package_provenance
Who publishes this package, and is it a typosquat? Live npm or PyPI lookup: first-publish date and age, release count, latest version, maintainers/author, linked repo, plus a typosquat check against popular package names. Use when an agent is about to install or recommend an unfamiliar dependency.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| name | Yes | package name, e.g. express or requests | |
| ecosystem | Yes | npm or pypi |