Agent Governance Security MCP Servers
Tools for enforcing policies, access control, audit logging, and safety constraints on AI agents at the protocol level. Includes credential isolation, deterministic policy enforcement, and compliance frameworks. Does NOT include general security infrastructure, secrets management, or agent frameworks themselves.
There are 97 agent governance security servers tracked. 2 score above 50 (established tier). The highest-rated is AndrewAltimit/template-repo at 54/100 with 110 stars.
Get all 97 projects as JSON
curl "https://pt-edge.onrender.com/api/v1/datasets/quality?domain=mcp&subcategory=agent-governance-security&limit=20"
Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.
| # | Server | Score | Tier |
|---|---|---|---|
| 1 |
AndrewAltimit/template-repo
Agent orchestration & security template featuring MCP tool building,... |
|
Established |
| 2 |
knowledgepa3/gia-mcp-server
MCP proxy for GIA Governance — connects Claude Desktop and Claude Code to... |
|
Established |
| 3 |
Chimera-Protocol/csl-core
Deterministic safety layer for AI agents. Z3-verified policy enforcement. |
|
Emerging |
| 4 |
portofcontext/pctx
pctx is the execution layer for agentic tool calls. It auto-converts agent... |
|
Emerging |
| 5 |
agentralabs/agentic-contract
Policy engine for AI agents — enforceable rules, risk limits, approval... |
|
Emerging |
| 6 |
postralai/masquerade
The Privacy Firewall for LLMs |
|
Emerging |
| 7 |
behrensd/mcpwall
Deterministic security proxy for MCP tool calls — iptables for MCP |
|
Emerging |
| 8 |
Huzefaaa2/terraform-guardrail
Terraform-Guardrail (TerraGuard) MCP is an open-source governance framework... |
|
Emerging |
| 9 |
openagentidentityprotocol/agentidentityprotocol
Agent Identity Protocol - Zero-trust security layer for AI agents. Policy... |
|
Emerging |
| 10 |
turbot/guardrails-mcp
Enable AI assistants to explore and query your Turbot Guardrails data! |
|
Emerging |
| 11 |
mcptrust/mcptrust
Runtime security proxy for MCP: lockfile enforcement, drift detection,... |
|
Emerging |
| 12 |
nshkrdotcom/GUARDRAIL
GUARDRAIL - MCP Security - Gateway for Unified Access, Resource Delegation,... |
|
Emerging |
| 13 |
eqtylab/mcp-guardian
Manage / Proxy / Secure your MCP Servers |
|
Emerging |
| 14 |
elliot35/deterministic-agent-control-protocol
Governance gateway for AI agents — bounded, auditable, session-aware control... |
|
Emerging |
| 15 |
PolicyLayer/Intercept
The enforcement layer for AI agents. Intercept enforces hard, deterministic... |
|
Emerging |
| 16 |
Sentinel-Gate/Sentinelgate
Access control for AI agents. MCP proxy with RBAC, CEL policies, and full... |
|
Emerging |
| 17 |
sanna-ai/sanna
Trust infrastructure for AI agents — constitution enforcement and... |
|
Emerging |
| 18 |
agentralabs/agentic-comm
Structured agent-to-agent and agent-to-human communication — channels,... |
|
Emerging |
| 19 |
gbrigandi/mcp-server-conceal
Privacy-focused MCP proxy that intelligently pseudo-anonymizes PII in... |
|
Emerging |
| 20 |
vellaveto/vellaveto
Agent Interaction Firewall for AI tool calls. Runtime security for MCP and... |
|
Emerging |
| 21 |
randysalars/boardroom-mcp
AI Governance-as-a-Service — Give your AI agents a boardroom of 450+... |
|
Emerging |
| 22 |
ivanlkf/navil
Open-source agent governance middleware. Runtime security proxy for MCP... |
|
Emerging |
| 23 |
shleder/toolwall
Fail-closed stdio transport firewall for MCP JSON-RPC tool traffic |
|
Emerging |
| 24 |
3p3r/oatmeal
Oatmeal is a single binary tray application that extends your web agent's... |
|
Experimental |
| 25 |
perfecxion-ai/secure-mcp
Enterprise-grade Model Context Protocol (MCP) server with advanced security,... |
|
Experimental |
| 26 |
Invasivecape/ghost-protocol
🔍 Eliminate data until revealed with Ghost Protocol, a privacy system that... |
|
Experimental |
| 27 |
OrelliusAI/orellius-dome
Protective Dome for AI Agents — MCP security gateway proxy (Rust) |
|
Experimental |
| 28 |
Orellius/thunder-dome
Protective Dome for AI Agents — MCP security gateway proxy (Rust) |
|
Experimental |
| 29 |
vitas/evidra-lock
MCP Kill-switch for AI agents. Validates infrastructure operations before... |
|
Experimental |
| 30 |
TrentApps-com/ManagerProtocol
