Agent Governance Security MCP Servers
Tools for enforcing policies, access control, audit logging, and safety constraints on AI agents at the protocol level. Includes credential isolation, deterministic policy enforcement, and compliance frameworks. Does NOT include general security infrastructure, secrets management, or agent frameworks themselves.
There are 112 agent governance security servers tracked. 3 score above 50 (established tier). The highest-rated is AndrewAltimit/template-repo at 57/100 with 110 stars.
Get all 112 projects as JSON
curl "https://pt-edge.onrender.com/api/v1/datasets/quality?domain=mcp&subcategory=agent-governance-security&limit=20"
Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.
| # | Server | Score | Tier |
|---|---|---|---|
| 1 |
AndrewAltimit/template-repo
Agent orchestration & security template featuring MCP tool building,... |
|
Established |
| 2 |
Chimera-Protocol/csl-core
Deterministic safety layer for AI agents. Z3-verified policy enforcement. |
|
Established |
| 3 |
agentralabs/agentic-contract
Policy engine for AI agents β enforceable rules, risk limits, approval... |
|
Established |
| 4 |
portofcontext/pctx
pctx is the execution layer for agentic tool calls. It auto-converts agent... |
|
Emerging |
| 5 |
behrensd/mcpwall
Deterministic security proxy for MCP tool calls β iptables for MCP |
|
Emerging |
| 6 |
postralai/masquerade
The Privacy Firewall for LLMs |
|
Emerging |
| 7 |
log-bell/avakill
πͺ Open-source safety firewall for AI agents. Intercepts tool calls before... |
|
Emerging |
| 8 |
openagentidentityprotocol/agentidentityprotocol
Agent Identity Protocol - Zero-trust security layer for AI agents. Policy... |
|
Emerging |
| 9 |
Huzefaaa2/terraform-guardrail
Terraform-Guardrail (TerraGuard) MCP is an open-source governance framework... |
|
Emerging |
| 10 |
ivanlkf/navil
Open-source agent governance middleware. Runtime security proxy for MCP... |
|
Emerging |
| 11 |
shleder/mcp-transport-firewall
Fail-closed stdio transport firewall for MCP JSON-RPC tool traffic |
|
Emerging |
| 12 |
elliot35/deterministic-agent-control-protocol
Governance gateway for AI agents β bounded, auditable, session-aware control... |
|
Emerging |
| 13 |
eqtylab/mcp-guardian
Manage / Proxy / Secure your MCP Servers |
|
Emerging |
| 14 |
PolicyLayer/Intercept
The enforcement layer for AI agents. Intercept enforces hard, deterministic... |
|
Emerging |
| 15 |
agentralabs/agentic-comm
Structured agent-to-agent and agent-to-human communication β channels,... |
|
Emerging |
| 16 |
ghostapp-ai/ghost
The Private Agent OS β search files, run AI agents, connect to 10,000+ tools... |
|
Emerging |
| 17 |
gpartin/WaveGuardClient
Python SDK for WaveGuard physics-based anomaly detection API. One call. Any data. |
|
Emerging |
| 18 |
mcptrust/mcptrust
Runtime security proxy for MCP: lockfile enforcement, drift detection,... |
|
Emerging |
| 19 |
vellaveto/vellaveto
Agent Interaction Firewall for AI tool calls. Runtime security for MCP and... |
|
Emerging |
| 20 |
Sentinel-Gate/Sentinelgate
Access control for AI agents. MCP proxy with RBAC, CEL policies, and full... |
|
Emerging |
| 21 |
turbot/guardrails-mcp
Enable AI assistants to explore and query your Turbot Guardrails data! |
|
Emerging |
| 22 |
knowledgepa3/gia-mcp-server
MCP proxy for GIA Governance β connects Claude Desktop and Claude Code to... |
|
Emerging |
| 23 |
nshkrdotcom/GUARDRAIL
GUARDRAIL - MCP Security - Gateway for Unified Access, Resource Delegation,... |
|
Emerging |
| 24 |
gbrigandi/mcp-server-conceal
Privacy-focused MCP proxy that intelligently pseudo-anonymizes PII in... |
|
Emerging |
| 25 |
3p3r/oatmeal
