io.github.vmoranv/jshookmcp
MCP server for JavaScript analysis, security auditing, browser automation and hooks
Vulnerability scanning, secrets management, and compliance - MCP servers for security teams.
MCPpedia tracks 1,431 security MCP servers. 347 of them score at least 50 out of 100, and 180 clear 70 - about 13% of what has been published in this space. The remaining 1,084 are thinner: registry entries with no description, no published tool schema, or no commit in the last year. They are all still listed here, because knowing a server exists and is unmaintained is worth as much as knowing a good one exists.
io.github.vmoranv/jshookmcp leads the list at 93/100. Ida Pro MCP (92) and io.github.KryptosAI/mcp-observatory (92) follow. Every score is the same five weighted inputs: security (CVE scanning, tool-poisoning detection, and whether the server authenticates at all), maintenance (commit recency, release cadence, and download trend), documentation, client compatibility, and token efficiency - how much of your context window the tool definitions consume before you have asked anything.
13 of these servers are published by the vendor behind the underlying API rather than by a third party, which is usually the difference between an integration that tracks upstream changes and one that quietly stops working. 3 currently carry an open CVE; those are flagged on the server's own page with the advisory and its severity.
Also see: Best Security servers, Developers, Data Engineering, Productivity
Last updated
MCP server for JavaScript analysis, security auditing, browser automation and hooks
AI-powered reverse engineering assistant that bridges IDA Pro with language models through MCP.
MCP security scanner. CI-native testing, attack simulation, health scoring, and SARIF.
Deterministic security scanning, no model or API key, plus offline-verifiable proof a fix worked.
A Model Context Protocol server for Windows crash dump analysis using WinDbg/CDB
Plugin for JADX to integrate MCP server
Client intake for AI agents: get files, copy and logins from clients, chased automatically.
Local-first RAG memory for AI agents: hybrid + GraphRAG search, MCP server with OAuth 2.1, plugin for Claude Code / OpenCode / Codex.
MCP server for Atomic Red Team
mcpki-server is the backend infrastructure for https://www.mcpki.org, enabling secure public key management and autonomous certificate handling for large language models (LLMs).
Manage AdGuard Home through AI assistants
Security co-pilot for AI agents. Scan for vulnerabilities, audit MCP servers, verify governance.
Signed, offline-verifiable contract-change authorization. Only a granted change can proceed.
YuanXinMCP (元信MCP) — pre-install security scanning for Agent skills, packaged as a YottaMeta Agent Plugin.
Rust MCP gateway with Code Mode, authentication, setup, logs, CLI, HTTP API, and operator web UI.
Read accesso mobile ticket links: orders, admissions, barcodes and Google Wallet passes.
Pre-install security scans for npm packages, MCP servers, and AI agents with cited verdict evidence.
Portable workspaces for AI agents: one encrypted link any agent can read and write
MCP server for 1Password service accounts — tools and resources for vaults and credentials
Guarded AI mobile Appium testing, security scanning, verification, and fix-retest MCP tools.