awesome-mcp-security — security grade SAFE, quality 51/100

Security audit verdict: SAFE · quality 51/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by Puliczek · MCP Server · ★ 726

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is awesome-mcp-security safe to install? View the security audit →

About awesome-mcp-security

🤝 Show your support - give a ⭐️ if you liked the content Awesome MCP Security Everything you need to know about Model Context Protocol (MCP) security. Table of Contents Awesome MCP Security 📔 Security Considerations 📃 Papers 📺 Videos 📕 Articles, X threads and Blog Posts 🧑‍🚀 Tools and code 💾 MCP Security Servers 💻 Other Useful Resources 📔 Security Considerations Official Security Considerations from the Official MCP Specification Rev: 2025-03-26 [!NOTE] 15.04.2025: The current MCP auth specification is in progress of being replaced by a more robust specification. Please join the conversation if you have concerns around the current auth specification. Servers MUST: Validate all tool inputs Implement proper access controls Rate limit tool invocations Sanitize tool outputs Clients SHOULD: Prompt for user confirmation on sensitive operations Show tool inputs to the user before ca

awesome-listbugbountybugbountytipscybersexploitmcpmcp-clientmcp-servermcp-serverspentesting

Quick Facts

Stars726
Forks194
CategoryMCP Server
Quality Score51.3169014280933/100
Open Issues161
Last Updated2026-03-03
Created2025-04-08
Platformscli, mcp
Est. Tokens~10k

awesome-mcp-security alternative? Top 6 similar tools

Looking for a awesome-mcp-security alternative? If you're comparing awesome-mcp-security with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • jadx-ai-mcp by zinja-coder · ⭐ 2.7k

    Plugin for JADX to integrate MCP server

  • mcp-router by mcp-router · ⭐ 2.1k

    MCP Router — development, support and security updates ended 2026-09-18. Historical source and final release f

  • mcphub.nvim by ravitemer · ⭐ 1.8k

    An MCP client for Neovim that seamlessly integrates MCP servers into your editing workflow with an intuitive i

  • awesome-hacking-lists by taielab · ⭐ 1.4k

    A curated collection of top-tier penetration testing tools and productivity utilities across multiple domains.

  • cheatengine-mcp-bridge by miscusi-peek · ⭐ 1.2k

    Connect Cursor, Copilot & Claude AI directly to Cheat Engine via MCP. Automate reverse engineering, pointer sc

  • MCP-Kali-Server by Wh0am123 · ⭐ 825

    MCP configuration to connect AI agent to a Linux machine.

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Frequently Asked Questions

What is awesome-mcp-security?

awesome-mcp-security is 🔥🔒 Awesome MCP (Model Context Protocol) Security 🖥️. It is categorized as a MCP Server with 726 GitHub stars.

How do I install or use awesome-mcp-security?

You can find installation instructions and usage details in the awesome-mcp-security GitHub repository at github.com/Puliczek/awesome-mcp-security. The project has 726 stars and 194 forks, indicating an active community.

What are the best alternatives to awesome-mcp-security?

The top alternatives to awesome-mcp-security on Agent Skills Hub include jadx-ai-mcp, mcp-router, mcphub.nvim. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools