Leaderboard
Scored on public signals; components with none are listed as Unranked · Formula
Component
Domain
Vertical
| Rank | Score | Component | Description | Evidence | Last commit | Install |
|---|---|---|---|---|---|---|
| 2001 | Unranked | beads-mcp-servermcp · auth | An MCP server that exposes a curated typed surface over the Beads CLI, managing workspaces and issues through secure, sessionless HTTP with static… | No signals yet | No one-command install · Source | |
| 2002 | Unranked | university-microsoft-365-read-only-mcpmcp · back-end | A read-only MCP server that exposes Outlook mailbox tools (list, search, get messages) for university Microsoft 365 via Power Automate, enabling… | No signals yet | No one-command install · Source | |
| 2003 | Unranked | panorama-mcp-servermcp · back-end | A read-only MCP server for Palo Alto Panorama policy review that reads security rules, finds duplicates, broader coverage, conflicts, and overlaps… | No signals yet | No one-command install · Source | |
| 2004 | Unranked | romate-mcp-servermcp · back-end | This server exposes local stdio MCP tools as HTTP/SSE endpoints, enabling remote clients like Claude Desktop to call them. It supports single-tool and… | No signals yet | No one-command install · Source | |
| 2005 | Unranked | kyora-iq-compliance-control-reference-mcp-servermcp · back-end | Enables AI assistants to search and retrieve security, privacy, and AI-governance controls from multiple compliance frameworks (e.g., NIST, HIPAA… | No signals yet | No one-command install · Source | |
| 2006 | Unranked | secops-agent-triagemcp · observability | Enables AI agents to perform security alert triage by ingesting raw logs, extracting IOCs, querying threat intelligence sources, and generating… | No signals yet | No one-command install · Source | |
| 2007 | Unranked | mcp-security-tools-servermcp · back-end | A production-ready HTTP API server for security testing and reconnaissance, integrating nmap, cariddi, paramspider, metasploit, and web scraping via… | No signals yet | No one-command install · Source | |
| 2008 | Unranked | mcp-security-tools-server-2mcp · back-end | An MCP server that integrates multiple security and reconnaissance tools (Nmap, Cariddi, ParamSpider, Metasploit, web scraping) for AI systems… | No signals yet | No one-command install · Source | |
| 2009 | Unranked | agent-chokepointmcp · observability | A security checkpoint for AI agents that intercepts and polices tool calls with allow/block/ask verdicts, taint tracking, and audit logging. | No signals yet | No one-command install · Source | |
| 2010 | Unranked | express-climcp · back-end | MCP server for the eXpress corporate messenger, enabling AI agents to list chats, search contacts, send messages, and wait for incoming messages with… | No signals yet | No one-command install · Source | |
| 2011 | Unranked | openai-websearchmcp · ai-agents | Provides web search and image search tools using OpenAI's native server-side search. Uses Codex CLI authentication to enable free search via ChatGPT… | No signals yet | No one-command install · Source | |
| 2012 | Unranked | hydramcp · ai-agents | Enables Codex to delegate bounded engineering jobs to Claude Code CLI in isolated Git worktrees with strict security and allowance pacing. | No signals yet | No one-command install · Source | |
| 2013 | Unranked | gmail-smtp-mcp-servermcp · auth | Enables sending emails via Gmail using SMTP and app passwords without OAuth. It provides a custom authorization flow and encrypted credential storage… | No signals yet | No one-command install · Source | |
| 2014 | Unranked | tenable-identity-exposure-mcpmcp · auth | Provides MCP tools to query the Tenable Identity Exposure (TIE) API for security profiles, deviances, attacks, and activity timelines, with enforced… | No signals yet | No one-command install · Source | |
| 2015 | Unranked | ghost-mcp-azuremcp · back-end | MCP server that enables AI assistants to manage Ghost CMS posts, members, tags, tiers, and more, with support for remote hosting on Azure Functions… | No signals yet | No one-command install · Source | |
| 2016 | Unranked | mcp-bdmmcp · auth | Enables AI assistants to search, read, and analyze Italian civil court decisions from the Ministry of Justice's Banca Dati di Merito, using CIE… | No signals yet | No one-command install · Source | |