Oatmeal is a single binary tray application that extends your web agent's... |
|
Experimental |
| 26 |
vitas/evidra-lock
MCP Kill-switch for AI agents. Validates infrastructure operations before... |
|
Experimental |
| 27 |
paolovella/vellaveto
Agentic security control plane for MCP and AI agent tool calls. MCP-native... |
|
Experimental |
| 28 |
Moudaxx/AEGIS-OS
AEGIS OSβ’ - Secure AI Agent Platform - 12 security layers, 5 AI backends,... |
|
Experimental |
| 29 |
node9-ai/node9-proxy
The Execution Security Layer for the Agentic Era. Providing deterministic... |
|
Experimental |
| 30 |
Orellius/thunder-dome
Protective Dome for AI Agents β MCP security gateway proxy (Rust) |
|
Experimental |
| 31 |
Orellius/mcpdome
Protective Dome for AI Agents β MCP security gateway proxy (Rust) |
|
Experimental |
| 32 |
OrelliusAI/orellius-dome
Protective Dome for AI Agents β MCP security gateway proxy (Rust) |
|
Experimental |
| 33 |
kobepaw/goop-shield-community
Runtime defense for AI agents. 24 inline defenses, 3 output scanners, MCP... |
|
Experimental |
| 34 |
MaxwellCalkin/sentinel-ai
Real-time AI safety guardrails for LLM apps. 10 scanners: prompt injection,... |
|
Experimental |
| 35 |
getaegis/aegis
Credential isolation for AI agents. Local-first transparent proxy β your... |
|
Experimental |
| 36 |
Rul1an/assay
Policy-as-Code for AI Agents. Deterministic testing, runtime enforcement,... |
|
Experimental |
| 37 |
sanna-ai/sanna-ts
Trust infrastructure for AI agents β constitution enforcement and... |
|
Experimental |
| 38 |
provnai/McpVanguard
An open-source security proxy and active firewall for the Model Context... |
|
Experimental |
| 39 |
cronozen/proof
Cronozen Proof β Tamper-proof audit trail for AI decisions. Open-source core... |
|
Experimental |
| 40 |
SiteWarming/Comply
AI-powered open source license compliance scanner. Analyzes how dependencies... |
|
Experimental |
| 41 |
bigmoon-dev/Aegis
MCP governance proxy for AI agents β enforce rate limits, access control,... |
|
Experimental |
| 42 |
runemdown/ai-agent-security-hardening
Protect macOS AI agents from identity theft with shell scripts that secure... |
|
Experimental |
| 43 |
NeuroverseOS/Neuroverseos-governance
Deterministic governance engine for AI agents. Enforce rules defined in .md... |
|
Experimental |
| 44 |
apathy-ca/sark
Zero-trust gateway for AI systems. OPA policies, audit logging,... |
|
Experimental |
| 45 |
Invasivecape/ghost-protocol
π Eliminate data until revealed with Ghost Protocol, a privacy system that... |
|
Experimental |
| 46 |
sanna-ai/sanna
Trust infrastructure for AI agents β constitution enforcement and... |
|
Experimental |
| 47 |
LuciferForge/agent-safety-mcp
MCP server wrapping ai-cost-guard, ai-injection-guard, and... |
|
Experimental |
| 48 |
Vigile-ai/vigile-mcp
MCP server for Vigile AI Security β query trust scores for MCP servers and... |
|
Experimental |
| 49 |
ido4-dev/ido4
Development Governance Platform β deterministic methodology enforcement for... |
|
Experimental |
| 50 |
adhit-r/aran-mcp
Enterprise-Grade MCP (Model Context Protocol) Security and Management Platform |
|
Experimental |
| 51 |
iambilliefan/gia-mcp-server
Connect Claude AI agents to a governance layer for decision tracking,... |
|
Experimental |
| 52 |
SMJAI/trustloop-sdk
AI governance SDK β intercept, audit, and add human approval to any AI agent... |
|
Experimental |
| 53 |
steveswain14/mcp-hallucination-suite
A unified suite of MCP suppressors that prevent hallucinations, enforce... |
|
Experimental |
| 54 |
razashariff/mcps
MCPS -- MCP Secure. Cryptographic identity, message signing, and trust... |
|
Experimental |
| 55 |
vishtechie07/zero-ai-gateway
Zero-Trust AI Gateway: Dual-pass PII redaction (Regex + LLM), real-time... |
