permission surface
MCP servers handling credentials and secrets Servers whose tools appear to touch tokens, API keys, passwords, or other secrets. Inferred from tool names, descriptions, and input schemas — a hit means the credential surface deserves a look before granting access, not that the server is unsafe.
askexenow AI employee operating system — persistent memory, task management, and multi-agent coordination for Claude Code.
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
database
(inferred)
stdio D 520t
+cmp
github forgesworn/bray
verified — a relayed third-party claim (registry/vendor), not the
observatory's own endorsement
forgesworn Trust-aware Nostr MCP server for AI agents and humans. Verification, proximity, and access woven into every interaction.
filesystem
(inferred)
network
(inferred)
secrets
(inferred)
stdio B 241t
+cmp
tpitre The most comprehensive MCP server for Figma — design tokens, variables, components, write tools, version history diff, accessibility audits, FigJam, Slides, and more. Local (WebSocket Desktop Bridge plugin) and Cloudflare Workers (paired + remote) modes.
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
stdio D 205t
+cmp
smithery Google Super
verified — a relayed third-party claim (registry/vendor), not the
observatory's own endorsement
googlesuper Google Super App combines all Google services including Drive, Calendar, Gmail, Sheets, Analytics, Ads, and more, providing a unified platform for seamless integration and management of your digital life.
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
database
(inferred)
untrusted content
(inferred)
http C 200t
+cmp
trello Unofficial, third-party integration for Trello’s web-based kanban-style, list-making application.
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
database
(inferred)
untrusted content
(inferred)
http D 200t
+cmp
GrayCodeAI Gitant MCP server — 160 tools for AI agents to interact with Gitant nodes
filesystem
(inferred)
network
(inferred)
secrets
(inferred)
stdio C 170t
+cmp
existence-master A personal AI assistant for everyone
filesystem
(inferred)
network
(inferred)
secrets
(inferred)
database
(inferred)
http B 163t
+cmp
ahammadshawki8 DeepSIFT - A zero-hallucination autonomous DFIR agent for the SANS SIFT Workstation. 148 typed, audited, guard-railed MCP forensic tools with per-claim grounding verification, 4-axis confidence scoring, and an HMAC-signable chain of custody. .
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
database
(inferred)
stdio D 149t
+cmp
smithery Slack
verified — a relayed third-party claim (registry/vendor), not the
observatory's own endorsement
slack Slack is a channel-based messaging platform. With Slack, people can work together more effectively, connect all their software tools and services, and find the information they need to do their best work — all within a secure, enterprise-grade environment.
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
database
(inferred)
untrusted content
(inferred)
http C 142t
+cmp
RobithYusuf Stealth Chrome MCP server — 100++ tools for AI agents. One-liner Cloudflare Turnstile bypass (proven), dual-mode HTTP with TLS fingerprint, AI Vision reCAPTCHA solver. Python + nodriver + curl_cffi + FastMCP.
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
stdio C 138t
+cmp
anvpx Local-first AI developer toolkit — knowledge base, code analysis, context management, and developer tools for LLM agents
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
database
(inferred)
stdio C 137t
+cmp
COSAI-Labs 45+ dev tools via MCP: JSON, QR, hash, DNS, code review, fake data, screenshots, and more.
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
stdio C 137t
+cmp
jpoindexter Control Ableton Live with AI - 200+ tools via MCP, REST API, and Max for Live. Works with Claude, Ollama, OpenAI, Groq.
network
(inferred)
secrets
(inferred)
stdio B 128t
+cmp
MCamner Deterministic MCP runtime for safe tools, contracts, review gates, and local AI workflows.
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
stdio C 121t
+cmp
novyxlabs Persistent memory + governance for AI agents. 120 MCP tools — core memory works locally (zero config SQLite), full surface (policy-as-code, approval workflows, governance dashboard, threat intel, auto-defense, governed actions, Runtime v2 agents/missions/capabilities) with Novyx Cloud.
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
database
(inferred)
stdio B 120t
+cmp
artokun Claude Code plugin + MCP server for ComfyUI — 88 tools, 14 AI skills (Flux, WAN, LTX video, Qwen), live graph editing from your Claude session. Generate images & video, manage models and custom nodes.
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
database
(inferred)
stdio C 101t
+cmp
veriswarm Official SDKs and MCP server for VeriSwarm — trust infrastructure for AI agents
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
stdio C 101t
+cmp
brian-alchemy MCP server for using Alchemy APIs
network
(inferred)
secrets
(inferred)
stdio B 97t
+cmp
shaun0927 Open-source browser automation MCP server. Control your real Chrome from any AI agent.
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
stdio C 95t
+cmp
smithery GitHub
verified — a relayed third-party claim (registry/vendor), not the
observatory's own endorsement
github Connect your AI agents to GitHub — manage repos, issues, PRs, workflows, and more
filesystem
(inferred)
shell / exec
(inferred)
network
(inferred)
secrets
(inferred)
database
(inferred)
untrusted content
(inferred)
http C 86t
+cmp