MCP server for MITRE ATT&CK knowledge base - technique lookup, threat intelligence, detection coverage analysis
Heimdall is a JavaScript based security results viewer and review tool supporting multiple security results formats, such as: InSpec, SonarQube, OWASP-Zap, and Fortify which you can load locally or from S3 and other data sources.
OpenAPI client for @mitre/emass_client
Schema definitions, classes on top, and utilities to deal with HDF files
Typescript objects for normalizing between InSpec profiles and XCCDF benchmarks
A TypeScript API for the MITRE ATT&CK data model
Converters for transforming security tool outputs and HDF formats
Complete MCP server for MITRE ATT&CK threat intelligence framework with 50+ tools
AI security skills grounded in mid-2026 threat reality, not stale framework documentation. 51 skills, 11 catalogs (439 CVEs / 177 CWEs / 805 ATT&CK + ICS / 170 ATLAS / 468 D3FEND / 8888 RFCs), 35 jurisdictions, 10-class catalog gap detector + budget gate,
The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools developed by MITRE and the security community to streamline security automation for systems and DevOps pipelines.
Playwright Tools for MCP
Model Context Protocol implementation for TypeScript
Utility functions for HDF libraries (JSON parsing, validation helpers)
Help agents automatically write and test stories for your UI components
The official TypeScript library for the Cloudflare API
A TypeScript SSE proxy for MCP servers that use stdio transport.
A high-level API to control headless Chrome over the DevTools Protocol
MCP server for Chrome DevTools
Simple representation of MITRE ATT&CK data
MCP server for Context7
MCP Apps SDK — Enable MCP servers to display interactive user interfaces in conversational clients.
A high-level API to control headless Chrome over the DevTools Protocol
MCP server for Threadlinqs Intelligence Platform — 49 tools across threat intel, detections, IOCs, actors, C2, MITRE chains, and Purple-tier composite intelligence
The first open-source AI agent built for offensive security. Autonomous pentesting from your terminal.