114 skills found · Page 4 of 4
faizbawa / mcp-remote-sshMCP server for remote SSH operations -- persistent sessions, structured command output, SFTP file transfer, port forwarding, and secret-safe environment variable injection with automatic output redaction.
02loveslollipop / OpenCROWAgentic AI orchestration framework for offensive security and CTF work, with Codex-ready skills, typed MCP servers, workflow CLIs, and OpenCROW Constellation for multi-agent coordination, corpus sync, and final artifact handoff.
ulinycoin / shadow-webLocal-first Python SDK for AI agents: Shadow DOM flatten, Action Map, SchemaSnap, form fill, security scan, MCP (64–97% token reduction)
teehooai / spidershieldScan, rate, and harden MCP servers for AI agent safety
Axiler-Lab / vaultmcpEncrypted credential vault and remote MCP gateway
holistis / bug-bounty-intelligence-mcpMCP server that scans Solidity repos through a 7-gate verification framework (Al-Mizaan) to cut LLM false positives, benchmarked against Slither; free pattern-search from 1,032 reconciled Sherlock findings, paid full scan via x402 (USDC/Base).
luisgf / infrabrokerInfrastructure access broker for AI agents — SSH & Kubernetes. Per-operation ephemeral credentials minted by a separate signer; the model never touches one. MCP stdio / HTTP+OIDC.
alejandrosaenz117 / fetch-cwe-listA Node.js module to fetch, extract, and parse the latest or any specific CWE list from MITRE.
Rul1an / assayOpen evidence profile for MCP tool actions. Enforce configured tool-call policies and record decisions and observations in offline-verifiable bundles. Optional Linux kernel controls. No hosted backend required.
yxdm02 / mcp-virusTotal-threat-analysisVirusTotal MCP Server是一个让AI结合威胁情报进行深入分析、基于 Model Context Protocol (MCP) 开发的 VirusTotal API 调用工具,为用户提供文件、IP地址、域名和URL的威胁情报查询功能,并将得到的数据喂给AI进行二次分析,提升威胁情报分析能力并给予处置建议。
tomjwxf / scopeblind-gatewayActive development continues at ScopeBlind/scopeblind-gateway. - Security gateway for MCP servers. Cedar policy engine, Ed25519-signed receipts, per-tool enforcement. IETF Internet-Draft. 4 patents pending. npx protect-mcp
nsasoft / nsauditor-ai-agent-skillAI Agent Skill for NSAuditor AI — gives any AI coding agent built-in knowledge of NSAuditor's MCP tools, schemas, plugins, and security audit workflows. Works with Claude Code, Cursor, Windsurf, and any MCP-aware agent.
kirklasalle / PrismRefractionThe governance-native Agent OS. Cryptographically sealed 10-Law security, tri-model cognitive orchestration, and secure full-stack computer use with immutable CAC accountability.
nisalgunawardhana / MCP-Security-101The Model Context Protocol (MCP) represents a significant advancement in AI system integration, but with it comes a new landscape of security challenges.
CODE-SAURABH / OpenSkills49 production-grade AI agent skills (SKILL.md) for Claude Code, Codex & Antigravity — system design, DevOps, security, QA, and more. MIT licensed, open source.
orcasecurity / orca-skillsSkills and plugins to accelerate security workflows with the Orca Cloud Platform
A MCP (Model Context Protocol) server to allow code security reviews using https://osv.dev (Open Source Vulnerabilities Database)
AgentsID-dev / agentsid-scannerSecurity scanner for MCP servers. Grades auth, permissions, injection risks, and tool safety. The Lighthouse of agent security.
carbonefederico / ai-telco-chatbot"dev:no-security": "NO_SECURITY=true node scripts/start-all.js", "dev:portal": "npm --workspace @telco-demo/portal run dev", "dev:agent": "npm --workspace @telco-demo/agent run dev", "dev:mcp": "npm --workspace @telco-demo/mcp-server run dev", "start:portal": "npm --workspace @telco-demo/portal star…
Cyreslab-AI / scan-mcpStatic security scanner for MCP servers — detects tool poisoning, injection, secrets, Dockerfile and dependency issues.
peixl / ifq-design-skillsAgent-native design skill: ordinary prompts -> verified HTML-first prototypes, decks, dashboards, motion demos, and export-ready visuals.
TheAstrelo / qbTool-agnostic 13-phase AI development pipeline — turns a task description into reviewed, committed code through automated design, adversarial review, security, test, and code-review gates. One bash engine, balanced Opus/Sonnet routing, self-healing commit review.
TheAstrelo / qfTool-agnostic 13-phase AI development pipeline — turns a task description into reviewed, committed code through automated design, adversarial review, security, test, and code-review gates. One bash engine, balanced Opus/Sonnet routing, self-healing commit review.
ruvnet / sparc-security-review🛡️ Security Reviewer - You perform static and dynamic audits to ensure secure code practices. You flag secrets, poor mod...