Search
ringfence
GitHub Actions
Sandbox npm/pnpm/yarn/bun install with bwrap (Linux) or Docker (macOS) to keep secrets in the working directory and host $HOME out of reach of postinstall scripts.
...more@niksbanna/bot-detector
niksbanna
Production-grade client-side bot detection system using signal-based scoring
writetrack
GitHub Actions
Lightweight keystroke telemetry capture for web applications
aws-acl-helper
Brandon Davidson
Squid external ACL helper that allows use of AWS instance metadata
authcov
evan_rolfe
Web app authorization coverage scanning using Chrome headless browser
aegis-trust
GitHub Actions
AI agent data access control — control what agents can see. TypeScript port of aegis-trust PyPI (literal name parity).
ai-secrets
Björn Bethge <[email protected]>
AI-friendly secrets management CLI using OS-native keyring encryption
agent-breaker
"P. Gokul Sree Chandra" <[email protected]>
Chaos Monkey for AI agents
ryze_rate_limiter
ryze43
The official Node.js SDK for the world's fastest distributed rate limiter.
mcp-server-attestation
Matthias Meyer
Library for Ed25519-signed MCP tool manifests, runtime spawn-attestation, default-deny argument sanitizer. Layer-2 mitigation for marketplace-poisoning, CVE-2025-69256, CVE-2025-61591.
...moremcp-warden
vikrantwiz02
Policy enforcement and guardrails for MCP-compatible tool execution.
prompt-guardian
Token risk analysis and audit logging for Claude Code via native hooks
@twin.org/vault-connector-entity-storage
Vault connector implementation using entity storage
azure-resource-graph
Azure Resource Graph
Python client for Azure Resource Graph API with storage encryption analysis
worthless-mcp
oblangatas
MCP server for Worthless split-key API proxy — wraps `uvx worthless mcp`
mcp-rce-guard
Matthias Meyer
v0.1 policy-synthesis (descriptor-only) for MCP-server RCE defense: landlock/sandbox-exec/cgroups-v2 profile builder + CVE-replay predicates + canary tracker + append-only NDJSON audit log. v0.2 adds native enforcement + verified Acra-pattern audit-log si
...more@ai-sdk/gateway
vercel-release-bot
The Gateway provider for the [AI SDK](https://ai-sdk.dev/docs) allows the use of a wide variety of AI models and providers.
...moreio.github.radar989/polarity-mcp
radar989
Real-time threat intelligence lookups and IOC parsing from your self-hosted Polarity instance.
computeid-mcp
ComputeID
ComputeID MCP Server — cryptographic identity for AI agents via Model Context Protocol
@llnvd/openclaw-url-guard
llnvd
OpenClaw plugin for URL allowlisting/blocklisting in web_fetch and web_search tools