No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by dandye · MCP Server · ★ 83
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is adk_runbooks safe to install? View the security audit →
ADK Runbooks A comprehensive multi-agent cybersecurity operations system built on Google's Agent Development Kit (ADK). This project provides specialized AI agents that collaborate to handle complex security operations tasks—including incident response, threat hunting, detection engineering, alert triage, and investigation—powered by a Progressive Disclosure Skills Architecture. Documentation The full documentation for this project, including detailed runbooks and agent information, is available at: https://dandye.github.io/adkrunbooks Overview ADK Runbooks implements a manager-orchestrated multi-agent system where specialized security agents work together to execute security operations. Instead of inlining entire runbook corpora into system prompts, the system employs Progressive Disclosure: agents receive concise skill catalogs in their context and dynamically load full procedural playbooks, execution guidelines, and rubrics on-demand using specialized skill tools. Key Features Multi-Agent Architecture: A root Manager agent coordinates specialized sub-agents with domain expertise and shared toolsets.
| Stars | 83 |
| Forks | 14 |
| Language | Python |
| Category | MCP Server |
| Quality Score | 37.4847810013201/100 |
| Open Issues | 38 |
| Last Updated | 2026-09-04 |
| Created | 2025-05-17 |
| Platforms | gemini, mcp, python |
| Est. Tokens | ~13k |
These tools work well together with adk_runbooks for enhanced workflows:
Looking for a adk_runbooks alternative? If you're comparing adk_runbooks with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
Vigil: The leading open source AI SOC. Apache 2.0. Runs against your own LLM, local or remote.
Production-grade MCP server for Wazuh SIEM — 55 security tools for alert triage, threat hunting, vulnerability
Blackhat 2025 presentation and codebase: AI SOC agent & MCP server for automated security investigation, alert
🔥🔥🔥 AI security automation platform. Build visual workflows, deploy autonomous agents, and automate threat
Build AI-powered security tools. 50+ hands-on labs covering ML, LLMs, RAG, threat detection, DFIR, and red tea
Postman MCP Server — connect AI agents (Claude Code, Cursor, VS Code Copilot, Gemini CLI) to your Postman coll
Explore other popular mcp server tools:
adk_runbooks is an open-source mcp server by dandye with 83 GitHub stars.
adk_runbooks is primarily written in Python. It covers topics such as agentic-soc, ai-agents, blueteam.
You can find installation instructions and usage details in the adk_runbooks GitHub repository at github.com/dandye/adk_runbooks. The project has 83 stars and 14 forks, indicating an active community.
The top alternatives to adk_runbooks on Agent Skills Hub include vigil, Wazuh-MCP-Server, AI-SOC-Agent. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: