Leaderboard
Scored on public signals; components with none are listed as Unranked · Formula
Component
Domain
Vertical
| Rank | Score | Component | Description | Evidence | Last commit | Install |
|---|---|---|---|---|---|---|
| 501 | 32.223 | nirikshakmcp · back-end | MCP server for passive domain reconnaissance and attack surface monitoring. It scans subdomains, security headers, TLS certs, and tech stack, detects… | 2 stars | No one-command install · Source | |
| 502 | 32.223 | fusae-memory-vaultmcp · back-end | Local-first MCP memory server with semantic search, AES-256-GCM encryption, and optional Supabase cloud sync. | 2 stars | No one-command install · Source | |
| 503 | 32.223 | agent-nextupmcp · auth | Enables AI agents to maintain project continuity through a file-based state hub with tasks, phases, and handoff snapshots. Provides MCP tools for… | 2 stars | No one-command install · Source | |
| 504 | 32.223 | dsh-safetymcp · ai-agents | An MCP server that audits DeepSeek Harness (DSH) plugins for security threats using static and dynamic analysis. It enables automatic safety reviews… | 2 stars | No one-command install · Source | |
| 505 | 32.223 | brentwpeterson-gmailmcp · auth | Integrates with Gmail API using OAuth 2.0 authentication to enable email management including reading, sending, replying, searching, and organizing… | 2 stars | No one-command install · Source | |
| 506 | 32.223 | snapkitty-clojure-lisp-bridgemcp · back-end | An archived, unsafe MCP server with critical security vulnerabilities, classified as a pump and dump operation. Do not use in production. | 2 stars | No one-command install · Source | |
| 507 | 32.223 | cerberusmcp · auth | Provides a three-layer payment firewall for AI agents, enabling identity verification, risk screening, and execution authorization with on-chain… | 2 stars | No one-command install · Source | |
| 508 | 32.223 | cveasy-mcpmcp · back-end | Provides MCP clients like Claude with tools to query and manage security scans, CVEs, assets, findings, threat intel, and generate polished reports by… | 2 stars | No one-command install · Source | |
| 509 | 32.223 | dangerous-skills-mcpmcp · back-end | A TypeScript MCP server delivering a vendored 'dangerous skills' corpus and adversarial fixtures over MCP for security-research testing, supporting… | 2 stars | No one-command install · Source | |
| 510 | 32.223 | ratatoskmcp · other | CNCF release intelligence: typed, quoted facts (security fixes, breaking changes, deprecations) from every graduated/incubating project's release… | 2 stars | No one-command install · Source | |
| 511 | 32.223 | wrg-11-wrg-sigma-rulesmcp · back-end | Sigma detection rule writing, validation, and conversion (Splunk/Elastic/Kibana/Wazuh) via 3 MCP tools (`draft_rule`, `validate_rule`, `convert_rule`)… | 2 stars | No one-command install · Source | |
| 512 | 32.223 | velvet-ropemcp · ai-agents | An MCP server for agent authorization that tests the full effect surface and enforces control over consequential actions before dispatch, emitting… | 2 stars | No one-command install · Source | |
| 513 | 32.223 | partner-center-mcpmcp · back-end | An MCP server that helps you build against the Partner Center REST API, providing scenario discovery, REST examples, authentication guidance, and… | 2 stars | No one-command install · Source | |
| 514 | 32.223 | mal-mcpmcp · back-end | MCP server for MyAnimeList that enables searching anime/manga, getting details, rankings, seasons, characters, reviews, and user profiles without… | 2 stars | No one-command install · Source | |
| 515 | 32.223 | mcp-security-frameworkmcp · back-end | Enables creation of secure-by-default MCP servers with 5-layer validation to protect against injection, path traversal, and other attack vectors. | 2 stars | No one-command install · Source | |
| 516 | 32.223 | securecode-mcpmcp · back-end | Standalone MCP server that provides security scanning, project mapping, and vulnerability fix generation to AI coding assistants. | 2 stars | No one-command install · Source | |