Enterprise Agent Supervisor - AI Agent Governance MCP Server with... |
|
Experimental |
| 31 |
adhit-r/aran-mcp
Enterprise-Grade MCP (Model Context Protocol) Security and Management Platform |
|
Experimental |
| 32 |
Orellius/mcpdome
Protective Dome for AI Agents — MCP security gateway proxy (Rust) |
|
Experimental |
| 33 |
sattyamjjain/agent-airlock
Open-source security firewall for AI agents — validates tool calls, strips... |
|
Experimental |
| 34 |
apathy-ca/sark
Zero-trust gateway for AI systems. OPA policies, audit logging,... |
|
Experimental |
| 35 |
CarlosLadd/AgentOx
AgentOx - Agentic Tool Security Platform (MCP + A2A + OpenAI tool_use) |
|
Experimental |
| 36 |
Rul1an/assay
Policy-as-Code for AI Agents. Deterministic testing, runtime enforcement,... |
|
Experimental |
| 37 |
paolovella/vellaveto
Agentic security control plane for MCP and AI agent tool calls. MCP-native... |
|
Experimental |
| 38 |
MaxwellCalkin/sentinel-ai
Real-time AI safety guardrails for LLM apps. 10 scanners: prompt injection,... |
|
Experimental |
| 39 |
SiteWarming/Comply
AI-powered open source license compliance scanner. Analyzes how dependencies... |
|
Experimental |
| 40 |
kobepaw/goop-shield-community
Runtime defense for AI agents. 24 inline defenses, 3 output scanners, MCP... |
|
Experimental |
| 41 |
Bajuzjefe/Aikido-Security-Analysis-Platform
Security analysis platform for Aiken smart contracts on Cardano: 75... |
|
Experimental |
| 42 |
NimbleBrainInc/mpak-trust-framework
MTF: An open security standard for MCP server bundles. Defines compliance... |
|
Experimental |
| 43 |
InnerWarden/mcp-guard
Runtime security for MCP servers and AI agents. Pre-execution guardrails,... |
|
Experimental |
| 44 |
vaddisrinivas/mcp-extras
Transparent MCP proxy that gates destructive tool calls behind human... |
|
Experimental |
| 45 |
devwebxyn/securemcp-lite
A lightweight local MCP firewall for AI agents that enforces YAML security... |
|
Experimental |
| 46 |
ElmadaniS/halyn
Halyn — Enforceable safety for AI agents. Hardened shields (unicode,... |
|
Experimental |
| 47 |
adhit-r/audit-lens
AuditLens: The impeccable, agentic compliance engine. Transform evidence... |
|
Experimental |
| 48 |
nelsoncc/agent-guard
Runtime governance for tool-using AI agents in Java — budget enforcement,... |
|
Experimental |
| 49 |
useoverwatch/overwatch
The Agent Control Plane — Unified identity, governance, cost control, and... |
|
Experimental |
| 50 |
NeuZhou/mcp-firewall
Runtime security proxy for the Model Context Protocol (MCP). The Cloudflare... |
|
Experimental |
| 51 |
ToolOracle/trustoracle
FeedOracle Trust Layer — Verifiable evidence & verification MCP server for... |
|
Experimental |
| 52 |
provnai/McpVanguard
An open-source security proxy and active firewall for the Model Context... |
|
Experimental |
| 53 |
kvlar-io/kvlar
Runtime security for AI agents — policy engine and MCP proxy |
|
Experimental |
| 54 |
capiscio/a2a-demos
Demo agents showcasing CapiscIO Agent Guard and MCP Guard — trust badges,... |
|
Experimental |
| 55 |
bigmoon-dev/Aegis
MCP governance proxy for AI agents — enforce rate limits, access control,... |
|
Experimental |
| 56 |
Hairsplitterketonegroup852/orellius-dome
Secure AI agent interactions by managing access and threats through a... |
|
Experimental |
| 57 |
piyushptiwari1/mcpkernel
The Security Kernel for AI Agents — MCP/A2A gateway with policy enforcement,... |
|
Experimental |
| 58 |
yoned0609/AgentGate
The authorization layer MCP doesn't have. JIT proxy for AI agents. |
|
Experimental |
| 59 |
wd041216-bit/ironclaw-agent-guard
Agent-runtime security core with CLI, reusable skills, and stdio/HTTP MCP... |
|
Experimental |
| 60 |
vishtechie07/zero-ai-gateway
Zero-Trust AI Gateway: Dual-pass PII redaction (Regex + LLM), real-time... |
|
Experimental |
| 61 |
capiscio/capiscio-mcp-python
CapiscIO MCP Guard - Secure your MCP tools with agent-to-server... |
|
Experimental |
| 62 |
LuciferForge/agent-safety-mcp
MCP server wrapping ai-cost-guard, ai-injection-guard, and... |
|
Experimental |
| 63 |
Vigile-ai/vigile-mcp
MCP server for Vigile AI Security — query trust scores for MCP servers and... |
|
Experimental |
| 64 |
ido4-dev/ido4
Development Governance Platform — deterministic methodology enforcement for... |
