io.github.vmoranv/jshookmcp
MCP server for JavaScript analysis, security auditing, browser automation and hooks
MCP servers for vulnerability scanning, secrets management, compliance, and security tooling.
MCPpedia tracks 1,431 security MCP servers. 347 of them score at least 50 out of 100, and 180 clear 70 - about 13% of what has been published in this space. The remaining 1,084 are thinner: registry entries with no description, no published tool schema, or no commit in the last year. They are all still listed here, because knowing a server exists and is unmaintained is worth as much as knowing a good one exists.
io.github.vmoranv/jshookmcp leads the list at 93/100. Ida Pro MCP (92) and io.github.KryptosAI/mcp-observatory (92) follow. Every score is the same five weighted inputs: security (CVE scanning, tool-poisoning detection, and whether the server authenticates at all), maintenance (commit recency, release cadence, and download trend), documentation, client compatibility, and token efficiency - how much of your context window the tool definitions consume before you have asked anything.
13 of these servers are published by the vendor behind the underlying API rather than by a third party, which is usually the difference between an integration that tracks upstream changes and one that quietly stops working. 3 currently carry an open CVE; those are flagged on the server's own page with the advisory and its severity.
Also see: All Security servers, Best Productivity, Best Developer Tools, Best Data, Best Finance
Last updated
MCP server for JavaScript analysis, security auditing, browser automation and hooks
AI-powered reverse engineering assistant that bridges IDA Pro with language models through MCP.
MCP security scanner. CI-native testing, attack simulation, health scoring, and SARIF.
Deterministic security scanning, no model or API key, plus offline-verifiable proof a fix worked.
A Model Context Protocol server for Windows crash dump analysis using WinDbg/CDB
Plugin for JADX to integrate MCP server
Client intake for AI agents: get files, copy and logins from clients, chased automatically.
Local-first RAG memory for AI agents: hybrid + GraphRAG search, MCP server with OAuth 2.1, plugin for Claude Code / OpenCode / Codex.
MCP server for Atomic Red Team
mcpki-server is the backend infrastructure for https://www.mcpki.org, enabling secure public key management and autonomous certificate handling for large language models (LLMs).