Leaderboard
Scored on public signals; components with none are listed as Unranked · Formula
Component
Domain
Vertical
| Rank | Score | Component | Description | Evidence | Last commit | Install |
|---|---|---|---|---|---|---|
| 401 | 29.013 | cyanheads-pentest-mcp-servermcp · back-end | Offline methodology engine and payload workshop for authorized penetration testing, CTF, security research, and education via MCP. | 1 star · 1 fork | No one-command install · Source | |
| 402 | 29.013 | cyanheads-nist-nvdmcp · database | Search and audit NIST National Vulnerability Database CVEs by keyword, severity, CWE, CISA KEV status, and CPE. | 1 star · 1 fork | No one-command install · Source | |
| 403 | 29.013 | timps-swarmmcp · ai-agents | MCP server that provides 160 specialist AI agents as parallel sub-agents and MCP tools for tasks like security auditing, API design, DB schema design… | 1 star · 1 fork | No one-command install · Source | |
| 404 | 29.013 | bi-mcpmcp · ai-agents | Connects AI assistants like Claude to Blue Iris security camera software, enabling natural language queries about camera status, alerts, and… | 1 star · 1 fork | No one-command install · Source | |
| 405 | 29.013 | n8n-mcp-communitymcp · back-end | A security-focused MCP server for self-hosted n8n Community Edition, providing 44 bounded tools to manage workflows, nodes, executions, credentials… | 1 star · 1 fork | No one-command install · Source | |
| 406 | 29.013 | shrike-mcpmcp · ai-agents | AI agent security scanner with prompt injection detection. | 1 star · 1 fork | No one-command install · Source | |
| 407 | 29.013 | mimecast-mcpmcp · back-end | MCP server for Mimecast Email Security — message tracking, threat intelligence, and email queue management. Enables AI assistants to investigate and… | 1 star · 1 fork | No one-command install · Source | |
| 408 | 29.013 | tuskr-mcp-servermcp · back-end | Enables interaction with the Tuskr test management API through MCP, supporting account ID and access token authentication for managing test cases… | 1 star · 1 fork | No one-command install · Source | |
| 409 | 29.013 | mcp-z-outlookmcp · auth | Integrates with Microsoft Outlook for email search, composition, and category management with OAuth authentication. | 1 star · 1 fork | No one-command install · Source | |
| 410 | 29.387 | compuute-mcp-security-scannermcp · back-end | Static security scanner for MCP servers. POST a public GitHub URL, get severity counts, a score, and the top findings with file+line back. 37 rules… | 1,597 installs | No commit datelisted | No one-command install · Source |
| 411 | 30.476 | autoapply-mcpmcp · browser | AutoApply automates job applications using a real Playwright browser. Save your profile once — name, email, phone, address, work authorization… | 735 installs | No commit datelisted | No one-command install · Source |
| 412 | 32.223 | parvesh776-kali-linuxmcp · auth | AI-driven access to 40+ Kali Linux security tools for authorized penetration testing. | 2 stars | No commit datelisted | No one-command install · Source |
| 413 | 32.223 | isu-moodle-mcpmcp · back-end | Enables Claude to interact with Moodle via the official REST API for read-only tasks like listing courses, materials, assignments, submissions, and… | 2 stars | No commit datelisted | No one-command install · Source |
| 414 | 32.223 | hacktheboxmcp · back-end | Bridges to the HackTheBox API for managing cybersecurity challenges and machines, starting instances, submitting flags, and tracking learning progress… | 2 stars | No commit datelisted | No one-command install · Source |
| 415 | 32.223 | douyin-dm-mcpmcp · auth | Enables reading and sending Douyin private messages through a persistent browser profile, with dry-run and authorization safeguards. | 2 stars | No commit datelisted | No one-command install · Source |
| 416 | 32.223 | anthonykewl20-ranex-frameworkmcp · other | Hybrid governance framework combining Rust-based security scanning with Python application development through contract decorators, enabling automated… | 2 stars | No commit datelisted | No one-command install · Source |
