Skip to main content
Glama
21,300 servers. Last updated

MCP tools

MCP Connectors

Popular MCP Servers

  • A
    security
    A
    license
    A
    quality
    Enterprise AI governance layer for spend tracking, runtime guardrails, policy enforcement, and budget limits. Connects Claude, ChatGPT, and any MCP client to ThinkNEO's control plane for SOC2/GDPR/HIPAA compliance monitoring and real-time provider health.
    Last updated
    8
    MIT
    • Apple
    • Linux
  • A
    security
    A
    license
    A
    quality
    Server security auditing (413 checks, 29 categories), production hardening, and fleet management. Supports Hetzner, DigitalOcean, Vultr, and Linode.
    Last updated
    13
    480
    37
    Apache 2.0
  • A
    security
    A
    license
    B
    quality
    MCP server for Vaultwarden/Bitwarden vault management. Enables AI agents to securely create, search, read, and update vault items via the official Bitwarden CLI, with safe-by-default redaction and support for both stdio and SSE transports.
    Last updated
    3
    51
    253
    MIT
  • A
    security
    A
    license
    B
    quality
    Security scanner and trust verification for AI agent tools. Scans GitHub repositories for vulnerabilities and returns signed trust attestations (Ed25519/JWS) with trust-tiered rate limiting recommendations.
    Last updated
    10
    MIT
  • A
    security
    A
    license
    -
    quality
    An MCP server that provides a comprehensive interface to Semgrep, enabling users to scan code for security vulnerabilities, create custom rules, and analyze scan results through the Model Context Protocol.
    Last updated
    6
    645
    MIT
    • Linux
    • Apple
  • A
    security
    A
    license
    -
    quality
    Enables AI assistants to execute malware analysis tools on a REMnux system via Docker, SSH, or local connections. It provides automated file-type analysis, structured tool discovery, and security guardrails for streamlined malware investigation.
    Last updated
    12
    624
    59
    GPL 3.0
  • A
    security
    A
    license
    D
    quality
    Security intelligence API for AI models. CVE lookup with EPSS/KEV, domain recon (DNS, WHOIS, SSL, subdomains, WAF), and code security checks (secrets, injection, headers). 16 tools, no API key required.
    Last updated
    12
    19
    19
    MIT
  • A
    security
    A
    license
    -
    quality
    Converts natural language security requirements into validated Cerbos YAML policies with automated testing and red-team analysis, enabling AI governance with zero-trust guardrails for tool calls, data access, and compliance frameworks.
    Last updated
    5
    3
    Apache 2.0
    • Apple
    • Linux
  • A
    security
    A
    license
    A
    quality
    AI-powered threat verification across 6 channels: phone numbers, URLs, text messages, emails, documents, and QR codes. Analyzes threats against 10M+ intelligence records from FTC, FCC, URLhaus, ThreatFox, and community reports, returning risk scores, verdicts, and detailed signals.
    Last updated
    10
    MIT
  • A
    security
    A
    license
    -
    quality
    Enables security-focused LLM agents like GPT-4.1 and Claude 3 to interact with the urlDNA threat intelligence platform, providing tools for URL scanning, threat detection, and malicious content analysis.
    Last updated
    4
    4
    Apache 2.0
    • Linux
    • Apple
  • A
    security
    A
    license
    A
    quality
    Provides an MCP interface to a full Kali Linux environment running in Docker, enabling AI assistants to execute security tools like nmap, sqlmap, and metasploit. It allows users to start/stop the container, run shell commands, and transfer files for security testing and educational purposes.
    Last updated
    7
    10
    3
    MIT
  • A
    security
    A
    license
    A
    quality
    Zero-knowledge password manager with MCP credential gateway. BIP-39 seed phrase recovery, deterministic passwords, policy-gated AI agent access with scope, rate limits, time windows, and step-up approval. Supports 70+ API key providers with hash-chain audit trail.
    Last updated
    3
    21
    MIT
  • A
    security
    A
    license
    A
    quality
    Create and read burn-after-read encrypted notes. AES-256-GCM E2E encryption with self-destructing URLs for secure credential handoff between users and AI agents.
    Last updated
    2
    MIT
  • A
    security
    A
    license
    -
    quality
    Provides access to ODEI's constitutional knowledge graph, AI safety guardrails, and EVM smart contract auditing tools. It enables users to query structured domain nodes, validate agent actions, and perform security audits directly through an MCP client.
    Last updated
    4
    1
    MIT
  • A
    security
    A
    license
    A
    quality
    Counterparty risk scoring for agentic commerce. Scores wallets, domains, IPs, and companies 0-100 before AI agents transact via x402 micropayments on Base
    Last updated
    1
    MIT
  • A
    security
    A
    license
    -
    quality
    CP server for RAD Security, providing AI-powered security insights for Kubernetes and cloud environments. This server provides tools for querying the Rad Security API and retrieving security findings, reports, runtime data and many more.
    Last updated
    65
    85
    6
    MIT
  • A
    security
    A
    license
    -
    quality
    Allows developers to query security findings (SAST issues, secrets, patches) using natural language within AI-assisted tools like Claude Desktop, Cursor, and other MCP-compatible environments.
    Last updated
    17
    9
    MIT
    • Linux
    • Apple
  • A
    security
    A
    license
    C
    quality
    Blocks dangerous operations: rm -rf, sensitive file access, privilege escalation, and more are denied before execution. Gates risky commands behind human approval (optional): configurable commands require explicit operator sign-off via a web GUI before the agent can proceed. Simulates blast radius: wildcard operations like rm \*.tmp are evaluated against real files before running, and blocked if th
    Last updated
