Security MCP Servers
895 servers . page 1 of 18
This page lists 895 MCP servers in the Security category, from 688 publishers. 448 publish a hosted endpoint you can connect to without installing anything, and 262 come from a publisher whose domain has been verified. Sorted by most recent registry activity, 50 to a page.
Servers for security tooling. Some of these read your secret stores, which makes the trust question sharper than for most other categories.
Tick the box on any row to line servers up side by side. Pick two or three, then open the comparison. Servers must share a category for the comparison to mean anything.
HelpMyAgent
Pay-per-call data APIs for AI agents: business, compliance, procurement, VAT and IBAN via x402.BlackVeil DNS & Email Security Scanner
DNS and email security scanner with 79 MCP tools for SPF, DMARC, DNSSEC, SSL, and brand audits.Go Vulnerability Database Tracker, buy per-query in-session (govulnwatch)
Go vulnerability database: new GO-IDs, CVE aliases, amended advisories for Go deps.Delega
Delega MCP client. Public hosted access retired July 28, 2026; existing owner credentials only.Pretorin Compliance
Access Pretorin compliance systems, controls, evidence, and narratives from your AI tools.shyn
Local-first ambient memory for your Mac, pages, meetings, notes, encrypted on-device.ComplyEdge TrustLint, offline EU AI Act compliance checks
Offline TrustLint checks: EU AI Act Article 5, Article 50, GPAI, plus GDPR and HIPAA.Ofw
OurFamilyWizard co-parenting for Claude, messages, calendar, expenses, and journal.agentguard
MCP policy proxy: spend caps, approvals for destructive tools, kill switch, dry-run, audit log.ReClip
Inspect and download authorized media or precise clips locally with yt-dlp.Rust Crate Security Advisories, buy per-query in-session (rustsecwatch)
New RustSec advisories: crate vulnerabilities, malicious crates, unmaintained crates.Avala
Read Physical AI datasets, projects, fleet and quality data. Requires authorized Avala access.YunoHost MCP
Nostr-authenticated MCP server for secure YunoHost administration.Siftable
Siftable MCP server for governed work, knowledge, calendar, people, datasets, and Vault.Pillowfort
Private encrypted rooms for agents and people to invite, chat, draw, and play. Local and hosted MCP.ATTENTIO, darowizny i petycje
Petycje i darowizny Stowarzyszenia Osób Dorosłych z ADHD. Zwraca gotowy adres strony wpłaty.French Rental Compliance
FR/EN tools for French rental, frontalier & home-employment (CCN 3239), sourced, dated answers.Cybersec Toolkit
Authorization-gated MCP server to discover and run 670+ security tools for CTF, pentest, and DFIR.MCP
Query your team's drift, vulnerability, and upgrade data from any AI assistant. OAuth 2.1, 51 tools.Vaultbeat Apple Health
Your AI agent reads your Apple Health data: sleep, HRV, cycle, workouts. Decrypted on your machine.Vaemail
Email infrastructure for AI agents: send, authenticate domains, track delivery, diagnose issues.Ubuntu Security Notices / USN (usnwatch), buy per-query in-session
Ubuntu security notices (USN): Linux kernel & package vulnerability fixes with CVE lists.Vizier
Deterministic authorization for one proposed AI agent action, returned with a signed receipt.IntoDNS.ai DNS & Email Security Scanner
DNS and email security: check SPF, DKIM, DMARC, DNSSEC, DANE and build the records. 45 tools.CodeInspectus
Local-first MCP security scanner and CLI for AI-generated applications.Dvalincode
Deterministic security scanning, no model or API key, plus offline-verifiable proof a fix worked.Depot (depot.dev)
Read-only MCP server for Depot (depot.dev): CI failure diagnosis, build forensics, and usage.Agent360 Browser MCP
Your AI agent drives a real, logged-in Chrome, test authenticated apps, 2FA flows, scrape logins.BlueNexus Universal MCP
Connect your AI to all your data - 200+ sources, intelligently filtered, compliance-ready.Sparkforensics
MCP server for diagnosing Apache Spark event-log performance issues and comparing runs.Site
Right to Work Wizard: the site's own MCP server, checker, enquiry (enquiry = a human handoff.Site
Penetration Testing Cost: the site's own MCP server, enquiry (enquiry = a human handoff, not a.Site
Forensic Accountant Cost: the site's own MCP server, enquiry (enquiry = a human handoff, not a.Site
Fire Compliance Cost: the site's own MCP server, enquiry (enquiry = a human handoff, not a.独行录 / opcmenu
Find founders, collaboration opportunities and events; manage authorized signups and messages.SkillTotal
Deterministic security scan of MCP servers, agent skills and npm/PyPI packages. Runs locally.CrowdStrike MCP
Every CrowdStrike Falcon MSP operation, plus a Flight-Control-aware local store that answers.Action1 MCP
Every Action1 endpoint, plus fleet-wide patch and vulnerability views across all your organizations.KeibiDrop
Give two agents on two machines the same encrypted folder. P2P, no cloud, only read bytes move.Compliance Check
Preview a TCPA/GDPR/CASL/10DLC gate result before spending a paid send. No key needed.Agent Broker
23 MCP. compliance, verification, messaging, booking, US contracts. 15 need no key.Agent Decision & Evidence Tools (MCP + x402)
40 MCP. multi-chain RPC, market and transaction decisions, AI, EU compliance and US imports.BriefGate
Your coding agent asks the client for logos, copy and credentials; BriefGate chases them for you.Lumethic Photo Verification
Verify photos are real camera captures, not AI: C2PA and RAW+JPEG forensics. OAuth or API key.TvojeLajky
Instagram and TikTok services: live CZK quotes, orders and customer-authorized prepaid purchases.HTTP 401 unauthorized
Meaning of HTTP 401.Notes Vault
Indexed search, schema-checked writes and session hooks for a markdown notes vault.Guardrail MCP
Deterministic preflight checks for credentials, fund transfers, writes, and prompt overrides.meek_defoneos_audit_logging_mcp
MEEK DEFONEOS Audit Logging MCP, SIEM + audit chain + compliance logs. MIT-licensed.csoai-governance-crosswalk-mcp
Csoai Governance Crosswalk MCP server. query crosswalk, crosswalk bridge, compliance gap anal.
Frequently asked questions
- What are security MCP servers?
- Secrets management, scanning, identity and compliance They are Model Context Protocol servers, which means an AI client can call their tools directly once connected.
- How many security MCP servers are there?
- This catalogue lists 890 servers in the Security category, out of 890 in total.
- Which security servers work without installing anything?
- 445 of the 890 servers in this category publish a hosted endpoint, so a client can connect over the network instead of running a local process.
- Do security MCP servers need API keys?
- Most do. 232 of 890 in this category declare at least one required environment variable, which is roughly 26 percent.
- Are these servers official?
- 259 of 890 are published under a company domain namespace, which confirms the publisher controls that domain. The rest are community published. Neither status means the server has been reviewed for quality or security.
- How do I add one of these servers to my client?
- Open the server page for the details. Servers with a package are added by putting the install command in your client configuration file. Servers with a hosted endpoint are added by giving the client the endpoint URL.
- How is this category assigned?
- The MCP Registry does not publish categories, so this catalogue assigns them by matching known product names and topic keywords in each server entry. A server can appear in one category only, chosen by the strongest match.
- Where does this data come from?
- Server names, descriptions, versions, packages and endpoints come from the official MCP Registry. Repository details come from public source hosts. Nothing here is supplied by the vendors directly.