| 2017 | Unranked | skarp-cramcp · back-end | An MCP server that helps software makers meet EU Cyber Resilience Act obligations, including scope classification, Article 13(2) risk assessment… | No signals yet | No one-command install · Source | |
| 2018 | Unranked | voraxx-mcp-servermcp · ai-agents | A minimal, dependency-free MCP server that gives AI agents three real, read-only security-orchestration tools: cve_lookup, shodan_host_lookup, and… | No signals yet | No one-command install · Source | |
| 2019 | Unranked | unifi-network-mcpmcp · back-end | MCP server providing typed, safety-gated access to UniFi Network consoles via the official API, enabling management of devices, clients, networks… | No signals yet | No one-command install · Source | |
| 2020 | Unranked | xident-mcpmcp · auth | MCP servers for building and running Xident age and identity verification from AI agents. They provide documentation lookup, sandbox test… | No signals yet | No one-command install · Source | |
| 2021 | Unranked | alidocs-web-mcpmcp · back-end | Bridges the editing capabilities of an already-open DingTalk document in the browser to any MCP host via standard stdio, forwarding tools to the… | No signals yet | No one-command install · Source | |
| 2022 | Unranked | stateless-mcp-incident-lab-typescript-rawmcp · ai-agents | A raw TypeScript MCP server simulating incident lifecycles with tools, resources, prompts, and signed multi-round remediation approval. Enables… | No signals yet | No one-command install · Source | |
| 2023 | Unranked | cortex-xsiam-mcp-gatewaymcp · back-end | Enables governed agent access to Cortex XSIAM security operations APIs, including XQL log search, issues, cases, endpoints, and assets, with dataset… | No signals yet | No one-command install · Source | |
| 2024 | Unranked | pultmcp · back-end | An MCP server that allows AI clients to manage local development apps by reading state, configuring apps, and controlling runs, with security… | No signals yet | No one-command install · Source | |
| 2025 | Unranked | 1factory-mcp-servermcp · back-end | An open-source MCP bridge for the 1Factory API, providing read-only tools for searching and retrieving part masters, plans, inspections, FAIs… | No signals yet | No one-command install · Source | |
| 2026 | Unranked | filesystem-tsmcp · back-end | Standalone TypeScript MCP server for filesystem operations with robust security, encoding support, and cross-platform path handling. | No signals yet | No one-command install · Source | |
| 2027 | Unranked | nostr-mcp-authmcp · ai-agents | A Nostr-based authentication gate for MCP servers that requires agents to sign HTTP requests with a Nostr key, verifying signatures offline to secure… | No signals yet | No one-command install · Source | |
| 2028 | Unranked | agentguard-mcp-servermcp · ai-agents | Provides policy-driven runtime authorization and security evaluation for MCP-based agents, including MCP streaming HTTP gateway, mock MCP servers… | No signals yet | No one-command install · Source | |
| 2029 | Unranked | chat-sqlmcp · database | MCP server that enables natural-language SQL queries across multiple databases (ClickHouse, Teradata, PostgreSQL, MySQL, SQL Server, DB2, Oracle… | No signals yet | No one-command install · Source | |
| 2030 | Unranked | cloudflare-mcp-dcr-bridgemcp · auth | Enables Gemini Enterprise to connect to Cloudflare Zero Trust MCP server portals via Dynamic Client Registration (DCR) and OAuth 2.0 proxying. It… | No signals yet | No one-command install · Source | |
| 2031 | Unranked | pulrmcp · back-end | Secure file exchange MCP server enabling AI agents to upload, share, fetch, and revoke files with SHA-256 verification, malware scanning, expiry… | No signals yet | No one-command install · Source | |
| 2032 | Unranked | mcp-abap-adt-proxymcp · auth | MCP proxy server for SAP ABAP ADT that adds JWT authentication and forwards requests to target MCP servers. | No signals yet | No one-command install · Source | |
| 2033 | Unranked | bearer-mcp-servermcp · back-end | An MCP server with bearer token authentication implementing tools, resources, and prompts for a mock developer platform API, supporting both stdio and… | No signals yet | No one-command install · Source | |
