cordum — security grade SAFE, quality 65/100

Security audit verdict: SAFE · quality 65/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by cordum-io · MCP Server · ★ 510

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is cordum safe to install? View the security audit →

About cordum

Cordum Know What Your AI Agents Are Doing. Before They Do It. The Source-Available Agent Control Plane for Governance, Safety, and Trust. Includes Cordum Edge — a Compliance Firewall for Claude Code and other local AI-agent actions. <a href="https://disco

agent-frameworkagentic-aiai-agentai-governanceai-orchestrationai-safetyaudit-trailautonomous-agentscontrol-planedevops

Quick Facts

Stars510
Forks34
LanguageGo
CategoryMCP Server
Quality Score65.1363546339496/100
Open Issues31
Last Updated2026-10-03
Created2026-01-11
Platformsgo, mcp
Est. Tokens~22k

Compatible Skills

These tools work well together with cordum for enhanced workflows:

  • agent-governance-toolkit — semantic(0.34)+complementary+shared_fw(crewai,langchain)+rare_topics+similar_pop (72%)
  • orloj — semantic(0.27)+complementary+rare_topics+same_lang+similar_pop+shared_platform (59%)
  • lacp — semantic(0.29)+complementary+rare_topics+similar_pop (50%)
  • asqav-sdk — semantic(0.40)+shared_fw(crewai,langchain)+rare_topics+shared_platform (49%)
  • boluobobo-ai-court-tutorial — semantic(0.16)+complementary+shared_fw(crewai)+rare_topics+similar_pop (48%)

cordum alternative? Top 6 similar tools

Looking for a cordum alternative? If you're comparing cordum with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • martin-loop by Keesan12 · ⭐ 409

    Run coding agents without babysitting them. Keep jobs focused, bounded, checked and accountable from start to

  • forge-orchestrator by nxtg-ai · ⭐ 135

    Forge Orchestrator: Multi-AI task orchestration. File locking, knowledge capture, drift detection. Rust.

  • awesome-openclaw by SamurAIGPT · ⭐ 957

    A curated list of OpenClaw resources, tools, skills, tutorials & articles. OpenClaw (formerly Moltbot / Clawdb

  • DeepMCPAgent by cryxnet · ⭐ 806

    Model-agnostic plug-n-play LangChain/LangGraph agents powered entirely by MCP tools over HTTP/SSE.

  • template-repo by AndrewAltimit · ⭐ 132

    Agent orchestration & security template featuring MCP tool building, agent2agent workflows, mechanistic interp

  • fullstack-langgraph-nextjs-agent by agentailor · ⭐ 131

    Production-ready Next.js template for building AI agents with LangGraph.js. Features MCP integration for dynam

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular Go Agent Tools

Frequently Asked Questions

What is cordum?

cordum is The action firewall for AI agents. Enforce policy and human approval before risky tool calls, shell commands, workflows, and production changes, with auditable evidence.. It is categorized as a MCP Server with 510 GitHub stars.

What programming language is cordum written in?

cordum is primarily written in Go. It covers topics such as agent-framework, agentic-ai, ai-agent.

How do I install or use cordum?

You can find installation instructions and usage details in the cordum GitHub repository at github.com/cordum-io/cordum. The project has 510 stars and 34 forks, indicating an active community.

What are the best alternatives to cordum?

The top alternatives to cordum on Agent Skills Hub include martin-loop, forge-orchestrator, awesome-openclaw. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools