Arkana - Your entire malware analysis lab, behind one AI prompt. 250+ MCP tools for binary analysis with Claude Code or other MCP
Security testing that runs inside the coding agent you already use. Source-available, not open source.
Credential gateway for AI agents. Log in once via Oauth2 or API Key. Every agent stays authenticated — headless, no SaaS, agents never see your credentials.
Skill engineering methodology and publishing pipeline for AI agent skills. Validates structure, scans for security, audits entire projects, and publishes to GitHub. Skills are code — engineer them like it.
The AI toolkit for building reliable browser automations
Secure multi-platform AI skill installer — scan before you install. 49 agents, 12 plugins, 41 expert skills.
Composable agent runtime with enforced isolation boundaries
🌊 Lagune is your security copilot as you build, your Blue Team when you audit, whether you're a developer or not (no API key needed).
Securely scale AI usage across your organization. A single stack to Connect, Secure, Observe and Distribute agents, MCPs, and Skills within your company.
Local-first MCP gateway. One port for every tool and every AI client: lazy discovery (~90% token savings), tool integrity + quarantine, secrets in the OS keychain.
HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity tools for automated pentesting, vulnerability discovery, bug bounty automation, and security research. Seamlessly bridge LLMs with real-world offensive security capabilities.
Vigilante is a sandbox-first orchestration layer for coding agents. It isolates every task in a git worktree, enforces strict credential scoping, and gives you full audit logs — so your agents can't burn down production.
ADR secures enterprise AI agents through observability, security benchmarking, and threat detection. Deployed at Uber.

AI-powered OSINT agent with interactive REPL, MCP server, and CLI. 19 tools. Works with Claude, GPT-4, or local models. For authorized security research only.
Astrid is a portable, capability-secure operating system for composable software.
Tamper-evident integrity monitor for the MCP config & server files your local AI agents load.
Observability and enforcement for AI agent harnesses. Capture every run and runtime reliability with policy enforcement. 40 built-in policies, a local dashboard, no account required with a generous free cloud plan
Vetix — Automated scanning, identification, and assessment of SKILL security risks.
Let AI agents investigate and operate infrastructure through declared actions, bounded by policy and host-side checks. Approvals when required, with an audit trail. By Protectorate.
Grok Build resources, reusable .grok/skills, AGENTS.md templates, hooks, prompts, and starter workflows.
a middle platform for enterprise Agent runtime governance and capability assets — connect OpenClaw, Hermes, SkillLite, and custom runtimes in one place; accumulate Skills and enterprise knowledge; provide observability, review, and private distribution

Your Windows syscall hooking factory - feat Canterlot's Gate - All accessible over MCP
secure multiplexed execution paths for agents - zero trust, zero setup, zero latency.
A curated list of awesome Agent Skills for automating legal work