| 2034 | Unranked | mikrotik-mcp-for-n8nmcp · observability | Enables n8n AI agents to manage MikroTik routers via SSH/SSE, providing tools for firewall, DNS, DHCP, WireGuard, interfaces, queues, backup, users… | No signals yet | No one-command install · Source | |
| 2035 | Unranked | ln-ashlar-mcpmcp · auth | Enables MCP clients to search ln-ashlar documentation and review implementation plans via Gemini, with OAuth 2.0 + PKCE authentication. | No signals yet | No one-command install · Source | |
| 2036 | Unranked | aws-security-analyzermcp · back-end | An MCP server for automated AWS security scanning. It detects over-privileged IAM roles and S3 Public Access Block misconfigurations, enabling… | No signals yet | No one-command install · Source | |
| 2037 | Unranked | mcp-production-demomcp · github-vcs | An MCP server providing live GitHub repository and issue search tools, with production-grade features like config validation, structured logging… | No signals yet | No one-command install · Source | |
| 2038 | Unranked | briefkasten-mcpmcp · ai-agents | Enables passing notes between Claude rooms on the same machine via Markdown files. Supports listing, reading, and writing notes with security… | No signals yet | No one-command install · Source | |
| 2039 | Unranked | kali-mcp-2mcp · other | Enables AI assistants to perform penetration testing by running real Kali Linux security tools and returning structured, verified findings instead of… | No signals yet | No one-command install · Source | |
| 2040 | Unranked | security-mcpmcp · github-vcs | Fetches GitHub Code Scanning alerts and applies minimal local patches to fix vulnerabilities, without creating branches, commits, or PRs. | No signals yet | No one-command install · Source | |
| 2041 | Unranked | fake-pennylane-mcp-servermcp · back-end | A fake MCP server that emulates the Pennylane MCP experience for local development, testing, demos, and CI pipelines, providing deterministic fixtures… | No signals yet | No one-command install · Source | |
| 2042 | Unranked | nuwax-openui-mcpmcp · front-end | Enables MCP hosts to render OpenUI artifacts (inline or sidecar) for agent-generated UI components such as cards, dashboards, forms, and charts, with… | No signals yet | No one-command install · Source | |
| 2043 | Unranked | blackdome-mcp-servermcp · ai-agents | Give your AI agents direct access to live honeypot threat intelligence. Look up attacker IPs, browse indicators of compromise (IOCs), inspect captured… | No signals yet | No one-command install · Source | |
| 2044 | Unranked | foundry-net-industrialmcp · observability | Cross-OEM industrial machine intelligence. Normalizes telemetry across 16 manufacturer families (Fanuc, Siemens, Haas, DMG Mori, Mazak), enables… | No signals yet | No one-command install · Source | |
| 2045 | Unranked | cybersecurity-threat-intelligence-mcpmcp · search | Provides CVE search enriched with EPSS exploit likelihood and CISA KEV status, plus live IP/domain reputation and a real-time threat feed for AI… | No signals yet | No one-command install · Source | |
| 2046 | Unranked | chokepoint-finder-mcpmcp · other | Reduces thousands of security findings to the smallest set of high-impact remediation actions, with fail-closed safety gates, typed execution plans… | No signals yet | No one-command install · Source | |
| 2047 | Unranked | bloodhoundmcp · other | Enables users to query BloodHound Active Directory graph data using natural language, finding attack paths, Kerberoastable accounts, and other AD… | No signals yet | No one-command install · Source | |
| 2048 | Unranked | checkmcpmcp · back-end | A vendor-neutral audit tool that evaluates MCP servers for security, quality, and context cost, producing an MCP Score with actionable insights. | No signals yet | No one-command install · Source | |
| 2049 | Unranked | dvmcp-damn-vulnerable-mcpmcp · ai-agents | An intentionally vulnerable MCP server for security training, simulating a fictional company with 28 vulnerable tools and 38 challenges to learn AI… | No signals yet | No one-command install · Source | |
| 2050 | Unranked | asset-library-mcp-servermcp · back-end | Enables users to search and retrieve research datasets via natural language queries, with tools for proposing and committing tag changes. Includes… | No signals yet | No one-command install · Source | |
