freshdeps-mcp
freshdeps-mcp
MCP server exposing live npm / PyPI dependency-health verdicts so AI coding agents can check a package before recommending it — closing the 6–18 month staleness gap in model training data.
Tool
check_dependency_freshness
Input | Type |
|
|
| string |
Returns a concise human-readable summary and structured content:
maintenance signal (active/slowing/stale/abandoned/unknown),
latest version, last release/commit age, deprecation/yank/archived flags,
known CVE count (OSV), and a hand-verified alternative if the package is
dead.
It calls ${FRESHDEPS_API_BASE}/api/verdict (default
https://freshdeps.vercel.app).
Install (Claude Desktop / Cursor)
Once published:
{
"mcpServers": {
"freshdeps": { "command": "npx", "args": ["-y", "freshdeps-mcp"] }
}
}From this repo (before publish):
{
"mcpServers": {
"freshdeps": {
"command": "node",
"args": ["/absolute/path/to/code/mcp/server.js"]
}
}
}Run / test manually
npm install
FRESHDEPS_API_BASE=http://localhost:3100 node server.jsThe server speaks JSON-RPC over stdio (StdioServerTransport).
Env
Var | Purpose |
| backend base URL (default prod) |
| optional fire-and-forget usage analytics |
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/SolvoHQ/freshdeps-mcp'
If you have feedback or need assistance with the MCP directory API, please join our Discord server