Search
cisco-ai-skill-scanner
Cisco
Security scanner for Agent Skills packages - Detects prompt injection, data exfiltration, and malicious code
nullsec-modelaudit
bad-antics <[email protected]>
ML model security auditing — pickle exploit detection, integrity checks, OWASP ML Top 10
MCPScan
sahiloj
Offensive MCP server auditor — detects tool poisoning, credential leaks, RCE vectors, SSRF, session hijacking, and supply chain vulnerabilities across stdio, HTTP, and SSE transports.
...more@bonhomie/api-shield
bonhomie95
A modern Node.js API utility toolkit: rate limiter, fingerprinting, validators, caching, logger, error handler, and cron helpers.
...more@waftester/cli
qandil
WAFtester — the most comprehensive WAF testing CLI & MCP server
basesec
tavotsu
SAST CLI tool for detecting vulnerabilities in Node.js backends
autoremediator
GitHub Actions
Risk-aware CVE remediation for Node.js with agentic MCP/OpenAPI integrations, safe upgrade and patch fallback, policy controls, and evidence outputs.
...more@arikernel/adapters
petermanrique101
Framework adapters for AriKernel — protect agents built with LangChain, CrewAI, OpenAI, and more
@guardbee/mcp-unbounded-consumption-auditor
guardbee.ai
MCP server that scans LLM/agent application code for Unbounded Consumption ("denial of wallet") anti-patterns from OWASP LLM Top 10 2026's #6 category: missing output token limits, missing timeouts on hand-rolled LLM HTTP calls, unbounded agent tool-calli
...moredns-security-mcp
Orhan Yildirim
DNS security intelligence MCP server — 104 tools for DNSSEC validation, hijacking detection, tunneling analysis, typosquatting, email security, certificate transparency, blocklist checking, infrastructure audit. 100% local, zero external API calls require
...moreCursor Security Rules
matank001
This repository contains Cursor Security Rules designed to improve the security of both development workflows and AI agent usage within the Cursor environment. These rules aim to enforce safe coding practices, control sensitive operations, and reduce risk in AI-assisted development.
...morengx-security-audit
noredinebahri
The most comprehensive Angular security auditing tool. 150+ rules, 10 scan types (OWASP, API security, performance, accessibility, dependency audit, hacking, complexity, code quality). Auto-fix suggestions, HTML dashboard, SVG badge generation, SARIF expo
...morereact-native-security-suite
navabi
Comprehensive security suite for React Native apps - Root/Jailbreak detection, SSL pinning, encryption, secure storage, screenshot protection, and network monitoring
...moreAgent Integrations
intentframe
IntentFrame security plugin for Hermes Agent (Nous Research) — an external policy checkpoint that gates terminal, code, file, and cron tool calls before they run on your machine.
...moreClaude Security Research Skill
rhysha
AI-powered security research assistant for Claude Code — structured assessment workflows, tool orchestration, and professional reporting across recon, enumeration, vulnerability scanning, and secrets auditing. Built for security researchers and bug bounty hunters who want Claude as an analyst, not a command generator.
...more@kryptosai/mcp-seatbelt
williamweishuhn
Runtime guardrails for AI agent MCP tools. Detect MCP configs, wrap risky servers with a policy proxy, and block dangerous tool calls at runtime.
...moreAegis
Acacian
Credential isolation proxy for AI agents. Injects API keys at the network boundary so your agent never sees the raw credential. Supports domain allowlists, agent auth, policy enforcement, and audit logging.
...moreagentdiscover
Discover every AI agent in your infrastructure. 5-layer detection: static analysis, network monitoring, eBPF/Kubernetes runtime, endpoint, and cloud audit (CloudTrail). Company-level correlation. AIBOM export. MCP server detection.
...moremcp-tenant-isolation
Subodh Kc
Static analysis scanner for MCP server code and multi-tenant SaaS applications. 57 deterministic rules covering tenant isolation, tool visibility, cache key scoping, RLS, IDOR, and credential vault isolation. MCP server for AI agent integration.
...moreio.github.KryptosAI/mcp-observatory
KryptosAI
Regression testing for MCP servers. Checks capabilities, invokes tools, detects schema drift.