| 417 | 32.223 | ansvar-ot-securitymcp · other | OT security standards reference covering IEC 62443, NIST 800-82/53, and MITRE ATT&CK for ICS. | 2 stars | No commit datelisted | No one-command install · Source |
| 418 | 32.223 | johmil-microsoft-teams-notificationsmcp · front-end | Enables sending markdown-formatted notifications to Microsoft Teams channels using Azure AD authentication, specifically designed for development… | 2 stars | No one-command install · Source | |
| 419 | 32.223 | christopherwoodall-nmapmcp · other | Provides a bridge to Nmap network scanning tool for performing reconnaissance, port scanning, and service identification with customizable options and… | 2 stars | No one-command install · Source | |
| 420 | 32.223 | trustasia-mysslmcp · back-end | Integrates with MySSL API to provide domain and IP security checking capabilities for verifying secure HTTPS deployments and monitoring SSL/TLS… | 2 stars | No one-command install · Source | |
| 421 | 32.223 | shanksxz-github-repo-contextmcp · github-vcs | Provides a GitHub repository context retrieval tool that enables AI models to access repository structures, file contents, and filtered file lists… | 2 stars | No one-command install · Source | |
| 422 | 32.223 | gigapipemcp · observability | Integrates with Gigapipe's observability platform to query Prometheus metrics with PromQL, search Loki logs with LogQL, and retrieve Tempo traces by… | 2 stars | No one-command install · Source | |
| 423 | 32.223 | cookie-jarmcp · auth | Provides cookie management capabilities for web automation and testing workflows, enabling storage, retrieval, and manipulation of session state and… | 2 stars | No one-command install · Source | |
| 424 | 32.223 | can-acar-jarvismcp · back-end | Go-based system administration server that provides secure filesystem operations, terminal command execution, web content fetching, and multi-file… | 2 stars | No one-command install · Source | |
| 425 | 32.223 | superego-mcpmcp · ai-agents | Superego MCP is an intelligent tool-call review system for AI agents that provides configurable security rules and automated guardrails. | 2 stars | No one-command install · Source | |
| 426 | 32.223 | dabhivijay2478-better-authmcp · search | Integrates with Better Auth documentation through web scraping to provide authentication provider listings, feature details with code examples… | 2 stars | No one-command install · Source | |
| 427 | 32.223 | lastmiao-pathscanmcp · search | Integrates dirsearch directory brute-forcing tool with Firecrawl web crawling services to enable automated discovery of hidden web directories, files… | 2 stars | No one-command install · Source | |
| 428 | 32.223 | gchallen-withingsmcp · auth | Integrates with Withings smart scales through OAuth2 authentication to retrieve weight measurements, body composition data (fat mass, muscle mass… | 2 stars | No one-command install · Source | |
| 429 | 32.223 | tshark-mcp-servermcp · back-end | Analyzes pcap files using tshark to detect network attacks and security threats. | 2 stars | No one-command install · Source | |
| 430 | 32.223 | alexgarabt-bizangafest-penetration-testingmcp · back-end | Autonomous penetration testing server that performs network reconnaissance with nmap scanning and vulnerability discovery through searchsploit… | 2 stars | No one-command install · Source | |
| 431 | 32.223 | rykerwang-openapi2mcpservermcp · back-end | Automatically converts OpenAPI specifications into callable tools with authentication handling, input validation, and HTTP request proxying for… | 2 stars | No one-command install · Source | |
| 432 | 32.223 | sanjanaspanda-github-code-reviewmcp · github-vcs | Integrates with GitHub's API to analyze pull requests, detect code patterns and security vulnerabilities, manage reviews and comments, and enforce… | 2 stars | No one-command install · Source | |
| 433 | 32.223 | wcoppedge-cisa-threat-intelligencemcp · search | Integrates with CISA's Known Exploited Vulnerabilities catalog and NVD data to provide vulnerability searching, threat trend analysis, CVE… | 2 stars | No one-command install · Source | |