| 2051 | Unranked | whatbox-mcpmcp · back-end | A security-first MCP server for managing Whatbox slots with structured read-only inspection and approval-gated mutations, including storage, services… | No signals yet | No one-command install · Source | |
| 2052 | Unranked | io-github-patrax-review-routermcp · auth | Enables AI agents to securely create and manage GitHub-to-Slack review routing setups through Tenpace, using OIDC-verified browser authorization and… | No signals yet | No one-command install · Source | |
| 2053 | Unranked | claude-design-mcp-servermcp · auth | Enables working with and exporting live Claude Design projects and prototypes through a local bridge that handles OAuth authentication and adds tools… | No signals yet | No one-command install · Source | |
| 2054 | Unranked | bitcoin-staking-mcpmcp · ai-agents | Enables agents to discover, understand, and plan native Bitcoin staking on Stacks through a read-only interface combining live PoX state, bond… | No signals yet | No one-command install · Source | |
| 2055 | Unranked | lolmcp · back-end | 53 security & enrichment MCP tools for AI agents. Contract scanning, threat intel, OSINT, crypto data, DNS/WAF recon. Pay-per-call via HTTP 402 + USDC… | No signals yet | No one-command install · Source | |
| 2056 | Unranked | mcp-server-template-python-2mcp · back-end | A minimal MCP server template with Streamable HTTP transport, bearer token authentication, and a health check endpoint, designed for quick deployment… | No signals yet | No one-command install · Source | |
| 2057 | Unranked | qradar-mcp-servermcp · back-end | MCP server for IBM QRadar SIEM that consolidates 728 REST API endpoints into 4 intelligent tools, enabling natural language interaction for security… | No signals yet | No one-command install · Source | |
| 2058 | Unranked | pr-guard-mcpmcp · ai-agents | Enables AI agents to perform security audits on pull request diffs by detecting secrets, dangerous code patterns, and new dependencies, outputting… | No signals yet | No one-command install · Source | |
| 2059 | Unranked | shade-browser-security-mcpmcp · browser | Standalone MCP server exposing only the security-classified tools from Shade Browser, enabling Brave CDP browser automation across 20 isolated profile… | No signals yet | No one-command install · Source | |
| 2060 | Unranked | mcp-enterprise-gatewaymcp · auth | A secure MCP proxy server with JWT authentication, SQL guardrails, rate limiting, and Kafka audit logging, enabling enterprise-grade access control… | No signals yet | No one-command install · Source | |
| 2061 | Unranked | xcode-mcp-bridgemcp · auth | Bridges Xcode's mcpbridge to MCP clients via SSE, maintaining a single persistent process to eliminate repeated authorization prompts. | No signals yet | No one-command install · Source | |
| 2062 | Unranked | provekit-mcpmcp · ai-agents | Provides AI agents with a hardened code security scanner via scan_code and scan_path, detecting leaked secrets and insecure patterns while enforcing… | No signals yet | No one-command install · Source | |
| 2063 | Unranked | gestion-mcp-servermcp · back-end | MCP server that exposes the GestionIntegrantes REST API as tools, enabling authentication, management of personas, and user queries via natural… | No signals yet | No one-command install · Source | |
| 2064 | Unranked | permissioned-mcp-servermcp · back-end | A compact MCP server demonstrating explicit tool boundaries, least-privilege discovery, execution-time authorization, destructive-action confirmation… | No signals yet | No one-command install · Source | |
| 2065 | Unranked | hayate-mcpmcp · auth | Mounts MCP servers into Python web apps (ASGI/Workers) with Streamable HTTP transport, session management, and optional OAuth2 authorization. | No signals yet | No one-command install · Source | |
| 2066 | Unranked | mcp-multi-agent-code-reviewmcp · ai-agents | Runs a multi-agent code review pipeline via MCP, analyzing git diffs for security, quality, and logic issues and returning a pass/fail verdict. | No signals yet | No one-command install · Source | |
| 2067 | Unranked | horizon-mcp-auth-proxymcp · back-end | A generic single-upstream MCP authentication proxy that wraps remote Streamable HTTP MCP servers behind Horizon OAuth, enabling clients to connect… | No signals yet | No one-command install · Source | |