| 517 | 32.223 | unifi-rmcpmcp · back-end | MCP server and CLI for UniFi Network controllers: clients, devices, WLANs, firewall, and health over stdio or streamable HTTP, with auth. | 2 stars | No one-command install · Source | |
| 518 | 32.223 | gotify-rmcpmcp · ai-agents | MCP server and CLI for Gotify that lets agents send push notifications, check server health, list messages, and manage Gotify apps and clients over… | 2 stars | No one-command install · Source | |
| 519 | 32.223 | aily-local-file-mcpmcp · auth | Exposes local file system operations to AI assistants via Streamable HTTP with security features like auth, path whitelisting, and audit logging. | 2 stars | No one-command install · Source | |
| 520 | 32.223 | repository-managermcp · github-vcs | A production-grade MCP server for managing git projects, offering dynamic tool selection and enterprise-grade security. | 2 stars | No one-command install · Source | |
| 521 | 32.223 | mcp-kubernetesmcp · devops | Enables MCP clients to inspect and operate Kubernetes clusters across multiple contexts, with read-only/read-write/admin access modes and security… | 2 stars | No one-command install · Source | |
| 522 | 32.223 | aicraft-code-reviewmcp · back-end | Code review as an MCP server — structured code quality reviews with OWASP security scanning. | 2 stars | No one-command install · Source | |
| 523 | 32.223 | gh-paichart-paichartmcp · back-end | Service orchestration hub that enables discovery, composition, and authentication of multiple services through a single endpoint. | 2 stars | No one-command install · Source | |
| 524 | 32.223 | context-firewallmcp · back-end | Aggregator MCP proxy that collapses N downstream MCP servers into 4 meta-tools with progressive tool discovery, and compresses large tool outputs… | 2 stars | No one-command install · Source | |
| 525 | 32.223 | fivem-enhanced-mcpmcp · back-end | An unofficial, source-grounded MCP server for FiveM for GTAV Enhanced development, providing exact native lookups, platform constraints… | 2 stars | No one-command install · Source | |
| 526 | 32.223 | unifi-udm-pro-mcpmcp · back-end | A high-performance MCP server for Ubiquiti UniFi Dream Machine (UDM Pro/SE) and UniFi OS Cloud Gateways, connecting directly to the local REST API… | 2 stars | No one-command install · Source | |
| 527 | 32.223 | mcpauditmcp · back-end | Audits MCP server configurations and packages for security risks such as typosquats, credential exposure, and malicious code, with zero dependencies… | 2 stars | No one-command install · Source | |
| 528 | 32.223 | dns-doctormcp · back-end | Diagnoses a domain's email authentication — SPF, DMARC, DKIM, MX, blacklists and domain or SSL expiry - and returns copy-paste fix records generated… | 2 stars | No one-command install · Source | |
| 529 | 32.223 | mainwp-mcp-bridgemcp · ai-agents | Exposes MainWP Dashboard site-management operations as an MCP server for AI agents, with policy-controlled tools, safe-mode destructive protections… | 2 stars | No one-command install · Source | |
| 530 | 32.223 | mcp-semclonemcp · ai-agents | Enables LLMs to perform software composition analysis including license detection, vulnerability assessment, SBOM generation, and policy validation… | 2 stars | No one-command install · Source | |
| 531 | 32.223 | aishieldmcp · back-end | Scans MCP servers and AI tools for security risks, providing 4-dimensional scoring and badges, with optional guardrail MCP for auto-protection. | 2 stars | No one-command install · Source | |
| 532 | 32.223 | io-github-aidi1723-omniglyphmcp · ai-agents | OmniGlyph is a local-first MCP server that gives AI agents deterministic Unicode, domain-term, security-scan, and output-guardrail checks before… | 2 stars | No one-command install · Source | |
| 533 | 32.223 | mcp-shell-toolsmcp · back-end | A full-featured MCP server for local development with filesystem, shell, editor, session persistence, and security features. | 2 stars | No one-command install · Source | |
| 534 | 32.223 | mcp-imf-portwatchmcp · auth | Provides global maritime trade and chokepoint signals from IMF PortWatch, free and without authentication. | 2 stars | No one-command install · Source | |
