Search
@simple-csrf/next
infinity_atom
CSRF protection middleware and components for Next.js applications
supply-chain-attack
awesome31
Scan local package-manager state for known supply-chain attack indicators.
aigov-redact
aigov-redact contributors
PII Redactor for LLM Data — Library + CLI. Redact sensitive data before sending to LLM APIs.
api-rate-shield
rcv83
A smart, flexible API rate limiter for Express/Fastify with sliding window algorithm, in-memory store, and optional Redis support.
...morewabe
palixir
Your backend without vendor lock-in in Typescript
sasy-guard
SASY Labs
SASY policy enforcement runtime for Claude Code (engine + daemon + native hook)
mcps-stdio
proofxhq
MCPS stdio-to-HTTP proxy for MCP servers. Adds ECDSA signing, replay protection, and trust level enforcement to any stdio-based MCP server.
...moreauto-skills-scanner
chilisauce
Scan any AI Agent Skill or MCP server for malware before you install it — the VirusTotal for the Agent ecosystem. Zero deps, 65kB, 8 threat categories.
...morecontextfirewall
Suhaib Bin Younis
A lightweight, developer-friendly firewall for LLM prompts. Prevents sensitive data from reaching AI models.
rate-flex
aayushkedawat
Flexible rate limiting for Node.js - works with Express, Fastify, Koa, NestJS, and any framework
dryinstall
minseok-log
npm supply chain attack defense via execution isolation
ai-jail-sandbox
vandsonfalcao
Sandbox segura para agentes de IA usando Docker
@aegisjsproject/secret-store
shgysk8zer0
Proxy-based wrapper for encrypting and decrypting data over any storage object
@npxray/cli
GitHub Actions
X-ray vision for npx: a deterministic npm package risk profiler and guarded runner.
omgopass
omgovich
A tiny memorable password generator for Node.js and browsers
@wasmagent/mcp-firewall
wasmagent contributors
Runtime firewall for MCP and tool-augmented agents — descriptor integrity, static vetting, per-call policy, taint tracking, consent ledger
...moreesys-watch
Catch secrets and PII before you paste them into ChatGPT, Cursor, Copilot, or any AI tool — locally, zero setup, zero account, nothing ever leaves your machine.
...moremachinaos
trohitg
Open source workflow automation platform with AI agents, React Flow, and n8n-inspired architecture
@boldsec/mcp
sahith59
BoLD MCP server: connect, wire, and verify BoLD live BOLA/IDOR monitoring from your AI editor (Claude, Cursor, Codex). Metadata only; never reaches a verdict.
...more@strata-ai/sdk
pthroweriii
Zero-dependency SDK for Strata — verify the trust score and capability surface of any MCP server