| 434 | 32.223 | jim-coyne-acimcp · back-end | Integrates with Cisco ACI fabrics through APIC REST API to automate network infrastructure management including tenant configuration, policy creation… | 2 stars | No one-command install · Source | |
| 435 | 32.223 | notoriousarnav-eventhorizonmcp · back-end | Integrates with EventHorizon Django platform using Knox authentication to manage event lifecycles, registrations with approval workflows, and user… | 2 stars | No one-command install · Source | |
| 436 | 32.223 | ricardodeazambuja-browser-automation-playwrightmcp · browser | Universal browser automation server using Playwright that provides web navigation, element interaction, media control, network monitoring, security… | 2 stars | No one-command install · Source | |
| 437 | 32.223 | gpt-commandermcp · ai-agents | A security-first MCP server that provides LLMs with structured tools for filesystem, process, search, build/test/lint, IDE integration, and more. | 2 stars | No one-command install · Source | |
| 438 | 32.223 | cliai-slack-wrappermcp · auth | Docker-wrapped CLI tool that provides token-efficient access to Slack workspaces through structured JSON output and multiple authentication methods. | 2 stars | No one-command install · Source | |
| 439 | 32.223 | claude-flowmcp · ai-agents | Multi-agent AI orchestration platform for Claude Code that enables deploying and coordinating specialized agents in swarms with self-learning… | 2 stars | No one-command install · Source | |
| 440 | 32.223 | mary-code217-swagger-openapimcp · back-end | Parses Swagger/OpenAPI specifications to dynamically generate callable tools for REST API integration with support for multiple APIs and… | 2 stars | No one-command install · Source | |
| 441 | 32.223 | kaewz-manga-wordpress-nodeflowmcp · back-end | Cloudflare Workers-based WordPress REST API integration with multi-tenant authentication and external image hosting for automated content management. | 2 stars | No one-command install · Source | |
| 442 | 32.223 | securechaindev-secure-chainmcp · database | Integrates with vulnerability databases and dependency graphs to provide software supply chain security assessment through package status checking… | 2 stars | No one-command install · Source | |
| 443 | 32.223 | bajuzjefe-aikidomcp · other | Security analysis for Aiken smart contracts on Cardano with 75 vulnerability detectors. | 2 stars | No one-command install · Source | |
| 444 | 32.223 | ossec-mcpmcp · ai-agents | MCP server that exposes OSSEC HIDS security monitoring capabilities as tools, resources, and prompts for AI assistants. | 2 stars | No one-command install · Source | |
| 445 | 32.223 | vyos-mcpmcp · back-end | MCP server for managing VyOS routers via the VyOS HTTP API, allowing AI assistants to read config, set interfaces, firewall rules, VPNs, and more. | 2 stars | No one-command install · Source | |
| 446 | 32.223 | pipeline-assistant-mcpmcp · back-end | An MCP server that automates CI/CD pipeline creation, analysis, and security enforcement. It generates production-ready pipelines from templates and… | 2 stars | No one-command install · Source | |
| 447 | 32.223 | danielsebastianc-frappe-apimcp · back-end | Provides a single tool for making HTTP requests to Frappe/ERPNext REST API endpoints with token-based authentication. | 2 stars | No one-command install · Source | |
| 448 | 32.223 | oneclicklmmcp · back-end | A robust MCP server for NotebookLM that provides auto-healing authentication, zero-config setup, and tools to list, query, create notebooks, and… | 2 stars | No one-command install · Source | |
| 449 | 32.223 | android-security-analyzermcp · back-end | MCP server for static security analysis of Android application source code. | 2 stars | No one-command install · Source | |
| 450 | 32.223 | ako2345-android-security-analyzermcp · other | Static security analysis of Android application source code with 53 rules across manifest, Gradle, source, XML, and secret scanning. | 2 stars | No one-command install · Source | |