| 535 | 35.443 | gdrivemcp · auth | Integrates with Google Drive to enable file listing, reading, and searching across various document formats, with OAuth authentication for secure… | 2 forks | No one-command install · Source | |
| 536 | 35.443 | guardian-opsmcp · comms | Enables network vulnerability scanning and CVE detection through an AI assistant, with optional remote port blocking via Discord bot. | 2 forks | No one-command install · Source | |
| 537 | 35.443 | yunaq-gac-mcp-servermcp · back-end | Provides comprehensive IP and domain security intelligence, enabling analysis of IP addresses and domains for threat and reputation information. | 2 forks | No one-command install · Source | |
| 538 | 35.443 | mcp-te-servermcp · auth | MCP proxy server for ThinkingEngine with automatic browser-based authentication. Automates the login → token extraction → proxy flow so you never need… | 2 forks | No one-command install · Source | |
| 539 | 35.443 | mcp-defender-mcp-msdefenderkqlmcp · back-end | An MCP server for Microsoft Defender Advanced Hunting that enables AI assistants to investigate security events using natural language by translating… | 2 forks | No one-command install · Source | |
| 540 | 35.443 | automata-mcp-servermcp · back-end | A plugin-based MCP server built on FastAPI that supports dynamic tool loading, hot reloading, and API key authentication for extensible AI tool… | 2 forks | No one-command install · Source | |
| 541 | 35.443 | cybersecurity-mcp-servermcp · back-end | A security-first MCP (Model Context Protocol) backend built with Node.js and Express, featuring hardening, rate limiting, structured logging, and… | 2 forks | No one-command install · Source | |
| 542 | 35.443 | mohitsahoo-web-vulnerabilities-scannermcp · ai-agents | AI-powered penetration testing with 30+ security tools and Groq LLM analysis for OWASP Top 10 coverage. | 2 forks | No one-command install · Source | |
| 543 | 35.443 | tenable-mcp-servermcp · ai-agents | An MCP server for Tenable Vulnerability Management and the Tenable One platform, enabling LLMs to query assets, vulnerabilities, scans, exposure… | 2 forks | No one-command install · Source | |
| 544 | 35.443 | mcp-server-railway-startermcp · database | A starter template for deploying a remote MCP server with OAuth 2.1 authorization, dynamic client registration, and a PostgreSQL database. Includes… | 2 forks | No one-command install · Source | |
| 545 | 35.443 | checkmarxmcp · ai-agents | The Checkmarx Security MCP server bridges your AI assistant (Claude, Cursor, Copilot, etc.) with Checkmarx One's enterprise application security… | 2 forks | No one-command install · Source | |
| 546 | 38.066 | zkytech-openapi-documentationmcp · back-end | Transforms OpenAPI specifications into dynamic tools for interacting with external services, handling authentication, validation, and request routing… | 2 stars · 1 fork | No one-command install · Source | |
| 547 | 38.066 | toolbase-uploadthingmcp · back-end | Enables AI assistants to upload files to UploadThing's cloud storage from local paths or URLs via a Node.js bridge requiring token authentication. | 2 stars · 1 fork | No one-command install · Source | |
| 548 | 38.066 | gitcarrot-aws-cognitomcp · auth | Integrates with AWS Cognito to provide user authentication flows including sign-up, sign-in, password management, account verification, and… | 2 stars · 1 fork | No one-command install · Source | |
| 549 | 38.066 | osv-databasemcp · back-end | Integrates with the OSV Database API to query for security vulnerabilities in software packages, retrieve CVE information, and identify affected and… | 2 stars · 1 fork | No one-command install · Source | |
| 550 | 38.066 | ksysoev-smcp-proxy-oidcmcp · back-end | Secure reverse proxy for MCP servers that adds OIDC authentication and authorization, supporting multiple backend configurations with path-based… | 2 stars · 1 fork | No one-command install · Source | |
| 551 | 38.066 | arcknowledge-custom-ragmcp · search | Bridges AI systems to custom knowledge base APIs for retrieval-augmented generation across multiple text and image sources with configurable… | 2 stars · 1 fork | No one-command install · Source | |
