Explore MCP servers
Browse the latest Model Context Protocol servers that AI agents can connect to — then host your own in a snap.
Security · 60 servers

PromptGuard
co.promptguard
Scan prompts for injection attacks, redact PII, and audit LLM SDK usage from any MCP client

CISA Cybersecurity & ICS Advisories — buy per-query in-session (cisaalerts)
com.a2awire
CISA advisories & ICS alerts: new CVEs, remediation. Register in-session — free testnet funds.

CVE Security Advisories (NVD High & Critical) — buy per-query in-session (cvewatch)
com.a2awire
CVE advisories: high/critical NVD vulns, daily digest. Register in-session — free testnet funds.

Cybersecurity News & Breach Alerts — buy per-query in-session (bleepingwatch)
com.a2awire
Cybersecurity news & breach alerts: hacks, patches. Register in-session — free testnet funds.

Debian Security Advisories — buy per-query in-session (debianwatch)
com.a2awire
Debian Security Advisories (DSA). $0.01/query. Register in-session — free testnet funds.

Dependency Vulnerability Tracker — package security advisories ($0.01/query)
com.a2awire
Dependency vulns & malicious-package advisories. Register in-session — free testnet funds.

Go Vulnerability Database Tracker — buy per-query in-session (govulnwatch)
com.a2awire
Go vulns: CVEs per module, fixed versions. $0.01/query. Register in-session — free testnet funds.

Rust Crate Security Advisories — buy per-query in-session (rustsecwatch)
com.a2awire
Rust crate vulns: CVEs, patched versions. $0.01/query. Register in-session — free testnet funds.

Ubuntu Security Notices / USN (usnwatch) — buy per-query in-session
com.a2awire
Ubuntu security: USNs per CVE, patched versions. Register in-session — free testnet funds.

Microsoft Windows Security Updates (MSRC CVRF) — buy per-query in-session (msrcwatch)
com.a2awire
MSRC Windows updates: CVE rollups, Patch Tuesday. Register in-session — free testnet funds.

arc-security
com.arcself
Scan AI agent skills for 25 attack classes + runtime monitoring. 1,316+ findings.

BlackVeil DNS & Email Security Scanner
com.blackveilsecurity
DNS and email security scanner with 80 MCP tools for SPF, DMARC, DNSSEC, SSL, and brand audits.
cve-intelligence
com.cve-security
CVE intelligence: exploitation (KEV/EPSS), detection coverage, fixed versions. All tools keyless.
security-tools
com.rangercheck
Free front-end security check for any website: a grade plus the secrets and keys it exposes.
signal
com.returnonsecurity
Cybersecurity market intelligence: funding rounds, M&A, investors, valuations, corporate lineage.

Truss Threat Intelligence
com.truss-security
Query Truss threat intelligence via hosted MCP (OAuth). Growth+ plans.
Flare
dev.flarehq
Scan a running app or repo for leaked secrets, exposed routes and open RLS, and verify live keys

automotive-cybersecurity
io.github.Ansvar-Systems
Automotive cybersecurity: R155/R156 regulations, ISO 21434, TISAX, AUTOSAR, Chinese GB/T

ot-security-mcp
io.github.Ansvar-Systems
OT security standards: IEC 62443, NIST 800-82/53, MITRE ATT&CK for ICS
security-controls
io.github.Ansvar-Systems
1,451 security controls across 261 frameworks with bidirectional mapping

cybersecurity-ai-mcp
io.github.CSOAI-ORG
Cybersecurity Ai MCP Server by MEOK AI Labs

security-scanner-ai-mcp
io.github.CSOAI-ORG
Security Scanner Ai MCP Server by MEOK AI Labs

securityscorecard-mcp
io.github.CallMarcus
Community-built, comprehensive MCP server for the SecurityScorecard API (unofficial).

Solana Security Standard
io.github.Copenhagen0x
Scan Solana/Anchor code against the Solana Security Standard and serve the ruleset to MCP clients.

TridentChain Security
io.github.DevInder1
Local supply-chain CVE scanner via OSV/NVD. Scans deps and IDE extensions. No upload.