    7
    12
    MIT
  • A
    security
    A
    license
    A
    quality
    Deterministic pre-execution safety certification for autonomous AI agents. Evaluates proposed actions across scope, reversibility, and sensitivity constraints — returns Certified, Warning, Escalate, or Blocked decisions with cryptographic audit trails. 3 tools: certify_action, check_budget, get_certification_history. Built on the QAE Safety Kernel (Rust + PyO3 bindings, pip install qae-safety).
    Last updated
    3
    1
    Apache 2.0
    • Apple
    • Linux
  • A
    security
    A
    license
    -
    quality
    MCP server for https://oathe.ai security audits. Runtime behavioral analysis and security scanner for Ai systems. Check trust scores before installing MCP servers, plugins, or AI agent skills.
    Last updated
    5
    2
    1
    MIT
  • A
    security
    A
    license
    A
    quality
    A security scanner that evaluates installed MCP servers for vulnerabilities by aggregating findings from 16 scanning engines into detailed trust scores. It enables users to scan their local AI agent configurations or specific repository URLs for potential security risks.
    Last updated
    4
    2
    Apache 2.0
  • A
    security
    A
    license
    -
    quality
    Integrates AI safety analysis, red-teaming, and prompt auditing directly into MCP-compatible clients like Claude Desktop and Cursor IDE, allowing real-time analysis of prompts and detection of jailbreak attempts.
    Last updated
    28
    3
    Apache 2.0
  • A
    security
    A
    license
    A
    quality
    MCP security server with 7 tools: command safety check, prompt injection detection (32+ rules, zh+en), PII/sensitive data scanning, file path protection, tool policy enforcement, response auditing, and security status. 8-layer defense, zero dependencies.
    Last updated
    7
    60
    52
    Apache 2.0
  • A
    security
    A
    license
    A
    quality
    Unified MCP safety server that detects prompt injection (75 patterns), scans LLM outputs for leaked secrets/PII, enforces API cost budgets, and creates signed audit trails. Zero ML dependencies, pure Python.
    Last updated
    17
    1
    MIT
  • A
    security
    A
    license
    -
    quality
    A comprehensive security testing MCP server providing 51 tools for penetration testing, network forensics, memory analysis, and vulnerability assessment. It enables automated security audits and technical investigations across web applications, cloud environments, and network captures.
    Last updated
    51
    149
    3
    MIT
  • A
    security
    A
    license
    -
    quality
    A Node.js server implementing Model Context Protocol (MCP) that enables natural language interaction with Binalyze AIR's digital forensics and incident response capabilities.
    Last updated
    100
    161
    7
    MIT
    • Linux
    • Apple
  • A
    security
    A
    license
    -
    quality
    Enables AI assistants to interact with PingOne Advanced Identity Cloud environments through natural language, supporting user management, authentication theme customization, log analysis, and identity data queries with secure OAuth 2.0 authentication.
    Last updated
    20
    17
    2
    Apache 2.0
  • A
    security
    A
    license
    -
    quality
    Enables AI assistants to interact with security data pipelines and map data to the Open Cybersecurity Schema Framework (OCSF) through Tenzir. Provides seamless integration for processing and analyzing cybersecurity data using natural language.
    Last updated
    15
    8
    Apache 2.0
  • A
    security
    A
    license
    -
    quality
    A robust Model Control Protocol server that enables AI agents to access real-time cyber threat intelligence and detailed information about vulnerabilities, threat actors, malware, and other cyber-security entities.
    Last updated
    10
    7
    Apache 2.0
  • A
    security
    A
    license
    A
    quality
    Open-source AWS security scanner with Attack Chains, Breach Cost Estimation, and MCP Server. 47 checks across 15 AWS services. Every finding includes copy-paste remediation (CLI + Terraform) and a dollar-risk estimate with verified source. First free standalone AWS security MCP server - Prowler and Wiz require paid SaaS.
    Last updated
    6
    38
    MIT
  • A
    security
    A
    license
    -
    quality
    A Model Context Protocol (MCP) server for interacting with Joe Sandbox Cloud. This server exposes rich analysis and IOC extraction capabilities from Joe Sandbox and integrates cleanly into any MCP-compatible application (e.g. Claude Desktop, Glama, or custom LLM agents).
    Last updated
    15
    9
    MIT
  • A
    security
    A
    license
    A
    quality
    Acts as a security checkpoint for AI coding agents by intercepting package installations to verify existence, check against CVE databases, and block vulnerable or hallucinated dependencies before they reach your codebase. Provides seven security tools including pre-install gates, full project audits, safe version recommendations, and deep transitive dependency scanning for npm and PyPI packages.
    Last updated
    7
    3
    MIT
  • A
    security
    A
    license
    A
    quality
    It's a safety middleware that can detect and intercept self-harm and criminal intent at 3 stages. It allows developers of chat-based platforms to configure webhook notifications and store encrypted information for prior mitigation of any such cases.
    Last updated
    3
    1
    Apache 2.0
  • A
    security
    A
    license
    A
    quality
    MCP server for offline verification of signed artifacts — receipts, manifests, and audit bundles. MIT licensed, works without accounts or API calls. Tools: self_test, verify_receipt, verify_bundle, explain_artifact.
    Last updated
    4
    154
    2
    Apache 2.0
  • A
    security
    A
    license
    B
    quality
    Security MCP server with 300+ rules for AI-generated code. Scans Next.js, Supabase, Clerk, Stripe, Prisma, Hono, GraphQL and 20+ modules. Zero config, runs locally.
    Last updated
    29
    6,260
    2
    Apache 2.0