claudeers.
// MCP Servers

awesome-mcp-security

πŸ”₯πŸ”’ Awesome MCP (Model Context Protocol) Security πŸ–₯️

// MCP Servers[ cli ][ api ][ desktop ][ web ][ mobile ][ claude ]#claude#awesome-list#bugbounty#bugbountytips#cybers#exploit#mcp#mcp-client#mcp-servers$open-sourceupdated 29 days ago
Dormant
42/100
last commit 7 months ago
last release none
releases 0
open issues 33
// star history

Install with your AI

Paste into Claude Code, Cursor, or any agent β€” it reads the repo and wires the tool into your project.

⚠ Unverified source (community-unclaimed, low activity) β€” reveal the prompt
⚠ Unverified source (community-unclaimed, low activity). Inspect the repo before letting your agent install it.

Install and set up awesome-mcp-security (git-clone project) into my current project.
Found on https://claudeers.com/awesome-mcp-security
Repo: https://github.com/Puliczek/awesome-mcp-security
Homepage/docs: β€”
Detected install method: git-clone β†’ git clone https://github.com/Puliczek/awesome-mcp-security
Category: mcp-servers. Platforms: cli, api, desktop, web, mobile.
Read the repo's README for exact setup and env vars, then install it and wire it into my project.

Claudeers Health Verdict:
dormant; community-verified: false. Confirm the source before running anything.
// or clone Β· unverified Β· not recently updated
git clone https://github.com/Puliczek/awesome-mcp-security

// compatibility

Platformscli, api, desktop, web, mobile
Operating systemsβ€”
AI compatibilityclaude
Licenseβ€”
Pricingopen-source
Languageβ€”

Get your FREE $2.50 API credits to access TickAtlas financial data β†—
🀝 Show your support - give a ⭐️ if you liked the content

Awesome MCP Security

Everything you need to know about Model Context Protocol (MCP) security.

πŸ“” Security Considerations

Official Security Considerations from the Official MCP Specification Rev: 2025-03-26

[!NOTE] 15.04.2025: The current MCP auth specification is in progress of being replaced by a more robust specification. Please join the conversation if you have concerns around the current auth specification.

  • Servers MUST:

    • Validate all tool inputs
    • Implement proper access controls
    • Rate limit tool invocations
    • Sanitize tool outputs
  • Clients SHOULD:

    • Prompt for user confirmation on sensitive operations
    • Show tool inputs to the user before calling the server, to avoid malicious or accidental data exfiltration
    • Validate tool results before passing to LLM
    • Implement timeouts for tool calls
    • Log tool usage for audit purposes

[!WARNING]
For trust & safety and security, clients MUST consider tool annotations to be untrusted unless they come from trusted servers.

[!WARNING]
For trust & safety and security, there SHOULD always be a human in the loop* with the ability to deny tool invocations.

Applications SHOULD:

  • Provide UI that makes clear which tools are being exposed to the AI model.
  • Insert clear visual indicators when tools are invoked.
  • Present confirmation prompts to the user for operations, to ensure a human is in the loop.

[!NOTE]
*Human-in-the-Loop (HITL) means that user help monitor and guide automated tasks, like deciding whether to accept tool requests in Cursor.

πŸ“ƒ Papers

πŸ“Ί Videos

πŸ“• Articles, X threads and Blog Posts

πŸ§‘β€πŸš€ Tools and code

πŸ’Ύ MCP Security Servers

πŸ’» Other Useful Resources

😎 Contributing

πŸ‘πŸŽ‰ First off, thanks for taking the time to contribute! πŸŽ‰πŸ‘

Please read and follow our contributing guide

Thanks! πŸ¦„

🀝 Show your support

🀝 Show your support - give a ⭐️ if you liked the content

βœ”οΈ Disclaimer

This project can only be used for educational purposes. Using this resource against target systems without prior permission is illegal, and any damages from misuse of this software will not be the responsibility of the author.

// faq

What is awesome-mcp-security?

πŸ”₯πŸ”’ Awesome MCP (Model Context Protocol) Security πŸ–₯️. It is open-source on GitHub.

Is awesome-mcp-security free to use?

awesome-mcp-security is open-source, so it is free to use.

What category does awesome-mcp-security belong to?

awesome-mcp-security is listed under mcp-servers in the Claudeers registry of Claude-compatible tools.

8 views
β˜… 740 stars
unclaimed
updated 29 days ago

// embed badge

awesome-mcp-security on Claudeers
[![Claudeers](https://claudeers.com/api/badge/awesome-mcp-security.svg)](https://claudeers.com/awesome-mcp-security)

// retro hit counter

awesome-mcp-security hit counter
[![Hits](https://claudeers.com/api/counter/awesome-mcp-security.svg)](https://claudeers.com/awesome-mcp-security)

// reviews

// guestbook

0/500

// related in MCP Servers

πŸ”“

f.k.a. Awesome ChatGPT Prompts. Share, discover, and collect prompts from the community. Free and open source β€” self-host for your organization with complete…

// mcp-serversf/⟨HTMLβŸ©β˜… 171,127β—· NOASSERTION[ claude ]
πŸ”“

A cross-platform desktop All-in-One assistant for Claude Code, Codex, OpenCode, OpenClaw, Gemini CLI & Hermes Agent. Only official website: ccswitch.io

// mcp-serversfarion1231/⟨RustβŸ©β˜… 136,484β—· MIT[ claude ]
πŸ”“

πŸͺ¨ why use many token when few token do trick β€” Claude Code skill that cuts 65% of tokens by talking like caveman

// mcp-serversJuliusBrussee/⟨JavaScriptβŸ©β˜… 107,719β—· MIT[ claude ]
πŸ”“

An open-source AI agent that brings the power of Gemini directly into your terminal.

// mcp-serversgoogle-gemini/⟨TypeScriptβŸ©β˜… 107,167β—· Apache-2.0[ claude ]
β†’ see how awesome-mcp-security connects across the ecosystem