v1.2.2 · MIT
DeepSeek Harness 权限规则引擎:hard/deny/ask/allow 四级规则(hard 高于全访问)、全局与 workspace 作用域、通配符路径保护、可视化草稿式编辑器,规则持久化于 settings.yaml
v1.0.0 · MIT
The agent harness for offsec. It's a plugin for Claude Code packed with skills, hooks, memory system that works best for using Claude Code to achieve autonomous pentest/ctf
— · MIT
lunar.dev: Agent native MCP Gateway for governance and security
— · no license
Enterprise AI bastion host for secure AI API and MCP access, with unified proxying, RBAC, audit logs, rate limiting, and cost tracking across OpenAI, Anthropic, Gemini, and self-hosted LLMs.
v1.4.9 · no license
Don't let AI destroy your hard work! HardStop is a rock-solid protection for AI-generated commands. Pre-execution safety validation for Claude Code, Claude Cowork. Catches dangerous commands before they run: whether from AI mistakes, hallucinations, prompt injection, or misunderstood instructions. Seatbelts for the agentic AI era.
— · MIT
Multi-plugin marketplace for Claude Code offensive security plugins
— · Apache-2.0
Production-Ready MCP Server Framework • Build, deploy & scale secure AI agent infrastructure • Includes Auth, Observability, Debugger, Telemetry & Runtime • Run real-world MCPs powering AI Agents
— · MIT
A growing collection of MCP servers bringing offensive security tools to AI assistants. Nmap, Ghidra, Nuclei, SQLMap, Hashcat and more.
v3.9.0 · MIT
🦾 MONSTER ENGINEER v2 - Ultimate AI CLI with 63 Skills, 12 Superpowers, 14 Agents. Multi-Agent Orchestration, Cost-Aware, Security Scorecard, Parallel-First.
— · MIT
MCP configuration to connect AI agent to a Linux machine.
— · MIT
Expose your FastAPI endpoints as Model Context Protocol (MCP) tools, with Auth!
— · MIT
MCP server that connects AI assistants to HackerOne for bug bounty hunting
— · no license
Production-ready Claude Code 2.0 setup for autonomous development
— · no license
Enables hands-on exploration of common MCP security vulnerabilities through locally runnable vulnerable and fixed servers with accompanying exploits and a dashboard.
— · Apache-2.0
A security scanner for your LLM agentic workflows
— · no license
MCPCAN is a centralized management platform for MCP services. It deploys each MCP service using a container deployment method. The platform supports container monitoring and MCP service token verification, solving security risks and enabling rapid deployment of MCP services. It uses SSE, STDIO, and STREAMABLEHTTP access protocols to deploy MCP。
— · MIT
A plugin-based gateway that orchestrates other MCPs and allows developers to build upon it enterprise-grade agents.
— · no license
Alireza Rezvani CTO and AI enthusiast - Addicted to Claude Code and Openclaw
— · no license
🔥🔒 Awesome MCP (Model Context Protocol) Security 🖥️
— · no license
A curated collection of top-tier penetration testing tools and productivity utilities across multiple domains. Join us to explore, contribute, and enhance your hacking toolkit!
— · no license
BloodHound-MCP-AI is integration that connects BloodHound with AI through Model Context Protocol, allowing security professionals to analyze Active Directory attack paths using natural language instead of complex Cypher queries.
v1.0.0 · no license
Draw your app's architecture on a live canvas and flag the bottlenecks and security gaps.
v1.1.0 · no license
Agent-native travel platform: read-only flight, hotel, and brand tools over MCP. OAuth sign-in.
v0.7.31 · no license
Deterministic runtime safety for AI agents: scan PII, gate tool actions, verify LLM output.