MCP 分类
安全
用于网络安全、认证、漏洞分析、监控、合规和安全运营的 MCP 服务器。
1277
MCP 服务器
sanctions-screening
com.watchtower-api/sanctions-screening
Supports sanctions screening, KYB checks, identifier validation, jurisdiction risk assessment, and secret scanning.
不可用
WorkOS
com.workos/mcp
Manages WorkOS organizations, users, SSO, Directory Sync, and AuthKit.
需要认证
WP HealthKit
com.wphealthkit/mcp-server
Audits WordPress plugins and themes for security issues and produces fix plans and SBOMs.
需要认证
X-EGO
com.x-ego/x-ego
Requires human approval for irreversible AI agent actions and binds approval to the specific tool call.
不可用
vaast
com.xtrinel/vaast
Provides read-only access to vulnerability scan findings, workspaces, and targets.
PentaTrail CTEM
co.pentatrail/ctem
Discovers attack surfaces, maintains asset inventories, and reports security findings by threat level.
需要认证
PromptGuard
co.promptguard/security
Scans prompts for injection attacks, redacts personal information, and audits LLM SDK usage.
ShipSafe — Independent security verification
co.ship-safe/scanner
Reviews AI-built applications for exposed secrets, authentication flaws, and unsafe data access.
需要认证
Touchstone
cv.touchstone/touchstone
Records, discloses, and verifies AI-agent actions in a tamper-evident audit log anchored to Bitcoin.
需要认证
logi
dev.1pass/logi
Manages OAuth applications, redirect URIs, passkeys, login history, and identity-provider documentation.
logi-approval
dev.1pass/logi-approval
Provides a human approval step on a phone before high-risk agent actions.
mcp
dev.agentsim/mcp
Provides a control plane for agent authentication barriers, including SMS OTP handling.
需要认证
ArchGraph
dev.archgraph/mcp
Provides code intelligence for architecture analysis, security analysis, and change-impact assessment.
需要认证
mcp-server
dev.assurly/mcp-server
Acts as a pre-deployment shipping gate and audits an agent’s MCP configuration.
codeitall
dev.codeitall/codeitall
Analyzes Rust crate APIs, runtime behavior, advisories, yanks, deprecations, and signatures.
不可用
corsproxy.dev
dev.corsproxy/mcp
Proxies calls to third-party APIs while protecting secrets and enforcing SSRF controls and quotas.
需要认证
Draugr
dev.draugr/draugr
Runs security scans covering code, dependencies, secrets, infrastructure-as-code, and web applications, with risk prioritization.