- Conduid
- Marketplace
- #security
MCP servers tagged security
1.4K live MCP servers tagged "security", ranked by trust score. Tags come from package metadata and repository topics, so this list covers servers across every category that work with security.
io.github.rijul170/sophos-central-mcp
MCP server for Sophos Central — endpoint security, XDR/MDR, and MSSP multi-tenant ops
io.github.atomno-mcp/mcp-erid
Russian ad marking (38-FZ) checker: erid validation, ad-page audit, compliance hints.
com.md-log/md-log-mcp
md-log MCP: save/update/fetch markdown by path (stdio + remote HTTP, PAT auth).
Raziel
MCP server teaching AI agents to implement TideCloak: auth, E2EE, IGA, security analysis
Identity AIops
Governed Keycloak + authentik identity ops: users, events, clients, MFA, RCA. 27 tools.
io.github.VBlackJack/datacron
Local-first MCP server that exposes a Markdown vault through MCP.
io.github.threadlinqs-cmd/intelthreadlinqs-mcp
Threadlinqs threat-intelligence MCP — 49 tools: threats, detections, IOCs, actors, C2, MITRE, CVEs
Trustcard
The "npm audit" for MCP servers — a public trust card for every Model Context Protocol server.
Warden Gateway
Warden — an open-source MCP gateway. A control plane for AI tool access: security screening and observability for Model Context Protocol servers.
io.github.dir-ai/voyager-net
A safe, read-only, authorized audit of one host you own: DNS, ports, TLS, HTTP hygiene.
Netallion MCP Lite
Local secret & credential checks for AI-assisted dev — runs on your machine, results redacted.
com.threadlinqs/intelthreadlinqs-mcp
Threadlinqs threat-intelligence MCP — 49 tools: threats, detections, IOCs, actors, C2, MITRE, CVEs
io.github.gopalrajsuresh/covalent-bond
Peer-to-peer, end-to-end-encrypted collaboration channel for AI coding agents over MCP.
Obsidian Everywhere
Graph-native MCP server for reading, navigating, and safely editing Obsidian vaults.
io.github.jyswee/secretcarousel
Agent-first secrets vault. Store, rotate, and share credentials from chat. 14 tools.
Molpha MCP
MCP server that lets AI agents create, fetch, verify, and publish Molpha oracle data.
ScriptDocs MCP
Real, live npm/PyPI docs and OSV.dev vulnerability data for AI coding agents. No fake data.
AI2Human
Dispatch human-execution tasks with proof verification, local checks, and compliance reviews.
io.github.bitterdev/enpass-mcp
MCP server for Enpass vaults: entries, passwords and TOTP/2FA codes, keychain-backed.
io.github.ipezygj/agent-guard
Safety checks an agent runs before it acts: package malware, destructive command, secret leak.
Oauthlint
Model Context Protocol server for OAuthLint. Lets AI coding tools scan their own generated OAuth/OIDC/JWT/session/CORS code for the anti-patterns OAuthLint catches, in-loop.
Vinctor MCP Pep
Vinctor MCP enforcement proxy (PEP): a stdio MCP proxy that authorizes every tools/call via Vinctor delegated enforcement before forwarding it to the real server.
Security Proxy CLI
Deny-by-default local stdio proxy and policy inspection CLI for MCP servers.
Toolgate
Policy, approval, redaction, timeout, and audit middleware for MCP server tools.
Yagami AI Context Firewall
Govern model, retrieval, memory, and tool access for AI applications and agents.
DataCharter
Local-first, contract-governed data explorer with read-only, PII-masked query tools for AI agents.
ai.vanticlabs/vantic
Verify an AI agent's payment authority: signed mandates, allowlists, and tamper-proof receipts.
The Bot Wire
40 real-time data wires for AI agents: SEC, courts, Fed, FDA, CVEs. Pay-per-call, no API key.
io.github.aryanspv/har-forensics-mcp
Audit a .har capture: third-party risk, leaked credentials, JWT checks, redaction. No network calls.
Security Lab
MCP Security Lab — MCP Verifier: evidence-first, deterministic security checks for local and remote Model Context Protocol servers, with optional Claude-powered remediation.
Sealpin
A supply-chain and prompt-injection scanner for MCP (Model Context Protocol) servers.
Governance Proxy
Intutic MCP Governance Proxy — transparent stdio proxy that intercepts all tools/call JSON-RPC messages and applies workspace SOP policy before forwarding to real MCP servers
Folderforge
FolderForge - the all-in-one MCP-native local development control plane for AI coding agents.
Gateco
Permission-aware retrieval for AI systems: policy-enforced access to organizational knowledge.
io.github.dingdawg/agent-spend-policy-mcp
Local agent spend-policy checks. No funds, keys, payment authority, or network access.
AIShield Security Scanner
Scans MCP servers for tool poisoning, prompt injection and supply chain risks.
io.github.lucaslubi/fidacy-mcp
Action firewall for AI agents: blocks the wrong action before it runs, every verdict Ed25519-signed.
io.github.gambadio/onepassword-agent-mcp
Local MCP access to approved 1Password fields without exposing plaintext secrets to AI agents.
io.github.jyswee/sslwebsites
SSL certificate management for coding agents. Issue, renew, monitor certs. 10 tools stdio.
dev.1pass/logi
logi (1pass) IdP — manage your OAuth apps, redirect URIs, passkeys, login history and docs.
Bruno MCP Studio
Author, read and run Bruno API collections over HTTP, gRPC and WebSocket.
io.imaginevid/imaginevid-ai-generation
OAuth-protected ImagineVid MCP for image, video, and music generation.
Sigilctl
Verifiable authorization receipts for AI agents. Prove what your agents were allowed to do — and what they were denied.
Border Patrol
A policy-enforcing MCP gateway: one MCP server that proxies all your others and blocks dangerous tool calls
Repomri
A zero-dependency MRI scan for your AI coding agent attack surface.
Agent Config Audit
Security auditor for AI agent configurations — scans MCP servers, Claude Code settings, agents, skills and hooks for risky permissions, inline secrets, unpinned supply chains and…
Slaunt
Privacy-first MCP agent access auditor for Claude and Codex
Exogram Authority Runtime
Model Context Protocol server for the Exogram Authority Runtime.
io.github.arthurpanhku/dvalincode
Deterministic security scanning that needs no model or API key, plus governed coding tasks.
BT Ops MCP
Secure MCP server for BT Panel operations with scoped permissions and audited writes.