0 — security grade SAFE, quality 50/100

Security audit verdict: SAFE · quality 50/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by 0sec-labs · MCP Server · ★ 488

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is 0 safe to install? View the security audit →

About 0

Meet Zero, your AI security engineer team. The Swiss Applied AI & Cybersecurity Research Lab 0.security · Documentation · FoxGuard Get started Give this to your AI agent, or run the

ai-securityapplication-securityautonomous-agentsbinary-analysiscvecybersecuritydevsecopsfuzzingllm-agentsllm-security

Quick Facts

Stars488
Forks51
LanguageTypeScript
CategoryMCP Server
Quality Score50.4696841350095/100
Open Issues15
Last Updated2026-10-02
Created2026-08-19
Platformsbrowser, mcp, node
Est. Tokens~14k

Compatible Skills

These tools work well together with 0 for enhanced workflows:

  • pentestcode — semantic(0.40)+complementary+same_lang+similar_pop+shared_platform (64%)
  • thomas-security — semantic(0.34)+complementary+same_lang+similar_pop+shared_platform (62%)
  • openguardrails-oss — semantic(0.34)+complementary+same_lang+similar_pop+shared_platform (62%)

0 alternative? Top 6 similar tools

Looking for a 0 alternative? If you're comparing 0 with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • CyberStrike by CyberStrikeus · ⭐ 1.9k

    Open-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models,

  • medusa by Pantheon-Security · ⭐ 962

    AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions

  • node9-proxy by node9-ai · ⭐ 216

    Access control for AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do

  • agent-security-scanner-mcp by sinewaveai · ⭐ 121

    Security scanner MCP server for AI coding agents. Prompt injection firewall, package hallucination detection (

  • cyber-neo by Hainrixz · ⭐ 235

    Open-source cybersecurity analysis agent for Claude Code. Scans projects for vulnerabilities across all OWASP

  • agent-audit by HeadyZhang · ⭐ 229

    Static security scanner for LLM agents — prompt injection, MCP config auditing, taint analysis. 51 rules mappe

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is 0?

0 is Full-stack AI security OS for your browser, terminal, and agents. Find, verify, and fix vulnerabilities. Prioritized by business impact instead of just CVSS scores.. It is categorized as a MCP Server with 488 GitHub stars.

What programming language is 0 written in?

0 is primarily written in TypeScript. It covers topics such as ai-security, application-security, autonomous-agents.

How do I install or use 0?

You can find installation instructions and usage details in the 0 GitHub repository at github.com/0sec-labs/0. The project has 488 stars and 51 forks, indicating an active community.

What are the best alternatives to 0?

The top alternatives to 0 on Agent Skills Hub include CyberStrike, medusa, node9-proxy. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools