Trivy plugin for starting an MCP server
C++ MCP SDK - build Model Context Protocol (MCP) servers and clients in C++ / CPP. Enterprise-grade security, observability, connectivity. Stdio, HTTP+SSE, Streamable HTTP, WebSocket, TCP transports. Bindings for Python, TypeScript, Go, Rust, Java, C#.
A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.
MCP server for remediating hardcoded secrets using GitGuardian’s API. It detects over 600 secret types and prevents credential leaks before code is made public.
ADR secures enterprise AI agents through observability, security benchmarking, and threat detection. Deployed at Uber.
Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and supply-chain risks in Claude Code, Codex, and MCP skills before you install them.
Open-source sandboxed agent harness for teams. Giving every employee a secured personal agent.

Build Secure and Compliant AI agents and MCP Servers. YC W23
Security Scanner for Agent Skills
SAIL V2 (Secure AI Lifecycle) as an agent skill — the full 91-risk catalog for AI/agent gap assessments, security roadmaps, and compliance checklists. Installs on Claude Code, Codex, ChatGPT, Antigravity, and any SKILL.md-compatible agent.

A security scanner for your LLM agentic workflows
Vetix — Automated scanning, identification, and assessment of SKILL security risks.
Model Context Protocol (MCP) server for pfSense firewall management. Control firewall rules, VPNs, DNS, DHCP and diagnostics in natural language from Claude Desktop, Claude Code or any MCP client — 333 wire-format-verified tools for the pfSense REST API, with safety guardrails, config backup and rollback on every change.
Astrid is a portable, capability-secure operating system for composable software.
Static Code Analysis for security teams with Inter file taint analysis. Built for finding vulnerabilities, advanced structural search, derive insights and supports MCP
Keep private data, internal infrastructure and secrets out of cloud coding agents without breaking your workflow.
Security testing that runs inside the coding agent you already use. Source-available, not open source.

Connect AI agents to CrowdStrike Falcon for automated security analysis and threat hunting
Tamper-evident integrity monitor for the MCP config & server files your local AI agents load.
Portable , scalable , secure AI Agents
lunar.dev: Agent native MCP Gateway for governance and security
🦞 MCP server for OpenClaw - secure bridge between Claude.ai and your self-hosted OpenClaw assistant with OAuth2 authentication

OWASP Foundation web repository
Rust MCP server for comprehensive code intelligence - 90 tools, 32 languages, security scanning, call graphs, and more