| 552 | 38.066 | vilasone455-sshmcp · back-end | Enables secure remote command execution across Linux and Windows systems through SSH connections with configurable authentication methods, safety… | 2 stars · 1 fork | No one-command install · Source | |
| 553 | 38.066 | veritiknik-random-number-generatormcp · back-end | Provides cryptographically secure random number generation with seven specialized tools for integers, floats, bytes, UUIDs, strings, random choices… | 2 stars · 1 fork | No one-command install · Source | |
| 554 | 38.066 | mohdhaji87-jwt-auditormcp · auth | Provides JWT security auditing capabilities through token decoding, vulnerability analysis, HMAC secret brute-forcing, and token generation for… | 2 stars · 1 fork | No one-command install · Source | |
| 555 | 38.066 | latiftplgu-spotify-oauthmcp · auth | Integrates with Spotify's Web API through OAuth authentication to manage music libraries, control playback across devices, create and modify… | 2 stars · 1 fork | No one-command install · Source | |
| 556 | 38.066 | generaljerel-chessmcp · auth | Provides interactive chess gameplay with OAuth authentication, featuring per-user game state management, Stockfish engine analysis, tactical puzzles… | 2 stars · 1 fork | No one-command install · Source | |
| 557 | 38.066 | ravincheela-cognitive-dast-automationmcp · devops | Integrates OWASP ZAP security scanning with Google Gemini for automated vulnerability analysis, risk scoring, and remediation prioritization in CI/CD… | 2 stars · 1 fork | No one-command install · Source | |
| 558 | 38.066 | lincolnburrows2017-filesystem-mcpmcp · back-end | Model Context Protocol server for file system operations. Supports read, write, search, copy, move with security path restrictions. | 2 stars · 1 fork | No one-command install · Source | |
| 559 | 38.066 | filesystem-mcpmcp · back-end | Enables AI assistants to read, write, and manage files on the local system with security features like path restrictions and optional read-only mode. | 2 stars · 1 fork | No one-command install · Source | |
| 560 | 38.066 | cuba-execmcp · back-end | Advanced shell command execution for AI agents — a Model Context Protocol (MCP) server with security policy engine, process lifecycle management… | 2 stars · 1 fork | No one-command install · Source | |
| 561 | 38.066 | ark-forge-arkforge-mcpmcp · ai-agents | Third-party certifying proxy — sign any HTTP call (AI agents, webhooks, microservices) with an independent Ed25519 signature, RFC 3161 timestamp, and… | 2 stars · 1 fork | No one-command install · Source | |
| 562 | 38.066 | seal-frameworksmcp · other | Read-only access to Security Alliance (SEAL) security framework documentation for Web3 builders. | 2 stars · 1 fork | No one-command install · Source | |
| 563 | 38.066 | mredvard-dev-toolsmcp · other | Exposes developer tools over HTTP with security guardrails for file access, shell execution, and web fetching. | 2 stars · 1 fork | No one-command install · Source | |
| 564 | 38.066 | neuro-ng-rs-fast-mcpmcp · auth | High-performance async Rust framework for building MCP servers with OAuth2/OIDC authentication, rate limiting, and caching middleware. | 2 stars · 1 fork | No one-command install · Source | |
| 565 | 38.066 | cybersecurity-professor-mcp-servermcp · back-end | An MCP server that exposes Prof. Null, an uncensored cybersecurity professor, as a set of specialized tools for learning hacking, CTFs, and security… | 2 stars · 1 fork | No one-command install · Source | |
| 566 | 38.066 | socfortress-copilotmcp · back-end | Access to SOCFortress CoPilot security operations API for investigations, reports, and IOC management. | 2 stars · 1 fork | No one-command install · Source | |
| 567 | 38.066 | malekjabri-ibm-bawmcp · auth | Manages IBM Business Automation Workflow (BAW) administration including authentication, snapshot installation, and monitoring — not an official IBM… | 2 stars · 1 fork | No one-command install · Source | |