|
Experimental |
| 65 |
knortzwellez/shellguard
🛡️ Enable secure, read-only SSH access for LLM agents to audit servers, run... |
|
Experimental |
| 66 |
ark-forge/mcp-eu-ai-act
MCP EU AI Act Compliance Scanner - Open source tool to detect EU AI Act... |
|
Experimental |
| 67 |
steveswain14/mcp-json-suppressor
A standalone MCP suppressor that sanitises, validates, and stabilises JSON... |
|
Experimental |
| 68 |
steveswain14/mcp-hallucination-suite
A unified suite of MCP suppressors that prevent hallucinations, enforce... |
|
Experimental |
| 69 |
egoughnour/code-firewall-mcp
A structural similarity-based code security filter for MCP (Model Context... |
|
Experimental |
| 70 |
wharfe/agentbond
Agent-first governance infrastructure for AI agents — authorization, intent... |
|
Experimental |
| 71 |
ExpertVagabond/ibmz-mcp-server
MCP server for IBM Z mainframe integration -- Key Protect HSM key management... |
|
Experimental |
| 72 |
jellewas/eu-audit-mcp
Tamper-evident audit trail MCP server for EU AI Act & GDPR compliance |
|
Experimental |
| 73 |
adwantg/mcp-egress-guard
Policy enforcement proxy for MCP tool calls: detect leaks, block risky... |
|
Experimental |
| 74 |
VikingOwl91/mcp-firewall
Security proxy for Model Context Protocol (MCP) servers - policy... |
|
Experimental |
| 75 |
iambilliefan/gia-mcp-server
Connect Claude AI agents to a governance layer for decision tracking,... |
|
Experimental |
| 76 |
sneiko/agent-guard
Contract-based accountability runtime for AI agents. Define tasks with... |
|
Experimental |
| 77 |
steveswain14/mcp-prompt-suppressor
A standalone MCP suppressor that filters, sanitises, and stabilises user... |
|
Experimental |
| 78 |
steveswain14/mcp-tool-response-suppressor
A standalone MCP suppressor that filters, stabilises, and sanitises tool... |
|
Experimental |
| 79 |
ExpertVagabond/guardrails-mcp-server
MCP server for AI agent security -- input validation, prompt injection... |
|
Experimental |
| 80 |
steveswain14/mcp-grounding-enforcer
A standalone MCP suppressor that enforces grounding by validating... |
|
Experimental |
| 81 |
imnumb1/terraform-guardrail
🔒 Enhance Terraform governance with a Python-based MCP server and CLI,... |
|
Experimental |
| 82 |
aryan877/mcp-guardian
An MCP server that scans, tests, and locks down other MCP servers. Built on... |
|
Experimental |
| 83 |
cogniolab/enterprise-mcp-framework
Production-grade security, observability, and governance for Model Context... |
|
Experimental |
| 84 |
razashariff/mcps
MCPS -- MCP Secure. Cryptographic identity, message signing, and trust... |
|
Experimental |
| 85 |
jacklatrobe/MCP-Guardian
MCP Guardian acts as a proxy service for remote MCP endpoints, and... |
|
Experimental |
| 86 |
AUTHENSOR/AUTHENSOR
The open-source safety stack for AI agents. Policy engine, content scanner,... |
|
Experimental |
| 87 |
Themxhiguy/AegisEdgeAI
🔒 Secure AI at the edge by binding user, device, and workload identities to... |
|
Experimental |
| 88 |
AiAgentKarl/agent-policy-gateway-mcp-js
JavaScript MCP Server — PII filtering, guardrails, GDPR/AI Act compliance for agents |
|
Experimental |
| 89 |
AiAgentKarl/agent-policy-gateway-mcp
Compliance & guardrails for AI agents — PII filtering, audit logging,... |
|
Experimental |
| 90 |
AiAgentKarl/agent-audit-trail-mcp
Immutable audit logging for AI agents — hash-chained event log, integrity... |
|
Experimental |
| 91 |
jagmarques/asqav-mcp
MCP server for AI agent governance - policy checks, audit trails, compliance |
|
Experimental |
| 92 |
JesmineT/cybersentinel-pydantic-logfire
Assessment prototype built with Pydantic AI, context and state management,... |
|
Experimental |
| 93 |
permission-protocol/mcp-guard
MCP middleware that blocks dangerous AI agent actions using a simple YAML config |
|
Experimental |
| 94 |
polymons/MCP-Security-Proxy
A project to test MCP voulnerabilities and defense strategies in a... |
|
Experimental |
| 95 |
SecAI-Hub/mcp-firewall
Default-deny enterprise MCP gateway with signed policy bundles and taint tracking |
|
Experimental |
| 96 |
Rizwan723/MCP-Security-Proxy
🔒 Implement a security proxy for Model Context Protocol using ensemble... |
|
Experimental |
| 97 |
awilmoth/mcp-firewall
MCP Firewall |
|
Experimental |