MCP Category

Security

MCP servers for cybersecurity, authentication, vulnerability analysis, monitoring, compliance, and secure operations.

1277 MCP servers
sanctions-screening
com.watchtower-api/sanctions-screening
Supports sanctions screening, KYB checks, identifier validation, jurisdiction risk assessment, and secret scanning.
Unavailable
0 tools 213 ms
WorkOS
com.workos/mcp
Manages WorkOS organizations, users, SSO, Directory Sync, and AuthKit.
Auth required
0 tools 531 ms
WP HealthKit
com.wphealthkit/mcp-server
Audits WordPress plugins and themes for security issues and produces fix plans and SBOMs.
Auth required
0 tools 217 ms
X-EGO
com.x-ego/x-ego
Requires human approval for irreversible AI agent actions and binds approval to the specific tool call.
Unavailable
0 tools 11128 ms
vaast
com.xtrinel/vaast
Provides read-only access to vulnerability scan findings, workspaces, and targets.
0 tools
PentaTrail CTEM
co.pentatrail/ctem
Discovers attack surfaces, maintains asset inventories, and reports security findings by threat level.
Auth required
0 tools 1175 ms
PromptGuard
co.promptguard/security
Scans prompts for injection attacks, redacts personal information, and audits LLM SDK usage.
0 tools
ShipSafe — Independent security verification
co.ship-safe/scanner
Reviews AI-built applications for exposed secrets, authentication flaws, and unsafe data access.
Auth required
0 tools 1405 ms
Touchstone
cv.touchstone/touchstone
Records, discloses, and verifies AI-agent actions in a tamper-evident audit log anchored to Bitcoin.
Auth required
0 tools 1231 ms
logi
dev.1pass/logi
Manages OAuth applications, redirect URIs, passkeys, login history, and identity-provider documentation.
0 tools
logi-approval
dev.1pass/logi-approval
Provides a human approval step on a phone before high-risk agent actions.
0 tools
mcp
dev.agentsim/mcp
Provides a control plane for agent authentication barriers, including SMS OTP handling.
Auth required
0 tools 634 ms
ArchGraph
dev.archgraph/mcp
Provides code intelligence for architecture analysis, security analysis, and change-impact assessment.
Auth required
0 tools 510 ms
mcp-server
dev.assurly/mcp-server
Acts as a pre-deployment shipping gate and audits an agent’s MCP configuration.
0 tools
codeitall
dev.codeitall/codeitall
Analyzes Rust crate APIs, runtime behavior, advisories, yanks, deprecations, and signatures.
Unavailable
0 tools 198 ms
corsproxy.dev
dev.corsproxy/mcp
Proxies calls to third-party APIs while protecting secrets and enforcing SSRF controls and quotas.
Auth required
0 tools 296 ms
Draugr
dev.draugr/draugr
Runs security scans covering code, dependencies, secrets, infrastructure-as-code, and web applications, with risk prioritization.
0 tools