Security & Auth MCP Servers

51 servers

Security MCP servers let your AI work with vulnerability scanners, secret scanners, IAM audit logs, and threat intel feeds. Triage findings, fetch policy status, and accelerate SecOps workflows while credentials stay in MCPBundles, not in prompts.

Showing 1–24 of 51 servers

Microsoft Entra ID

Security & Auth

Microsoft Entra ID is an identity and access management service that provides secure authentication and authorization for users accessing Microsoft services and applications. It is primarily used for managing user identities and safeguarding access to resources.

Managed
SKILL.md
10 tools
View server

Container Scan

Security & Auth

Run Trivy or Grype on your machine via MCPBundles Desktop. Used by Vulnerability Intelligence scan_triage to scan container images and project filesystems locally before cloud enrichment.

Managed
SKILL.md
1 tools
View server

OPUSWatch

Security & Auth

OPUSWatch provides API-based solutions for managing operational risk and ensuring regulatory compliance, mainly for Dutch organizations. Use it to track, analyze, and report on compliance metrics efficiently.

Managed
SKILL.md
12 tools
View server

NIST NVD

Security & Auth

The NIST National Vulnerability Database (NVD) is the U.S. government repository of standards-based vulnerability management data. Search CVEs, check CVSS scores, find known exploited vulnerabilities, and track vulnerability changes.

Managed
SKILL.md
8 tools
View server

Vulnerability Intelligence

Security & Auth

Container CVE triage and cross-source vulnerability intelligence: local Trivy scans via Desktop, NIST NVD + CISA KEV + EPSS enrichment, and explainable exploit_priority / patch_today / defer bucketing.

Managed
Web UI
SKILL.md
34 tools
View server

Intruder

Security & Auth

Intruder is a cybersecurity platform that offers automated vulnerability scanning to help businesses identify and address security weaknesses in their systems. Use it to enhance your organization's security posture and protect against potential threats.

Managed
SKILL.md
4 tools
View server

CISA KEV

Security & Auth

The CISA Known Exploited Vulnerabilities (KEV) Catalog is the authoritative U.S. government list of vulnerabilities that are actively being exploited in the wild. Federal agencies are required to remediate KEV entries by their due dates. Search the catalog, look up specific CVEs, find recently added entries, filter by ransomware campaign use, and get summary stats.

Managed
SKILL.md
9 tools
View server

Persona

Security & Auth

Persona provides identity verification and authentication services, enabling businesses to verify customer identities and ensure compliance with regulatory standards. It is primarily used for secure and efficient identity management and fraud prevention.

Managed
SKILL.md
9 tools
View server

EPSS

Security & Auth

The Exploit Prediction Scoring System (EPSS) by FIRST.org estimates the probability that a CVE will be exploited in the wild within 30 days. Look up exploit scores for specific CVEs, discover the most exploitable vulnerabilities, track score trends over time, and filter by score or percentile ranges for risk prioritization.

Managed
SKILL.md
8 tools
View server

OFAC API

Security & Auth

OFAC-API.com provides KYC, AML, and sanctions compliance screening against 25+ global data sources including OFAC SDN, EU, UN, UK, PEP, INTERPOL, and more.

Managed
SKILL.md
3 tools
View server

Certman

Security & Auth

Certman allows users to create and manage their own Certificate Authority, providing tools for internal security and certificate management. It is aimed at IT professionals and organizations seeking to enhance their security infrastructure.

SKILL.md
Live tools
View server

Civic

Security & Auth

This server provides identity management, authorization, and audit trail capabilities, ensuring secure access and permission management for applications. It is ideal for developers and organizations focused on enhancing security and compliance in their systems.

SKILL.md
Live tools
View server

Ax Platform

Security & Auth

This server acts as a gateway for managing persistent identities and shared content within a collaborative environment. It is designed for users who need to maintain a consistent identity across various applications and share content seamlessly.

SKILL.md
Live tools
View server

Fetter

Security & Auth

Python supply-chain security platform. Track installed packages and versions, monitor vulnerabilities via the OSV database, and validate against organization-wide allow lists.

SKILL.md
Live tools
View server

Clerk

Security & Auth

Clerk provides tools for managing user authentication and access control, streamlining the integration of user management into applications. This server is ideal for developers looking to enhance security and user experience in their software.

SKILL.md
Live tools
View server

Dependency Management

Security & Auth

Sonatype's component intelligence server provides tools for managing software components, including version tracking and security analysis. Developers can utilize this server to ensure they are using the most secure and up-to-date components in their applications. It is particularly useful for software teams focused on maintaining high standards of security and compliance.

Live tools
View server

SecurityScan

Security & Auth

SecurityScan provides automated security assessments for web applications, helping developers identify vulnerabilities and ensure compliance with security standards. This tool is essential for cybersecurity professionals and developers looking to enhance the security posture of their applications.

Live tools
View server

Cloudflare One CASB

Security & Auth

Cloudflare One CASB (Cloud Access Security Broker) identifies security misconfigurations across SaaS applications, safeguarding organizations against data leaks and compliance violations. It scans connected services for risky settings, exposed data, and policy violations.

Live tools
View server

ScamVerify Threat Verification

Security & Auth

ScamVerify provides threat verification services to identify and mitigate potential scams and fraudulent activities. It is particularly useful for businesses and individuals seeking to protect themselves from online threats and ensure safe transactions.

Live tools
View server

xProof

Security & Auth

xProof provides tools for certifying and verifying digital files, ensuring their authenticity and integrity. Users can discover services related to proof verification and audit agent sessions, making it a valuable resource for businesses that require secure document handling and proof management.

Live tools
View server

Kevros

Security & Auth

Kevros provides a suite of tools for verifying and attesting identities, allowing users to manage trust relationships and validate outcomes. This service is particularly useful for organizations that require secure identity management and verification processes, such as financial institutions and online platforms. Users can check peer statuses and manage health checks to ensure compliance and security.

Live tools
View server

Guardian Engine

Security & Auth

The Guardian Engine server offers tools and services for managing security and compliance, likely aimed at developers and organizations focused on protecting their applications and data. It provides essential functionalities for monitoring and safeguarding digital assets.

Live tools
View server

Fingerprint

Security & Auth

Fingerprint's official MCP server for device intelligence and fraud detection. Query identification events, detect anomalies, investigate fraud patterns, and manage workspace configuration through natural language.

Live tools
View server

Wallet Verifier

Security & Auth

This server verifies EUDI/Talao wallet data using OIDC4VP, ensuring secure and accurate wallet management. It is aimed at developers and organizations needing to authenticate and validate wallet information.

Live tools
View server

Frequently Asked Questions

What are security MCP servers?

Security MCP servers integrate AI assistants with tools that manage risk: SAST/DAST vendors, cloud security posture APIs, SIEM query endpoints, and certificate lifecycle managers, depending on availability in the catalog.

Is it safe to give an AI security tool access?

Safer than pasting findings into a consumer chat: scoped API tokens limit blast radius, and workspace isolation prevents cross-tenant leaks. Still follow your SOC policies and use read-only roles until workflows are proven.

Will the AI auto-remediate vulnerabilities?

Only if you enable servers with write tools and approve those actions. Many security integrations remain read-only for triage and reporting.

Start using MCP servers now

Each server comes with AI skills that teach your assistant the domain knowledge it needs to use the tools correctly.