| 568 | 38.066 | buspirate-mcpmcp · back-end | MCP server for BusPirate 6 hardware security testing. Exposes UART, SPI, I2C, 1-Wire, power supply, GPIO, and logic analyzer operations as tools. | 2 stars · 1 fork | No one-command install · Source | |
| 569 | 38.066 | ssh-shell-mcpmcp · ai-agents | AI-native SSH orchestration server enabling Claude or any MCP agent to execute commands, manage files, tunnels, and fleet operations across multiple… | 2 stars · 1 fork | No one-command install · Source | |
| 570 | 38.066 | cloudpanel-mcpmcp · devops | Provides 50 tools to manage a CloudPanel VPS through AI assistants, covering sites, databases, Docker, server software, firewall, DNS, and one-shot… | 2 stars · 1 fork | No one-command install · Source | |
| 571 | 38.066 | appmcpmcp · database | AppMCP enables AI agents to build and publish self-contained HTML apps that query live data via a secure, read-only SQL proxy, with Azure AD… | 2 stars · 1 fork | No one-command install · Source | |
| 572 | 38.066 | mcp-linux-toolsmcp · devops | Enables AI assistants to perform controlled Linux system administration tasks like reading logs, managing services, cron jobs, WordPress, and… | 2 stars · 1 fork | No one-command install · Source | |
| 573 | 38.066 | yawlabs-npmjs-mcpmcp · ai-agents | Enables npm registry operations from MCP clients like Claude Code and Cursor, with 64 tools for package intelligence, security audits, dependency… | 2 stars · 1 fork | No one-command install · Source | |
| 574 | 38.066 | yawlabs-npmmcp · back-end | npm registry MCP server for package intelligence, security audits, and dependency analysis for AI assistants. | 2 stars · 1 fork | No one-command install · Source | |
| 575 | 38.066 | bbekshr-mcppedia-searchmcp · back-end | Enables discovery, evaluation, and comparison of 17,000+ MCP servers from the MCPpedia catalog with integrated security scoring. | 2 stars · 1 fork | No one-command install · Source | |
| 576 | 38.066 | ikuai-mcp-servermcp · back-end | An MCP server that provides 229 tools to control iKuai routers, enabling AI assistants to manage network settings, monitoring, security, and more… | 2 stars · 1 fork | No one-command install · Source | |
| 577 | 38.066 | zekker6-alertmanagermcp · auth | Connects to Prometheus Alertmanager to list and filter alerts, manage silences with custom matchers, and support multi-tenant environments through… | 2 stars · 1 fork | No one-command install · Source | |
| 578 | 38.066 | verifimind-peasmcp · ai-agents | Enables structured multi-LLM critique of concepts using three specialized agents (Innovation, Ethics, Security) with multi-vendor LLM support… | 2 stars · 1 fork | No one-command install · Source | |
| 579 | 38.066 | raven-nest-mcpmcp · back-end | A pentesting toolkit that runs as an MCP server, providing AI assistants structured access to 22 security tools through a safety-hardened interface. | 2 stars · 1 fork | No one-command install · Source | |
| 580 | 38.066 | mcp-z-gmailmcp · auth | Integrates with Gmail for email search, sending, label management, and CSV export with OAuth authentication. | 2 stars · 1 fork | No one-command install · Source | |
| 581 | 38.066 | trino-mcp-servermcp · back-end | Enables executing SQL queries on Trino clusters via MCP, supporting multiple authentication methods and read/write operations with safety controls. | 2 stars · 1 fork | No one-command install · Source | |
| 582 | 38.412 | pc-control-mcpmcp · back-end | A safety-first MCP server enabling file inspection/editing, allowlisted command execution, process listing, and optional desktop automation. It… | 3 stars | No commit datelisted | No one-command install · Source |
| 583 | 38.412 | belljustin-spotifymcp · auth | Integrates with Spotify's Web API through OAuth authentication to search for tracks, create new playlists, and update existing playlist details or… | 3 stars | No one-command install · Source | |
| 584 | 38.412 | abdessamad-elamrani-malware-analyzermcp · other | Provides specialized terminal access to common malware analysis tools like 'strings', 'file', 'hexdump', and 'objdump' with parameter validation and… | 3 stars | No one-command install · Source | |