| 2068 | Unranked | taifost-hermes-mcp-servermcp · back-end | Exposes two MCP tools for saving drafts and publishing content to Taifost Core, with secure authentication and idempotent behavior. | No signals yet | No one-command install · Source | |
| 2069 | Unranked | smartthings-rules-copilot-mcp-servermcp · back-end | Enables querying and managing SmartThings locations, devices, and rules through MCP tools, with security and confirmation safeguards. | No signals yet | No one-command install · Source | |
| 2070 | Unranked | hostinger-cloud-mcp-2-0-gatewaymcp · back-end | A stateless MCP server for the full Hostinger API, exposing 305 tools with OAuth 2.1 and API-token authentication. | No signals yet | No one-command install · Source | |
| 2071 | Unranked | egordian-aeo-mcp-servicemcp · auth | Enables MCP clients to access the eGordian JOC Service, including the AEO nine-stage deterministic estimating pipeline and the licensed Gordian CTC… | No signals yet | No one-command install · Source | |
| 2072 | Unranked | zeek-mcpmcp · observability | An MCP server for Zeek and Suricata, providing intelligent log parsing, querying, and analysis over network security monitoring data. | No signals yet | No one-command install · Source | |
| 2073 | Unranked | my-mcp-templatemcp · ai-agents | A generic FastMCP server template for building CLI coding agent tools, with example tools, authentication, and a comprehensive test suite. | No signals yet | No one-command install · Source | |
| 2074 | Unranked | offsec-mcpmcp · ai-agents | MCP server for offensive-security tooling, enabling AI agents to run reconnaissance, CVE intelligence, JavaScript analysis, HTTP probing, and port… | No signals yet | No one-command install · Source | |
| 2075 | Unranked | novacal-mcp-servermcp · back-end | Enables managing Novacal event types, availability, and events (create, cancel, reschedule) via MCP, with OAuth authentication and encrypted API key… | No signals yet | No one-command install · Source | |
| 2076 | Unranked | opnsense-mcpmcp · observability | Enables interaction with OPNsense firewalls through MCP tools for managing firewall rules, interfaces, DHCP leases, and system monitoring. | No signals yet | No one-command install · Source | |
| 2077 | Unranked | surftracker-mcp-servermcp · back-end | MCP server that proxies the SurfTracker API to let AI clients list, create, and manage tasks, releases, and notifications, using the user's… | No signals yet | No one-command install · Source | |
| 2078 | Unranked | mcp-security-auditormcp · ai-agents | An LLM-powered vulnerability auditor for MCP servers that catches semantically-equivalent attacks by using a local LLM grounded by retrieval against… | No signals yet | No one-command install · Source | |
| 2079 | Unranked | internal-kb-mcpmcp · auth | A remote MCP server on Cloudflare Workers protected by Okta custom authorization server, demonstrating tool-level authorization via JWT access tokens… | No signals yet | No one-command install · Source | |
| 2080 | Unranked | mcp-server-template-python-3mcp · back-end | A minimal Model Context Protocol server template for Render with bearer token authentication, an example tool, and a health check endpoint. Enables… | No signals yet | No one-command install · Source | |
| 2081 | Unranked | ai-assisted-pentest-mcpmcp · ai-agents | Enables AI agents to run bounded security reconnaissance tools against a local OWASP Juice Shop target via MCP, including HTTP checks, header… | No signals yet | No one-command install · Source | |
| 2082 | Unranked | pentest-mcp-extendedmcp · back-end | An MCP server that extends kali-mcp with cloud (AWS/Azure/GCP), API/GraphQL/JWT, OSINT, container/K8s, IaC/SAST, mobile, binary analysis, and… | No signals yet | No one-command install · Source | |
| 2083 | Unranked | agpc-domain-checkmcp · back-end | MCP server that lets agents check domain email authentication (SPF, DKIM, DMARC, MX) via a free API, returning grades and shareable report URLs. Also… | No signals yet | No one-command install · Source | |
| 2084 | Unranked | hardened-terminal-mcpmcp · back-end | Security-hardened MCP server that runs only allowlisted commands with no shell, jailed to a single directory, and bounded execution. | No signals yet | No one-command install · Source | |
