-first, zero-egress security scanner for AI-generated / "vibe-coded" JS/TS. Bundles Opengrep, Gitleaks & Trivy behind one CWE-keyed schema and adds AI-code-specific checks (client-side secret exposure, Supabase RLS, prompt-injection & LLM-output XSS sinks). No account, no telemetry.
    Last updated
    6
    187
    17
    MIT