| 585 | 38.412 | ssojet-mcp-servermcp · auth | An MCP server that authenticates users via SSOJet and provides tools such as adding two numbers. Enables secure access to tools after OIDC… | 3 stars | No one-command install · Source | |
| 586 | 38.412 | fakoli-ai-bridgemcp · ai-agents | Secure bridge to OpenAI and Google Gemini APIs with multi-layer security protection including prompt injection detection, content filtering, input… | 3 stars | No one-command install · Source | |
| 587 | 38.412 | mcp-server-with-authenticationmcp · auth | Implements a secure MCP server with API Key and JWT authentication, providing tools like echo, login, secure_action, and admin_action. Includes MCP… | 3 stars | No one-command install · Source | |
| 588 | 38.412 | pentest-toolsmcp · other | Provides direct access to penetration testing tools including nmap, gobuster, nikto, nuclei, ffuf, dirsearch, hydra, john, and hashcat for… | 3 stars | No one-command install · Source | |
| 589 | 38.412 | mohdhaji87-yogoshamcp · back-end | Integrates with Yogosha's bug bounty platform API to provide comprehensive program management, vulnerability tracking, asset management, user… | 3 stars | No one-command install · Source | |
| 590 | 38.412 | spritualkb-nucleimcp · other | Provides a bridge to the Nuclei vulnerability scanning tool, enabling automated security scans on target URLs with configurable parameters like… | 3 stars | No one-command install · Source | |
| 591 | 38.412 | lokallost-abusechmcp · back-end | Integrates with abuse.ch threat intelligence platforms (MalwareBazaar, URLhaus, ThreatFox) to provide security reports for files, URLs, domains, and… | 3 stars | No one-command install · Source | |
| 592 | 38.412 | pengcunfu-http-request-testingmcp · observability | Provides HTTP request testing capabilities with comprehensive method support and specialized raw request tools that preserve payloads for security… | 3 stars | No one-command install · Source | |
| 593 | 38.412 | tcpipuk-web-and-pythonmcp · devops | Provides web content access and Python code execution in a sandboxed environment, enabling information verification and working code demonstrations… | 3 stars | No one-command install · Source | |
| 594 | 38.412 | honey-guard-anchormcp · other | Provides security analysis for Solana Anchor programs by exposing tools that check smart contracts against Fender security vulnerabilities directly… | 3 stars | No one-command install · Source | |
| 595 | 38.412 | salrad22-code-sentinelmcp · other | Analyzes code for security vulnerabilities, deceptive patterns, placeholders, and code smells that traditional linters miss. | 3 stars | No one-command install · Source | |
| 596 | 38.412 | codesentinel-mcp-servermcp · back-end | A code quality analysis server that detects security vulnerabilities, deceptive patterns, incomplete code, and highlights good practices in source… | 3 stars | No one-command install · Source | |
| 597 | 38.412 | alisaitteke-npm-registrymcp · back-end | MCP server for npm package management, security analysis, and compatibility checking. | 3 stars | No one-command install · Source | |
| 598 | 38.412 | cortexd-labs-mcpdmcp · other | Exposes 100+ Linux system administration tools covering processes, services, networking, containers, packages, storage, security, and desktop… | 3 stars | No one-command install · Source | |
| 599 | 38.412 | ciaran-finnegan-cortex-xsiam-sdkmcp · search | Integrates with Cortex XSIAM SDK to provide command execution and semantic search over security automation content. | 3 stars | No one-command install · Source | |
| 600 | 38.412 | realwigu-mcp-doctormcp · ai-agents | Zero-config diagnostics for MCP servers. Auto-discovers configs across Claude Code, Cursor, VS Code, Windsurf, and Claude Desktop, then tests… | 3 stars | No one-command install · Source |
Score colour shows how many signals stand behind it, never how good it is: amber, three or more; dimmer amber, two; grey, one. The Evidence column names them.
Stars, forks and last commit are as GitHub reported them when Armory last read each repository: for most, or later. A repository may have changed since.