A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.
Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows
Skill-Inject: Measuring Agent Vulnerability to Skill File Attacks
Agent Skill for PHP security audits - OWASP patterns, vulnerability detection | Claude Code compatible
AI agent security scanner. Detect vulnerabilities in agent configurations, MCP servers, and tool permissions. Available as CLI, GitHub Action, ECC plugin, and GitHub App integration. 🛡️
HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity tools for automated pentesting, vulnerability discovery, bug bounty automation, and security research. Seamlessly bridge LLMs with real-world offensive security capabilities.
The AI security agent guards your code.
Evidence-grounded repository audit CLI - deterministic scanner, MCP server, live dashboard, and a GitHub Action that posts PR diffs.
AI-powered bug bounty hunting toolkit that works with or without subscription.
Security testing that runs inside the coding agent you already use. Source-available, not open source.