freshdeps-mcp
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@freshdeps-mcpCheck health of express on npm"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
freshdeps-mcp
MCP server exposing live npm / PyPI dependency-health verdicts so AI coding agents can check a package before recommending it — closing the 6–18 month staleness gap in model training data.
Tool
check_dependency_freshness
Input | Type |
|
|
| string |
Returns a concise human-readable summary and structured content:
maintenance signal (active/slowing/stale/abandoned/unknown),
latest version, last release/commit age, deprecation/yank/archived flags,
known CVE count (OSV), and a hand-verified alternative if the package is
dead.
It calls ${FRESHDEPS_API_BASE}/api/verdict (default
https://freshdeps.vercel.app).
Related MCP server: MCP Package Hero
Install (Claude Desktop / Cursor)
Once published:
{
"mcpServers": {
"freshdeps": { "command": "npx", "args": ["-y", "freshdeps-mcp"] }
}
}From this repo (before publish):
{
"mcpServers": {
"freshdeps": {
"command": "node",
"args": ["/absolute/path/to/code/mcp/server.js"]
}
}
}Run / test manually
npm install
FRESHDEPS_API_BASE=http://localhost:3100 node server.jsThe server speaks JSON-RPC over stdio (StdioServerTransport).
Env
Var | Purpose |
| backend base URL (default prod) |
| optional fire-and-forget usage analytics |
This server cannot be deployed
Maintenance
Related MCP Connectors
Scan any MCP server for tool-poisoning, security, auth & license. Trust score before install.
MCP server for hex.pm and hexdocs.pm: search, inspect, compare, and audit Elixir packages
The MCP server that vets MCP servers: identity, risk grade and per-tool risk before you install.
Security scanner for MCP servers. Detect vulnerabilities, prompt injection, and tool poisoning.
Related MCP Servers
- AlicenseNot gradedqualityCmaintenanceAn MCP server for searching, inspecting, and evaluating NPM packages through health scoring and license risk assessments. It provides comprehensive package analysis including maintenance status, popularity trends, and security vulnerability reports to help users make informed dependency decisions.3MIT
- AlicenseAqualityDmaintenanceA comprehensive MCP server for checking package versions and rating package quality across Python (PyPI), JavaScript/TypeScript (npm), Dart (pub.dev), and Rust (crates.io) ecosystems.5MIT
- AlicenseAqualityCmaintenanceAn MCP server that queries 19 package registries (npm, PyPI, crates.io, etc.) to retrieve the latest version of packages and their metadata.211MIT
- AlicenseNot gradedqualityCmaintenanceMCP server for comprehensive PyPI package intelligence, providing tools for dependency analysis, security scanning, health scoring, license compliance, and trend tracking.MIT