| 451 | 32.223 | kof-stitch-mcpmcp · front-end | Enables AI-powered UI/UX design generation and management via Google Stitch, handling OAuth authentication automatically for MCP clients like Claude… | 2 stars | No one-command install · Source | |
| 452 | 32.223 | mcpampelmcp · back-end | MCP server that scans other MCP servers for security vulnerabilities using 16 scanning engines, returning aggregated trust scores. | 2 stars | No one-command install · Source | |
| 453 | 32.223 | netsuite-mcpmcp · auth | Enables AI assistants to query and manage NetSuite data via natural language, supporting SuiteQL queries and record operations through Token-Based… | 2 stars | No one-command install · Source | |
| 454 | 32.223 | muhannad-hash-mcp-shieldmcp · ai-agents | Security scanner for MCP servers. Detects backdoors, exfiltration code, obfuscation, dangerous code execution, prompt injection, and supply chain… | 2 stars | armory install muhannad-hash-mcp-shield --cli claude | |
| 455 | 32.223 | eyaushev-swagger-testcase-mcpmcp · back-end | MCP server for API test case generation from Swagger/OpenAPI specs. Parses Swagger 2.0 and OpenAPI 3.x, generates test cases across 8 categories… | 2 stars | No one-command install · Source | |
| 456 | 32.223 | drupal-best-practicesmcp · front-end | Provides access to curated Drupal development standards and security guidelines through searchable CSV-based knowledge covering coding conventions… | 2 stars | No one-command install · Source | |
| 457 | 32.223 | nhpsecurity-policy-firewallmcp · back-end | Security proxy that enforces allow/deny policies on MCP tool calls between AI clients and downstream MCP servers, with secret redaction and audit… | 2 stars | No one-command install · Source | |
| 458 | 32.223 | jstibal-openterms-mcpmcp · ai-agents | Ed25519-signed consent receipts and programmable policy engine for AI agents. Spending caps, action whitelists, escalation thresholds, and JWKS-backed… | 2 stars | No one-command install · Source | |
| 459 | 32.223 | shemcpmcp · back-end | An MCP server that provides sandboxed shell command execution with configurable security policies, enabling safe AI-assisted command runs within a… | 2 stars | No one-command install · Source | |
| 460 | 32.223 | r00tkit77-nessusmcp · other | Transforms Nessus vulnerability scan data into prioritized remediation tasks by correlating CVEs with NVD, CISA KEV, and asset ownership data. | 2 stars | No one-command install · Source | |
| 461 | 32.223 | cve-search-mcp-servermcp · back-end | Enables searching and analyzing CVEs and vulnerabilities from multiple sources, optimized for PR review scenarios to help developers identify the… | 2 stars | No one-command install · Source | |
| 462 | 32.223 | loganmurphy-ouramcp · auth | MCP server for Oura Ring health data running on Cloudflare Workers, exposing sleep, activity, and readiness metrics via OAuth 2.1 authentication. | 2 stars | No one-command install · Source | |
| 463 | 32.223 | poisonstefani-dev-threadsmcp · back-end | MCP server for the official Meta Threads API covering authentication, publishing, reading, replies, insights, and search operations. | 2 stars | No one-command install · Source | |
| 464 | 32.223 | masx200-webdavmcp · search | Connects to WebDAV-enabled storage systems with authenticated access and bcrypt encryption, providing file and directory operations, glob pattern… | 2 stars | No one-command install · Source | |
| 465 | 32.223 | qualys-mcp-servermcp · back-end | MCP server enabling AI assistants to interact with the Qualys vulnerability management platform. Supports investigation, risk assessment, compliance… | 2 stars | No one-command install · Source | |
| 466 | 32.223 | notasandy-code-sanitizermcp · other | Strict AI code reviewer powered by Groq that detects bugs and security vulnerabilities in code. | 2 stars | No one-command install · Source | |
| 467 | 32.223 | powerbi-mcp-proxymcp · back-end | A self-hosted MCP server that proxies MCP clients to Power BI, using your own Entra tenant and Azure subscription. It enables DAX queries, workspace… | 2 stars | No one-command install · Source | |
