Docker Compose Audit
io.github.UnbearableDev · io-github-unbearabledev/docker-compose-audit
Security audit for docker-compose.yml — 25 checks: secrets, privileges, network, volumes, images.
Free · Open index · Trust earned, never sold
MCP servers and agent plugins for Gmail, GitHub, Notion, Figma, and thousands more — paired with the skills, CLIs, and packages that make them actually useful. Free listings, reviewed in the open.
18,023 plugins from 3 sources
io.github.UnbearableDev · io-github-unbearabledev/docker-compose-audit
Security audit for docker-compose.yml — 25 checks: secrets, privileges, network, volumes, images.
io.github.UnbearableDev · io-github-unbearabledev/dockerfile-audit
Hadolint-grade Dockerfile audit — 19 checks: secrets, privileges, supply chain, hygiene.
io.github.UnbearableDev · io-github-unbearabledev/github-actions-audit
GitHub Actions workflow security audit - 21 checks: pinning, permissions, secrets, injection.
io.github.UnbearableDev · io-github-unbearabledev/hu-postcode-validator
Hungarian postcode lookup + validation - 3,484 codes, sub-10ms lookups, bulk address endpoint.
io.github.UnbearableDev · io-github-unbearabledev/iac-audit-pack
Four IaC audits in one call: Compose, Dockerfile, GitHub Actions, Kubernetes. 131 checks.
io.github.UnbearableDev · io-github-unbearabledev/k8s-manifest-audit
kube-linter audit for Kubernetes manifests — 63 checks: security, availability, RBAC, network.
Everything listed here is also yours to embed: ship the full index inside your app as a versioned npm package, or query the hosted API with a typed client.
v0.20260709.1 on npm
The whole catalogue, offline
Every listing in this catalogue as one versioned data package — MCP configs, plugin references, curated entries with their skills, brand logos, and removal provenance — already deduplicated and denylist-filtered. Build a plugin directory into your app with no service to run. Republished weekly.
npm i -D @hotstack/catalogue-snapshot
v0.1.0 on npm
Typed client for the live API
A dependency-free fetch client for the catalogue API — search, entry detail, the registry feed, and per-source status, with honest degraded/stale semantics. For apps that want live search over the full index instead of a baked-in snapshot.
npm i @hotstack/catalogue-client