Open-source AI security scanner for Codex, Claude Code, and ACP-compatible coding agents—kept current with OpenAI Codex Security.
Security scanner MCP server for AI coding agents. Prompt injection firewall, package hallucination detection (4.3M+ packages), 1000+ vulnerability rules with AST & taint analysis, auto-fix.
Agent-ready DevOps, security, infrastructure, and compliance knowledge base with 80+ skills across Kubernetes, Terraform, AWS/Azure/GCP, AI platform operations, container hardening, SOC2/ISO27001, and incident response—plus ready-to-run scripts, templates, and playbooks for SRE, platform, and security teams.
A plugin-based gateway that orchestrates other MCPs and allows developers to build upon it enterprise-grade agents.
Browse the web, directly from Cursor etc.
Skills and plugins to accelerate security workflows with the Orca Cloud Platform

MCP server for reading and editing Word (.docx) documents with track changes, comments, footnotes, and structural validation
Claude Code skill for OWASP security best practices (2025-2026). Includes Top 10:2025, ASVS 5.0, Agentic AI security, and 20+ language-specific security quirks.
secure multiplexed execution paths for agents - zero trust, zero setup, zero latency.
Offline security scanner for AI-agent repos, skills, plugins, and MCP servers.
ADR secures enterprise AI agents through observability, security benchmarking, and threat detection. Deployed at Uber.
Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and supply-chain risks in Claude Code, Codex, and MCP skills before you install them.
Security Scanner for Agent Skills
Static Code Analysis for security teams with Inter file taint analysis. Built for finding vulnerabilities, advanced structural search, derive insights and supports MCP
Enterprise AI bastion host for secure AI API and MCP access, with unified proxying, RBAC, audit logs, rate limiting, and cost tracking across OpenAI, Anthropic, Gemini, and self-hosted LLMs.
Security testing that runs inside the coding agent you already use. Source-available, not open source.
Offensive security toolkit for Claude Code covering red team, exploit dev, AD attacks, EDR bypass, mobile pentest
Official SonarQube MCP Server for code quality and security in AI agents
The AI security agent guards your code.

Connect AI agents to CrowdStrike Falcon for automated security analysis and threat hunting
Threat modeling and AI-reasoning vulnerability detection harness for Claude Code — STRIDE + AI + MAESTRO
MCP Fusion - The TypeScript framework for secure MCP servers.
Open-source firewall for AI agents. Policy engine that audits and controls what OpenClaw, Claude Code, Cursor, Codex, and any AI tool can do on your machine.
Your personal skill library for Claude Code. Organize, analyze, and search skills with built-in security analysis. Zero dependencies — clone and go.