信息安全经理 ISO27001
v2.1.1
io.clawhub.alirezarezvani/information-security-manager-iso27001
面向 HealthTech 与 MedTech 公司的 ISO 27001 ISMS 落地与网络安全治理。适用于 ISMS 设计、安全风险评估、控制措施实... 等。
“Security Audit” 共 2,172 个结果
v2.1.1
io.clawhub.alirezarezvani/information-security-manager-iso27001
面向 HealthTech 与 MedTech 公司的 ISO 27001 ISMS 落地与网络安全治理。适用于 ISMS 设计、安全风险评估、控制措施实... 等。
v1.0.0
io.clawhub.tristanmanchester/auditing-appstore-readiness
审计 iOS 应用仓库(Swift/Xcode 或 React Native/Expo)的 App Store 合规性与发布就绪度,输出通过/警告/不通过报告与发布检查清单。
v1.0.0
io.clawhub.mallen-lbx/securityclaw
面向 OpenClaw 技能的“安全优先”审计与隔离。当安装新技能、审查来源不明的技能、扫描技能中的提示注入/数据外泄/供应链风险,或机器人怀疑某个技能有害时使用。指导静态检查加可选沙箱检查,隔离可疑技能,并生成需人工处置的清单(删除/举报/放行/全量扫描)。
io.smithery.daniel-abbay.compuute-scan-api
Static security scanner for MCP servers. POST a public GitHub URL, get severity counts, a score, and the top findings with file+line back. 37 rules across TypeScript, JavaScript, Python, Go, Rust, C#, Java, and Kotlin — every language with an official MCP SDK. Detects argument injection for npx/uvx/pipx/pnpx runner binaries (CWE-88), known CVEs in 40+ top packages, and the usual L0 discovery (transport, tool inventory, dependency pinning). This is a pattern detector, not an exploitability oracle. Around 90% raw false-positive rate on unfiltered output — triage is on you, and the response says so explicitly. POST /v1/scan is free with no API key. POST /v1/scan/pay charges $0.10 USDC per scan via x402 on Base. Manual L2-L4 audits at compuute.se/audit when you need dataflow review. Wraps compuute-scan (MIT, zero deps). Per-rule false-positive rates and the methodology paper live in the repo.
io.smithery.eren-solutions.mcp-security-audit
AI 驱动的代码安全审计器。扫描 GitHub 仓库中的漏洞,给出 OWASP/CWE 依据与修复建议。
v2.0.0
io.github.CallMarcus/securityscorecard-mcp
社区构建的 SecurityScorecard API 全功能 MCP 服务器(非官方)。
v0.2.5
io.github.socraticstatic/chart-color-audit
CI-friendly accessibility audit for chart color palettes: WCAG contrast, CVD simulation, OKLab ΔE.
v0.4.1
io.github.audit0/auditai-mcp
Finds authorization holes in Next.js + Supabase apps and live Supabase databases. No API key.
v3.97.0
com.blackveilsecurity/dns
DNS 与邮件安全扫描器,80 个 MCP 工具覆盖 SPF、DMARC、DNSSEC、SSL 与品牌审计。
v1.2.0
app.openkrill/seo-audit
Audit a website for technical and on-page SEO problems.
v1.0.1
ai.tokenos/contract-audit
Scan Solidity & Anchor code
v1.4.0
dev.workers.fhi-llc-1118.polished-truth-c514/fhi-x402-security-tools
Free payment guide and Base-USDC x402 MCP security, package, domain, and SEC tools.
v1.1.0
io.github.ogasurfproject-jpg/horizon-shield
日本装修报价的公允价格核查:价格区间、结论判定、风险信号与已验证承包商。
v0.8.20260928
io.github.rubrikinc/rubrik-mcp
Connect AI assistants to the Rubrik Security Cloud GraphQL API to discover, query, and automate.
v0.1.7
io.github.Invarato/jarroba-tools-tests
Audits tests instead of writing them: what each one really asserts. 4 tools, local.
v0.1.4
io.github.4hmetuyar/toxic-flow-auditor
Finds lethal-trifecta toxic flows in MCP tool catalogs: untrusted input, sensitive data, egress
v1.4.0
io.github.4hmetuyar/security-proxy
MCP gateway: many servers, one policy, lethal-trifecta blocking, PII masking, audit log
v1.0.0
com.seofuxx/seo-audit
Read SEO analyses and prioritized on-page recommendations from your own SEOFuxx account.
v0.8.2
io.github.alexar76/warden
MCP security firewall: stdio wrap proxy or inspection tools; zero runtime dependencies.
v1.0.0
io.github.OntoDistro/remirror
Psyche audits for AI agents: declared vs self-reported vs revealed objectives, diffed and flagged.
v3.16.1
io.github.DanceNitra/inspeximus
Self-correcting agent memory: recall, supersede, revert, forget, GDPR erasure, audit receipts.
v1.0.0
com.a2awire/benchmark-resume-audit-2026-10-02-66514bc8
12 synthetic resume exception cases: duplicate payments, important watch list entries, missing rate
v1.0.0
com.a2awire/benchmark-application-audit-2026-10-01-6e0ad047
12 synthetic application exception cases: duplicate reimbursements, claim hold list entries, missing
v1.0.0
io.github.tylerscomic-lab/github-actions-audit-mcp
Audit GitHub Actions workflows for script injection, unpinned actions and missing permissions.