| 468 | 32.223 | nogoo9-mcp-server-cloud-fsmcp · auth | A cloud replacement for mcp-server-filesystem that provides 30 tools for S3, Azure Blob, and Google Cloud Storage, deployable locally via STDIO or… | 2 stars | No one-command install · Source | |
| 469 | 32.223 | ongjin-security-scannermcp · other | Detects security vulnerabilities in code including OWASP Top 10 threats and hardcoded secrets | 2 stars | No one-command install · Source | |
| 470 | 32.223 | depureco-industrial-vacuum-explorermcp · auth | Remote MCP Server for industrial vacuum cleaner configuration. Query 150+ products across 24 industrial sectors with full ATEX certification data… | 2 stars | No one-command install · Source | |
| 471 | 32.223 | mcp-7zip-servermcp · back-end | An MCP server for 7-Zip archive operations (list, extract, create) with dual-engine architecture and sandbox security features. Note: currently a… | 2 stars | No one-command install · Source | |
| 472 | 32.223 | vibecheckmcp · database | Agent-native "safe to ship?" security gate for AI-generated code. Uses real parsers and inter-rocedural taint analysis (JS/TS, Python, Go) to flag the… | 2 stars | No one-command install · Source | |
| 473 | 32.223 | aws-sra-verify-mcp-servermcp · back-end | Enables AI agents to assess AWS environments against the AWS Security Reference Architecture (SRA) by providing tools to discover, describe, and run… | 2 stars | No one-command install · Source | |
| 474 | 32.223 | arvancloud-mcp-servermcp · back-end | Enables AI agents to manage the entire ArvanCloud platform (compute, networking, storage, CDN, DNS, etc.) plus a cloud-DevOps toolbox for… | 2 stars | No one-command install · Source | |
| 475 | 32.223 | juscraper-mcpmcp · back-end | Public MCP server for querying Brazilian court jurisprudence, processes, and communications without authentication. Supports courts like TJSP, TJRS… | 2 stars | No one-command install · Source | |
| 476 | 32.223 | mcp-security-auditmcp · ai-agents | Security auditor for MCP servers that enumerates tools, resources, and prompts, scans for injection patterns, classifies risk levels, and produces a… | 2 stars | No one-command install · Source | |
| 477 | 32.223 | aegismcpmcp · ai-agents | A local-first security gateway and visual dashboard for AI agents that enforces cost caps, blocks prompt injections, and requires approval for… | 2 stars | No one-command install · Source | |
| 478 | 32.223 | guard-scannermcp · ai-agents | Provides a security scanner for AI agent skills and MCP servers, detecting threats like prompt injection, identity hijacking, and memory poisoning. | 2 stars | No one-command install · Source | |
| 479 | 32.223 | sast-mcp-servermcp · back-end | Enables AI agents to scan code for security vulnerabilities using multiple static analysis tools, with support for filtering, deduplication, and CI/CD… | 2 stars | No one-command install · Source | |
| 480 | 32.223 | achetronic-browsemcp · auth | Provides web search, page fetching, and file downloading with JWT authentication, OAuth 2.0 integration, and CEL-based policy controls for supervised… | 2 stars | No one-command install · Source | |
| 481 | 32.223 | checkslip-mcpmcp · auth | A remote MCP server for verifying Thai bank transfer slips using slip images, QR payloads, or transaction references, with OAuth 2.1 authentication… | 2 stars | No one-command install · Source | |
| 482 | 32.223 | dephealth-mcpmcp · back-end | Dependency security & health auditing for AI agents with no account or API key required. | 2 stars | No one-command install · Source | |
| 483 | 32.223 | substack-article-mcpmcp · ai-agents | MCP server for Substack that enables reading articles, comments, feed, and subscriptions from AI clients like Cursor and Claude, with optional… | 2 stars | No one-command install · Source | |
| 484 | 32.223 | flagrixmcp · github-vcs | Enables AI agents to scan GitHub repositories and user profiles for malware signals before cloning, providing risk verdicts pinned to specific… | 2 stars | No one-command install · Source | |
