Security & Testing MCP Servers

MCP servers for security scanning, vulnerability testing, secrets management and QA automation. Each entry is scanned with the deterministic Capability-Flow Trust Model — grades are computed, never self-reported.

Figma Mcp Complete npm
B
figma-mcp-complete

Figma to Code MCP + Pixel Perfect Validation - Export Figma designs as ready-to-use HTML/CSS with pixel-perfect accuracy validation

Security & Testing Score 87/100 2 findings 14/wk Cap. High
Zephyr npm
B
zephyr-mcp

Security scan results for the Zephyr MCP server.

Security & Testing Score 87/100 0 findings 14/wk Cap. Minimal
Det Acp Core npm
B
@det-acp/core

Agent Governance Gateway — bounded, auditable, session-aware control for AI agents with MCP proxy, shell proxy, and HTTP API

Security & Testing Score 87/100 7 findings 13/wk Cap. High
Manos npm
B
manos-mcp

A CLI MCP server for ad-hoc UI testing of Android & iOS apps — a tight act+observe loop, device-condition control, log/crash & network capture, OCR targeting, accessibility audits, and session recording that exports a replayable flow.

Security & Testing Score 87/100 11 findings 13/wk Cap. High
Npm npm
B
npm-mcp-server

npm mcp server

Security & Testing Score 87/100 0 findings 12/wk Cap. Minimal
Adb npm
B
mcp-server-adb

Security scan results for the Adb MCP server.

Security & Testing Score 87/100 0 findings 11/wk Cap. Minimal
Guard 2 implementations
B
best: mcp-guard

Secure sandbox with limited permissions to host your MCP servers

Security & Testing Best score 87/100 0 findings 11/wk Cap. Minimal
React Native npm
B
react-native-mcp

Security scan results for the React Native MCP server.

Security & Testing Score 87/100 0 findings 10/wk Cap. Minimal
Wcag npm
B
wcag-mcp

MCP server that enables AI models and agents to review your Figma component design node for all applicable WCAG success criteria and levels.

Security & Testing Score 87/100 0 findings 2/wk Cap. Minimal
General Coding Tools npm
B
general-coding-tools-mcp

Security scan results for the General Coding Tools MCP server.

Security & Testing Score 87/100 0 findings Cap. Minimal
Kali Defense npm
B
kali-defense-mcp-server

Security scan results for the Kali Defense MCP server.

Security & Testing Score 87/100 0 findings Cap. Minimal
Ssh Tool npm
B
mcp-ssh-tool

Security scan results for the Ssh Tool MCP server.

Security & Testing Score 87/100 0 findings Cap. Minimal
Viewpo npm
B
viewpo-mcp

Security scan results for the Viewpo MCP server.

Security & Testing Score 87/100 0 findings Cap. Minimal
Janee npm
B
@true-and-useful/janee

Secrets management for AI agents via MCP

Security & Testing Score 86/100 9 findings 197/wk Cap. High
Atest Mcp Server Launcher npm
B
atest-mcp-server-launcher

Auto-download & launch https://github.com/LinuxSuRen/atest-mcp-server

Security & Testing Score 86/100 2 findings 89/wk Cap. High
Ratio Mcp Qa Dev npm
B
@ratio-mcp-qa/dev-server

> MCP server exposing 33 individually-callable tools that cover the full Ratio app-creation lifecycle. QA environment.

Security & Testing Score 86/100 4 findings 52/wk Cap. High
Agentaudit npm
B
agentaudit

Security scanner for AI agent packages — CLI + MCP server

Security & Testing Score 86/100 6 findings 29/wk Cap. High
Homelab npm
B
homelab-mcp-server

Tiered MCP server for Proxmox — least-privilege by default, every write backed up and revertible, fully audited

Security & Testing Score 86/100 8 findings 14/wk Cap. High
Vps Ops npm
B
vps-ops-mcp

Safe, structured MCP server for VPS ops over SSH — nginx, PM2, SSL, UFW, fail2ban. Read-only by default. Don't give your AI raw root SSH.

Security & Testing Score 86/100 3 findings 14/wk Cap. High
Qa Client 2 implementations
B
best: @livituy/mcp-qa-client

Cliente MCP TestRail + Jira para QAs; el template de Cursor incluye también el MCP de Playwright (@playwright/mcp). Instalable con npm; configuración directa en mcp.json (env) sin .env manual.

Security & Testing Best score 86/100 3 findings 12/wk Cap. High
Connect npm
B
@frogeye/connect

Connect Claude to the Frogeye security knowledge graph in one command

Security & Testing Score 86/100 2 findings 11/wk Cap. High
Proofscan Source verified npm
B
proofscan

MCP Server scanner - eliminate black boxes by capturing JSON-RPC from connection to tools/list

Security & Testing Score 85/100 10 findings 14/wk Cap. High
Mcpfusion Core npm
B
@mcpfusion/core

MVA (Model-View-Agent) framework for the Model Context Protocol. Structured perception packages with Presenters, cognitive guardrails, self-healing errors, action consolidation, and tRPC-style type safety — so AI agents perceive and act on your data det

Security & Testing Score 84/100 14 findings 1.2k/wk Cap. High
Protect npm
B
protect-mcp

Fail-closed Cedar policy gate + Ed25519 signed receipts for AI agent tool calls. Denies on any policy error, proves the gate is live with a startup self-test, and turns every decision into a local searchable record you own. The open gate behind Legate by

Security & Testing Score 84/100 22 findings 693/wk Cap. High