Search
@yottameta/yotta-verify
GitHub Actions
YuanXin (元信) — the pre-install security verifier for Agent skills: deterministic static scan (prompt injection + malicious patterns + SKILL.md integrity + permissions) that outputs a verdict and audited badges. Triggers before installing/evaluating any sk
...moreMcpVanguard
provnai
An open-source security proxy and active firewall for the Model Context Protocol (MCP). It acts as a real-time 'Reflex System' between AI agents and their tools, protecting the host system from malicious intent, prompt injection, and data exfiltration.
...moreNsauditor Ai Agent Skill
nsasoft
AI Agent Skill for NSAuditor AI — gives any AI coding agent built-in knowledge of NSAuditor's MCP tools, schemas, plugins, and security audit workflows. Works with Claude Code, Cursor, Windsurf, and any MCP-aware agent.
...more@veriify/mcp
Ovivid Media
Veriify MCP server — scan any website or your localhost dev server for security, accessibility, performance, and dark patterns from inside Claude Code, Cursor, Windsurf, and other AI dev tools. One Product Health Score with evidence for every finding.
...moreClaude Harden Plugin
Calvin-LLC
A codebase hardening plugin that audits your project for security vulnerabilities (OWASP Top 10:2025), debugging gaps, test coverage, robustness issues, and accessibility violations (WCAG 2.2). Works with any language. Compatible with both Claude Code and OpenCode.
...morecloakx
pravinxdev
Cloakx is a secure, lightweight CLI tool to manage your development secrets locally — no cloud, no hassle. Store, retrieve, and manage secrets across projects with encryption and ease. 🔐 Perfect for solo devs, indie hackers, and teams who value speed, si
...moreCybersec Toolkit
26zl
580+ security tools + 860 Claude Code skills, one command. Modular bash installer for Linux & Termux (14 profiles, 18 modules) with an MCP server for AI-assisted ethical hacking — CTF, pentest, bug bounty, DFIR, red & blue team.
...more16-eyes
GitHub Actions
AI-driven security audits — full-repo or diff/PR-scoped — for Claude Code, Gemini CLI, Cursor, and GitHub Copilot. Profiles the repo, designs tailored investigation lenses, runs them, verifies every finding, adversarially reviews high-impact ones. Install
...more@spacetime-os/mcp-server
SpaceTime Industries
Sentinel OS MCP Server — 27 AI agent tools for critical infrastructure security intelligence. Real-time maritime threat detection, vessel tracking, cable risk scoring, dark vessel identification, drone dispatch, space weather monitoring, and autonomous th
...morefivem-audit
matiaspalmac
Claude Code skill for FiveM resource auditing — security, performance, compatibility. Backdoor/RAT detection, supply chain attacks, token grabbers, SQLi, NUI exploitation, state bags. Supports ESX, QBCore, QBox, ox_lib, ND_Core. Optimized for Opus 4.6.
...moreHx0 HawkEye
asaotomo
面向 Chrome/Firefox 的轻量级浏览器安全工作台:集成抓包、拦截改包、重放/Fuzz、敏感信息检测、HawkEye MCP 与浏览器级 Agent。(A lightweight Chrome/Firefox browser security workbench for capture, interception, replay/Fuzz, sensitive-data detection, HawkEye MCP, and browser-level Agent workflows.)
...moretool-result-taint-py
Mukunda Rao Katta <[email protected]>
Track untrusted tool output before it enters prompts or actions. Python port of @mukundakatta/tool-result-taint.
envy
sholladay
Load .env files and environment variables
whynopadlock
richardstevens
Checks for http connections on an https site
airom
AIROM Authors
Python SDK for AIROM — the open-source AI Bill of Materials (AIBOM) scanner
@uploadcare/image-shrink
uploadcare-user
Library for work with Uploadcare image shrink
securevector-sdk-langgraph
SecureVector
SecureVector SDK for LangGraph — brings the local threat monitor's three controls (tool-call permissions, secret/data-leak detection, threat detection) to every LangGraph tool call, with tamper-evident audit logging.
...moreagent-tool-firewall
HariharanT99 <[email protected]>
Human-in-the-loop approval firewall for Python agent tool calls
react-native-screenguard
thongbui
A Native screenshot blocking library for React-Native developer, with background customizable after captured. Screenshot detector are also supported.
...morejson-orm
carlosgalveias
Manipulate json files using common orm language