Index live · v1.7.0 · OCT 6 2026
02 · MCP Directory

196
MCP servers,
one index.

Find MCP servers for Claude, ChatGPT, Cursor, and every major AI platform. Official integrations from GitHub, Stripe, AWS, and more — with verified setup where we have checked it.

196 MCP Servers
22 Categories
106 Official
97M+ SDK Downloads
Editor's picks

Featured Servers

The most popular MCP servers in the ecosystem

Catalog audit

How secure are the MCP servers in this directory?

We ran every server in the catalog through the same automated framework on August 7, 2026. 106 of 192 servers exposed a source we could check. The remaining 86 (45%) publish no repository or hosted endpoint URL, so no automated check can be applied to them at all.

Repo audited
27

Full supply-chain check: releases, lockfile, SBOM, CI, contributors, license.

Endpoint audited
79

Hosted servers checked for TLS-only transport and OAuth metadata discovery.

No source on file
45%

86 servers publish neither a repository nor an endpoint URL.

Hosted endpoints (79 servers)

Pass rate for each automated endpoint check across 79 hosted MCP servers.
TLS-only (HTTPS) endpoint
Mitigates: Plaintext credential interception
100%79 of 79
OAuth 2.1 metadata (RFC 9728)
Mitigates: Token mismanagement, audience confusion
13%10 of 79

Source repositories (27 servers)

Pass rate for each automated supply-chain check across 27 MCP server repositories.
SECURITY.md published
Mitigates: Coordinated disclosure path
64%16 of 25
Commit in last 90 days
Mitigates: Maintainer abandonment
92%23 of 25
≥2 active contributors
Mitigates: Bus-factor of one
100%25 of 25
CI pipeline configured
Mitigates: Code health regression
84%21 of 25
Dependency lockfile committed
Mitigates: Dependency confusion
84%21 of 25
Signed releases (npm provenance)
Mitigates: Supply-chain backdoor
—0 of 0
Software Bill of Materials (SBOM)
Mitigates: Audit trail
0%0 of 25
License declared
Mitigates: Legal ambiguity
100%25 of 25

Rates are calculated over checks that actually ran — a check marked not-applicable for a given server is excluded rather than counted as a failure. Deep framework checks (OAuth 2.1 / PKCE implementation, input validation, sandboxing) require human source review and are tracked separately. Read the methodology →

Sort:

By integration

Browse by Category

22 categories covering every corner of the MCP ecosystem

Newsletter

Stay ahead of the MCP ecosystem

Every issue: the MCP servers we added, what failed our audit and why, and one integration worth stealing. Nothing you'd get from an AI news roundup.

Free forever. Unsubscribe anytime. No spam. Read a past issue.