Security & Testing MCP Servers

MCP servers for security scanning, vulnerability testing, secrets management and QA automation. Each entry is scanned with the deterministic Capability-Flow Trust Model — grades are computed, never self-reported.

Qatouch npm
A
qatouch-mcp-server

MCP Server for software testing, test case management, test execution, and defect tracking.

Security & Testing Score 99/100 0 findings 94/wk Cap. Minimal
Agentradar npm
A
@agentradar/mcp

MCP Server for AgentRadar — AI agent trust scoring and verification (ERC-8004 + EAS, x402-payable)

Security & Testing Score 99/100 0 findings 91/wk Cap. Minimal
Testing Kit npm
A
mcp-testing-kit

The testing library you need to test your MCP servers

Security & Testing Score 99/100 0 findings 91/wk Cap. Minimal
Fidensa npm
A
@fidensa/mcp-server

Fidensa AI certification authority -- MCP server for trust-aware tool selection

Security & Testing Score 99/100 0 findings 90/wk Cap. Minimal
Kinetic Gain npm
A
mcp-kinetic-gain

MCP server and CLI for all eleven Kinetic Gain Protocol Suite specs + DefenseTech 6-pack tooling. One Claude Desktop config, 71 tools (47 spec + 16 implementation-preview + 8 DefenseTech): AEO Protocol, Prompt Provenance, Agent Cards, AI Evidence Format,

Security & Testing Score 99/100 0 findings 88/wk Cap. Minimal
Vault 3 implementations
A
best: @aiwerk/mcp-server-vault

Bitwarden/Vaultwarden MCP server — BYOK vault access with 6 tools, Send-based reveal, TOTP, and safe agent-write

Security & Testing Best score 99/100 0 findings 87/wk Cap. Minimal
Enigmagent npm
A
enigmagent-mcp

Local encrypted vault MCP server. AES-256-GCM + Argon2id. Resolves {{PLACEHOLDER}} secrets at runtime so LLMs never see real API keys. Works with Claude Desktop, Cursor, Continue.dev, Cline, Open WebUI.

Security & Testing Score 99/100 0 findings 84/wk Cap. Minimal
Mockserver npm
A
mockserver-mcp

MCP server for James Bloom MockServer - create expectations, verify requests, and manage mock state

Security & Testing Score 99/100 0 findings 81/wk Cap. Minimal
Quantoracle npm
A
quantoracle-mcp

Grounded quant finance math for AI agents over MCP. LLMs drift 5-30% on Black-Scholes Greeks and silently fail at Kelly, Sharpe, and VaR — this server is deterministic, citation-tested math (Hull, Wilmott, Lopez de Prado). 63 calculators (options pricing,

Security & Testing Score 99/100 0 findings 79/wk Cap. Minimal
Skillssafe npm
A
skillssafe-mcp

MCP server for SkillsSafe — AI agent skill security scanner. Detects prompt injection, credential theft, zero-width character attacks, and ClawHavoc malware. Free, no API key required.

Security & Testing Score 99/100 0 findings 79/wk Cap. Minimal
Zentric Protocol npm
A
zentric-protocol-mcp

Prompt injection detection + PII anonymization MCP server for AI agents, with a signed audit trail. Deterministic verdicts (CLEARED/ANONYMIZED/BLOCKED), 22 signatures, 7 languages. Every request returns a SHA-256-signed audit record — GDPR Art. 30 evidenc

Security & Testing Score 99/100 0 findings 78/wk Cap. Minimal
Ai Context Inspector npm
A
@cocaxcode/ai-context-inspector

Scan, export, and import your AI ecosystem across tools. Discover MCP servers, context files, skills, memories. Export/import between Claude, Cursor, Windsurf, Copilot, Gemini, Codex, OpenCode. CLI + MCP server.

Security & Testing Score 99/100 0 findings 76/wk Cap. Minimal
Mailsink npm
A
@mailsink/mcp

MCP server for MailSink: programmatic temporary email inboxes for AI agents and test automation.

Security & Testing Score 99/100 0 findings 74/wk Cap. Minimal
Agentvet npm
A
@mukundakatta/agentvet-mcp

MCP server for agentvet: validate LLM-generated tool-call args before execution. Returns a typed error with an LLM-friendly retry hint when the args don't match.

Security & Testing Score 99/100 0 findings 72/wk Cap. Minimal
Qtm4j 2 implementations
A
best: qtm4j-mcp-server

MCP (Model Context Protocol) server for QMetry Test Management for Jira Cloud (QTM4J) REST API — exposes test case, cycle, execution, plan, folder, and automation tools.

Security & Testing Best score 99/100 0 findings 72/wk Cap. Minimal
Runtime Guard npm
A
mcp-runtime-guard

Policy-based MCP tool call proxy

Security & Testing Score 99/100 0 findings 71/wk Cap. Minimal
Agentpayxyz npm
A
@agentpayxyz/mcp-server

Model Context Protocol (MCP) server for AgentPay — gives AI assistants the ability to create payment intents, verify settlements, and look up AgentPassports

Security & Testing Score 99/100 0 findings 70/wk Cap. Minimal
Ai Scanner npm
A
ai-scanner-mcp

MCP server for ai-scanner — scan codebases for LLM usage, AI frameworks, and exposed secrets

Security & Testing Score 99/100 0 findings 70/wk Cap. Minimal
Voltanotes npm
A
@voltanotes/mcp

MCP server for Volta Notes — create and read burn-after-read encrypted notes and secrets on the Internet Computer

Security & Testing Score 99/100 0 findings 68/wk Cap. Minimal
Agentseal npm
A
agentseal-mcp

MCP server for AgentSeal — tamper-proof audit trails for AI agents

Security & Testing Score 99/100 0 findings 66/wk Cap. Minimal
Audit Ledger npm
A
audit-ledger-mcp

MCP server that lets Claude, Cursor, LangGraph, and other agents record AI decisions to a tamper-evident ledger.

Security & Testing Score 99/100 0 findings 66/wk Cap. Minimal
Compliance Shield npm
A
compliance-shield-mcp

EU AI Act compliance audit trails and evidence generation for AI agent systems — risk classification, decision logging, gap analysis, and auditor-ready evidence packages

Security & Testing Score 99/100 0 findings 65/wk Cap. Minimal
Visualq npm
A
@visualq/mcp

MCP server for VisualQ — qa profile (44 tools): run_full_audit, VRT/FRT, tracking proof, investigation ladder, rolling health

Security & Testing Score 99/100 0 findings 64/wk Cap. Minimal
Skillproof npm
A
skillproof-mcp

MCP server for SkillProof — ask whether a Claude Code skill was actually tested, and whether it works, before you install it.

Security & Testing Score 99/100 0 findings 63/wk Cap. Minimal