Security & Identity MCP servers
Vulnerability scanning, auth, secrets, compliance, and threat intel.
VAT Validator MCP
RemoteValidate EU, UK, AU VAT numbers for AI agents. EU ViDA e-invoicing compliance.
imaginevid-ai-generation
RemoteOAuth-protected ImagineVid MCP for image, video, and music generation.
Company filing and CVE evidence snapshots
RemoteCompany filing/CVE snapshots, status and optional feedback. Remote MCP or local stdio. Free Phase A.
Guava Wallet Intelligence
RemoteCrypto security, honeypot detection, wallet analysis, and token risk scoring across 31 blockchains.
cortex-gateway
RemoteSelf-hosted federated MCP gateway: one OAuth 2.1 MCP server in front of N apps, user-level scopes.
Frihet ERP
RemoteAI-native ERP MCP: ES/EU fiscal compliance (VeriFactu/TicketBAI/Facturae), invoicing, tax, banking
mcp
RemoteManage Appwrite projects, databases, auth, storage, functions, and messaging; search Appwrite docs
StremAI
RemoteStremAI MCP: shared memory for AI coding agents. Connected agents can recall. OAuth + local stdio.
ssid-mcp
RemoteManufacturer-cited router default logins and compliance check, plus MAC/OUI vendor lookup. Free.
Raziel
RemoteMCP server teaching AI agents to implement TideCloak: auth, E2EE, IGA, security analysis
patch-tuesday
RemoteQuery Microsoft Patch Tuesday security updates (MSRC) with EPSS and CISA KEV enrichment
Prizmad
RemoteGenerate AI UGC video ads from any product URL — avatars, voiceover, OAuth Connect.
nslookup
RemoteDNS lookups, health reports, SSL certs, security scans, GEO scoring, uptime checks
aio-geo
RemoteAIO.GEO: audit, dry-run fixes, rescore, doctor. Remote + stdio. Not LLM rankings.
surf
RemotePoint Gecko at an OpenAPI spec; get first-call-correct, auth-hidden agent tools.
Taskade MCP
RemoteHosted OAuth MCP at https://www.taskade.com/mcp, or local @taskade/mcp-server.
Bee by HEOSSI
Bee by HEOSSI: governed multimodal intelligence - chat, code, security, research, documents, memory.
CrawlEyes MCP Server
Web scraping & search for AI agents: extract, SearXNG search, rerank, robots compliance. No API key.
Decionis CommerceGate MCP
Commerce preflights, D365 authorization, signed evidence, and reports; no marketplace or ERP writes.
GoldBean MCP Server
49 pay-per-use APIs for AI agents via x402. AI, crypto, DeFi, blockchain, weather, search, security.
pkgxray
Pre-install security scans for npm packages, MCP servers, and AI agents with cited verdict evidence.
QueryPilot
Safe SQL gateway for AI agents: SELECT-only validation, access policies, masking, audit trail, evals
Scannd
Trigger security scans and read reports/vulnerabilities via the hosted Scannd API. Free: 2 scans/mo.
HOL Guard
Local-first AI agent security evidence and approval workflows through HOL Guard's stdio MCP server.
mcpm
MCP security guard + package manager: trust-scored installs, blocks prompt injection and rug-pulls.
ocm-mcp-server
Guardrailed fleet ops for AI agents: multi-cluster Kubernetes via OCM with policy, approval, audit.
ocm-mcp-server
Guardrailed fleet ops for AI agents: multi-cluster Kubernetes via OCM with policy, approval, audit.
suitecrm-mcp
Open-source MCP gateway for SuiteCRM - 24 CRM tools, OAuth2/OIDC auth, multi-entity, observability.
SWT3 AI Witness
Cryptographic AI governance + audit. 59 tools, 36 frameworks. EU AI Act, NIST, OWASP, CMMC, SR 11-7
402sentinel-mcp
x402 payment safety for AI agents: counterparty risk gate, payment firewall, compliance, RWA gate.
Abnormal MCP Server
Abnormal Security MCP: threats, search, remediation, ATO cases, vendor/BEC, and evidence download.
delego
Intent-bound action authorization for AI agents: policy, human approval, and a signed audit trail.
GEO Tracker by DigestSEO
Track brand citations across five AI search engines. Free OSS; optional EUR 99 client-ready audit.
Grasp — Code Architecture & Dependency Analysis
Codebase analysis: dependency graphs, security scanning, and refactor plans for GitHub and GitLab.
IPGeolocation.io MCP Server
Official MCP server for IP geolocation, security, ASN, abuse, timezone, astronomy, and user-agent.
mcp-gatehouse
Permission tiers, approval gates, and audit logging for MCP servers - the server is the gatekeeper
MySQL (security-first)
Security-first MySQL MCP server with AST validation, table whitelist, schema resources, and audit.
s-gw
Keep credentials out of AI coding agents with local approvals, scoped injection, and audit trails.
SEO Tools: Google Search Console
Google Search Console: Search Analytics, URL Inspection, sitemaps (read-only, OAuth/service acct).
SkillsSafe Security Scanner
RemoteAI skill security scanner. Detects prompt injection, credential theft, ClawHavoc. Free, no signup.
Solana Security Standard
Scan Solana/Anchor code against the Solana Security Standard and serve the ruleset to MCP clients.
uxlint
Audit a site's UX the way a design-literate reviewer would, with a concrete fix for every finding.
Vault Cortex
Standalone MCP server for Obsidian vaults — hybrid search, notes & files, memory, tasks, OAuth 2.1
create-starter
Scaffold Starter Series projects and check release, deployment, security, and agent instructions.
figuard-mcp
Pre-flight spend authorization for AI agents. Set a budget, enforce limits, audit every decision.
Invoice Intake (reference)
Reference invoice-intake MCP servers: read/draft/commit split, typed errors, approval gate, audit
kcp-harness — KCP compliance proxy
MCP compliance proxy between agent and tools: deterministic governance, fail-closed, audit trail.
klaws — Korean compliance risk scanner
Scan code for Korean compliance risks — PIPA/개인정보보호법, Network Act, Credit Info. Not legal advice.