Search
io.github.joepangallo/mcp-server-security-audit
Scan websites for security vulnerabilities, headers, TLS, and email security.
ciguard
Jo-Jo98
Static security auditor for CI/CD pipelines โ now with a Model Context Protocol server (`pip install 'ciguard[mcp]'`) exposing scan / scan_repo / explain_rule / diff_baseline / list_rules to Claude Desktop / Claude Code / Cursor. Plus .ciguardignore rationale-required suppression, baseline / delta reports, EOL-aware image checks, GitHub Actions CVE lookups across GitLab CI, GitHub Actions, and Jenkins Pipelines. Pre-commit hook + CIGUARD_MCP_DISABLED enterprise gate.
...morerealwigu/mcp-doctor
[](https://glama.ai/mcp/servers/realwigu/mcp-doctor) ๐ ๐ ๐ ๐ช ๐ง - Zero-config diagnostics for MCP servers. Auto-discovers configs across Claude Code, Cursor, VS Code, Windsurf, and Claude Desktop, then tests connections via JSON-RPC handshake, audits security issues, and benchmarks latency. Also runs as an MCP server itself.
...morelangchain-agentmesh
Imran Siddique <[email protected]>
AgentMesh trust layer integration for LangChain - cryptographic identity and trust-gated tool execution
Palimpsest
JINGQINLIN
Palimpsest is an LLM-assisted semantic code enhancement framework that bridges Ghidra decompilation and CodeQL database construction. It is optimized for IoT device firmware analysis and for generating CodeQL-buildable source code.
...morekoma-gate
kotarokielo
Semantic request filtering and scope control for AI apps.
crimsonguard
the-s-lab
Trust and assurance tool for AI โ apply NIST AI RMF and ISO/IEC 42001 to LLMs and MCP servers.
decoyshield
DecoyShield contributors
Web-layer counter-recon honeypot against agentic LLM attackers โ drops invisible-to-human, visible-to-LLM payloads into your Flask/HTTP responses to halt, stall, or fingerprint AI-driven penetration scans.
...moreKali Pentest
x-glacier
AI agent skill for autonomous penetration testing via Kali Linux โ 199 CLI tools, 15 scenario playbooks, depth-enforced workflows over SSH or Docker. Works with Claude Code, OpenClaw, and Hermes Agent.
...morefc-security
sherwyn
fc security
pyatr
ATR Community
Python engine for Agent Threat Rules (ATR) -- the open detection standard for AI agents (like Sigma, but for prompt injection, tool poisoning, and MCP attacks). 311 rules, Cisco AI Defense shipped, 97.1% garak recall.
...moreAi Runbooks
dandye
No description available
doctreen
candgrmc
Code-first API docs + OpenAPI 3.1 export + integration tests + runtime validation for Node.js. Define routes once with Zod and get docs, runnable flows, 422-on-invalid-request validation, OpenAPI 3.1 export, and schema drift detection for Express, Fastify
...more@stroq/cli
agybay_07
Local action firewall for AI agents: scans what the agent reads, taints the session, blocks dangerous follow-up actions
@vantedge/sentinel
alexandrevantedge
Runtime enforcement layer for AI agent tool calls โ deterministic, no AI in the decision path
Yana AI
yanacuti1121
Personal Agent OS. Deterministic runtime guardrails for AI agents with hooks, policy engine, audit logs, and multi-agent orchestration. Apache 2.0 License
...more@marketnow/trust-gateway
eddyflores100
UTA Trust Gateway รขโฌโ MCP middleware for enforcing trust decisions on agent tool calls
oors-security
viczam
oors security
icoa-cli
icoa
ICOA CLI โ AI-native competition runtime of the International Cyber Olympiad in AI: learn, practise, and compete in AI & cybersecurity from the terminal (AI4CTF ยท CTF4AI ยท CTF4EAI)
...moreeslint-plugin-anti-trojan-source
lirantal_bot
ESLint plugin to detect and stop Trojan Source attacks