offsec-mcp is an open-source MCP server that exposes authorized-only offensive-security tools to AI agents. It supports reconnaissance, CVE intelligence, JavaScript analysis, and port scanning for security researchers and bug bounty testers.
In the Security & compliance platforms space, offsec-mcp takes a focused approach. It focuses on giving AI agents a controlled interface for authorized reconnaissance and offensive-security workflows. It is built as an open-source project for security researchers and bug bounty testers. The project is open source (MIT). It ships for the command line, and it can be self-hosted.
nadirzhon builds and maintains offsec-mcp, and it first shipped in 2026. Development happens publicly on GitHub with 8 commits in the last 90 days. Among its 6 catalogued features are reconnaissance, CVE intelligence, and javaScript analysis. It exposes integrations via an MCP server.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do