Showing 30 of 242

Sorted by quality
checkmcp
MCP Serverby H129hj
40

Audit any MCP server's security & quality — OWASP MCP Top 10 + explainable 0-100 MCP Score

MCP & Tools / 工具连接器
Network
Scanned
launchtrust
MCP Serverby mustafasalimerek-bit
40

Compliance & security scan for your app: secrets, exposed files, headers, privacy, AI-disclosure.

MCP & Tools / 工具连接器
Safe-ish
Scanned
mcp-server
MCP Serverby blackducksoftware
39

AI-powered security scanning using Black Duck Signal for vulnerability detection.

MCP & Tools / 工具连接器
Network
Scanned
github-actions-audit
MCP Serverby UnbearableDev
39

GitHub Actions workflow security audit - 21 checks: pinning, permissions, secrets, injection.

MCP & Tools / 工具连接器
Shell
Scanned
docker-compose-audit
MCP Serverby UnbearableDev
39

Security audit for docker-compose.yml — 25 checks: secrets, privileges, network, volumes, images.

MCP & Tools / 工具连接器
Safe-ish
Scanned
cisa-kev-mcp
MCP Serverby CSOAI-ORG
39

CISA Known Exploited Vulnerabilities feed + remediation deadlines for US federal + critical infr...

MCP & Tools / 工具连接器
Safe-ish
Scanned
Advertisement
holster-mcp
MCP Serverby nauta-ai
38

Local-first secret scanning, rotation, vault, and audit-log tools for AI agents.

MCP & Tools / 工具连接器
Shell Network
Scanned
code-audit
Claude Codeby mei28
37

Automated code review tool that analyzes code quality, detects bugs, identifies security vulnerabilities, and suggests improvements based on industry best practices

Security / 安全
Safe-ish
Scanned
cybersecurity-ai-mcp
MCP Serverby CSOAI-ORG
37

Cybersecurity Ai MCP server. Tools: classify vulnerability, lookup cve, check security heade...

MCP & Tools / 工具连接器
Shell
Scanned
owasp-agentic-mcp
MCP Serverby CSOAI-ORG
37

OWASP Top 10 for AI Agents security assessment tools. Capabilities: full agent security scan...

MCP & Tools / 工具连接器
Safe-ish
Scanned
meok-dora-tlpt-planner-mcp
MCP Serverby CSOAI-ORG
37

DORA Article 26 Threat-Led Penetration Testing planner — TIBER-EU pathway scoping, white-tea...

MCP & Tools / 工具连接器
Safe-ish
Scanned
ai-ops-mcp
MCP Serverby CSOAI-ORG
37

Ai Ops MCP server. Tools: system health check, check service, security scan. Built by MEOK A...

MCP & Tools / 工具连接器
Shell
Scanned
scenario-sensitivity-generator
Claude Codeby openai
37

Use when turning a public-equity base case, model, thesis, event, or catalyst into scenario skew, sensitivity, breakpoint, and PM action-threshold analysis. Do not use for first-pass model builds, credit-security valuation, or generic planning.

Security / 安全
Safe-ish
Scanned
code-reviewer
Claude Codeby aimskr
37

코드 리뷰, PR 리뷰, 품질 리뷰, 성능 리뷰, code review - Expert at reviewing code for quality, adherence to architectural principles, security, and performance. Use when reviewing PRs, verifying code quality before merge, or auditing implemented features. Do NOT use for initial implementation or debugging.

Coding / 软件开发
Safe-ish
Scanned
freshdeps-mcp
MCP Serverby SolvoHQ
37

Live npm/PyPI dependency-health verdicts so AI agents stop recommending stale or CVE'd packages

MCP & Tools / 工具连接器
Safe-ish
Scanned
dependency-updater-ai-mcp
MCP Serverby CSOAI-ORG
37

Dependency Updater Ai MCP server. Tools: check outdated, suggest updates, security audit. Bu...

