Security & Testing MCP Servers

MCP servers for security scanning, vulnerability testing, secrets management and QA automation. Each entry is scanned with the deterministic Capability-Flow Trust Model — grades are computed, never self-reported.

Vaultwarden npm
A
mcp-vaultwarden-server

MCP pour interagir avec Vaultwarden via la CLI Bitwarden.

Security & Testing Score 93/100 1 finding 16/wk Cap. High
Vulnerability Checker npm
A
mcp-vulnerability-checker

A modular Model Context Protocol (MCP) server providing comprehensive security vulnerability intelligence tools

Security & Testing Score 93/100 3 findings 16/wk Cap. High
Yubikey npm
A
@ztechlab/mcp-server-yubikey

MCP server that exposes YubiKey management tools to AI agents via the ykman CLI.

Security & Testing Score 93/100 1 finding 16/wk Cap. High
Keywaysh npm
A
@keywaysh/mcp

MCP server for Keyway secrets management - let AI manage your secrets securely

Security & Testing Score 93/100 1 finding 15/wk Cap. High
Lazy Mobile Mcp npm
A
lazy_mobile_mcp

Local MCP server for Android/iOS device automation and performance telemetry (ADB, simctl, devicectl, WDA)

Security & Testing Score 93/100 2 findings 15/wk Cap. High
Loomal npm
A
@loomal/mcp

DEPRECATED — use @mailgent-dev/mcp. Compatibility shim for the Loomal MCP server (Identity infrastructure for AI agents); defaults to api.mailgent.dev.

Security & Testing Score 93/100 1 finding 15/wk Cap. High
Mailgent Dev npm
A
@mailgent-dev/mcp

MCP server for Mailgent — Identity infrastructure for AI agents

Security & Testing Score 93/100 1 finding 15/wk Cap. High
Npm Guardian npm
A
npm-guardian-mcp

Supply-chain security audit for npm packages, as an MCP tool and a pay-per-call x402 endpoint. Cross-references known CVE/GHSA advisories (OSV.dev) and detects typosquatting, malicious install scripts, token/credential exfiltration and other red flags BEF

Security & Testing Score 93/100 20 findings 15/wk Cap. High
Brew npm
A
mcp-brew

Homebrew for MCP — install, configure, and manage Model Context Protocol servers with one command.

Security & Testing Score 93/100 3 findings 14/wk Cap. High
Palizade npm
A
palizade

MCP-native prompt-injection firewall and security proxy.

Security & Testing Score 93/100 3 findings 14/wk Cap. High
Phantom Touch npm
A
phantom-touch

MCP server for iOS simulator automation — with clipboard-based text input that works with React Native

Security & Testing Score 93/100 1 finding 14/wk Cap. High
Playwright Debug npm
A
playwright-debug-mcp

MCP server for frontend debugging with Playwright - Debug web apps with AI assistance

Security & Testing Score 93/100 2 findings 14/wk Cap. High
Risk Audit npm
A
risk-audit-mcp

Risk Audit MCP server that scans projects for security issues (XSS, injections, etc.)

Security & Testing Score 93/100 2 findings 14/wk Cap. High
Saiteja1123 npm
A
@saiteja1123/mcp-server

Vibesecur MCP security scanner — universal account config, multi-project CRU, folder locking, cross-IDE

Security & Testing Score 93/100 7 findings 14/wk Cap. High
Skillsync npm
A
@stranzwersweb2/skillsync-mcp

SkillSync MCP server — search, scan, install & manage Claude Code skills with built-in security scanning and startup verification

Security & Testing Score 93/100 5 findings 14/wk Cap. High
Cmd Explain npm
A
cmd-explain

Explains CLI commands in one sentence. MCP server for AI coding agents.

Security & Testing Score 93/100 4 findings 13/wk Cap. High
Codesecurity npm
A
codesecurity

Secure-coding knowledge base and MCP server for Claude Code, Cursor, GitHub Copilot, Windsurf, OpenAI Codex, and Antigravity

Security & Testing Score 93/100 2 findings 13/wk Cap. High
Security Scanner Ai 2 implementations
A
best: security-scanner-ai-mcp

Security Scanner Ai automation via MCP. Includes scan dependencies, check headers, scan secrets. By MEOK AI Labs.

Security & Testing Best score 93/100 1 finding 13/wk Cap. High
Ling Term npm
A
ling-term-mcp

Ling-term-mcp (灵犀) - AI terminal operations MCP server

Security & Testing Score 93/100 1 finding 12/wk Cap. High
Locklens npm
A
locklens

Audit npm, Yarn, and pnpm lockFiles as both an MCP server and a CLI tool.

Security & Testing Score 93/100 2 findings 12/wk Cap. High
Tracecat Mcp Community npm
A
tracecat-mcp-community

MCP server for Tracecat SOAR platform — 49 tools for workflows, actions, cases, secrets, tables, and more

Security & Testing Score 93/100 1 finding 12/wk Cap. High
Guardrail npm
A
mcp-guardrail

Local-first MCP security inventory and policy scanner — scan MCP configs before agents touch prod data

Security & Testing Score 93/100 5 findings 11/wk Cap. High
Mobile E2e npm
A
@shenyuexin/mobile-e2e-mcp

AI-first Mobile E2E MCP server for Android/iOS/React Native/Flutter

Security & Testing Score 93/100 2 findings 11/wk Cap. High
Skillguard npm
A
skillguard

CLI security scanner for AI Agent Skills (Multi-language support: JavaScript, TypeScript, Python, Java, Go, Ruby, PHP, C/C++, Rust)

Security & Testing Score 93/100 3 findings 11/wk Cap. High