proof-of-commitment
Related Servers
Alternatives to proof-of-commitment
No user-submitted related servers found.
Related Servers
AlicenseNot gradedqualityBmaintenanceDeterministic supply-chain provenance, SBOM/AI-BOM generation, and dependency risk analysis for npm and PyPI packages, with 14 security rules and verifiable reports.1MIT- AlicenseNot gradedqualityBmaintenanceEnables safety-ranked discovery of open-source components across npm, PyPI, crates.io, RubyGems, GitHub, and Hugging Face, with license, security, and health checks.1,348 npmMIT
- AlicenseAqualityAmaintenanceEnables AI coding agents and CI to vet npm dependencies before they reach the lockfile, flagging hallucinated, slopsquatted, or otherwise risky packages with evidence-backed verdicts.368 npm4MIT
- AlicenseAqualityAmaintenanceDependency intelligence for AI agents. CVE scanning, health checks, upgrade planning.9109 npm2Apache 2.0
- FlicenseNot gradedqualityDmaintenanceScans npm, PyPI, and GitHub for typosquatting and brand impersonation, risk-scores findings, and drafts takedown notices.-
- AlicenseAqualityFmaintenanceDependency security & health auditing for AI agents with no account or API key required.22MIT
TDQS
Scored across 8 tools
Each tool targets a distinct entity type (business, GitHub repo, Go module, npm package, PyPI package, domain) or a distinct operation (batch audit). No two tools have overlapping purposes; even the two business lookup tools are differentiated by search method (name vs. org number).
Most tools use 'lookup_' prefix, but 'audit_dependencies' and 'query_commitment' break the pattern. Additionally, 'lookup_business' and 'lookup_business_by_org' have differing suffixes, though still consistent. The mix of verbs (lookup, audit, query) is a minor inconsistency.
With 8 tools, the server covers the essential entity types (business, GitHub, Go, npm, PyPI, domain) plus a batch audit function, without unnecessary bloat. This count is well-scoped for the domain of commitment verification across multiple ecosystems.
The tool set covers the main package ecosystems (npm, PyPI, Go) and GitHub repos, but lacks other popular ecosystems like Ruby gems or Cargo crates. Businesses are limited to Norway only. A minor gap given the stated focus on 'commitment profiles' for common supply chain vectors.