by 0sec-labs · MCP Server · ★ 77
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
The open, extensible & self-learning cybersecurity team. Maintained by the Swiss Applied AI & Cybersecurity Research Lab. [RESEARCH BETA]
| Stars | 77 |
| Forks | 10 |
| Language | TypeScript |
| Category | MCP Server |
| Quality Score | 48.9792685188867/100 |
| Open Issues | 18 |
| Last Updated | 2026-09-14 |
| Created | 2026-08-19 |
| Platforms | mcp, node |
| Est. Tokens | ~13k |
Looking for a 0sec alternative? If you're comparing 0sec with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
The Execution Security Layer for the Agentic Era. Providing deterministic "Sudo" governance and audit logs for
Security scanner MCP server for AI coding agents. Prompt injection firewall, package hallucination detection (
AI-powered penetration testing MCP server
Open-source cybersecurity analysis agent for Claude Code. Scans projects for vulnerabilities across all OWASP
Static security scanner for LLM agents — prompt injection, MCP config auditing, taint analysis. 51 rules mappe
Security toolkit for AI agents. Scan your machine for dangerous skills and MCP configs, monitor for supply cha
Explore other popular mcp server tools:
0sec is The open, extensible & self-learning cybersecurity team. Maintained by the Swiss Applied AI & Cybersecurity Research Lab. [RESEARCH BETA]. It is categorized as a MCP Server with 77 GitHub stars.
0sec is primarily written in TypeScript. It covers topics such as ai-security, application-security, autonomous-agents.
You can find installation instructions and usage details in the 0sec GitHub repository at github.com/0sec-labs/0sec. The project has 77 stars and 10 forks, indicating an active community.
The top alternatives to 0sec on Agent Skills Hub include node9-proxy, agent-security-scanner-mcp, tengu. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: