No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by 0sec-labs · MCP Server · ★ 488
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is 0 safe to install? View the security audit →
Meet Zero, your AI security engineer team. The Swiss Applied AI & Cybersecurity Research Lab 0.security · Documentation · FoxGuard Get started Give this to your AI agent, or run the
| Stars | 488 |
| Forks | 51 |
| Language | TypeScript |
| Category | MCP Server |
| Quality Score | 50.4696841350095/100 |
| Open Issues | 15 |
| Last Updated | 2026-10-02 |
| Created | 2026-08-19 |
| Platforms | browser, mcp, node |
| Est. Tokens | ~14k |
These tools work well together with 0 for enhanced workflows:
Looking for a 0 alternative? If you're comparing 0 with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
Open-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models,
AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions
Access control for AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do
Security scanner MCP server for AI coding agents. Prompt injection firewall, package hallucination detection (
Open-source cybersecurity analysis agent for Claude Code. Scans projects for vulnerabilities across all OWASP
Static security scanner for LLM agents — prompt injection, MCP config auditing, taint analysis. 51 rules mappe
Explore other popular mcp server tools:
0 is Full-stack AI security OS for your browser, terminal, and agents. Find, verify, and fix vulnerabilities. Prioritized by business impact instead of just CVSS scores.. It is categorized as a MCP Server with 488 GitHub stars.
0 is primarily written in TypeScript. It covers topics such as ai-security, application-security, autonomous-agents.
You can find installation instructions and usage details in the 0 GitHub repository at github.com/0sec-labs/0. The project has 488 stars and 51 forks, indicating an active community.
The top alternatives to 0 on Agent Skills Hub include CyberStrike, medusa, node9-proxy. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: