Security & Testing MCP Servers

MCP servers for security scanning, vulnerability testing, secrets management and QA automation. Each entry is scanned with the deterministic Capability-Flow Trust Model — grades are computed, never self-reported.

Codex Security Cloud npm
A
codex-security-cloud-mcp

MCP server for the Codex Security Cloud service.

Security & Testing Score 93/100 1 finding 10/wk Cap. High
Repo Seatbelt npm
A
repo-seatbelt

A safety layer for AI coding agents before they touch your repo.

Security & Testing Score 93/100 3 findings 10/wk Cap. High
Shellgate npm
A
shellgate

Secure shell execution for AI agents — MCP server + CLI

Security & Testing Score 93/100 8 findings 10/wk Cap. High
Vibecheck Audit npm
A
vibecheck-audit-mcp

AI-powered security audit MCP server with real-time vulnerability data

Security & Testing Score 93/100 4 findings 10/wk Cap. High
Security Linter npm
A
mcp-security-linter

MCP-SecLint: Static analysis tool for detecting vulnerabilities in MCP server implementations

Security & Testing Score 93/100 1 finding 8/wk Cap. High
Sovr Mcp Proxy npm
A
sovr-mcp-proxy

SOVR MCP Proxy — intercepts MCP tool calls and evaluates them against the unified Policy Engine

Security & Testing Score 93/100 14 findings 8/wk Cap. High
Agent Immune PyPI
A
agent-immune

Adaptive threat intelligence for AI agent security — semantic memory, multi-turn escalation, output scanning, rate limiting, and prompt hardening.

Security & Testing Score 93/100 1 finding Cap. Minimal
Agentmesh PyPI
A
agentmesh-mcp

Multi-agent framework with persistent expert sessions and context isolation — MCP server for Claude Code

Security & Testing Score 93/100 2 findings Cap. High
Air Blackbox PyPI
A
air-blackbox-mcp

MCP server for EU AI Act compliance scanning with GDPR and bias detection - scan, analyze, remediate, and protect AI agent code

Security & Testing Score 93/100 1 finding Cap. High
Bash Vet PyPI
A
bash-vet-mcp

MCP server that vets LLM-emitted shell commands BEFORE execution. Detects rm -rf in chains, current-dir wipes (the chiefofautism 'rm -rf your repo' pattern), find-exec-rm, package-glob removal (including --purge form and trailing globs like python3-*), dd/mkfs/wipefs, chmod 777, curl|bash + wget|sh + base64-decode|bash obfuscation, chained shutdown, git destructive ops. 30 rules / 8 families. Sub-second, local, no API key. Defensive complement to MCPShell/mcp-shell/mcp-bash.

Security & Testing Score 93/100 6 findings Cap. High
Beaker PyPI
A
mcp-beaker

MCP server for Beaker lab automation — system provisioning, job management, distro discovery, and failure diagnosis

Security & Testing Score 93/100 1 finding Cap. High
Blast Scope PyPI
A
blast-scope

Contextual blast-radius scoring for shell commands an AI agent is about to run

Security & Testing Score 93/100 14 findings Cap. High
Clade PyPI
A
clade-mcp

MCP server exposing 29 AI coding skills — autonomous commits, loops, reviews, incident response, and more

Security & Testing Score 93/100 1 finding Cap. High
Cli Bridge PyPI
A
cli-bridge-mcp

Consult a council of AI CLIs (Gemini, GPT, Claude, Mistral, Qwen, Copilot, OpenCode…) from inside any MCP client — free and ban-safe.

Security & Testing Score 93/100 8 findings Cap. High
Code Firewall PyPI
A
code-firewall-mcp

Code similarity firewall - blocks dangerous code patterns before they reach execution tools

Security & Testing Score 93/100 3 findings Cap. High
Coding Ethos PyPI
A
coding-ethos

Policy-as-code enforcement for AI agents with MCP, CEL, Git hooks, SARIF, and static-analysis guardrails.

Security & Testing Score 93/100 2 findings Cap. High
Cruxible PyPI
A
cruxible

Hard state for AI agents: typed, governed, durable state with deterministic queries, governed writes, and receipts.

Security & Testing Score 93/100 10 findings Cap. High
Fleet PyPI
A
fleet-mcp

Model Context Protocol tool for Fleet DM integration

Security & Testing Score 93/100 3 findings Cap. High
For Oscal PyPI
A
mcp-server-for-oscal

AI agent tools for Open Security Controls Assessment Language (OSCAL).

Security & Testing Score 93/100 2 findings Cap. High
Frisk Scan PyPI
A
frisk-scan

Vet AI-agent content (MCP servers, skills, plugins) for malicious code before you install it.

Security & Testing Score 93/100 6 findings Cap. High
Gd Specflow PyPI
A
gd-specflow

SpecFlow MCP Server and CLI — spec-driven AI code generation

Security & Testing Score 93/100 2 findings Cap. High
Honeymcp PyPI
A
honeymcp

Deception middleware for AI agents - detecting data theft and indirect prompt injection in MCP servers

Security & Testing Score 93/100 3 findings Cap. High
Hospital Vuln PyPI
A
hospital-vuln-mcp

Hospital Vulnerability Scanner MCP Server - Security scanning for healthcare systems

Security & Testing Score 93/100 1 finding Cap. High
Ida Pro PyPI
A
ida-pro-mcp

Vibe reversing with IDA Pro

Security & Testing Score 93/100 2 findings Cap. High