Tkach Security
io.github.ECD5A
Fail-closed MCP adapter for untrusted model output over a local Tkach runtime.
Kloudle Cloud Security Scanner
io.github.Kloudle
AWS cloud security scanners for AI agents — S3, IAM, EC2, EKS, RDS, CloudTrail, CloudWatch Logs

MCPower Security Proxy
io.github.MCPower-Security
Security proxy that automatically wraps MCP servers with real-time monitoring and policy enforcement

Domain Security
io.github.OrtaMarco
Audit a domain's email and web security: SPF, DKIM, DMARC, MTA-STS, DNSSEC, TLS, WHOIS. No API keys.

notebooklm-mcp-secure
io.github.Pantheon-Security
Security-hardened NotebookLM MCP with post-quantum encryption

security-orchestra
io.github.RobotFleet-HQ
Multi-agent MCP platform for data centers and critical power.

alaya-mcp
io.github.SecurityRonin
Local memory engine for AI agents with knowledge graphs, forgetting, and semantic recall

Shrike
io.github.Shrike-Security
Governs what AI agents do: tool calls, SQL, commands, files checked against policy before they run.

Android Security Analyzer
io.github.ako2345
MCP server for static security analysis of Android source code

Fray — WAF Security Testing MCP Server
io.github.dalisecurity
WAF security testing: 5,500+ payloads, 25 WAF fingerprints, 21 recon checks, bypass AI

Repo Security Scanner — Malicious Code & Supply Chain
io.github.eltociear
Audit GitHub repos for malicious and supply-chain code before you depend on them.
ghost-mcp-server
io.github.ghostsecurity
Minimal MCP server for Ghost Security API - compatible with all MCP clients

Husk
io.github.husk-security
Local-first defensive scanner for vulnerable dependencies, leaked secrets, and risky agent configs

security-preflight
io.github.jdhart81
Static MCP, source-code and injection-indicator checks with redacted signed receipts.

security-headers-csp-lint
io.github.jmshinhwa
Reads security headers and CSP line by line in your config file and names the lines that silently do

mcp-server-security-audit
io.github.joepangallo
Scan websites for security vulnerabilities, headers, TLS, and email security.

base-security-scanner-mcp
io.github.lordbasilaiassistant-sudo
MCP server to scan smart contracts on Base for honeypots, rug pulls, and vulnerabilities.

Cybersecurity Vulnerability Intel
io.github.martc03
CVE lookup via NIST NVD, CISA KEV, EPSS, and MITRE ATT&CK. 7 tools.

contract-security-scanner
io.github.mastrophot
MCP smart contract scanner with NEAR-focused security context.

agent-security
io.github.mdfifty50-boop
Security scanning and threat detection for AI agents

Agentic Security Shield
io.github.ormuzdo
12-layer security configs for AI coding agents. Autonomous purchase via x402 (USDC on Base).

Security Feeds
io.github.pipeworx-io
Security Feeds MCP.

Securitytrails
io.github.pipeworx-io
SecurityTrails MCP — wraps SecurityTrails API (securitytrails.com)

AgentSecurityLens MCP Security Trust Check
io.github.professor2k8
MCP security trust-check for agents before installing MCPs, Skills or tools.

arcwall-security
io.github.rom-baro
Security scanning for AI coding tools. Detects secrets, threat models, and runs pre-commit checks.

securityscan
io.github.securityscan-api
Security for AI agents: MCP audits, secret redaction, skill vetting, network scans, agent checkout.

Security Intel MCP
io.github.selflabbs
CVE lookups (NVD) and dependency-manifest audits (OSV) for AI agents. No API keys.

agent-security-scanner-mcp
io.github.sinewaveai
Security layer for AI agents: blocks prompt injection, detects fake packages, scans vulnerabilities.
n0s1-mcp
io.github.spark1security
Secret scanner for Slack, Jira, Confluence, Asana, Wrike, Linear, Zendesk, GitHub and GitLab

Security Recipes
io.github.stevologic
Read-only CVE intelligence, remediation playbooks, and agent setup guides. Not a scanner.

Security Mcp
io.github.varvararatta
MCP server for Security

injection-detector
io.github.viridis-security
Formally-verified injection/exfiltration detector for AI agents (MCP-02).

VMware NSX Security
io.github.vmware-skills
VMware NSX security: DFW policies and exclusions, groups, tags, Traceflow, IDPS — 22 MCP tools.
mcp-server-security-scanner
io.github.vpatser1
Scan MCP configs for 30+ CVEs, prompt injection, tool poisoning; validate OAuth configs

VMware NSX Security
io.github.zw008
VMware NSX security: DFW policies, security groups, tags, Traceflow, IDPS — 21 MCP tools.