MCP & Tools / 工具连接器
Shell
Scanned
laravel-security-audit
Claude Codeby ASoudy
37

Security auditor for Laravel applications. Analyzes code for vulnerabilities, misconfigurations, and insecure practices using OWASP standards and Laravel security best practices.

Security / 安全
Safe-ish
Scanned
mcp-server
MCP Serverby pentesttoolscom
36

MCP server for Pentest-Tools.com: run scans, manage findings and reports via your preffered LLM.

MCP & Tools / 工具连接器
Safe-ish
Scanned
building-threat-actor-profile-from-osint
Claude Codeby HaqiKuy470
36

Build comprehensive threat actor profiles using open-source intelligence (OSINT) techniques to document adversary motivations, capabilities, infrastructure, and TTPs for proactive defense.

Security / 安全
Safe-ish
Scanned
mcp
MCP Serverby Helixar-AI
36

Security tools for AI agents: scan MCP servers, validate HDP delegation chains, audit releases.

MCP & Tools / 工具连接器
Network
Scanned
testing-for-json-web-token-vulnerabilities
Claude Codeby costrict-plugins-repo
36

Test JWT implementations for critical vulnerabilities including algorithm confusion, none algorithm bypass, kid parameter injection, and weak secret exploitation to achieve authentication bypass and privilege escalation.

Security / 安全
Safe-ish
Scanned

This skill covers hardening and securing process historian servers (OSIsoft PI, Honeywell PHD, GE Proficy, AVEVA Historian) in OT environments. It addresses network placement across Purdue levels, access control for historian interfaces, data replication through DMZ using data diodes or PI-to-PI co…

Security / 安全
Safe-ish
Scanned
unified-security
Claude Codeby selimerunkut
36

Unified application security skill for Coding Agent systems like OpenCode. Use when reviewing or writing code that touches authentication, authorization, user input, payments, database access, secrets, deployment, dependencies, or AI/agent workflows. Includes OWASP Top 10 (2025), ASVS 5.0 highlight…

Coding / 软件开发
Safe-ish
Scanned
testing-for-xxe-injection-vulnerabilities
Claude Codeby yanacuti1121
36

Discovering and exploiting XML External Entity injection vulnerabilities to read server files, perform SSRF, and exfiltrate data during authorized penetration tests.

Security / 安全
Network
Scanned
url-safety-validator-mcp
MCP Serverby OjasKord
36

AI URL safety validator: SAFE/SUSPICIOUS/DANGEROUS verdict, trust score, threat intel.

MCP & Tools / 工具连接器
Network
Scanned
quantaseal
MCP Serverby QuantaSeal
36

Quantum-safe vault, encryption & compliance for AI agents. NIST FIPS 203/204 ML-KEM-768 + ML-DSA-65.

MCP & Tools / 工具连接器
Unknown
Unreviewed
writing-a-malware-analysis-report
Claude Codeby meltedinhex
36

Structures a clear, actionable malware analysis report covering summary, sample identity, capabilities, IOCs, ATT&CK mapping, and detection guidance for both technical and decision-making audiences. Activates for requests to write, structure, or review a malware analysis or reverse-engineering repo…

Security / 安全
Safe-ish
Scanned
pentesting-rsync
Claude Codeby xalgord
36

Testing rsync daemon services (default port 873) for unauthenticated module listing and access, weak/default credentials and brute force, arbitrary file read/download and write/upload (including authorized_keys planting), and rsyncd.conf/secrets misconfiguration during authorized engagements.

Security / 安全
Red Team
Scanned

Perform comprehensive Windows forensic artifact analysis using Eric Zimmerman's open-source EZ Tools suite including KAPE, MFTECmd, PECmd, LECmd, JLECmd, and Timeline Explorer for parsing registry hives, prefetch files, event logs, and file system metadata.

Security / 安全
Safe-ish
Scanned
scanning-infrastructure-with-nessus
Claude Codeby theheavenlyd3mon
36

Tenable Nessus is the industry-leading vulnerability scanner used to identify security weaknesses across network infrastructure including servers, workstations, network devices, and operating systems.

Security / 安全
Shell
Scanned