|
Experimental |
| 56 |
wd041216-bit/ironclaw-agent-guard
Agent-runtime security core with CLI, reusable skills, and stdio/HTTP MCP... |
|
Experimental |
| 57 |
yoned0609/AgentGate
The authorization layer MCP doesn't have. JIT proxy for AI agents. |
|
Experimental |
| 58 |
piyushptiwari1/mcpkernel
The Security Kernel for AI Agents β MCP/A2A gateway with policy enforcement,... |
|
Experimental |
| 59 |
Hairsplitterketonegroup852/orellius-dome
Secure AI agent interactions by managing access and threats through a... |
|
Experimental |
| 60 |
anubhavkhare22/sanna-ts
Implement trust infrastructure for AI agents by enforcing governance,... |
|
Experimental |
| 61 |
nicoletterankin/orwell-observatory
Orwell Observatory β 15 anti-Orwellian defense tools for AI agents and... |
|
Experimental |
| 62 |
imnumb1/terraform-guardrail
π Enhance Terraform governance with a Python-based MCP server and CLI,... |
|
Experimental |
| 63 |
wharfe/agentbond
Agent-first governance infrastructure for AI agents β authorization, intent... |
|
Experimental |
| 64 |
adwantg/mcp-egress-guard
Policy enforcement proxy for MCP tool calls: detect leaks, block risky... |
|
Experimental |
| 65 |
ElmadaniS/halyn
Halyn β Enforceable safety for AI agents. Hardened shields (unicode,... |
|
Experimental |
| 66 |
ToolOracle/trustoracle
FeedOracle Trust Layer β Verifiable evidence & verification MCP server for... |
|
Experimental |
| 67 |
sattyamjjain/agent-airlock
Open-source security firewall for AI agents β validates tool calls, strips... |
|
Experimental |
| 68 |
NeuZhou/mcp-firewall
Runtime security proxy for the Model Context Protocol (MCP). The Cloudflare... |
|
Experimental |
| 69 |
useoverwatch/overwatch
The Agent Control Plane β Unified identity, governance, cost control, and... |
|
Experimental |
| 70 |
GGeronik/God_Clause
Embeddable AI governance framework β define guardrails in YAML, enforce in... |
|
Experimental |
| 71 |
nelsoncc/agent-guard
Runtime governance for tool-using AI agents in Java β budget enforcement,... |
|
Experimental |
| 72 |
adhit-r/audit-lens
AuditLens: The impeccable, agentic compliance engine. Transform evidence... |
|
Experimental |
| 73 |
devwebxyn/securemcp-lite
A lightweight local MCP firewall for AI agents that enforces YAML security... |
|
Experimental |
| 74 |
vaddisrinivas/mcp-extras
Transparent MCP proxy that gates destructive tool calls behind human... |
|
Experimental |
| 75 |
InnerWarden/mcp-guard
Runtime security for MCP servers and AI agents. Pre-execution guardrails,... |
|
Experimental |
| 76 |
knortzwellez/shellguard
π‘οΈ Enable secure, read-only SSH access for LLM agents to audit servers, run... |
|
Experimental |
| 77 |
CarlosLadd/AgentOx
AgentOx - Agentic Tool Security Platform (MCP + A2A + OpenAI tool_use) |
|
Experimental |
| 78 |
ark-forge/mcp-eu-ai-act
MCP EU AI Act Compliance Scanner - Open source tool to detect EU AI Act... |
|
Experimental |
| 79 |
capiscio/capiscio-mcp-python
CapiscIO MCP Guard - Secure your MCP tools with agent-to-server... |
|
Experimental |
| 80 |
Bajuzjefe/Aikido-Security-Analysis-Platform
Security analysis platform for Aiken smart contracts on Cardano: 75... |
|
Experimental |
| 81 |
TrentApps-com/ManagerProtocol
Enterprise Agent Supervisor - AI Agent Governance MCP Server with... |
|
Experimental |
| 82 |
NimbleBrainInc/mpak-trust-framework
MTF: An open security standard for MCP server bundles. Defines compliance... |
|
Experimental |
| 83 |
kvlar-io/kvlar
Runtime security for AI agents β policy engine and MCP proxy |
|
Experimental |
| 84 |
capiscio/a2a-demos
Demo agents showcasing CapiscIO Agent Guard and MCP Guard β trust badges,... |
|
Experimental |
