dify — security grade SAFE, quality 63/100

Security audit verdict: SAFE · quality 63/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by langgenius · MCP Server · ★ 156.9k

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is dify safe to install? View the security audit →

About dify

Dify Cloud · Self-hosting · Documentation · Dify edition overview <img src="https://cu

agentagentic-aiagentic-frameworkagentic-workflowaiautomationclaudedeepseekgenaigpt

Quick Facts

Stars156,898
Forks24,734
LanguageTypeScript
CategoryMCP Server
Quality Score62.5975628974575/100
Open Issues1093
Last Updated2026-09-23
Created2023-04-12
Platformsclaude-code, mcp, node
Est. Tokens~17k

Compatible Skills

These tools work well together with dify for enhanced workflows:

  • sim — semantic(0.28)+complementary+rare_topics+same_lang+similar_pop+shared_platform (69%)
  • coze-studio — semantic(0.16)+complementary+rare_topics+same_lang+similar_pop+shared_platform (55%)
  • ToolJet — semantic(0.17)+complementary+rare_topics+similar_pop+shared_platform (55%)
  • tribe — semantic(0.27)+complementary+rare_topics+same_lang+shared_platform (53%)
  • ClawRecipes — semantic(0.27)+complementary+rare_topics+same_lang+shared_platform (49%)

dify alternative? Top 6 similar tools

Looking for a dify alternative? If you're comparing dify with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • ragflow by infiniflow · ⭐ 90.9k

    RAGFlow is a leading open-source Retrieval-Augmented Generation (RAG) engine that fuses cutting-edge RAG with

  • lobehub by lobehub · ⭐ 82.8k

    🤯 LobeHub is your Chief Agent Operator, organizing your agents into 7×24 operations by hiring, scheduling, an

  • chatgpt-on-wechat by zhayujie · ⭐ 43.0k

    CowAgent是基于大模型的超级AI助理,能主动思考和任务规划、访问操作系统和外部资源、创造和执行Skills、拥有长期记忆并不断成长,比OpenClaw更轻量和便捷。同时支持微信、飞书、钉钉、企微、QQ、公众号、网页

  • AstrBot by AstrBotDevs · ⭐ 40.8k

    AI Agent Assistant & development framework that integrates lots of IM platforms, LLMs, plugins and AI feature,

  • n8n by n8n-io · ⭐ 205.7k

    Fair-code workflow automation platform with native AI capabilities. Combine visual building with custom code,

  • LibreChat by danny-avila · ⭐ 44.7k

    Enhanced ChatGPT Clone: Features Agents, MCP, Skills, DeepSeek, Anthropic, AWS, OpenAI, Responses API, Azure,

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is dify?

dify is Build Agentic workflows, RAG pipelines, with rich AI model and tool support on one collaborative workspace. Deploy on cloud, VPC, or self-hosted, so teams move from prototype to production without reb. It is categorized as a MCP Server with 156.9k GitHub stars.

What programming language is dify written in?

dify is primarily written in TypeScript. It covers topics such as agent, agentic-ai, agentic-framework.

How do I install or use dify?

You can find installation instructions and usage details in the dify GitHub repository at github.com/langgenius/dify. The project has 156.9k stars and 24734 forks, indicating an active community.

What are the best alternatives to dify?

The top alternatives to dify on Agent Skills Hub include ragflow, lobehub, chatgpt-on-wechat. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools