Security & Identity MCP servers
Vulnerability scanning, auth, secrets, compliance, and threat intel.
personal-data-map-dsar-audit
Reads a migration, Prisma schema, Django model or TypeORM entity and marks every column a subject ac
quantaseal
Quantum-safe vault, encryption & compliance for AI agents. NIST FIPS 203/204 ML-KEM-768 + ML-DSA-65.
security-headers-csp-lint
Reads security headers and CSP line by line in your config file and names the lines that silently do
SEO & GEO
Audit a page's SEO and its readiness for AI answer engines: meta, schema, robots, sitemaps, AI bots.
ServiceNow MCP Server
ServiceNow developer data plane: Table API, CMDB, update sets, schema. Read-only, allow/deny, audit.
Siglata
RemoteManage Siglata org files, folders, grants, members, invitations, sessions via CallScript over OAuth.
ToolYour
RemoteRemote MCP: plan, run, verify for SEO/security/ship-gate. Same REST API key; 500 free credits/month.
Trooth
RemoteLook up a witnessed Trust Profile, read a domain's security surface, or verify a Trust Ledger Token.
ANIME INTELLIGENCE
RemotePaid anime collectible intelligence for exact identity, value, risk, BUY/WAIT and purchase routing.
Apier
RemoteCompliance infrastructure API connecting AI agents to Norwegian government systems (Altinn, BRREG).
audit
RemotePublisher revenue audit: ads.txt and ad-stack checks, Sulvo onboarding, and Boost ad-block recovery
automaton-colony
RemoteScreen Base smart contracts and B20 tokens: free on-chain check, paid Flash Audit over x402 (USDC).
Avalara E-Invoicing & Live Reporting
RemoteProvides access to Avalara E-Invoicing and Live Reporting APIs for document statuses and compliance
Bug Bounty Intelligence
RemoteAI security scanner for Solidity + free CC0 dataset of Sherlock audit-competition acceptance rates.
code-guard-mcp
Security scan for AI-generated code: injection, SSRF, secrets, weak crypto, unsafe deserialization.
DABLOCK AI Visibility Index
RemoteMeasured share of answer for 24 crypto and Web3 brands. An open dataset, not an audit of your site.
januscope
Local MCP proxy for tool restrictions, response redaction, audit logs, and database schema context.
lithtrix
Identity, memory, trust, and swarm MCP tools for AI agents. Free MIRC + free floors at lithtrix.ai.
MCP Dataverse
73 tools for Microsoft Dataverse: CRUD, FetchXML, metadata, audit, batch, role privileges and more.
mcp-caf
MCP server for Caf — Brazilian KYC/KYB: face auth + liveness, document OCR, orchestrated onboarding
mcp-persona
MCP server for Persona — developer-first identity verification + KYC (inquiries, accounts, reports)
mettle-mcp
Experimental machine-oriented challenges and signed results. Does not verify identity or substrate.
MiniURL
RemoteOAuth 2.1 short-link tools for AI agents with scoped tokens, approvals, audit logs, and revocation.
Parse-DMARC MCP Server
Lightweight DMARC parser: auto-fetch email reports, visualize compliance in a single all-in-one app
rails-mcp
Default-deny action registry, append-only spend ledger, and human sign-off audit trail (MCP tools).
RunOnProof — Payment Decision and Agent ID
RemoteFree agent identity and signed US supplier-payment decisions. Inspect first; verify portable proof.
securityscan
Security for AI agents: MCP audits, secret redaction, skill vetting, network scans, agent checkout.
seo-audit
RemoteFree SEO & AI-search (AEO) audits for any site or Shopify store, with emailed weekly score reports.
Snipzr
RemoteShort links with branded domains, cookie-less analytics and QR codes. Sign in with OAuth or a token
SparkleTree
RemoteCreate, publish and measure SparkleTree marketing campaigns from an AI client. OAuth 2.1 with PKCE.
Stigmer
RemoteExecution graph of AWS: verified contracts, least-privilege IAM policies, pre-flight authorization.
taskbounty-check
Local GitHub Actions/CI maintenance check (action pinning, token perms). Not a full security audit.
yotta-verify-mcp
Pre-install security scanner for AI agent skills (local stdio MCP). Offline static scan; no upload.
acp-mcp-server
RemoteSee, price, and control every tool call your AI agents make: policy checks, cost, and audit tools.
agent-toolkit
Pay-per-call developer utilities and npm supply-chain security tools for coding agents, over x402.
Avalara Cross-Border
RemoteCross-border duty-rate and Trade & Tariff content lookups with product compliance and restrictions
BrainTube
RemoteSearch everything you save: YouTube, articles, podcasts, PDFs, Notion, Obsidian. API key or OAuth.
chart-color-audit
CI-friendly accessibility audit for chart color palettes: WCAG contrast, CVD simulation, OKLab ΔE.
cybersec-toolkit
Authorization-gated MCP server to discover and run 670+ security tools for CTF, pentest, and DFIR.
Endpoint AIops
Governed managed-endpoint ops — login-storm & drift analysis, 13 MCP tools with audit/budget/undo.
Expense Budget Tracker
RemoteTrack expenses, budgets, balances, transfers, and multi-currency reports with OAuth-secured tools.
flagrix
Scan GitHub repos and profiles for malware before cloning — commit-pinned risk verdicts for agents
FrankKi
RemoteThe agentic layer of letters. Agents send real printed mail worldwide, German compliance built in.
GameFork MCP
RemotePublish, fork, improve browser games. No-auth reads; OAuth to post. Wheel: verified ops knowledge.
Gentkey
RemoteOne MCP URL for all your connectors — scoped writes, enforced constraints, and a full audit trail.
intelthreadlinqs-mcp
Threadlinqs threat-intelligence MCP — 73 tools: threats, detections, IOCs, actors, C2, MITRE, CVEs
intelthreadlinqs-mcp
Threadlinqs threat-intelligence MCP — 49 tools: threats, detections, IOCs, actors, C2, MITRE, CVEs
MeroFoundry
RemoteBuild and publish full-stack apps from your coding agent: models, rules, pages, auth, per-app MCP.