| 85 |
Anbu-00001/Sentinel-AIOps
A production-grade AIOps framework focused on model integrity and autonomous... |
|
Experimental |
| 86 |
perfecxion-ai/secure-mcp
Enterprise-grade Model Context Protocol (MCP) server with advanced security,... |
|
Experimental |
| 87 |
VikingOwl91/mcp-firewall
Security proxy for Model Context Protocol (MCP) servers - policy... |
|
Experimental |
| 88 |
aryan877/mcp-guardian
An MCP server that scans, tests, and locks down other MCP servers. Built on... |
|
Experimental |
| 89 |
ben854719/Sentinel-ThreatWall
SentinelβThreatWall integrates an advanced C++ firewall with AI-based... |
|
Experimental |
| 90 |
ExpertVagabond/ibmz-mcp-server
MCP server for IBM Z mainframe integration -- Key Protect HSM key management... |
|
Experimental |
| 91 |
jellewas/eu-audit-mcp
Tamper-evident audit trail MCP server for EU AI Act & GDPR compliance |
|
Experimental |
| 92 |
steveswain14/mcp-grounding-enforcer
A standalone MCP suppressor that enforces grounding by validating... |
|
Experimental |
| 93 |
egoughnour/code-firewall-mcp
A structural similarity-based code security filter for MCP (Model Context... |
|
Experimental |
| 94 |
ExpertVagabond/guardrails-mcp-server
MCP server for AI agent security -- input validation, prompt injection... |
|
Experimental |
| 95 |
steveswain14/mcp-json-suppressor
A standalone MCP suppressor that sanitises, validates, and stabilises JSON... |
|
Experimental |
| 96 |
randysalars/boardroom-mcp
AI Governance-as-a-Service β Give your AI agents a boardroom of 450+... |
|
Experimental |
| 97 |
steveswain14/mcp-tool-response-suppressor
A standalone MCP suppressor that filters, stabilises, and sanitises tool... |
|
Experimental |
| 98 |
steveswain14/mcp-prompt-suppressor
A standalone MCP suppressor that filters, sanitises, and stabilises user... |
|
Experimental |
| 99 |
sneiko/agent-guard
Contract-based accountability runtime for AI agents. Define tasks with... |
|
Experimental |
| 100 |
cogniolab/enterprise-mcp-framework
Production-grade security, observability, and governance for Model Context... |
|
Experimental |
| 101 |
AUTHENSOR/AUTHENSOR
The open-source safety stack for AI agents. Policy engine, content scanner,... |
|
Experimental |
| 102 |
jacklatrobe/MCP-Guardian
MCP Guardian acts as a proxy service for remote MCP endpoints, and... |
|
Experimental |
| 103 |
Rizwan723/MCP-Security-Proxy
π Implement a security proxy for Model Context Protocol using ensemble... |
|
Experimental |
| 104 |
SecAI-Hub/mcp-firewall
Default-deny enterprise MCP gateway with signed policy bundles and taint tracking |
|
Experimental |
| 105 |
ToolOracle/agentguard
AgentGuard v1.3 β Runtime Security & Governance Layer for AI Agents. 20... |
|
Experimental |
| 106 |
permission-protocol/mcp-guard
MCP middleware that blocks dangerous AI agent actions using a simple YAML config |
|
Experimental |
| 107 |
JesmineT/cybersentinel-pydantic-logfire
Assessment prototype built with Pydantic AI, context and state management,... |
|
Experimental |
| 108 |
jagmarques/asqav-mcp
MCP server for AI agent governance - policy checks, audit trails, compliance |
|
Experimental |
| 109 |
AiAgentKarl/agent-audit-trail-mcp
Immutable audit logging for AI agents β hash-chained event log, integrity... |
|
Experimental |
| 110 |
AiAgentKarl/agent-policy-gateway-mcp
Compliance & guardrails for AI agents β PII filtering, audit logging,... |
|
Experimental |
| 111 |
AiAgentKarl/agent-policy-gateway-mcp-js
JavaScript MCP Server β PII filtering, guardrails, GDPR/AI Act compliance for agents |
|
Experimental |
| 112 |
Themxhiguy/AegisEdgeAI
π Secure AI at the edge by binding user, device, and workload identities to... |
|
Experimental |