| 485 | 32.223 | touful-vuln-search-mcpmcp · ai-agents | Unified vulnerability search MCP server for penetration testing agents, integrating 5 data sources (NVD, OSV, EPSS, CISA KEV, Exploit-DB+GitHub) and… | 2 stars | No one-command install · Source | |
| 486 | 32.223 | cinderfimcp · other | Retirement planning for Canada and the US with CPP, OAS, Social Security, and Monte Carlo simulations. | 2 stars | No one-command install · Source | |
| 487 | 32.223 | codemore-mcp-servermcp · back-end | Enables AI agents to scan code for security and quality issues and receive machine-readable reports with suggested fixes and verification criteria. | 2 stars | No one-command install · Source | |
| 488 | 32.223 | daimonmcp · other | A local daemon for macOS that gives any MCP-capable AI client eyes, hands, and a face — screen capture, accessibility tree, mouse/keyboard actions… | 2 stars | No one-command install · Source | |
| 489 | 32.223 | sap-security-notes-mcp-servermcp · front-end | Enables querying SAP Security Note metadata including Patch Day releases, CVSS scores, CVEs, affected components, and actively-exploited status via… | 2 stars | No one-command install · Source | |
| 490 | 32.223 | code-wheel-drupal-toolsmcp · observability | Drupal module providing read-only analysis tools for site health monitoring, content management, configuration inspection, user administration, and… | 2 stars | No one-command install · Source | |
| 491 | 32.223 | mcp-script-runnermcp · back-end | Enables MCP clients to remotely execute server-side JavaScript in ServiceNow via a single tool, allowing full CRUD and API access with audit logging… | 2 stars | No one-command install · Source | |
| 492 | 32.223 | tiledmcpmcp · back-end | A security-first Tilemap MCP server for Tiled Map Editor, enabling safe inspection, creation, editing, validation, and preview of Tiled assets, with… | 2 stars | No one-command install · Source | |
| 493 | 32.223 | dhks77-ssh-gatewaymcp · back-end | Enables secure SSH connections through gateway servers with Kerberos authentication for remote command execution and server management. | 2 stars | No one-command install · Source | |
| 494 | 32.223 | phantom-mcpmcp · other | Exposes all PHANTOM security testing capabilities as MCP tools, enabling reconnaissance, vulnerability scanning, red teaming, and report generation… | 2 stars | No one-command install · Source | |
| 495 | 32.223 | the-boxmcp · ai-agents | A local MCP daemon that turns an agentic coding client into a bug bounty operator, with 103 tools for offensive security testing including MITM proxy… | 2 stars | No one-command install · Source | |
| 496 | 32.223 | secure-host-mcpmcp · auth | Exposes a Windows or Linux host terminal to remote MCP clients via Streamable HTTP, enabling command execution, tunnel management, and privileged… | 2 stars | No one-command install · Source | |
| 497 | 32.223 | tablecloth-mcpmcp · back-end | MCP server that discovers Korean e-Government and financial websites and launches them in a clean disposable Windows Sandbox (or macOS macSandbox)… | 2 stars | No one-command install · Source | |
| 498 | 32.223 | brainbase-mcpmcp · auth | Enables management of Brainbase agents, components, evals, tasks, and more via a remote MCP connection with OAuth authentication. | 2 stars | No one-command install · Source | |
| 499 | 32.223 | patrowlintelmcpmcp · search | Exposes PatrowlIntel vulnerability intelligence (CVEs, EPSS, CISA KEV, public exploits, trending attacks) via MCP tools like search_cves, get_cve, and… | 2 stars | No one-command install · Source | |
| 500 | 32.223 | panos-mcp-servermcp · back-end | MCP server for managing Palo Alto Networks firewalls and Panorama, providing tools to interact with PanOS via MCP protocol with authenticated HTTP… | 2 stars | No one-command install · Source |
Score colour shows how many signals stand behind it, never how good it is: amber, three or more; dimmer amber, two; grey, one. The Evidence column names them.
Stars, forks and last commit are as GitHub reported them when Armory last read each repository: for most, or later. A repository may have changed since.