Index live · v1.3.0 · AUG 7 2026
02 · MCP Directory

200+ trusted
MCP servers,
one index.

Find trusted MCP servers for Claude, ChatGPT, Cursor, and every major AI platform. Official integrations from GitHub, Stripe, AWS, and 200+ more.

200+ MCP Servers
22 Categories
28+ Official
97M+ SDK Downloads
Editor's picks

Featured Servers

The most popular and trusted MCP servers in the ecosystem

Catalog audit

How secure are the MCP servers in this directory?

We ran every server in the catalog through the same automated framework on August 7, 2026. 113 of 199 servers exposed a source we could check. The remaining 86 (43%) publish no repository or hosted endpoint URL, so no automated check can be applied to them at all.

Repo audited
33

Full supply-chain check: releases, lockfile, SBOM, CI, contributors, license.

Endpoint audited
80

Hosted servers checked for TLS-only transport and OAuth metadata discovery.

No source on file
43%

86 servers publish neither a repository nor an endpoint URL.

Hosted endpoints (80 servers)

Pass rate for each automated endpoint check across 80 hosted MCP servers.
TLS-only (HTTPS) endpoint
Mitigates: Plaintext credential interception
100%80 of 80
OAuth 2.1 metadata (RFC 9728)
Mitigates: Token mismanagement, audience confusion
13%10 of 80

Source repositories (33 servers)

Pass rate for each automated supply-chain check across 33 MCP server repositories.
SECURITY.md published
Mitigates: Coordinated disclosure path
68%21 of 31
Commit in last 90 days
Mitigates: Maintainer abandonment
90%28 of 31
≥2 active contributors
Mitigates: Bus-factor of one
97%30 of 31
CI pipeline configured
Mitigates: Code health regression
87%27 of 31
Dependency lockfile committed
Mitigates: Dependency confusion
87%27 of 31
Signed releases (npm provenance)
Mitigates: Supply-chain backdoor
0 of 0
Software Bill of Materials (SBOM)
Mitigates: Audit trail
0%0 of 31
License declared
Mitigates: Legal ambiguity
100%31 of 31

Rates are calculated over checks that actually ran — a check marked not-applicable for a given server is excluded rather than counted as a failure. Deep framework checks (OAuth 2.1 / PKCE implementation, input validation, sandboxing) require human source review and are tracked separately. Read the methodology →

Sort:

By integration

Browse by Category

22 categories covering every corner of the MCP ecosystem

Newsletter

Stay ahead of the MCP ecosystem

Weekly digest of the best new MCP servers, official integrations, and integration tips. Join thousands of builders.

Free forever. Unsubscribe anytime. No spam.