| 2085 | Unranked | stravamcpmcp · back-end | An MCP server that exposes Strava v3 API as read-only tools for AI agents. It covers athlete profiles, activities, stats, routes, segments, and rate… | No signals yet | No one-command install · Source | |
| 2086 | Unranked | mcp-onprem-startermcp · back-end | A starter template for building single-client MCP servers that expose existing REST APIs, deployable via stdio in customer-controlled environments. It… | No signals yet | No one-command install · Source | |
| 2087 | Unranked | mcp-tudumcp · back-end | MCP server that lets AI assistants create projects, epics, and tasks in the TuDu app through natural conversation. It securely connects over local… | No signals yet | No one-command install · Source | |
| 2088 | Unranked | cymulate-mcp-toolsmcp · back-end | Community MCP server for the Cymulate security validation platform. It exposes the full Cymulate REST API (337 endpoints) as 106 semantic tools for… | No signals yet | No one-command install · Source | |
| 2089 | Unranked | cockpit-lite-mcp-servermcp · back-end | Enables authorized penetration testing through MCP, providing parallel reconnaissance, vulnerability scanning, attack path analysis, and… | No signals yet | No one-command install · Source | |
| 2090 | Unranked | wphealthkit-mcpmcp · other | Security audits for WordPress plugins and themes — 62 verification layers (58 deterministic scanners + 4 AI engines), prioritised fix plans and SBOMs. | No signals yet | No one-command install · Source | |
| 2091 | Unranked | auth0-3lo-mcp-servermcp · auth | Demonstrates the AgentCore Gateway 3-Legged OAuth flow with Auth0, exposing whoami and echo tools for end-to-end authorization code testing. | No signals yet | No one-command install · Source | |
| 2092 | Unranked | universal-mcp-oauth-gatewaymcp · auth | A deployable serverless MCP OAuth gateway and proxy that adds OAuth 2.0 authentication to Excalidraw tools or any external MCP server, enabling secure… | No signals yet | No one-command install · Source | |
| 2093 | Unranked | best-practices-mcpmcp · auth | Enables searching ServiceNow's public best-practices library across content types without authentication. | No signals yet | No one-command install · Source | |
| 2094 | Unranked | destiny-2-mcp-servermcp · back-end | MCP server that provides full read/write access to the Bungie API for Destiny 2, enabling AI assistants to manage inventory, equipment, loadouts… | No signals yet | No one-command install · Source | |
| 2095 | Unranked | lasuite-docs-mcpmcp · back-end | MCP server for LaSuite Docs API, enabling operations like list, read, create, update, delete documents, versions, favorites, and current user via OIDC… | No signals yet | No one-command install · Source | |
| 2096 | Unranked | agent-security-gatewaymcp · ai-agents | MCP server that provides a security gateway for AI agents, enforcing allow/confirm/deny policies on tool calls and requiring human approval for risky… | No signals yet | No one-command install · Source | |
| 2097 | Unranked | edge-browsermcp · ai-agents | Local MCP server for Codex that provides on-demand, read-only access to Edge tabs and bookmarks, plus controlled interaction with agent-owned tabs… | No signals yet | No one-command install · Source | |
| 2098 | Unranked | gorgon-scoutmcp · back-end | Gorgon Scout is a Windows web-application and API security scanner (DAST). This connector exposes it as MCP tools, so your AI assistant can record a… | No signals yet | No one-command install · Source | |
| 2099 | Unranked | led-display-servermcp · ai-agents | MCP server for controlling LED displays via MQTT. It enables AI agents to list devices and send text, images, colors, or clear commands with… | No signals yet | No one-command install · Source | |
| 2100 | Unranked | bleedmode-dear-usermcp · ai-agents | Audit your Claude setup for security risks, persona conflicts, and configuration health. | No signals yet | No one-command install · Source |
Score colour shows how many signals stand behind it, never how good it is: amber, three or more; dimmer amber, two; grey, one. The Evidence column names them.
Stars, forks and last commit are as GitHub reported them when Armory last read each repository: for most, or later. A repository may have changed since.